|
Log-Analyse und Auswertung: Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefundenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
17.03.2015, 16:37 | #1 |
| Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden Hallo zusammen, ich habe mir beim Einrichten eines neuen Toshiba-NBs mit vorinstalliertem Win 8.1 (64bit) offenbar einen Trojaner eingefangen. Rechner wurde plötzlich langsam und Windows Defender ließ sich nicht mehr starten. Der Versuch, diesen zu reaktivieren oder andere Antivirenprogramme zu installieren, schlug immer fehl. Installation klappte zwar, beim Start des Programms gab es dann jedesmal eine Fehlermeldung. Erst der Trojan Remover fand dann den Eintrag nqij.exe in der Registry beim Startaufruf der diversen Antivir-Programme, konnte die Registry jedoch nicht bereinigen. Bin dann über Google auf eurer Seite gelandet. Habe die virt. Laufwerke deaktiviert und GMER gestartet, letzteres brach aber sofort mit Fehlermeldung ab (s.u.). Ich bin dankbar für jede Hilfe, das Gerät hat mich jetzt schon zwei Tage gekostet. Logfiles: FRST.txt (Teil 1) Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015 Ran by Frank (administrator) on UHURA2 on 17-03-2015 15:48:16 Running from C:\Users\Frank\Desktop Loaded Profiles: Frank (Available profiles: Frank) Platform: Windows 8.1 Connected (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe () C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe (H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Toshiba Corporation) C:\Program Files\TOSHIBA\Teco\TecoService.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Teco\TecoResident.exe () C:\Program Files (x86)\ACD Systems\ACDSee\18.0\ACDSeeCommander18.exe (AVM Berlin) C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe () C:\Users\Frank\AppData\Local\Amazon Music\Amazon Music Helper.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe (TOSHIBA) C:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TDUSrv64.exe (ACD Systems) C:\Program Files (x86)\ACD Systems\ACDSee\18.0\acdIDInTouch2.exe (H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\vc10tray.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Priotecs IT GmbH) C:\Program Files (x86)\Outlook Backup Assistant\OutlookBackupAssistant.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [] => [X] HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2556768 2013-10-09] (TOSHIBA Corporation) HKLM\...\Run: [TecoResident] => C:\Program Files\TOSHIBA\Teco\TecoResident.exe [179288 2014-01-05] (TOSHIBA Corporation) HKLM\...\Run: [TSSSrv] => C:\Program Files (x86)\TOSHIBA\System Setting\TSSSrv.exe [296008 2013-10-22] (TOSHIBA Corporation) HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [354144 2013-08-13] (TOSHIBA Corporation) HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-20] (IvoSoft) HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation) HKLM-x32\...\Run: [KeNotify] => C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [34160 2013-08-06] (TOSHIBA CORPORATION) HKLM-x32\...\Run: [TSVU] => c:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TosSmartViewLauncher.exe [516512 2013-07-23] (TOSHIBA) HKLM-x32\...\Run: [ACSW18DE] => C:\Program Files (x86)\ACD Systems\ACDSee\18.0\acdIDInTouch2.exe [1470224 2014-09-17] (ACD Systems) HKLM-x32\...\Run: [ITSecMng] => C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [80840 2011-04-01] (TOSHIBA CORPORATION) HKLM-x32\...\Run: [VC10Player] => C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe [416696 2012-10-25] (H+H Software GmbH) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation) HKLM-x32\...\Run: [TrojanScanner] => C:\Program Files (x86)\Trojan Remover\Trjscan.exe [1791856 2014-10-16] (Simply Super Software) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [AVMUSBFernanschluss] => C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\AVMAutoStart.exe [139264 2015-03-10] (AVM Berlin) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7416088 2015-02-19] (Piriform Ltd) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [ACDSeeCommander18] => C:\Program Files (x86)\ACD Systems\ACDSee\18.0\ACDSeeCommander18.exe [1973256 2014-12-17] () HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [Amazon Music] => C:\Users\Frank\AppData\Local\Amazon Music\Amazon Music Helper.exe [5886272 2015-03-02] () HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [26232152 2015-02-19] (Google) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x00000000 HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Winlogon: [Shell] C:\Windows\explorer.exe [2501368 2015-01-28] (Microsoft Corporation) <==== ATTENTION HKU\S-1-5-18\...\Run: [EPSONE8BE74 (Epson Stylus SX430)] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHAE.EXE [232448 2011-01-20] (SEIKO EPSON CORPORATION) IFEO\AvastSvc.exe: [Debugger] nqij.exe IFEO\AvastUI.exe: [Debugger] nqij.exe IFEO\avcenter.exe: [Debugger] nqij.exe IFEO\avconfig.exe: [Debugger] nqij.exe IFEO\avgcsrvx.exe: [Debugger] nqij.exe IFEO\avgidsagent.exe: [Debugger] nqij.exe IFEO\avgnt.exe: [Debugger] nqij.exe IFEO\avgrsx.exe: [Debugger] nqij.exe IFEO\avguard.exe: [Debugger] nqij.exe IFEO\avgui.exe: [Debugger] nqij.exe IFEO\avgwdsvc.exe: [Debugger] nqij.exe IFEO\avp.exe: [Debugger] nqij.exe IFEO\avscan.exe: [Debugger] nqij.exe IFEO\bdagent.exe: [Debugger] nqij.exe IFEO\blindman.exe: [Debugger] nqij.exe IFEO\ccuac.exe: [Debugger] nqij.exe IFEO\ComboFix.exe: [Debugger] nqij.exe IFEO\egui.exe: [Debugger] nqij.exe IFEO\hijackthis.exe: [Debugger] nqij.exe IFEO\instup.exe: [Debugger] nqij.exe IFEO\keyscrambler.exe: [Debugger] nqij.exe IFEO\mbam.exe: [Debugger] nqij.exe IFEO\mbamgui.exe: [Debugger] nqij.exe IFEO\mbampt.exe: [Debugger] nqij.exe IFEO\mbamscheduler.exe: [Debugger] nqij.exe IFEO\mbamservice.exe: [Debugger] nqij.exe IFEO\MSASCui.exe: [Debugger] nqij.exe IFEO\rstrui.exe: [Debugger] nqij.exe IFEO\SDFiles.exe: [Debugger] nqij.exe IFEO\SDMain.exe: [Debugger] nqij.exe IFEO\SDWinSec.exe: [Debugger] nqij.exe IFEO\spybotsd.exe: [Debugger] nqij.exe IFEO\wireshark.exe: [Debugger] nqij.exe IFEO\zlclient.exe: [Debugger] nqij.exe ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.de/ HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://toshiba13.msn.com/?pc=TEJB HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://toshiba.eu/symbaloo_c SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2734555180-3142773653-1428810083-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms} SearchScopes: HKU\S-1-5-21-2734555180-3142773653-1428810083-1001 -> {898DEB29-90E7-4FED-ADAC-FCDAB1A2CEFC} URL = BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft) BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20] (IvoSoft) BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2014-12-16] (Adblock Plus) BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-17] (Oracle Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-17] (Oracle Corporation) BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20] (IvoSoft) BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2014-12-16] (Adblock Plus) Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft) Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft) Tcpip\Parameters: [DhcpNameServer] 192.168.0.10 FireFox: ======== FF ProfilePath: C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll [2015-03-11] () FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.2.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-03-11] () FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-17] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-17] (Oracle Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-10] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-10] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.) FF Extension: Avira Browser Safety - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\abs@avira.com [2015-03-17] FF Extension: mediaplayerconnectivity - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{84b24861-62f6-364b-eba5-2e5e2061d7e6} [2015-03-11] FF Extension: Add to Amazon Wish List Button - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\amznUWL2@amazon.com.xpi [2015-03-11] FF Extension: NoScript - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2015-03-11] FF Extension: Video DownloadHelper - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2015-03-16] FF Extension: Adblock Plus - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-03-10] Chrome: ======= CHR HomePage: Default -> hxxp://go.microsoft.com/fwlink/?LinkId=69157 CHR Profile: C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Slides) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-17] CHR Extension: (Google Docs) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-17] CHR Extension: (Google Drive) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-17] CHR Extension: (YouTube) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-17] CHR Extension: (Adblock Plus) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-03-17] CHR Extension: (Google Search) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-17] CHR Extension: (Avira SafeSearch) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\eglgfnfolcgijipffhlhbbnefdcbjbml [2015-03-17] CHR Extension: (Google Sheets) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-17] CHR Extension: (Sticky Password Autofill Engine) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggepjhbdgijjkbelnggboeoehacbphed [2015-03-17] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-17] CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-03-17] CHR Extension: (Google Wallet) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-17] CHR Extension: (Gmail) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-17] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - https://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [319104 2014-03-19] (Windows (R) Win 7 DDK provider) [File not signed] R2 dts_apo_service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [21840 2014-03-03] () R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-02] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-02] (Intel(R) Corporation) S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [116088 2014-08-05] (Toshiba Europe GmbH) R2 VC10SecS; C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe [147312 2014-12-15] (H+H Software GmbH) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3888640 2014-02-14] (Qualcomm Atheros Communications, Inc.) R3 avmaura; C:\Windows\System32\drivers\avmaura.sys [116480 2015-03-10] (AVM Berlin) S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation) S3 GENERICDRV; C:\Program Files (x86)\UEFI WinFlash\amifldrv64.sys [15640 2012-07-27] () S3 HH10Help.sys; C:\Windows\system32\drivers\HH10Help.sys [24088 2009-07-09] (H+H Software GmbH) R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [291544 2014-01-03] (Realtek Semiconductor Corp.) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31472 2014-02-21] (Synaptics Incorporated) R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [33168 2013-10-10] (Windows (R) Win 7 DDK provider) S3 Tosrfcom; No ImagePath R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation) R1 vdrv1000; C:\Windows\System32\drivers\vdrv1000.sys [226080 2012-12-06] (H+H Software GmbH) R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-03-17 15:48 - 2015-03-17 15:48 - 00000472 _____ () C:\Users\Frank\Downloads\defogger_disable.log 2015-03-17 15:48 - 2015-03-17 15:48 - 00000000 _____ () C:\Users\Frank\defogger_reenable 2015-03-17 15:47 - 2015-03-17 15:47 - 00050477 _____ () C:\Users\Frank\Downloads\Defogger.exe 2015-03-17 15:23 - 2015-03-17 15:24 - 00029764 _____ () C:\Users\Frank\Downloads\Addition.txt 2015-03-17 15:21 - 2015-03-17 15:24 - 00142748 _____ () C:\Users\Frank\Downloads\FRST.txt 2015-03-17 15:20 - 2015-03-17 15:21 - 02095616 _____ (Farbar) C:\Users\Frank\Downloads\FRST64.exe 2015-03-17 15:13 - 2015-03-17 15:13 - 00000022 _____ () C:\Users\Frank\Downloads\apppath.torun 2015-03-17 15:02 - 2015-03-17 15:02 - 00022528 _____ (Microsoft) C:\Users\Frank\Downloads\RunAsSystem.exe 2015-03-17 14:52 - 2015-03-17 14:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (2).exe 2015-03-17 14:52 - 2015-03-17 14:52 - 00001084 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-03-17 14:52 - 2015-03-17 14:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-03-17 14:52 - 2015-03-17 14:52 - 00000000 ____D () C:\ProgramData\Malwarebytes 2015-03-17 14:52 - 2015-03-17 14:52 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-03-17 14:52 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-03-17 14:52 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-03-17 14:52 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2015-03-17 14:51 - 2015-03-17 14:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (1).exe 2015-03-17 14:51 - 2015-03-17 14:52 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028.exe 2015-03-17 13:56 - 2015-03-17 13:56 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER 2015-03-17 13:41 - 2015-03-17 13:41 - 00000000 ____D () C:\OETemp 2015-03-17 13:23 - 2015-03-17 14:06 - 00000000 ____D () C:\Program Files (x86)\Avira 2015-03-17 13:22 - 2015-03-17 13:22 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\Frank\Downloads\avira_de_av_5946238192__ws.exe 2015-03-17 13:17 - 2015-03-17 13:18 - 00000000 ____D () C:\ProgramData\Kaspersky Lab Setup Files 2015-03-17 13:16 - 2015-03-17 13:16 - 00416576 _____ (Kaspersky Lab) C:\Users\Frank\Downloads\de-de.setup.exe 2015-03-17 13:15 - 2015-03-17 13:15 - 141468920 _____ (Microsoft Corporation) C:\Users\Frank\Downloads\msert.exe 2015-03-17 13:13 - 2015-03-17 13:14 - 00013513 _____ () C:\Users\Frank\Desktop\Addition.txt 2015-03-17 13:10 - 2015-03-17 15:48 - 00020033 _____ () C:\Users\Frank\Desktop\FRST.txt 2015-03-17 13:10 - 2015-03-17 15:48 - 00000000 ____D () C:\FRST 2015-03-17 12:30 - 2015-03-17 12:28 - 02095616 _____ (Farbar) C:\Users\Frank\Desktop\FRST64.exe 2015-03-17 12:20 - 2015-03-17 12:20 - 00001121 _____ () C:\Users\Public\Desktop\Trojan Remover.lnk 2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\Users\Frank\Documents\Simply Super Software 2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Simply Super Software 2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trojan Remover 2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\ProgramData\Licenses 2015-03-17 12:19 - 2015-03-17 12:20 - 00000000 ____D () C:\Program Files (x86)\Trojan Remover 2015-03-17 12:19 - 2015-03-17 12:19 - 00000000 ____D () C:\ProgramData\Simply Super Software 2015-03-17 12:18 - 2015-03-17 12:19 - 31390952 _____ (Simply Super Software ) C:\Users\Frank\Downloads\trjsetup691.exe 2015-03-17 12:04 - 2015-03-17 12:04 - 00000000 __SHD () C:\ProgramData\Application Services 2015-03-17 11:54 - 2015-03-17 12:21 - 00008108 _____ () C:\Users\Frank\AppData\Roaming\msconfig.ini 2015-03-17 11:54 - 2015-03-17 12:21 - 00000000 __SHD () C:\Windows\SysWOW64\Application Services 2015-03-17 11:24 - 2015-03-17 15:35 - 00000812 _____ () C:\Windows\setupact.log 2015-03-17 11:24 - 2015-03-17 11:24 - 00000000 _____ () C:\Windows\setuperr.log 2015-03-17 11:23 - 2015-03-17 15:34 - 00142982 _____ () C:\Windows\PFRO.log 2015-03-17 11:09 - 2015-03-17 11:10 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Mp3tag 2015-03-17 10:48 - 2015-03-17 10:48 - 00650657 _____ () C:\Users\Frank\Downloads\lame3.99.5.zip 2015-03-17 10:41 - 2015-03-17 10:41 - 00000000 ____D () C:\Users\Frank\AppData\Local\CrashDumps 2015-03-17 10:40 - 2015-03-17 10:49 - 00000000 ____D () C:\Program Files (x86)\Exact Audio Copy 2015-03-17 10:40 - 2015-03-17 10:40 - 00001052 _____ () C:\Users\Public\Desktop\Exact Audio Copy.lnk 2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\EAC 2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\AccurateRip 2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Exact Audio Copy 2015-03-17 10:38 - 2015-03-17 10:39 - 00000000 ____D () C:\ProgramData\Oracle 2015-03-17 10:38 - 2015-03-17 10:38 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\ProgramData\Sun 2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\Program Files (x86)\Java 2015-03-17 10:37 - 2015-03-17 10:37 - 00561064 _____ (Oracle Corporation) C:\Users\Frank\Downloads\jxpiinstall.exe 2015-03-17 10:36 - 2015-03-17 10:39 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Freeplane 2015-03-17 10:36 - 2015-03-17 10:36 - 00000842 _____ () C:\Users\Public\Desktop\Freeplane.lnk 2015-03-17 10:36 - 2015-03-17 10:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freeplane 2015-03-17 10:36 - 2015-03-17 10:36 - 00000000 ____D () C:\Program Files\Freeplane 2015-03-17 10:29 - 2015-03-17 10:29 - 00000840 _____ () C:\Users\Frank\AppData\Local\recently-used.xbel 2015-03-17 10:29 - 2015-03-17 10:29 - 00000000 ____D () C:\Users\Frank\AppData\Local\gtk-2.0 2015-03-17 10:29 - 2015-03-17 10:29 - 00000000 ____D () C:\Users\Frank\.thumbnails 2015-03-17 10:22 - 2015-03-17 10:35 - 00000000 ____D () C:\Users\Frank\.gimp-2.8 2015-03-17 10:22 - 2015-03-17 10:22 - 04620717 _____ () C:\Users\Frank\Downloads\eac-1.0beta4.exe 2015-03-17 10:22 - 2015-03-17 10:22 - 00000000 ____D () C:\Users\Frank\AppData\Local\gegl-0.2 2015-03-17 10:14 - 2015-03-17 10:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\FileZilla 2015-03-17 10:14 - 2015-03-17 10:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 2015-03-17 10:14 - 2015-03-17 10:14 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client 2015-03-17 10:13 - 2015-03-17 10:26 - 00000916 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk 2015-03-17 10:12 - 2015-03-17 10:13 - 00000000 ____D () C:\Program Files\GIMP 2 2015-03-17 10:11 - 2015-03-17 10:12 - 00000000 ____D () C:\Program Files (x86)\Notepad++ 2015-03-17 10:11 - 2015-03-17 10:11 - 00001035 _____ () C:\Users\Frank\Desktop\Notepad++.lnk 2015-03-17 10:11 - 2015-03-17 10:11 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Notepad++ 2015-03-17 10:11 - 2015-03-17 10:11 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ 2015-03-17 10:11 - 2015-03-17 10:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2015-03-17 10:06 - 2015-03-17 10:06 - 06208736 _____ (Tim Kosse) C:\Users\Frank\Downloads\filezilla_3.10.2_win32-setup.exe 2015-03-17 10:05 - 2015-03-17 10:05 - 08271739 _____ () C:\Users\Frank\Downloads\npp.6.7.5.installer.exe 2015-03-17 10:00 - 2015-03-17 10:00 - 91931728 _____ (The GIMP Team ) C:\Users\Frank\Downloads\gimp-2.8.14-setup-1.exe 2015-03-17 09:58 - 2015-03-17 09:58 - 24430312 _____ (Open source ) C:\Users\Frank\Downloads\freeplane-setup-1.3.15.exe 2015-03-17 08:41 - 2015-03-17 15:37 - 00000000 ___RD () C:\Users\Frank\Google Drive 2015-03-17 08:28 - 2015-03-17 08:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-03-17 08:27 - 2015-03-17 08:27 - 00880208 _____ (Google Inc.) C:\Users\Frank\Downloads\ChromeSetup.exe 2015-03-17 08:13 - 2015-03-17 08:13 - 00000000 ____D () C:\Program Files\Adblock Plus for IE 2015-03-17 08:12 - 2015-03-17 08:12 - 05915456 _____ ( ) C:\Users\Frank\Downloads\adblockplusie-1.3.exe 2015-03-16 22:19 - 2015-03-17 13:59 - 01435900 _____ () C:\Windows\WindowsUpdate.log 2015-03-16 22:16 - 2015-03-16 22:19 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\WildTangent 2015-03-16 22:16 - 2015-03-16 22:16 - 00000000 ____D () C:\ProgramData\BlueStacks 2015-03-16 21:16 - 2015-03-16 21:16 - 15094704 _____ (Lamantine Software ) C:\Users\Frank\Downloads\stpass_free_606434.exe 2015-03-16 21:16 - 2015-03-16 21:16 - 15094696 _____ (Lamantine Software ) C:\Users\Frank\Downloads\stpass_trial_606434.exe 2015-03-16 19:46 - 2015-03-16 20:09 - 00121344 ___SH () C:\Users\Frank\Downloads\Thumbs.db 2015-03-16 17:26 - 2015-03-16 17:46 - 00000000 ___SD () C:\Users\Public\Virtual CDs 2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ___SD () C:\Users\Public\Virtual CD v10 2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ___SD () C:\Users\Frank\AppData\Roaming\Virtual CD v10 2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual CD v10 2015-03-16 17:26 - 2012-12-06 11:09 - 00226080 ____N (H+H Software GmbH) C:\Windows\system32\Drivers\vdrv1000.sys 2015-03-16 17:26 - 2009-07-09 11:24 - 00024088 _____ (H+H Software GmbH) C:\Windows\system32\Drivers\HH10Help.sys 2015-03-16 17:25 - 2015-03-16 17:26 - 00000000 ____D () C:\Program Files (x86)\Virtual CD v10 2015-03-16 17:24 - 2015-03-16 17:24 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\InstallShield 2015-03-16 17:24 - 2008-06-17 09:22 - 00040464 _____ (H+H Software GmbH) C:\Windows\system32\Drivers\vcd10bus.sys 2015-03-16 16:43 - 2000-10-29 15:33 - 00141312 _____ (Info-ZIP) C:\Windows\SysWOW64\Zip32.dll 2015-03-16 16:30 - 2015-03-16 17:01 - 00000000 ____D () C:\Users\Frank\Documents\TC Seth 2015-03-16 15:13 - 2015-03-16 16:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\M-DVD.Org V2 2015-03-16 15:13 - 2007-09-24 10:04 - 00675840 _____ () C:\Windows\SysWOW64\AudioGenie2.ocx 2015-03-16 15:13 - 2006-03-09 12:34 - 02945024 _____ (hxxp://mediainfo.sourceforge.net) C:\Windows\SysWOW64\MediaInfo.dll 2015-03-16 15:13 - 2004-05-27 00:32 - 00102400 _____ (Info-ZIP) C:\Windows\SysWOW64\unzip32.dll 2015-03-16 15:12 - 2015-03-16 16:43 - 00000000 ____D () C:\Program Files (x86)\M-DVD.Org V2 2015-03-16 15:12 - 2015-03-16 15:12 - 00000000 ____D () C:\ProgramData\M-DVD.Org V2 2015-03-16 15:12 - 2009-12-04 11:56 - 00061440 ____H (SynApp GmbH) C:\Windows\SysWOW64\ErrExplorer.dll 2015-03-16 15:12 - 2006-10-06 09:20 - 02899968 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11.dll 2015-03-16 15:12 - 2006-10-04 16:01 - 00351232 _____ (combit GmbH) C:\Windows\SysWOW64\cmpr11.dll 2015-03-16 15:12 - 2006-09-26 15:51 - 01399296 _____ (combit GmbH) C:\Windows\SysWOW64\cmct11.dll 2015-03-16 15:12 - 2006-09-26 15:39 - 01378304 _____ (combit GmbH) C:\Windows\SysWOW64\cmls11.dll 2015-03-16 15:12 - 2006-09-26 15:39 - 00893952 _____ (combit GmbH) C:\Windows\SysWOW64\cmbr11.dll 2015-03-16 15:12 - 2006-09-26 15:38 - 00739328 _____ (combit GmbH) C:\Windows\SysWOW64\cmdw11.dll 2015-03-16 15:12 - 2006-09-26 15:36 - 00337920 _____ (combit GmbH) C:\Windows\SysWOW64\cmut11.dll 2015-03-16 15:12 - 2006-09-13 10:29 - 00688640 _____ (combit GmbH) C:\Windows\SysWOW64\cmmx01.dll 2015-03-16 15:12 - 2006-07-19 07:00 - 00349184 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11pw.llx 2015-03-16 15:12 - 2006-06-22 08:50 - 00165584 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11o.ocx 2015-03-16 15:12 - 2005-09-13 13:29 - 00414720 _____ (combit GmbH) C:\Windows\SysWOW64\cmll1100.lng 2015-03-16 15:12 - 2005-08-08 16:10 - 00425984 _____ () C:\Windows\SysWOW64\cmmx0100.lng 2015-03-16 15:12 - 2005-07-12 09:41 - 00684032 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11xl.dll 2015-03-16 15:12 - 2005-06-23 15:17 - 01161492 _____ () C:\Windows\SysWOW64\cmLL1100.chm 2015-03-16 12:57 - 2015-03-17 12:10 - 00000000 ____D () C:\Program Files (x86)\Sticky Password 2015-03-16 12:04 - 2015-03-16 12:04 - 00000000 ____D () C:\ProgramData\ToshibaEurope 2015-03-16 12:04 - 2015-03-16 12:04 - 00000000 ____D () C:\ProgramData\TOSHIBA Tempro 2015-03-16 12:03 - 2015-03-16 12:03 - 00000000 ____D () C:\Windows\System32\Tasks\Toshiba 2015-03-16 12:03 - 2015-03-16 12:03 - 00000000 ____D () C:\Program Files (x86)\Toshiba TEMPRO 2015-03-16 11:55 - 2015-03-16 11:55 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieBrowserModeList 2015-03-16 11:54 - 2015-03-16 11:54 - 00000000 ____D () C:\ProgramData\IsolatedStorage 2015-03-16 08:57 - 2014-07-24 16:03 - 02141920 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2015-03-16 08:57 - 2014-07-24 14:36 - 02145472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2015-03-16 08:57 - 2014-07-24 10:44 - 16874496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2015-03-16 08:57 - 2014-07-24 10:16 - 12730880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2015-03-16 08:57 - 2014-07-24 09:53 - 01261056 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll 2015-03-16 08:57 - 2014-07-24 09:32 - 01532416 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll 2015-03-16 08:57 - 2014-07-24 08:28 - 01600000 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll 2015-03-16 08:57 - 2014-06-14 07:03 - 02389504 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2015-03-16 08:57 - 2014-06-14 06:46 - 02071552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2015-03-16 08:56 - 2014-07-24 16:28 - 00419648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2015-03-16 08:56 - 2014-07-24 16:28 - 00412992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys 2015-03-16 08:56 - 2014-07-24 16:28 - 00280384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys 2015-03-16 08:56 - 2014-07-24 16:28 - 00143680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2015-03-16 08:56 - 2014-07-24 16:25 - 00054752 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-03-16 08:56 - 2014-07-24 16:23 - 01519488 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2015-03-16 08:56 - 2014-07-24 16:23 - 00125472 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll 2015-03-16 08:56 - 2014-07-24 16:20 - 00263400 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe 2015-03-16 08:56 - 2014-07-24 16:16 - 02574208 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2015-03-16 08:56 - 2014-07-24 16:16 - 00211216 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe 2015-03-16 08:56 - 2014-07-24 16:07 - 02009920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2015-03-16 08:56 - 2014-07-24 16:05 - 01660048 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2015-03-16 08:56 - 2014-07-24 16:05 - 01519560 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2015-03-16 08:56 - 2014-07-24 16:05 - 01488008 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2015-03-16 08:56 - 2014-07-24 16:05 - 01356840 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2015-03-16 08:56 - 2014-07-24 16:03 - 00882136 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2015-03-16 08:56 - 2014-07-24 16:03 - 00360480 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll 2015-03-16 08:56 - 2014-07-24 16:03 - 00233888 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2015-03-16 08:56 - 2014-07-24 16:03 - 00205512 _____ (Microsoft Corporation) C:\Windows\system32\mftranscode.dll 2015-03-16 08:56 - 2014-07-24 14:50 - 00098048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll 2015-03-16 08:56 - 2014-07-24 14:48 - 02410976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2015-03-16 08:56 - 2014-07-24 14:48 - 00180208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe 2015-03-16 08:56 - 2014-07-24 14:36 - 00707536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll 2015-03-16 08:56 - 2014-07-24 14:36 - 00355800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll 2015-03-16 08:56 - 2014-07-24 14:36 - 00180720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mftranscode.dll 2015-03-16 08:56 - 2014-07-24 12:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDRUM.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL 2015-03-16 08:56 - 2014-07-24 12:46 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys 2015-03-16 08:56 - 2014-07-24 12:45 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys 2015-03-16 08:56 - 2014-07-24 12:44 - 00674816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2015-03-16 08:56 - 2014-07-24 12:43 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2015-03-16 08:56 - 2014-07-24 12:42 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys 2015-03-16 08:56 - 2014-07-24 12:42 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys 2015-03-16 08:56 - 2014-07-24 12:41 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthpan.sys 2015-03-16 08:56 - 2014-07-24 12:33 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-03-16 08:56 - 2014-07-24 12:33 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-03-16 08:56 - 2014-07-24 12:06 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\iasnap.dll 2015-03-16 08:56 - 2014-07-24 12:05 - 00287232 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll 2015-03-16 08:56 - 2014-07-24 12:05 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2015-03-16 08:56 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL 2015-03-16 08:56 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL 2015-03-16 08:56 - 2014-07-24 11:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRUM.DLL 2015-03-16 08:56 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL 2015-03-16 08:56 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL 2015-03-16 08:56 - 2014-07-24 11:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL 2015-03-16 08:56 - 2014-07-24 11:49 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersGPExt.dll 2015-03-16 08:56 - 2014-07-24 11:33 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-03-16 08:56 - 2014-07-24 11:32 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl 2015-03-16 08:56 - 2014-07-24 11:20 - 02050560 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll 2015-03-16 08:56 - 2014-07-24 11:18 - 01089024 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll 2015-03-16 08:56 - 2014-07-24 11:12 - 00878592 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll 2015-03-16 08:56 - 2014-07-24 11:10 - 01844224 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll 2015-03-16 08:56 - 2014-07-24 11:10 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2015-03-16 08:56 - 2014-07-24 11:10 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2015-03-16 08:56 - 2014-07-24 11:10 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasnap.dll 2015-03-16 08:56 - 2014-07-24 11:05 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll 2015-03-16 08:56 - 2014-07-24 10:52 - 00621056 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll 2015-03-16 08:56 - 2014-07-24 10:42 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl 2015-03-16 08:56 - 2014-07-24 10:40 - 00557056 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs.dll 2015-03-16 08:56 - 2014-07-24 10:39 - 00770048 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll 2015-03-16 08:56 - 2014-07-24 10:33 - 01741824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll 2015-03-16 08:56 - 2014-07-24 10:32 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpedit.dll 2015-03-16 08:56 - 2014-07-24 10:27 - 00779264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2015-03-16 08:56 - 2014-07-24 10:25 - 00832512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll 2015-03-16 08:56 - 2014-07-24 10:24 - 01817088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll 2015-03-16 08:56 - 2014-07-24 10:21 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2015-03-16 08:56 - 2014-07-24 10:18 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll 2015-03-16 08:56 - 2014-07-24 10:12 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll 2015-03-16 08:56 - 2014-07-24 10:11 - 00356864 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2015-03-16 08:56 - 2014-07-24 10:11 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll 2015-03-16 08:56 - 2014-07-24 10:10 - 00540672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll 2015-03-16 08:56 - 2014-07-24 10:04 - 00492032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll 2015-03-16 08:56 - 2014-07-24 10:04 - 00183808 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe 2015-03-16 08:56 - 2014-07-24 10:03 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll 2015-03-16 08:56 - 2014-07-24 09:58 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll 2015-03-16 08:56 - 2014-07-24 09:53 - 00449536 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll 2015-03-16 08:56 - 2014-07-24 09:49 - 01361408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll 2015-03-16 08:56 - 2014-07-24 09:49 - 01287680 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll 2015-03-16 08:56 - 2014-07-24 09:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll 2015-03-16 08:56 - 2014-07-24 09:48 - 00659968 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll 2015-03-16 08:56 - 2014-07-24 09:47 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll 2015-03-16 08:56 - 2014-07-24 09:43 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll 2015-03-16 08:56 - 2014-07-24 09:39 - 02397184 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll 2015-03-16 08:56 - 2014-07-24 09:38 - 00371200 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll 2015-03-16 08:56 - 2014-07-24 09:30 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll 2015-03-16 08:56 - 2014-07-24 09:29 - 00439296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll 2015-03-16 08:56 - 2014-07-24 09:28 - 00595456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll 2015-03-16 08:56 - 2014-07-24 09:23 - 01404416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll 2015-03-16 08:56 - 2014-07-24 09:22 - 00487936 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2015-03-16 08:56 - 2014-07-24 09:21 - 01231872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll 2015-03-16 08:56 - 2014-07-24 09:21 - 00302080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll 2015-03-16 08:56 - 2014-07-24 09:19 - 00388608 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll 2015-03-16 08:56 - 2014-07-24 09:18 - 01144320 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll 2015-03-16 08:56 - 2014-07-24 09:18 - 00795136 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe 2015-03-16 08:56 - 2014-07-24 09:16 - 00505344 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll 2015-03-16 08:56 - 2014-07-24 09:16 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll 2015-03-16 08:56 - 2014-07-24 09:15 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-03-16 08:56 - 2014-07-24 09:15 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll 2015-03-16 08:56 - 2014-07-24 09:15 - 00432128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll 2015-03-16 08:56 - 2014-07-24 09:13 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll 2015-03-16 08:56 - 2014-07-24 09:10 - 00889344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll 2015-03-16 08:56 - 2014-07-24 09:10 - 00371712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv 2015-03-16 08:56 - 2014-07-24 09:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll 2015-03-16 08:56 - 2014-07-24 09:07 - 01705472 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-03-16 08:56 - 2014-07-24 09:05 - 00448000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll 2015-03-16 08:56 - 2014-07-24 09:04 - 00667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-03-16 08:56 - 2014-07-24 09:02 - 03465216 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-03-16 08:56 - 2014-07-24 09:01 - 01992192 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2015-03-16 08:56 - 2014-07-24 08:58 - 00432640 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll 2015-03-16 08:56 - 2014-07-24 08:58 - 00288768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll 2015-03-16 08:56 - 2014-07-24 08:54 - 01290752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2015-03-16 08:56 - 2014-07-24 08:50 - 01182208 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll 2015-03-16 08:56 - 2014-07-24 08:47 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll 2015-03-16 08:56 - 2014-07-24 08:44 - 01057792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.dll 2015-03-16 08:56 - 2014-07-24 08:41 - 00459264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll 2015-03-16 08:56 - 2014-07-12 06:55 - 00268288 _____ (Microsoft Corporation) C:\Windows\system32\wisp.dll 2015-03-16 08:56 - 2014-07-12 05:58 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wisp.dll 2015-03-16 08:56 - 2014-07-04 13:59 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys 2015-03-16 08:56 - 2014-07-04 11:29 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSip.dll 2015-03-16 08:56 - 2014-07-04 11:20 - 01656832 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2015-03-16 08:56 - 2014-07-04 11:06 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxSip.dll 2015-03-16 08:56 - 2014-07-04 11:00 - 01351168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2015-03-16 08:56 - 2014-07-04 10:30 - 00544768 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll 2015-03-16 08:56 - 2014-07-04 10:27 - 00474112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll 2015-03-16 08:56 - 2014-06-27 07:22 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2015-03-16 08:56 - 2014-06-26 01:32 - 01029632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll 2015-03-16 08:56 - 2014-06-26 01:29 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll 2015-03-16 08:56 - 2014-06-20 00:37 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-03-16 08:56 - 2014-06-19 03:13 - 00310080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2015-03-16 08:56 - 2014-06-07 13:46 - 00216368 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll 2015-03-16 08:56 - 2014-06-07 11:20 - 00189016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll 2015-03-16 08:56 - 2014-06-05 11:18 - 01018368 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll 2015-03-16 08:56 - 2014-06-05 10:42 - 00889856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll 2015-03-16 08:56 - 2014-05-31 06:00 - 01463808 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll 2015-03-16 08:56 - 2014-05-31 05:18 - 01319936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll 2015-03-16 08:56 - 2014-05-29 07:23 - 00427008 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll 2015-03-16 08:56 - 2014-05-29 06:25 - 00313856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll 2015-03-16 08:56 - 2014-05-26 08:26 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll 2015-03-16 08:56 - 2014-05-10 11:12 - 00387896 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll 2015-03-16 08:56 - 2014-05-10 09:46 - 00335680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll 2015-03-16 08:56 - 2014-05-06 05:41 - 00486744 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll 2015-03-16 08:56 - 2014-05-06 01:55 - 00391000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll 2015-03-16 08:56 - 2014-03-25 03:27 - 00160600 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll 2015-03-16 08:56 - 2014-03-25 03:27 - 00123920 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll 2015-03-16 08:56 - 2014-03-25 02:20 - 00128568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll 2015-03-16 08:56 - 2014-03-25 02:20 - 00127544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmmbase.dll 2015-03-16 08:55 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTT102.DLL 2015-03-16 08:55 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTT102.DLL 2015-03-16 08:55 - 2014-07-24 10:14 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll 2015-03-16 08:55 - 2014-07-24 09:36 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll 2015-03-16 08:55 - 2014-07-24 09:18 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-03-16 08:55 - 2014-07-24 09:06 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-03-16 08:55 - 2014-07-24 09:00 - 02100736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll 2015-03-16 08:48 - 2014-07-30 02:56 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll 2015-03-16 08:48 - 2014-07-29 06:22 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\tcpmon.dll 2015-03-16 08:41 - 2014-08-15 01:36 - 00146752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys 2015-03-16 08:40 - 2015-03-16 08:40 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2015-03-16 08:40 - 2015-03-16 08:40 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2015-03-16 08:34 - 2015-01-27 05:22 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2015-03-16 08:34 - 2015-01-27 03:11 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2015-03-16 08:34 - 2014-10-29 04:56 - 00027456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys 2015-03-16 08:34 - 2014-10-29 03:37 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll 2015-03-12 17:13 - 2014-04-14 04:29 - 01018880 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2015-03-12 16:48 - 2015-03-04 22:24 - 00792032 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-03-12 16:48 - 2015-03-04 22:24 - 00178144 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-03-12 16:28 - 2015-03-12 16:35 - 00000000 ____D () C:\Windows\system32\MRT 2015-03-12 16:28 - 2015-02-26 21:14 - 122905848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-03-12 16:23 - 2014-03-20 00:36 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll 2015-03-12 16:23 - 2014-03-08 07:40 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll 2015-03-12 16:23 - 2014-03-04 08:00 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll 2015-03-12 16:23 - 2014-03-04 07:32 - 00356864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll 2015-03-12 16:22 - 2014-03-20 05:19 - 01291200 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2015-03-12 16:22 - 2014-03-20 04:41 - 00376152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys 2015-03-12 16:22 - 2014-03-20 01:53 - 00950784 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll 2015-03-12 16:22 - 2014-03-20 01:48 - 00201216 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll 2015-03-12 16:22 - 2014-03-20 00:55 - 01036288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2015-03-12 16:22 - 2014-03-20 00:39 - 00800256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll 2015-03-12 16:22 - 2014-03-19 06:50 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe 2015-03-12 16:22 - 2014-03-19 06:20 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe 2015-03-12 16:22 - 2014-03-13 13:35 - 00157016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys 2015-03-12 16:22 - 2014-03-08 21:38 - 01542768 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2015-03-12 16:22 - 2014-03-08 16:29 - 00356848 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll 2015-03-12 16:22 - 2014-03-08 12:34 - 01095488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2015-03-12 16:22 - 2014-03-08 10:02 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll 2015-03-12 16:22 - 2014-03-08 09:33 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll 2015-03-12 16:22 - 2014-03-08 09:25 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\SetNetworkLocation.dll 2015-03-12 16:22 - 2014-03-08 09:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxproxy.dll 2015-03-12 16:22 - 2014-03-08 08:47 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll 2015-03-12 16:22 - 2014-03-08 08:04 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll 2015-03-12 16:22 - 2014-03-08 07:48 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll 2015-03-12 16:22 - 2014-03-08 07:31 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll 2015-03-12 16:22 - 2014-03-08 07:30 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll 2015-03-12 16:22 - 2014-03-08 06:41 - 01306624 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll 2015-03-12 16:22 - 2014-03-08 06:11 - 00924160 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll 2015-03-12 16:22 - 2014-03-06 15:34 - 02331000 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2015-03-12 16:22 - 2014-03-06 15:34 - 00113648 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll 2015-03-12 16:22 - 2014-03-06 12:19 - 00094016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll 2015-03-12 16:22 - 2014-03-06 11:46 - 01679128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2015-03-12 16:22 - 2014-03-06 10:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2015-03-12 16:22 - 2014-03-06 10:24 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys 2015-03-12 16:22 - 2014-03-06 10:22 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys 2015-03-12 16:22 - 2014-03-06 10:19 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-03-12 16:22 - 2014-03-06 10:19 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2015-03-12 16:22 - 2014-03-06 10:19 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2015-03-12 16:22 - 2014-03-06 10:08 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll 2015-03-12 16:22 - 2014-03-06 09:41 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\DevPropMgr.dll 2015-03-12 16:22 - 2014-03-06 09:38 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2015-03-12 16:22 - 2014-03-06 09:14 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\WSDScDrv.dll 2015-03-12 16:22 - 2014-03-06 09:10 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\l2gpstore.dll 2015-03-12 16:22 - 2014-03-06 09:00 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll 2015-03-12 16:22 - 2014-03-06 08:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2015-03-12 16:22 - 2014-03-06 08:16 - 00171008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll 2015-03-12 16:22 - 2014-03-06 08:02 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll 2015-03-12 16:22 - 2014-03-06 07:29 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll 2015-03-12 16:22 - 2014-03-06 07:24 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll 2015-03-12 16:22 - 2014-03-06 07:23 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll 2015-03-12 16:22 - 2014-03-06 07:21 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll 2015-03-12 16:22 - 2014-03-06 07:06 - 00386560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll 2015-03-12 16:22 - 2014-03-06 07:04 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll 2015-03-12 16:22 - 2014-03-06 07:01 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll 2015-03-12 16:22 - 2014-03-06 06:51 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll 2015-03-12 16:22 - 2014-03-06 06:47 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll 2015-03-12 16:22 - 2014-03-06 06:42 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll 2015-03-12 16:22 - 2014-03-04 08:16 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2015-03-12 16:22 - 2014-03-04 08:13 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2015-03-12 16:22 - 2014-03-04 08:08 - 00299008 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll 2015-03-12 16:22 - 2014-03-04 07:56 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll 2015-03-12 16:22 - 2014-03-04 07:42 - 00494592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2015-03-12 16:22 - 2014-03-04 07:39 - 00254976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll 2015-03-12 16:22 - 2014-03-04 07:15 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll 2015-03-12 16:22 - 2014-03-04 07:05 - 00402432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll 2015-03-12 16:22 - 2014-03-04 07:03 - 00669696 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll 2015-03-12 16:22 - 2014-03-04 07:03 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll 2015-03-12 16:22 - 2014-03-04 06:54 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll 2015-03-12 16:22 - 2014-03-04 06:52 - 00605184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll 2015-03-12 16:22 - 2013-12-24 00:28 - 00262656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll 2015-03-12 16:22 - 2013-12-24 00:26 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll 2015-03-12 16:09 - 2014-12-09 04:45 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll 2015-03-12 16:09 - 2014-12-09 02:56 - 00538624 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll 2015-03-12 16:09 - 2014-09-27 08:13 - 00104336 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll 2015-03-12 16:09 - 2014-09-27 06:24 - 00088800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll 2015-03-12 16:09 - 2014-09-27 04:30 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll 2015-03-12 16:09 - 2014-06-20 02:48 - 01273184 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-03-12 16:09 - 2014-06-20 00:52 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-03-12 16:05 - 2015-01-23 08:17 - 00723072 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll 2015-03-12 16:05 - 2015-01-23 06:02 - 00560392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll 2015-03-12 16:05 - 2015-01-15 23:43 - 00563504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2015-03-12 16:05 - 2015-01-15 23:43 - 00177984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-03-12 16:05 - 2015-01-14 05:22 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2015-03-12 16:05 - 2015-01-14 04:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2015-03-12 16:05 - 2014-10-29 03:51 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-03-12 16:05 - 2014-10-29 03:50 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-03-12 16:05 - 2014-10-29 03:06 - 00736768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-03-12 16:05 - 2014-10-29 03:06 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-03-12 16:05 - 2014-10-29 02:31 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-03-12 16:05 - 2014-06-13 02:15 - 00517528 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2015-03-12 16:05 - 2014-06-13 02:14 - 01557848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2015-03-12 16:05 - 2014-06-13 01:10 - 00406400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2015-03-12 16:05 - 2014-03-06 13:53 - 02141912 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2015-03-12 16:05 - 2014-03-06 13:51 - 00379224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2015-03-12 16:05 - 2014-03-06 13:39 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2015-03-12 16:05 - 2014-03-06 12:13 - 01779800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2015-03-12 16:04 - 2015-03-06 03:53 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-03-12 16:04 - 2015-03-06 03:33 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-03-12 16:04 - 2015-02-26 00:26 - 04178944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-03-12 16:04 - 2015-02-20 04:03 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2015-03-12 16:04 - 2015-02-20 03:58 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2015-03-12 16:04 - 2015-02-20 03:20 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2015-03-12 16:04 - 2015-02-20 03:15 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll |
17.03.2015, 16:43 | #2 |
| Win 8.1 (64bit) verweigert Antivirenprogramme (Teil2) FRST.txt (Teil2)
__________________Code:
ATTFilter 2015-03-12 16:04 - 2015-01-31 00:42 - 03097600 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll 2015-03-12 16:04 - 2015-01-31 00:29 - 02484224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll 2015-03-12 16:04 - 2015-01-29 02:58 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll 2015-03-12 16:04 - 2015-01-29 02:29 - 00290816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\photowiz.dll 2015-03-12 16:04 - 2014-12-09 02:50 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2015-03-12 16:04 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll 2015-03-12 16:04 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll 2015-03-12 16:04 - 2014-10-29 03:49 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2015-03-12 16:04 - 2014-10-29 03:44 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2015-03-12 16:04 - 2014-10-29 03:44 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2015-03-12 16:04 - 2014-10-29 03:04 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2015-03-12 16:04 - 2014-10-29 03:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2015-03-12 16:04 - 2014-10-29 03:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2015-03-12 16:04 - 2014-08-07 03:12 - 01336624 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-03-12 16:04 - 2014-08-02 04:56 - 01064448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2015-03-12 16:04 - 2014-05-30 04:03 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2015-03-12 16:03 - 2015-02-07 00:09 - 00396419 _____ () C:\Windows\system32\ApnDatabase.xml 2015-03-12 16:03 - 2015-02-04 00:58 - 00264000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2015-03-12 16:03 - 2015-02-04 00:58 - 00114496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys 2015-03-12 16:03 - 2015-02-04 00:58 - 00044024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2015-03-12 16:03 - 2015-02-03 00:53 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll 2015-03-12 16:03 - 2015-02-03 00:53 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll 2015-03-12 16:03 - 2015-01-27 04:44 - 00933888 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe 2015-03-12 16:03 - 2015-01-24 02:51 - 00816128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe 2015-03-12 16:03 - 2014-12-19 09:57 - 00788680 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2015-03-12 16:03 - 2014-12-19 09:25 - 00602776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2015-03-12 16:03 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\SysWOW64\locale.nls 2015-03-12 16:03 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\system32\locale.nls 2015-03-12 16:03 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2015-03-12 16:03 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2015-03-12 16:03 - 2014-10-29 02:27 - 01200128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll 2015-03-12 16:03 - 2014-10-29 02:27 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll 2015-03-12 16:03 - 2014-10-29 02:04 - 00868352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll 2015-03-12 16:03 - 2014-10-29 02:04 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll 2015-03-12 16:03 - 2014-10-13 03:33 - 00116032 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2015-03-12 16:03 - 2014-10-11 01:58 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-03-12 16:03 - 2014-10-11 01:53 - 03607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2015-03-12 16:03 - 2014-10-08 08:30 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2015-03-12 16:03 - 2014-10-08 08:09 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2015-03-12 16:03 - 2014-10-08 07:27 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2015-03-12 16:03 - 2014-08-23 06:18 - 02149376 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2015-03-12 16:03 - 2014-08-23 06:03 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2015-03-12 16:03 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2015-03-12 16:03 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2015-03-12 16:03 - 2014-03-13 08:42 - 00308224 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe 2015-03-12 16:03 - 2014-03-13 07:51 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe 2015-03-12 16:02 - 2014-05-03 06:36 - 00997888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll 2015-03-12 16:02 - 2014-05-03 06:19 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll 2015-03-12 16:02 - 2014-05-03 06:08 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll 2015-03-12 16:02 - 2014-05-03 06:07 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll 2015-03-12 16:02 - 2014-05-03 05:46 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncobjapi.dll 2015-03-12 16:02 - 2014-05-03 05:37 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll 2015-03-12 16:02 - 2014-05-03 05:37 - 00207360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll 2015-03-12 16:02 - 2014-05-03 00:26 - 00050745 _____ () C:\Windows\system32\srms.dat 2015-03-12 16:02 - 2014-04-30 07:43 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys 2015-03-12 16:02 - 2014-04-30 07:41 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-03-12 16:02 - 2014-04-30 07:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys 2015-03-12 16:02 - 2014-04-30 07:41 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys 2015-03-12 16:02 - 2014-04-30 06:45 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe 2015-03-12 16:02 - 2014-04-30 05:48 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe 2015-03-12 16:02 - 2014-04-30 05:24 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2015-03-12 16:02 - 2014-04-30 05:23 - 00353280 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll 2015-03-12 16:02 - 2014-04-30 05:23 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2015-03-12 16:02 - 2014-04-30 05:23 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll 2015-03-12 16:02 - 2014-04-30 05:14 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2015-03-12 16:02 - 2014-04-30 04:59 - 01063424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2015-03-12 16:02 - 2014-04-30 04:46 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll 2015-03-12 16:02 - 2014-04-30 04:46 - 00229888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2015-03-12 16:02 - 2014-04-30 04:46 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2015-03-12 16:02 - 2014-04-30 04:45 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll 2015-03-12 16:02 - 2014-04-30 04:42 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll 2015-03-12 16:02 - 2014-04-28 23:40 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll 2015-03-12 16:02 - 2014-04-26 17:39 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll 2015-03-12 16:02 - 2014-04-14 10:37 - 02125344 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll 2015-03-12 16:02 - 2014-04-14 09:08 - 01797896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll 2015-03-12 16:02 - 2014-04-14 06:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll 2015-03-12 16:02 - 2014-03-08 21:40 - 00136024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys 2015-03-12 16:02 - 2014-03-08 07:41 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2015-03-12 16:02 - 2014-03-08 07:25 - 00264192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2015-03-12 16:02 - 2014-03-08 07:04 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2015-03-12 16:02 - 2014-03-08 06:58 - 00567296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2015-03-12 16:01 - 2014-08-23 07:10 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2015-03-12 16:01 - 2014-08-23 06:32 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2015-03-12 16:01 - 2014-08-23 05:33 - 00796672 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll 2015-03-12 16:01 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll 2015-03-12 16:01 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll 2015-03-12 16:01 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll 2015-03-12 16:01 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-03-12 16:01 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll 2015-03-12 16:01 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-03-12 16:00 - 2014-10-23 06:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2015-03-12 16:00 - 2014-10-23 06:05 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2015-03-12 16:00 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll 2015-03-12 16:00 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2015-03-12 16:00 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2015-03-12 16:00 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll 2015-03-12 16:00 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll 2015-03-12 16:00 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\httpprxm.dll 2015-03-12 16:00 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\ProximityService.dll 2015-03-12 16:00 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll 2015-03-12 16:00 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll 2015-03-12 16:00 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\adhsvc.dll 2015-03-12 16:00 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2015-03-12 16:00 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\pcsvDevice.dll 2015-03-12 16:00 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll 2015-03-12 16:00 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll 2015-03-12 16:00 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll 2015-03-12 16:00 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2015-03-12 16:00 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll 2015-03-12 16:00 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe 2015-03-12 16:00 - 2014-07-24 16:28 - 00468288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS 2015-03-12 16:00 - 2014-07-24 12:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys 2015-03-12 16:00 - 2014-07-24 11:09 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2015-03-12 16:00 - 2014-07-24 10:27 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2015-03-12 15:57 - 2014-04-08 23:46 - 00086688 _____ (Microsoft Corporation) C:\Windows\system32\mrt_map.dll 2015-03-12 15:57 - 2014-04-08 23:46 - 00028320 _____ (Microsoft Corporation) C:\Windows\system32\mrt100.dll 2015-03-12 15:57 - 2014-04-08 19:54 - 00080032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt_map.dll 2015-03-12 15:57 - 2014-04-08 19:54 - 00026784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt100.dll 2015-03-12 15:56 - 2014-08-02 01:18 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll 2015-03-12 15:55 - 2015-02-06 02:28 - 02257408 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2015-03-12 15:55 - 2015-02-06 02:08 - 01943040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2015-03-12 15:55 - 2015-01-29 02:11 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-03-12 15:55 - 2015-01-29 02:04 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2015-03-12 15:55 - 2015-01-29 02:04 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2015-03-12 15:55 - 2015-01-29 02:00 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-03-12 15:55 - 2015-01-29 01:55 - 00971776 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2015-03-12 15:55 - 2015-01-29 01:50 - 00811008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2015-03-12 15:55 - 2015-01-28 03:24 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\StorageContextHandler.dll 2015-03-12 15:55 - 2015-01-28 02:47 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorageContextHandler.dll 2015-03-12 15:55 - 2014-12-19 07:26 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2015-03-12 15:55 - 2014-12-12 01:51 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys 2015-03-12 15:55 - 2014-10-29 03:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\printui.exe 2015-03-12 15:55 - 2014-10-29 03:34 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll 2015-03-12 15:55 - 2014-10-29 03:34 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WSCollect.exe 2015-03-12 15:55 - 2014-10-29 03:34 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe 2015-03-12 15:55 - 2014-10-29 03:04 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll 2015-03-12 15:55 - 2014-10-29 02:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.exe 2015-03-12 15:55 - 2014-10-29 02:52 - 00289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compstui.dll 2015-03-12 15:55 - 2014-10-29 02:51 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll 2015-03-12 15:55 - 2014-10-29 02:45 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\prnntfy.dll 2015-03-12 15:55 - 2014-10-29 02:28 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll 2015-03-12 15:55 - 2014-10-29 02:20 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll 2015-03-12 15:55 - 2014-10-29 02:15 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnntfy.dll 2015-03-12 15:55 - 2014-10-29 02:13 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll 2015-03-12 15:55 - 2014-10-29 01:55 - 00223744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll 2015-03-12 15:55 - 2014-10-29 01:55 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll 2015-03-12 15:55 - 2014-10-29 01:44 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll 2015-03-12 15:55 - 2014-10-29 01:41 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll 2015-03-12 15:55 - 2014-10-29 01:35 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll 2015-03-12 15:55 - 2014-10-13 03:43 - 00238912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2015-03-12 15:55 - 2014-10-13 03:43 - 00153920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2015-03-12 15:55 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys 2015-03-12 15:55 - 2014-10-13 03:43 - 00039744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys 2015-03-12 15:55 - 2014-09-04 01:12 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 2015-03-12 15:55 - 2014-09-04 01:01 - 00514048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll 2015-03-12 15:55 - 2014-07-10 05:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\lockscreencn.dll 2015-03-12 15:54 - 2014-12-12 03:04 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2015-03-12 15:54 - 2014-07-15 19:16 - 03048880 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe 2015-03-12 15:54 - 2014-07-15 09:29 - 03118080 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2015-03-12 15:54 - 2014-07-15 09:22 - 02861056 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll 2015-03-12 15:54 - 2014-07-15 09:03 - 02344448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2015-03-12 15:53 - 2014-04-11 04:06 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-03-12 15:53 - 2014-04-11 04:05 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-03-12 15:53 - 2014-04-11 04:02 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-03-12 15:53 - 2014-04-11 04:01 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-03-12 15:53 - 2014-04-11 03:57 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll 2015-03-12 15:52 - 2015-02-05 21:24 - 01113920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2015-03-12 15:52 - 2015-02-03 01:03 - 03551744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll 2015-03-12 15:52 - 2015-02-03 01:02 - 04298240 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll 2015-03-12 15:52 - 2015-01-30 04:01 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys 2015-03-12 15:52 - 2015-01-30 04:00 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rfcomm.sys 2015-03-12 15:52 - 2015-01-30 03:03 - 01488896 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll 2015-03-12 15:52 - 2015-01-30 03:03 - 01464832 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll 2015-03-12 15:52 - 2015-01-30 02:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll 2015-03-12 15:52 - 2015-01-30 02:42 - 01204224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll 2015-03-12 15:52 - 2015-01-30 02:29 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atlthunk.dll 2015-03-12 15:52 - 2015-01-19 19:42 - 01487976 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll 2015-03-12 15:52 - 2014-10-29 03:46 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS 2015-03-12 15:52 - 2014-10-29 03:46 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys 2015-03-12 15:52 - 2014-10-29 03:45 - 01198080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys 2015-03-12 15:52 - 2014-10-29 03:03 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\fsquirt.exe 2015-03-12 15:52 - 2014-10-29 02:28 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\atlthunk.dll 2015-03-12 15:51 - 2014-04-09 12:53 - 00337240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys 2015-03-12 15:51 - 2014-04-06 17:20 - 01403856 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll 2015-03-12 15:51 - 2014-04-06 17:20 - 01379064 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll 2015-03-12 15:51 - 2014-04-06 17:20 - 00765408 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll 2015-03-12 15:51 - 2014-04-06 17:20 - 00491744 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll 2015-03-12 15:51 - 2014-04-06 16:16 - 01209616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll 2015-03-12 15:51 - 2014-04-06 16:16 - 00669856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll 2015-03-12 15:51 - 2014-04-06 13:33 - 00335872 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe 2015-03-12 15:51 - 2014-04-06 11:05 - 01222656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll 2015-03-12 15:51 - 2014-04-06 10:59 - 00982016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll 2015-03-12 15:51 - 2014-03-28 16:58 - 00407016 _____ (Microsoft Corporation) C:\Windows\system32\services.exe 2015-03-12 15:51 - 2014-03-18 06:00 - 07173120 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll 2015-03-12 15:51 - 2014-03-18 05:52 - 05104640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll 2015-03-12 15:51 - 2014-03-17 06:09 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2015-03-12 15:51 - 2014-03-17 05:11 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2015-03-12 15:51 - 2014-03-14 07:26 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\GeofenceMonitorService.dll 2015-03-12 15:51 - 2014-03-14 07:10 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GeofenceMonitorService.dll 2015-03-12 15:50 - 2014-04-18 15:57 - 00032600 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll 2015-03-12 15:50 - 2014-04-18 10:44 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\energyprov.dll 2015-03-12 15:50 - 2014-04-14 10:20 - 00324888 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll 2015-03-12 15:50 - 2014-04-14 09:01 - 00285144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll 2015-03-12 15:50 - 2014-04-11 05:51 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll 2015-03-12 15:50 - 2014-04-11 05:23 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll 2015-03-12 15:50 - 2014-04-09 07:39 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2015-03-12 15:50 - 2014-04-09 06:44 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2015-03-12 15:50 - 2014-04-09 04:33 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll 2015-03-12 15:50 - 2014-04-08 03:01 - 00589656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2015-03-12 15:50 - 2014-04-06 17:34 - 00372568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2015-03-12 15:50 - 2014-04-06 17:34 - 00275800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2015-03-12 15:50 - 2014-04-06 17:30 - 00201920 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll 2015-03-12 15:50 - 2014-04-06 17:24 - 00360792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys 2015-03-12 15:50 - 2014-04-06 17:20 - 00609448 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2015-03-12 15:50 - 2014-04-06 17:20 - 00028408 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe 2015-03-12 15:50 - 2014-04-06 16:22 - 00178184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVideoDSP.dll 2015-03-12 15:50 - 2014-04-06 16:16 - 00518544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll 2015-03-12 15:50 - 2014-04-06 16:16 - 00387896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll 2015-03-12 15:50 - 2014-04-06 13:58 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2015-03-12 15:50 - 2014-04-06 13:51 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2015-03-12 15:50 - 2014-04-06 13:24 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2015-03-12 15:50 - 2014-04-06 13:06 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2015-03-12 15:50 - 2014-04-06 12:26 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll 2015-03-12 15:50 - 2014-04-03 09:12 - 00307304 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2015-03-12 15:50 - 2014-04-03 09:12 - 00130144 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll 2015-03-12 15:50 - 2014-04-03 05:03 - 00230808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2015-03-12 15:50 - 2014-04-03 05:03 - 00111528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll 2015-03-12 15:50 - 2014-04-03 03:23 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tlscsp.dll 2015-03-12 15:50 - 2014-04-03 03:22 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll 2015-03-12 15:50 - 2014-03-27 06:36 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll 2015-03-12 15:50 - 2014-03-27 05:48 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll 2015-03-12 15:50 - 2014-03-27 04:15 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll 2015-03-12 15:50 - 2014-03-27 04:10 - 01436160 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe 2015-03-12 15:50 - 2014-03-19 09:15 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll 2015-03-12 15:50 - 2014-03-19 08:24 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2015-03-12 15:50 - 2014-03-19 08:17 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll 2015-03-12 15:50 - 2014-03-06 10:19 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll 2015-03-12 15:50 - 2014-03-06 09:20 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll 2015-03-12 15:50 - 2014-01-27 19:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2015-03-12 15:48 - 2015-01-29 01:59 - 02773504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-03-12 15:48 - 2015-01-29 01:49 - 02459136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2015-03-12 15:48 - 2014-05-19 07:31 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\drvcfg.exe 2015-03-12 15:48 - 2014-05-19 07:21 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe 2015-03-12 15:48 - 2014-05-19 06:23 - 00098816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe 2015-03-12 15:48 - 2014-04-30 05:43 - 01975296 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-03-12 15:48 - 2014-04-30 05:26 - 01345536 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-03-12 15:48 - 2014-04-30 04:47 - 01509888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2015-03-12 15:11 - 2015-01-31 00:20 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll 2015-03-12 15:11 - 2014-06-02 03:10 - 00423768 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll 2015-03-12 15:11 - 2014-05-31 11:07 - 00440664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2015-03-12 15:11 - 2014-05-31 11:07 - 00089944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2015-03-12 15:11 - 2014-05-31 11:07 - 00027480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2015-03-12 15:11 - 2014-05-31 07:30 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2015-03-12 15:11 - 2014-05-31 07:27 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2015-03-12 15:11 - 2014-05-31 07:26 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2015-03-12 15:11 - 2014-05-31 05:01 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2015-03-12 15:11 - 2014-05-31 05:01 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2015-03-12 15:11 - 2014-05-31 05:01 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2015-03-12 15:11 - 2014-05-27 10:56 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\DaOtpCredentialProvider.dll 2015-03-12 15:11 - 2014-05-27 10:53 - 00270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DaOtpCredentialProvider.dll 2015-03-12 15:08 - 2015-01-28 16:41 - 07472960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-03-12 15:08 - 2015-01-28 16:41 - 01733440 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-03-12 15:08 - 2015-01-28 16:41 - 01498360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2015-03-12 15:08 - 2014-12-06 04:17 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2015-03-12 15:08 - 2014-12-06 02:41 - 00391680 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2015-03-12 15:08 - 2014-10-29 03:02 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2015-03-12 15:08 - 2014-10-29 03:02 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2015-03-12 15:08 - 2014-10-29 02:57 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2015-03-12 15:08 - 2014-10-29 02:24 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2015-03-12 15:08 - 2014-10-29 02:15 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2015-03-12 15:08 - 2014-10-29 02:15 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2015-03-12 15:08 - 2014-10-29 02:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2015-03-12 15:08 - 2014-10-29 02:13 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2015-03-12 15:08 - 2014-10-29 02:13 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2015-03-12 15:08 - 2014-10-29 02:01 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2015-03-12 13:31 - 2015-03-16 09:57 - 00000632 _____ () C:\Users\Frank\Documents\fehler.txt 2015-03-12 13:04 - 2015-03-17 11:22 - 00000000 ____D () C:\Users\Frank\Documents\Outlook-Dateien 2015-03-12 12:58 - 2015-02-21 02:16 - 25021440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-03-12 12:58 - 2015-02-21 01:41 - 12827648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-03-12 12:58 - 2015-02-21 01:27 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-03-12 12:58 - 2015-02-21 01:27 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2015-03-12 12:58 - 2015-02-21 01:25 - 19720192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-03-12 12:58 - 2015-02-21 00:58 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-03-12 12:58 - 2015-02-21 00:32 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-03-12 12:58 - 2015-02-20 03:49 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-03-12 12:58 - 2015-02-20 03:48 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-03-12 12:58 - 2015-02-20 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-03-12 12:58 - 2015-02-20 03:35 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-03-12 12:58 - 2015-02-20 03:34 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-03-12 12:58 - 2015-02-20 03:32 - 06035456 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-03-12 12:58 - 2015-02-20 03:09 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-03-12 12:58 - 2015-02-20 03:07 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2015-03-12 12:58 - 2015-02-20 03:06 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-03-12 12:58 - 2015-02-20 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-03-12 12:58 - 2015-02-20 03:03 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-03-12 12:58 - 2015-02-20 02:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2015-03-12 12:58 - 2015-02-20 02:56 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-03-12 12:58 - 2015-02-20 02:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2015-03-12 12:58 - 2015-02-20 02:49 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-03-12 12:58 - 2015-02-20 02:49 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-03-12 12:58 - 2015-02-20 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-03-12 12:58 - 2015-02-20 02:43 - 14398976 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-03-12 12:58 - 2015-02-20 02:30 - 04300288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-03-12 12:58 - 2015-02-20 02:30 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2015-03-12 12:58 - 2015-02-20 02:29 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2015-03-12 12:58 - 2015-02-20 02:28 - 02358784 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-03-12 12:58 - 2015-02-20 02:26 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2015-03-12 12:58 - 2015-02-20 02:24 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-03-12 12:58 - 2015-02-20 02:24 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-03-12 12:58 - 2015-02-20 02:16 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-03-12 12:58 - 2015-02-20 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-03-12 12:58 - 2015-02-20 02:01 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-03-12 12:58 - 2015-02-20 01:57 - 01311232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-03-12 12:58 - 2015-02-20 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-03-12 12:58 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-03-12 12:58 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-03-12 12:58 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-03-12 12:58 - 2015-01-12 02:23 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-03-12 12:58 - 2014-11-22 03:49 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-03-12 12:58 - 2014-11-22 03:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-03-12 12:58 - 2014-11-10 00:19 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-03-12 12:58 - 2014-11-10 00:19 - 00806400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-03-12 12:58 - 2014-11-10 00:18 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll 2015-03-12 12:58 - 2014-11-10 00:18 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll 2015-03-12 12:58 - 2014-10-31 06:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2015-03-12 12:58 - 2014-10-31 06:12 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2015-03-12 12:58 - 2014-10-31 06:10 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2015-03-12 12:58 - 2014-10-31 06:09 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2015-03-12 12:58 - 2014-10-31 06:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2015-03-12 12:58 - 2014-10-31 06:06 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2015-03-12 12:58 - 2014-10-31 06:06 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-03-12 12:58 - 2014-10-31 06:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-03-12 12:58 - 2014-10-31 05:57 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-03-12 12:58 - 2014-10-31 05:56 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-03-12 12:58 - 2014-10-31 05:54 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2015-03-12 12:58 - 2014-10-31 05:53 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-03-12 12:58 - 2014-10-31 05:52 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll 2015-03-12 12:58 - 2014-10-31 05:51 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-03-12 12:58 - 2014-10-31 05:51 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-03-12 12:58 - 2014-10-31 05:40 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2015-03-12 12:58 - 2014-10-31 05:30 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-03-12 12:58 - 2014-10-31 05:29 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2015-03-12 12:58 - 2014-10-31 05:29 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2015-03-12 12:58 - 2014-10-31 05:28 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2015-03-12 12:58 - 2014-10-31 05:25 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-03-12 12:58 - 2014-10-31 05:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2015-03-12 12:58 - 2014-10-31 05:19 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2015-03-12 12:58 - 2014-10-31 04:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2015-03-12 12:58 - 2014-10-31 04:28 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2015-03-12 12:58 - 2014-10-31 04:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2015-03-12 12:58 - 2014-10-31 04:27 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2015-03-12 12:58 - 2014-10-31 04:26 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2015-03-12 12:58 - 2014-10-31 04:25 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2015-03-12 12:58 - 2014-10-31 04:24 - 00235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2015-03-12 12:58 - 2014-10-31 04:24 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-03-12 12:58 - 2014-10-31 04:23 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-03-12 12:58 - 2014-10-31 04:16 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-03-12 12:58 - 2014-10-31 04:15 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-03-12 12:58 - 2014-10-31 04:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2015-03-12 12:58 - 2014-10-31 04:13 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-03-12 12:58 - 2014-10-31 04:13 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll 2015-03-12 12:58 - 2014-10-31 04:12 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-03-12 12:58 - 2014-10-31 04:11 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-03-12 12:58 - 2014-10-31 04:03 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2015-03-12 12:58 - 2014-10-31 03:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-03-12 12:58 - 2014-10-31 03:56 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2015-03-12 12:58 - 2014-10-31 03:56 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2015-03-12 12:58 - 2014-10-31 03:56 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2015-03-12 12:58 - 2014-10-31 03:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-03-12 12:58 - 2014-10-31 03:53 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2015-03-12 12:58 - 2014-10-31 03:48 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2015-03-12 12:58 - 2014-10-31 03:26 - 01042944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll 2015-03-12 12:58 - 2014-10-31 03:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2015-03-12 12:58 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-03-12 12:58 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-03-12 12:58 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-03-12 12:57 - 2015-02-12 18:40 - 22291584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2015-03-12 12:57 - 2015-02-12 18:34 - 19731824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2015-03-12 12:57 - 2015-01-29 19:45 - 01763352 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2015-03-12 12:57 - 2015-01-29 19:34 - 01488040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2015-03-12 12:57 - 2015-01-28 02:31 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2015-03-12 12:57 - 2015-01-28 02:11 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2015-03-12 12:57 - 2014-09-10 07:25 - 00474432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2015-03-12 12:57 - 2014-09-08 04:07 - 02497344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2015-03-12 12:57 - 2014-09-08 04:07 - 00428864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2015-03-12 12:57 - 2014-09-04 04:05 - 00836176 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll 2015-03-12 12:57 - 2014-09-04 03:22 - 00670384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll 2015-03-12 12:57 - 2014-09-04 01:10 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll 2015-03-12 12:57 - 2014-08-31 01:17 - 00148800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2015-03-12 12:57 - 2014-08-30 23:05 - 00615424 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll 2015-03-12 12:57 - 2014-08-30 22:58 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll 2015-03-12 12:57 - 2014-08-30 22:04 - 00941568 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll 2015-03-12 12:57 - 2014-08-30 21:53 - 00239104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSAPI.dll 2015-03-12 12:57 - 2014-08-30 21:17 - 00799744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll 2015-03-12 12:57 - 2014-08-28 01:21 - 02480128 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll 2015-03-12 12:57 - 2014-08-28 01:06 - 02030592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll 2015-03-12 12:57 - 2014-08-23 06:14 - 13424128 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2015-03-12 12:57 - 2014-08-23 06:04 - 11820544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2015-03-12 12:57 - 2014-08-23 05:50 - 02714112 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll 2015-03-12 12:57 - 2014-08-02 01:51 - 00545792 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll 2015-03-12 12:57 - 2014-08-02 01:35 - 00485376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll 2015-03-12 12:57 - 2014-05-13 08:01 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\BulkOperationHost.exe 2015-03-12 12:57 - 2014-03-06 07:27 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll 2015-03-12 12:56 - 2015-02-08 00:57 - 01090048 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll 2015-03-12 12:56 - 2015-02-08 00:49 - 00791040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll 2015-03-12 12:56 - 2015-01-30 03:02 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll 2015-03-12 12:56 - 2015-01-30 02:40 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll 2015-03-12 12:56 - 2015-01-30 02:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll 2015-03-12 12:56 - 2015-01-30 02:24 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll 2015-03-12 12:56 - 2015-01-30 02:24 - 00250880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll 2015-03-12 12:56 - 2015-01-30 02:16 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll 2015-03-12 12:56 - 2015-01-30 02:08 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll 2015-03-12 12:56 - 2015-01-30 02:06 - 00278016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll 2015-03-12 12:56 - 2015-01-28 00:47 - 02501368 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2015-03-12 12:56 - 2015-01-28 00:41 - 02207488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2015-03-12 12:56 - 2014-12-11 06:36 - 00046456 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentServer.exe 2015-03-12 12:56 - 2014-12-08 20:42 - 00535640 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2015-03-12 12:56 - 2014-12-08 20:42 - 00531616 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll 2015-03-12 12:56 - 2014-12-08 20:42 - 00448792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2015-03-12 12:56 - 2014-12-08 20:42 - 00413248 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll 2015-03-12 12:56 - 2014-12-08 20:42 - 00372408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll 2015-03-12 12:56 - 2014-12-08 20:42 - 00108944 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll 2015-03-12 12:56 - 2014-12-08 20:42 - 00038264 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe 2015-03-12 12:56 - 2014-12-08 20:42 - 00033584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe 2015-03-12 12:56 - 2014-12-06 02:35 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll 2015-03-12 12:56 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2015-03-12 12:56 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2015-03-12 12:56 - 2014-10-29 05:00 - 00465320 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe 2015-03-12 12:56 - 2014-10-29 05:00 - 00139984 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe 2015-03-12 12:56 - 2014-10-29 04:52 - 00500016 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2015-03-12 12:56 - 2014-10-29 04:52 - 00482872 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2015-03-12 12:56 - 2014-10-29 04:52 - 00394120 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2015-03-12 12:56 - 2014-10-29 04:52 - 00272248 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe 2015-03-12 12:56 - 2014-10-29 04:12 - 00413136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe 2015-03-12 12:56 - 2014-10-29 04:12 - 00136296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe 2015-03-12 12:56 - 2014-10-29 04:07 - 00424544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll 2015-03-12 12:56 - 2014-10-29 04:07 - 00370424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll 2015-03-12 12:56 - 2014-10-29 04:07 - 00344536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll 2015-03-12 12:56 - 2014-10-29 03:44 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll 2015-03-12 12:56 - 2014-10-29 02:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll 2015-03-12 12:56 - 2014-10-29 02:19 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll 2015-03-12 12:56 - 2014-10-29 02:02 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2015-03-12 12:56 - 2014-10-29 01:59 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappprxy.dll 2015-03-12 12:56 - 2014-07-12 05:17 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe 2015-03-12 12:56 - 2014-06-06 14:04 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2015-03-12 12:56 - 2014-06-06 13:18 - 00488960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2015-03-12 12:56 - 2014-05-01 14:31 - 00055328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys 2015-03-12 12:56 - 2014-05-01 06:24 - 02834944 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll 2015-03-12 12:55 - 2014-07-24 04:20 - 00875688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll 2015-03-12 12:55 - 2014-07-24 04:20 - 00869544 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll 2015-03-12 12:54 - 2014-05-31 11:06 - 00555736 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll 2015-03-12 12:54 - 2014-05-31 03:37 - 01054208 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll 2015-03-12 12:54 - 2014-05-31 03:35 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll 2015-03-12 12:54 - 2014-04-11 09:25 - 00419928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll 2015-03-12 12:49 - 2015-01-21 06:54 - 01384712 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2015-03-12 12:49 - 2015-01-21 06:15 - 01123848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll 2015-03-12 12:34 - 2015-03-12 12:34 - 00000000 ____D () C:\Program Files\Microsoft Synchronization Services 2015-03-12 12:33 - 2015-03-12 12:33 - 00000000 ____D () C:\Program Files\Microsoft Sync Framework 2015-03-12 12:33 - 2015-03-12 12:33 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition 2015-03-12 12:29 - 2015-03-12 12:29 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services 2015-03-12 11:52 - 2015-03-12 11:52 - 00000000 ____D () C:\MATS 2015-03-12 09:55 - 2015-03-12 09:55 - 282920160 _____ () C:\Users\Frank\Documents\registry.reg 2015-03-12 09:54 - 2015-03-12 09:54 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2015-03-12 08:41 - 2015-03-12 14:12 - 00000000 ____D () C:\Program Files (x86)\UEFI WinFlash 2015-03-12 08:36 - 2015-03-12 08:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\WinBatch 2015-03-11 22:27 - 2015-03-11 22:27 - 00000000 ____D () C:\Users\Frank\AppData\Local\Macromedia 2015-03-11 22:22 - 2015-03-17 11:28 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-03-11 22:22 - 2015-03-11 22:22 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2015-03-11 22:18 - 2015-03-17 11:12 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\vlc 2015-03-11 22:18 - 2015-03-11 22:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2015-03-11 22:18 - 2015-03-11 22:18 - 00000000 ____D () C:\Program Files\VideoLAN 2015-03-11 22:15 - 2015-03-11 22:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mp3tag 2015-03-11 22:14 - 2015-03-11 22:15 - 00000000 ____D () C:\Program Files (x86)\Mp3tag 2015-03-11 22:10 - 2015-03-11 22:10 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2015-03-11 19:18 - 2015-03-11 19:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON 2015-03-11 19:18 - 2015-03-11 19:18 - 00000000 ____D () C:\ProgramData\EPSON 2015-03-11 19:18 - 2015-03-11 19:18 - 00000000 ____D () C:\Program Files\Common Files\EPSON 2015-03-11 19:18 - 2009-09-30 18:01 - 00088064 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_IBCBHAE.DLL 2015-03-11 19:18 - 2008-11-11 18:00 - 00118784 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_ILMHAE.DLL 2015-03-11 19:18 - 2007-04-09 16:06 - 00010752 _____ (SEIKO EPSON CORP.) C:\Windows\system32\E_GCINST.DLL 2015-03-11 18:49 - 2015-03-16 17:23 - 00000000 ____D () C:\Users\Frank\Desktop\Multimedia 2015-03-11 18:49 - 2015-03-11 18:49 - 00000000 ____D () C:\Users\Frank\Desktop\Grafik & Fotos 2015-03-11 18:48 - 2015-03-16 22:22 - 00000000 ___RD () C:\Users\Frank\Desktop\System & Tools 2015-03-11 18:48 - 2015-03-11 18:48 - 00000000 ____D () C:\Users\Frank\Desktop\Download 2015-03-11 17:50 - 2006-09-12 20:00 - 00234496 _____ (CANON INC.) C:\Windows\system32\CNMLM86.DLL 2015-03-11 17:49 - 2014-03-27 15:35 - 00011294 _____ () C:\Users\Frank\Documents\Mappe2.xlsx 2015-03-11 17:49 - 2013-12-18 18:37 - 00013746 _____ () C:\Users\Frank\Documents\Weihnachtsgeschenke.xlsx 2015-03-11 17:49 - 2013-12-17 14:19 - 00103270 _____ () C:\Users\Frank\Documents\Kreditrechner-Excel.xlsx 2015-03-11 17:49 - 2013-12-17 14:16 - 00057344 _____ () C:\Users\Frank\Documents\Immobilien_Finanzierung.xls 2015-03-11 17:49 - 2013-12-17 14:10 - 00013049 _____ () C:\Users\Frank\Documents\Zinsberechnung.xlsx 2015-03-11 17:49 - 2013-12-13 10:29 - 00976384 _____ () C:\Users\Frank\Documents\Adventkalender.pps 2015-03-11 17:49 - 2013-10-14 18:08 - 02457631 _____ () C:\Users\Frank\Documents\icons.zip 2015-03-11 17:49 - 2012-12-29 16:29 - 00027136 _____ () C:\Users\Frank\Documents\Schallplatten.xls 2015-03-11 17:49 - 2012-12-28 18:15 - 00011254 _____ () C:\Users\Frank\Documents\ninco-schienen.xlsx 2015-03-11 17:49 - 2012-09-24 14:20 - 00072704 _____ () C:\Users\Frank\Documents\Tippformular Saison 2012-2013.xls 2015-03-11 17:49 - 2012-07-08 11:10 - 00010989 _____ () C:\Users\Frank\Documents\Auslagen Marcel.xlsx 2015-03-11 17:49 - 2012-03-17 10:09 - 00097792 _____ () C:\Users\Frank\Documents\ordner_auslesen_hyperlink2007.xls 2015-03-11 17:49 - 2012-02-04 11:45 - 00031232 _____ () C:\Users\Frank\Documents\Steam-Umsätze.xls 2015-03-11 17:49 - 2011-12-05 19:06 - 00011039 _____ () C:\Users\Frank\Documents\Renncenter_Urkunde.xlsx 2015-03-11 17:49 - 2011-11-22 07:32 - 00001303 _____ () C:\Users\Frank\Documents\UseNeXT - Verknüpfung.lnk 2015-03-11 17:49 - 2011-11-06 13:30 - 00012454 _____ () C:\Users\Frank\Documents\Abrechnung Marcel.xlsx 2015-03-11 17:49 - 2011-11-03 19:11 - 00001903 _____ () C:\Users\Frank\Documents\SV Henstedt-Ulzburg - Verknüpfung.lnk 2015-03-11 17:49 - 2011-08-24 09:42 - 00036864 _____ () C:\Users\Frank\Documents\Telefonliste_SVHU_D5_August2011.xls 2015-03-11 17:49 - 2011-07-27 18:51 - 00027648 _____ () C:\Users\Frank\Documents\Pierre.xls 2015-03-11 17:49 - 2011-04-19 13:26 - 00009640 _____ () C:\Users\Frank\Documents\verbrauch.xlsx 2015-03-11 17:49 - 2011-03-16 07:30 - 00199680 _____ () C:\Users\Frank\Documents\MS Visio & MS Project.cld 2015-03-11 17:49 - 2011-03-15 10:56 - 00033792 _____ () C:\Users\Frank\Documents\WG HUP-Kaufbestätigung - 564674586.msg 2015-03-11 17:49 - 2010-10-25 17:54 - 00044100 _____ () C:\Users\Frank\Documents\PC-Software.htm 2015-03-11 17:49 - 2010-10-25 17:53 - 00024576 _____ () C:\Users\Frank\Documents\PC-Software.xls 2015-03-11 17:49 - 2009-09-22 08:11 - 00000324 _____ () C:\Users\Frank\Documents\Outlook-Backup.obp 2015-03-11 17:49 - 2009-08-17 16:30 - 00008792 _____ () C:\Users\Frank\Documents\Java Printing.mdi 2015-03-11 17:49 - 2009-06-22 13:41 - 00071742 _____ () C:\Users\Frank\Documents\Re Spielerliste.htm 2015-03-11 17:49 - 2009-01-28 18:24 - 00011587 _____ () C:\Users\Frank\Documents\TSSTcorpCDDVDW_SN-S082H_SB01.html 2015-03-11 17:49 - 2008-12-07 10:26 - 00296960 _____ () C:\Users\Frank\Documents\Weihnachtsgruß.ppt 2015-03-11 17:49 - 2008-10-28 16:21 - 00013824 _____ () C:\Users\Frank\Documents\Body Mass Index.xls 2015-03-11 17:49 - 2008-09-20 10:36 - 00024064 _____ () C:\Users\Frank\Documents\VideoCDs und VHS.xls 2015-03-11 17:30 - 2015-03-11 17:30 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2015-03-11 17:29 - 2015-03-11 19:35 - 00000000 ____D () C:\ProgramData\Adobe 2015-03-11 17:29 - 2015-03-11 17:29 - 00000000 ____D () C:\Program Files (x86)\Adobe 2015-03-11 17:28 - 2015-03-11 22:22 - 00000000 ____D () C:\Users\Frank\AppData\Local\Adobe 2015-03-11 17:21 - 2015-03-17 11:54 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\UseNeXT 2015-03-11 17:21 - 2015-03-17 11:50 - 00000000 ____D () C:\Users\Frank\Documents\UseNeXT 2015-03-11 17:20 - 2015-03-11 17:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UseNeXT 2015-03-11 17:20 - 2015-03-11 17:20 - 00000000 ____D () C:\Program Files (x86)\UseNeXT 2015-03-11 17:15 - 2015-03-11 17:16 - 00000000 ____D () C:\Users\Frank\AppData\Local\ACD Systems 2015-03-11 17:15 - 2015-03-11 17:15 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\ACD Systems 2015-03-11 17:14 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2015-03-11 17:14 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ACD Systems 2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\ProgramData\ACD Systems 2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\Program Files\Common Files\ACD Systems 2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\Program Files (x86)\ACD Systems 2015-03-11 17:12 - 2015-03-11 17:12 - 00000000 ____D () C:\Users\Frank\AppData\Local\Downloaded Installations 2015-03-11 17:01 - 2015-03-11 17:01 - 00000000 ____D () C:\Program Files (x86)\MSECache 2015-03-11 16:46 - 2015-03-11 16:46 - 00000000 ____D () C:\Users\Frank\AppData\Local\Windows Live 2015-03-11 13:03 - 2015-03-12 12:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint 2015-03-11 13:03 - 2015-03-12 12:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2015-03-11 13:01 - 2015-03-11 13:01 - 00000000 ____D () C:\Program Files (x86)\Microsoft Synchronization Services 2015-03-11 13:00 - 2015-03-11 13:00 - 00000000 ____D () C:\Windows\PCHEALTH 2015-03-11 13:00 - 2015-03-11 13:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft Sync Framework 2015-03-11 13:00 - 2015-03-11 13:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2015-03-11 12:56 - 2015-03-11 12:56 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8 2015-03-11 12:55 - 2015-03-12 12:33 - 00000000 ____D () C:\Program Files\Microsoft Office 2015-03-11 12:55 - 2015-03-11 12:55 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services 2015-03-11 12:54 - 2015-03-11 13:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2015-03-11 12:54 - 2015-03-11 12:54 - 00000000 __RHD () C:\MSOCache 2015-03-11 09:47 - 2015-03-16 10:56 - 00000000 ____D () C:\Users\Frank\Documents\Backups 2015-03-11 09:45 - 2015-03-11 09:45 - 00000000 ____D () C:\Dokumente und Einstellungen 2015-03-11 09:36 - 2015-03-17 12:01 - 00000000 ___SD () C:\Users\Frank\Documents\Sticky Passwords 2015-03-11 09:15 - 2015-03-11 09:15 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2015-03-11 09:15 - 2015-03-11 09:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2015-03-11 09:15 - 2015-03-11 09:15 - 00000000 ____D () C:\Program Files\CCleaner 2015-03-11 09:06 - 2015-03-11 09:07 - 00000000 ____D () C:\Users\Public\Documents\CATraxx 2015-03-11 09:06 - 2015-03-11 09:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CATraxx 2015-03-11 09:06 - 2015-03-11 09:06 - 00000000 ____D () C:\Program Files (x86)\CATraxx 2015-03-11 09:06 - 2012-01-20 17:57 - 01163264 _____ (Chilkat Software, Inc.) C:\Windows\SysWOW64\ChilkatRsa.dll 2015-03-11 09:00 - 2015-03-12 12:22 - 00000000 ____D () C:\Users\Frank\Documents\_Outlook-Dateien 2015-03-11 08:59 - 2015-03-12 13:01 - 00000000 ____D () C:\Program Files (x86)\Outlook Backup Assistant 2015-03-11 08:59 - 2015-03-11 08:59 - 00000000 ____D () C:\Users\Frank\Documents\Add-in Express 2015-03-10 18:53 - 2015-03-10 18:53 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2015-03-10 18:48 - 2015-03-17 13:59 - 00000000 ____D () C:\ProgramData\Microsoft Help 2015-03-10 18:48 - 2015-03-11 14:00 - 00000000 ____D () C:\Users\Frank\AppData\Local\Microsoft Help 2015-03-10 17:23 - 2015-03-17 15:34 - 00000000 ____D () C:\Program Files (x86)\SpeedProject 2015-03-10 16:14 - 2015-03-10 16:14 - 00000000 ___HD () C:\ProgramData\CanonBJ 2015-03-10 16:14 - 2015-03-10 16:14 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2015-03-10 16:12 - 2015-03-16 12:07 - 00000000 ____D () C:\Users\Frank\AppData\Local\Deployment 2015-03-10 16:12 - 2015-03-10 16:12 - 00116480 _____ (AVM Berlin) C:\Windows\system32\Drivers\avmaura.sys 2015-03-10 16:12 - 2015-03-10 16:12 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FRITZ!Box 2015-03-10 16:12 - 2015-03-10 16:12 - 00000000 ____D () C:\Users\Frank\AppData\Local\Apps\2.0 2015-03-10 15:40 - 2015-03-10 15:40 - 00001186 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Mozilla 2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Users\Frank\AppData\Local\Mozilla 2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\ProgramData\Mozilla 2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2015-03-10 15:12 - 2015-03-03 14:17 - 00295552 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2015-03-10 15:06 - 2015-03-10 15:06 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieUserList 2015-03-10 15:06 - 2015-03-10 15:06 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieSiteList 2015-03-10 15:01 - 2015-03-17 15:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\ClassicShell 2015-03-10 15:01 - 2015-03-10 15:01 - 00000000 ____D () C:\ProgramData\ClassicShell 2015-03-10 14:58 - 2015-03-10 14:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell 2015-03-10 14:58 - 2015-03-10 14:58 - 00000000 ____D () C:\Program Files\Classic Shell 2015-03-10 14:57 - 2015-03-17 08:28 - 00000000 ____D () C:\Users\Frank\AppData\Local\Google 2015-03-10 14:54 - 2015-03-17 08:00 - 00003922 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{378DF711-DD0C-4AD7-98F3-CA1D88A8AD0B} 2015-03-10 14:49 - 2015-03-10 14:49 - 00000000 ____D () C:\Users\Default\AppData\Local\Google 2015-03-10 14:49 - 2015-03-10 14:49 - 00000000 ____D () C:\Users\Default User\AppData\Local\Google 2015-03-10 14:47 - 2015-03-17 15:37 - 00000000 ___DO () C:\Users\Frank\OneDrive 2015-03-10 14:46 - 2015-03-17 11:57 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2734555180-3142773653-1428810083-1001 2015-03-10 14:41 - 2015-03-10 17:24 - 00000000 ____D () C:\Users\Frank\AppData\Local\TOSHIBA 2015-03-10 14:40 - 2015-03-10 14:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Macromedia 2015-03-10 14:39 - 2015-03-16 13:58 - 00000000 ____D () C:\Users\Frank\AppData\Local\VirtualStore 2015-03-10 14:39 - 2015-03-11 17:47 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Adobe 2015-03-10 14:39 - 2015-03-10 14:43 - 00000000 ____D () C:\Users\Frank\AppData\Local\Packages 2015-03-10 14:39 - 2015-03-10 14:39 - 00001465 _____ () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-03-10 14:37 - 2015-03-17 15:48 - 00000000 ____D () C:\Users\Frank 2015-03-10 14:37 - 2015-03-10 14:37 - 00000020 ___SH () C:\Users\Frank\ntuser.ini 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Vorlagen 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Startmenü 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Netzwerkumgebung 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Lokale Einstellungen 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Eigene Dateien 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Druckumgebung 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Documents\Eigene Musik 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Documents\Eigene Bilder 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\AppData\Local\Verlauf 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\AppData\Local\Anwendungsdaten 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Anwendungsdaten 2015-03-10 14:37 - 2014-03-18 11:00 - 00000000 ___RD () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-03-10 14:37 - 2014-03-18 11:00 - 00000000 ___RD () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-03-10 14:37 - 2014-03-18 10:49 - 00000369 _____ () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2015-03-10 14:37 - 2014-03-18 10:49 - 00000369 _____ () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2015-03-10 14:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-03-10 14:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-02-17 15:19 - 2015-02-17 15:19 - 01614496 _____ (Microsoft Corporation) C:\Windows\system32\FM20.DLL ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-03-17 15:00 - 2014-08-29 20:24 - 00000000 ____D () C:\ProgramData\Temp 2015-03-17 15:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru 2015-03-17 14:58 - 2013-08-22 14:25 - 00524288 ___SH () C:\Windows\system32\config\BBI 2015-03-17 14:07 - 2013-08-22 15:44 - 00483008 _____ () C:\Windows\system32\FNTCACHE.DAT 2015-03-17 13:59 - 2013-08-22 14:25 - 00000199 _____ () C:\Windows\win.ini 2015-03-17 13:45 - 2014-08-29 20:24 - 00000000 ____D () C:\ProgramData\Package Cache 2015-03-17 12:03 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-03-17 11:49 - 2014-05-22 00:54 - 00001132 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-03-17 11:24 - 2014-05-22 00:54 - 00001128 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-03-17 11:18 - 2014-05-06 05:41 - 00765582 _____ () C:\Windows\system32\perfh007.dat 2015-03-17 11:18 - 2014-05-06 05:41 - 00159366 _____ () C:\Windows\system32\perfc007.dat 2015-03-17 11:18 - 2014-03-18 10:47 - 01776918 _____ () C:\Windows\system32\PerfStringBackup.INI 2015-03-17 08:28 - 2014-05-22 00:54 - 00000000 ____D () C:\Program Files (x86)\Google 2015-03-16 22:27 - 2008-12-07 17:20 - 00000000 ____D () C:\Users\Frank\Documents\Schriftverkehr 2015-03-16 22:19 - 2014-08-29 20:41 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-03-16 22:19 - 2014-08-29 20:41 - 00000000 ____D () C:\ProgramData\WildTangent 2015-03-16 22:19 - 2014-08-29 20:41 - 00000000 ____D () C:\Program Files (x86)\WildTangent Games 2015-03-16 17:25 - 2014-05-22 01:03 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2015-03-16 15:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache 2015-03-16 13:39 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp 2015-03-16 13:31 - 2014-05-06 05:40 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer 2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\winrm 2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\WCN 2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\slmgr 2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\winrm 2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\WCN 2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\slmgr 2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel 2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\WinStore 2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\MUI 2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\MUI 2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender 2015-03-16 13:31 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\Sysprep 2015-03-16 13:31 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\servicing 2015-03-16 13:13 - 2014-03-18 10:33 - 00000000 ____D () C:\Program Files\Windows Journal 2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Photo Viewer 2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\System 2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer 2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2015-03-16 13:12 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\Printing_Admin_Scripts 2015-03-16 13:12 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\Com 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\SystemResetPlatform 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\migwiz 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\Com 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\IME 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Help 2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\SysWOW64\oobe 2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\SysWOW64\Dism 2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\oobe 2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\Dism 2015-03-16 12:52 - 2013-08-22 16:36 - 00000000 ___SD () C:\Windows\system32\dsc 2015-03-16 12:03 - 2014-05-22 01:03 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA 2015-03-16 10:14 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\SecureBootUpdates 2015-03-16 10:03 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness 2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData 2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\setup 2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\InputMethod 2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\setup 2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS 2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS 2015-03-12 16:38 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2015-03-12 16:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\MediaViewer 2015-03-12 16:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\FileManager 2015-03-12 16:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Camera 2015-03-12 12:35 - 2014-03-18 10:33 - 00000000 ____D () C:\Windows\ShellNew 2015-03-12 12:34 - 2014-05-06 05:23 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2015-03-12 08:40 - 2014-08-29 20:10 - 00000000 ____D () C:\Program Files (x86)\TOSHIBA 2015-03-11 13:50 - 2014-05-22 00:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive 2015-03-11 12:10 - 2014-05-23 01:33 - 00000000 ____D () C:\Windows\Panther 2015-03-10 17:17 - 2014-08-29 20:30 - 00000000 ____D () C:\ProgramData\McAfee 2015-03-10 17:07 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\spool 2015-03-10 16:59 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\NDF 2015-03-10 15:13 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM 2015-03-10 15:09 - 2013-08-22 16:36 - 00000000 ___HD () C:\Windows\ELAMBKUP 2015-03-10 14:57 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\restore 2015-03-10 14:45 - 2014-05-22 00:54 - 00000000 ____D () C:\ProgramData\TOSHIBA 2015-03-10 14:44 - 2014-05-22 00:54 - 00004104 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-03-10 14:44 - 2014-05-22 00:54 - 00003868 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-03-10 14:39 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\sysprep 2015-03-06 09:11 - 2012-09-27 07:12 - 00000000 ____D () C:\Users\Frank\Documents\Tippspiel ==================== Files in the root of some directories ======= 2015-03-17 11:54 - 2015-03-17 12:21 - 0008108 _____ () C:\Users\Frank\AppData\Roaming\msconfig.ini 2015-03-17 10:29 - 2015-03-17 10:29 - 0000840 _____ () C:\Users\Frank\AppData\Local\recently-used.xbel 2014-08-29 20:06 - 2014-08-29 20:06 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Files to move or delete: ==================== C:\Users\Frank\AppData\Roaming\msconfig.ini Some content of TEMP: ==================== C:\Users\Frank\AppData\Local\Temp\PresentationCore.dll C:\Users\Frank\AppData\Local\Temp\PresentationFramework.dll C:\Users\Frank\AppData\Local\Temp\ReachFramework.dll C:\Users\Frank\AppData\Local\Temp\UIAutomationProvider.dll C:\Users\Frank\AppData\Local\Temp\UIAutomationTypes.dll C:\Users\Frank\AppData\Local\Temp\WindowsBase.dll C:\Users\Frank\AppData\Local\Temp\WindowsFormsIntegration.dll C:\Users\Frank\AppData\Local\Temp\xmlUpdater.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-05-22 08:48 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-03-2015 Ran by Frank at 2015-03-17 13:13:53 Running from C:\Users\Frank\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) ACDSee 18 (HKLM\...\{6D0F6DF4-553E-43CD-AA95-69AB3644A8FF}) (Version: 18.1.0.233 - ACD Systems International Inc.) Adblock Plus für IE (32-Bit- und 64-Bit) (HKLM\...\{E407C8D7-09C6-4056-BFAD-68C5FD8340F0}) (Version: 1.3 - Eyeo GmbH) Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) Amazon 1Button App (HKLM-x32\...\{0A7D6F3C-F2AB-48ED-BE23-99791BFF87D6}) (Version: 1.0.0.4 - Amazon) Amazon Music (HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Amazon Amazon Music) (Version: 3.8.1.754 - Amazon Services LLC) Atheros Driver Installation Program (HKLM-x32\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 10.0 - Atheros) Bluetooth Stack for Windows by Toshiba (HKLM\...\{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}) (Version: v9.10.32(T) - TOSHIBA CORPORATION) CATraxx (HKLM-x32\...\CATraxx_is1) (Version: - FNProgramvare) CCleaner (HKLM\...\CCleaner) (Version: 5.03 - Piriform) Classic Shell (HKLM\...\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}) (Version: 4.1.0 - IvoSoft) CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.3817.05 - CyberLink Corp.) DTS Sound (HKLM-x32\...\{9B17BBEC-CF31-4C23-949E-E65A14365CE1}) (Version: 1.01.6100 - DTS, Inc.) EPSON SX430 Series Printer Uninstall (HKLM\...\EPSON SX430 Series) (Version: - SEIKO EPSON Corporation) Evernote (HKLM-x32\...\Evernote) (Version: 1.0.0 - Evernote Launcher by Toshiba Europe GmbH) Exact Audio Copy 1.0beta4 (HKLM-x32\...\Exact Audio Copy) (Version: 1.0beta4 - Andre Wiethoff) FileZilla Client 3.10.2 (HKLM-x32\...\FileZilla Client) (Version: 3.10.2 - Tim Kosse) Freeplane (HKLM\...\{D3941722-C4DD-4509-88C4-0E87F675A859}_is1) (Version: 1.3.15 - Open source) FRITZ!Box USB-Fernanschluss (HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\2db37667170956ee) (Version: 2.3.2.0 - AVM Berlin) GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 41.0.2272.89 - Google Inc.) Google Drive (HKLM-x32\...\{6C36881B-0E51-4231-9D02-BF2149664D34}) (Version: 1.20.8672.3137 - Google, Inc.) Google Update Helper (x32 Version: 1.3.21.115 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3408 - Intel Corporation) Intel(R) Trusted Execution Engine (HKLM\...\{176E2755-0A17-42C6-88E2-192AB2131278}) (Version: 1.0.0.1064 - Intel Corporation) Java 8 Update 40 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation) M-DVD.Org V2 - "Ver. 2.6 Update" (HKLM-x32\...\{D831211C-EE0F-43E3-9F8C-E4832B34C18A}_is1) (Version: 2.6 - SynApp GmbH) Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-0081-0407-0000-0000000FF1CE}) (Version: 14.0.6123.5001 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Outlook Hotmail Connector 64-Bit (HKLM\...\{95140000-0081-0407-1000-0000000FF1CE}) (Version: 14.0.6123.5001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (HKLM-x32\...\{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}) (Version: 9.0.30411 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{d07b0db5-8dad-40e1-be90-88026298a46b}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{2749c485-3a8b-4533-92ff-7cf6e8221cff}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Mozilla Firefox 36.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 36.0.1 (x86 de)) (Version: 36.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 36.0.1 - Mozilla) Mp3tag v2.68 (HKLM-x32\...\Mp3tag) (Version: v2.68 - Florian Heidenreich) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.7.5 - Notepad++ Team) Outlook Backup Assistant 7 (Vollversion) (HKLM-x32\...\812A5AC8-50DA-43D8-B36E-30CDD7FCCAA1_is1) (Version: 7 - Priotecs IT GmbH) Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.318 - Qualcomm Atheros) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.29075 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.24.1218.2013 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7195 - Realtek Semiconductor Corp.) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{91140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden SpeedCommander 13 (HKLM-x32\...\SpeedCommander 13) (Version: 13 - SpeedProject) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 18.1.3.0 - Synaptics Incorporated) TOSHIBA Desktop Assist (HKLM\...\{C4CDCEF0-0A7A-4425-887C-33E39533D758}) (Version: 1.03.04.6401 - Toshiba Corporation) TOSHIBA Display Utility (HKLM\...\{F64E9295-E1B3-4EEA-86D3-AF44A0087B06}) (Version: 1.1.16.0 - Toshiba Corporation) TOSHIBA eco Utility (HKLM\...\{94D2A899-0C34-4420-880E-AE337E635AB0}) (Version: 2.4.2.6403 - Toshiba Corporation) TOSHIBA Flash Cards Support Utility (HKLM-x32\...\InstallShield_{620BBA5E-F848-4D56-8BDA-584E44584C5E}) (Version: 1.51.81.2C - TOSHIBA CORPORATION) TOSHIBA Function Key (HKLM\...\{1844CFE2-EBA3-490A-8A5E-9BFC646342FD}) (Version: 1.1.5.6402 - Toshiba Corporation) TOSHIBA Manuals (HKLM-x32\...\{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}) (Version: 10.19 - TOSHIBA) TOSHIBA Password Utility (HKLM-x32\...\InstallShield_{59358FD4-252B-4B38-AB81-955C491A494F}) (Version: 2.0.0.15C - Toshiba Corporation) TOSHIBA PC Health Monitor (HKLM\...\{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}) (Version: 3.01.02.6400 - Toshiba Corporation) TOSHIBA Recovery Media Creator (HKLM-x32\...\{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}) (Version: 3.2.00.56006005 - Toshiba Corporation) TOSHIBA Service Station (HKLM\...\{BFE4C813-4DD4-4B1C-97F4-76A459055C8D}) (Version: 2.6.13 - Toshiba Corporation) TOSHIBA Start Screen Option (HKLM\...\{06B71035-F19F-4F76-9875-FFCCD4FC3F83}) (Version: 1.00.01.6402 - Toshiba Corporation) TOSHIBA System Driver (HKLM-x32\...\{1E6A96A1-2BAB-43EF-8087-30437593C66C}) (Version: 1.00.0033 - Toshiba Corporation) TOSHIBA System Settings (HKLM-x32\...\{4D57ED72-6B01-40BD-9CA9-012B8FC09CEB}) (Version: 2.0.1.32003 - Toshiba Corporation) Toshiba TEMPRO (HKLM-x32\...\{F76F5214-83A8-4030-80C9-1EF57391D72A}) (Version: 4.6.0 - Toshiba Europe GmbH) Trojan Remover 6.9.1 (HKLM-x32\...\Trojan Remover_is1) (Version: 6.9.1 - Simply Super Software) UseNeXT by Tangysoft (HKLM-x32\...\UseNeXT by Tangysoft_is1) (Version: - Tangysoft Ltd.) Utility Common Driver (x32 Version: 1.0.53.3 - Compal) Hidden Virtual CD v10 (HKLM-x32\...\{10C51313-A308-4B40-90E3-B368D5882660}) (Version: 10.60.1 - H+H Software GmbH) VLC media player (HKLM\...\VLC media player) (Version: 2.2.0 - VideoLAN) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-2734555180-3142773653-1428810083-1001_Classes\CLSID\{6295A54D-BD2A-4CF7-A288-62B0D91F7879}\InprocServer32 -> C:\Program Files (x86)\Outlook Backup Assistant\AddIn\adxloader64.dll () CustomCLSID: HKU\S-1-5-21-2734555180-3142773653-1428810083-1001_Classes\CLSID\{743035C6-FA33-39DF-A741-34A81649705C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2734555180-3142773653-1428810083-1001_Classes\CLSID\{E3DF3DC0-3869-3CF6-9638-ACE5BFCF8341}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2734555180-3142773653-1428810083-1001_Classes\CLSID\{E444D266-68C3-4748-91FC-49A65C606776}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) ==================== Restore Points ========================= 10-03-2015 14:57:48 Installed Classic Shell 11-03-2015 16:46:06 Windows Live Essentials 11-03-2015 16:47:10 WLSetup 16-03-2015 08:36:14 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {10A37F08-4ACD-47E1-AAB4-6ECDE6DDDE8A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-22] (Google Inc.) Task: {3A27F9E7-77F0-4184-8E7B-CCFD1B2C88D1} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-02-24] (Realtek Semiconductor) Task: {43352A69-ABB4-49E4-B323-06E9B4979264} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-02-26] (Microsoft Corporation) Task: {6DA94A62-4F7C-4FB7-9BF2-42B375784CAD} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2014-02-21] (Synaptics Incorporated) Task: {6F0A175B-3676-4389-BF3D-5514BA8C12A4} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-02-19] (Piriform Ltd) Task: {D83A5125-65E9-42DC-AB7A-2A866B79BB99} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-03-11] (Adobe Systems Incorporated) Task: {DE1970DF-A5F2-4726-AD72-BBBE95B17888} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {E3C240C6-BD34-41EC-8558-90FD37A3F51F} - System32\Tasks\Toshiba\CommonNotifier => C:\Program Files (x86)\Toshiba TEMPRO\Toshiba.Tempro.UI.CommonNotifier.exe [2014-08-05] (Toshiba Europe GmbH) Task: {FD0C7C89-E963-41B3-A6DE-3D6B2644A94D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-22] (Google Inc.) Task: {FF8DB2A8-F654-4289-AC66-FF4EE24064C5} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============== Code:
ATTFilter [Window Title] Gmer-19357.exe [Main Instruction] Gmer-19357.exe funktioniert nicht mehr [Content] Das Programm wird aufgrund eines Problems nicht richtig ausgeführt. Das Programm wird geschlossen und Sie werden benachrichtigt, wenn eine Lösung verfügbar ist. [Programm schließen] |
17.03.2015, 16:50 | #3 |
/// the machine /// TB-Ausbilder | Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden hi,
__________________Downloade dir bitte Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
__________________ |
17.03.2015, 18:53 | #4 |
| Log-Datei von Malwarebytes Anti-Rootkit Hallo Schrauber, hier die erste Log-Datei: Code:
ATTFilter Malwarebytes Anti-Rootkit BETA 1.09.1.1004 www.malwarebytes.org Database version: main: v2015.03.17.05 rootkit: v2015.02.25.01 Windows 8.1 x64 NTFS Internet Explorer 11.0.9600.17690 Frank :: UHURA2 [administrator] 17.03.2015 17:11:01 mbar-log-2015-03-17 (17-11-01).txt Scan type: Quick scan Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken Scan options disabled: Objects scanned: 351713 Time elapsed: 31 minute(s), 34 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 64 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avcenter.exe (Security.Hijack) -> Delete on reboot. [d5c4cf77028816200859e59605ff46ba] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avconfig.exe (Security.Hijack) -> Delete on reboot. [57428cbab5d52214d49086f518ecdc24] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgcsrvx.exe (Security.Hijack) -> Delete on reboot. [b4e5b2941179d3630b6bea91e71d04fc] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgnt.exe (Security.Hijack) -> Delete on reboot. [1584e165890171c5651ad0ab3ec6af51] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgrsx.exe (Security.Hijack) -> Delete on reboot. [d1c8af978ffb02346a170378a2623ec2] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avguard.exe (Security.Hijack) -> Delete on reboot. [8d0ca2a48efc14222367a6d59d67718f] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgui.exe (Security.Hijack) -> Delete on reboot. [6b2e60e63c4efd399fec7dfee420a55b] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgwdsvc.exe (Security.Hijack) -> Delete on reboot. [9801073f3951d95d474a0f6c2dd74eb2] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avscan.exe (Security.Hijack) -> Delete on reboot. [e8b1ab9b246674c2c1fa4d2e50b4738d] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\blindman.exe (Security.Hijack) -> Delete on reboot. [7b1eb393bcce0234f7ceaa3204ff619f] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\ccuac.exe (Security.Hijack) -> Delete on reboot. [8c0dc185abdfc17502dca27fc73eae52] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\ComboFix.exe (Security.Hijack) -> Delete on reboot. [683162e4563478bee77fdba1bc48d22e] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\hijackthis.exe (Security.Hijack) -> Delete on reboot. [f1a856f04743d56193c5b9c4966e718f] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\keyscrambler.exe (Security.Hijack) -> Delete on reboot. [0297a0a676145ed8439aab762fd6e719] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbam.exe (Security.Hijack) -> Delete on reboot. [3c5ddb6b6a2089ade053a0de41c3eb15] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbamgui.exe (Security.Hijack) -> Delete on reboot. [0198da6c3159ea4c9cf04ddb20e43ec2] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbampt.exe (Security.Hijack) -> Delete on reboot. [8d0ca2a48a0036000f3d200bdc298878] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbamscheduler.exe (Security.Hijack) -> Delete on reboot. [732674d2f19958de202ffa05e71cd927] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbamservice.exe (Security.Hijack) -> Delete on reboot. [1c7d1135206aca6cd95bd4aad62ec040] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\MpCmdRun.exe (Security.Hijack) -> Delete on reboot. [a5f450f695f537ffd39d562853b19070] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\MSASCui.exe (Security.Hijack) -> Delete on reboot. [d6c3cf77d5b5fd39325095e924e07888] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\MsMpEng.exe (Security.Hijack) -> Delete on reboot. [eaaff74fee9c0d29395c87f7659f4cb4] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\msseces.exe (Security.Hijack) -> Delete on reboot. [6f2a1b2b14762a0c257629551aea35cb] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\rstrui.exe (Security.Hijack) -> Delete on reboot. [c0d982c40684cc6a8897ee92d13335cb] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SDFiles.exe (Security.Hijack) -> Delete on reboot. [d7c2b294b2d84beb903822c9e61d6997] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SDMain.exe (Security.Hijack) -> Delete on reboot. [4c4d0c3a5832241253766b80867dbb45] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SDWinSec.exe (Security.Hijack) -> Delete on reboot. [70293214820852e4f9d1a8434bb844bc] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\spybotsd.exe (Security.Hijack) -> Delete on reboot. [c4d548fe5b2fa294a441d32cc242956b] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\wireshark.exe (Security.Hijack) -> Delete on reboot. [821776d0abdf96a06e7125fc5baaad53] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\zlclient.exe (Security.Hijack) -> Delete on reboot. [ebaea6a0f298ff37d11f621f44c0dc24] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVASTSVC.EXE (Security.Hijack) -> Delete on reboot. [b3e6d3734c3e6dc960fda9d2a361a15f] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVP.EXE (Security.Hijack) -> Delete on reboot. [9efb2a1c97f389ad604d1764a4608d73] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avcenter.exe (Security.Hijack) -> Delete on reboot. [c0d9cf778307f73f95cc9ddeda2a51af] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avconfig.exe (Security.Hijack) -> Delete on reboot. [4950014513774fe7471d3d3e25df6997] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgcsrvx.exe (Security.Hijack) -> Delete on reboot. [2e6bed594a4096a00b6bb5c69d677e82] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgnt.exe (Security.Hijack) -> Delete on reboot. [5c3d3214d2b878be6718d3a8e51fb54b] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgrsx.exe (Security.Hijack) -> Delete on reboot. [21780640553584b23e43f289e22213ed] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avguard.exe (Security.Hijack) -> Delete on reboot. [a0f92c1a87030333bfcbef8c34d07f81] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgui.exe (Security.Hijack) -> Delete on reboot. [e5b43214d8b26dc9ddae710aed1701ff] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgwdsvc.exe (Security.Hijack) -> Delete on reboot. [920797affd8d58de0e835d1e9173dc24] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avscan.exe (Security.Hijack) -> Delete on reboot. [0693e85e157543f3a91285f67292966a] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\blindman.exe (Security.Hijack) -> Delete on reboot. [2c6d7ec8bfcb0e2811b47d5fe41f9967] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\ccuac.exe (Security.Hijack) -> Delete on reboot. [3564eb5b1a7086b017c756cb0ef748b8] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\ComboFix.exe (Security.Hijack) -> Delete on reboot. [1d7c4bfbee9c44f2acba1963f014a858] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\hijackthis.exe (Security.Hijack) -> Delete on reboot. [e0b931156723c3730e4afc81808430d0] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\keyscrambler.exe (Security.Hijack) -> Delete on reboot. [4c4ddf67fd8d092d5f7e20018a7b38c8] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbam.exe (Security.Hijack) -> Delete on reboot. [3168d0762f5bd36368cbe5990afab14f] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbamgui.exe (Security.Hijack) -> Delete on reboot. [66333b0b0b7f35014c406dbbdb29a25e] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbampt.exe (Security.Hijack) -> Delete on reboot. [42572a1c3852033359f32ffc3fc6ee12] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbamscheduler.exe (Security.Hijack) -> Delete on reboot. [f0a9cb7b8cfe0a2c1e314db2ff0448b8] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbamservice.exe (Security.Hijack) -> Delete on reboot. [f3a6c97d95f5191d161e423c2dd72ed2] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\MpCmdRun.exe (Security.Hijack) -> Delete on reboot. [207993b3c5c562d44729601ec440bb45] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\MSASCui.exe (Security.Hijack) -> Delete on reboot. [ebae0a3c98f2ef473b47c6b8947018e8] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\MsMpEng.exe (Security.Hijack) -> Delete on reboot. [c6d38fb7a4e61b1ba3f22559e420f60a] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\msseces.exe (Security.Hijack) -> Delete on reboot. [c2d765e15e2c21154d4eef8f2fd5ed13] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\rstrui.exe (Security.Hijack) -> Delete on reboot. [b2e7083eff8bac8a041bf18f10f4fa06] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SDFiles.exe (Security.Hijack) -> Delete on reboot. [e4b59aaca6e4b77f547437b4867ddf21] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SDMain.exe (Security.Hijack) -> Delete on reboot. [85142e188307c175d0f915d627dc738d] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SDWinSec.exe (Security.Hijack) -> Delete on reboot. [3069ac9a23671a1c24a66d7e6f9442be] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\spybotsd.exe (Security.Hijack) -> Delete on reboot. [2d6c96b04644f145489dca35eb195ba5] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\wireshark.exe (Security.Hijack) -> Delete on reboot. [dfba6adc88020234ecf3b170d431e818] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\zlclient.exe (Security.Hijack) -> Delete on reboot. [cccdae98f199f442bf31b9c83dc7926e] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVASTSVC.EXE (Security.Hijack) -> Delete on reboot. [d1c881c50d7d55e14f0e94e7e91b47b9] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVP.EXE (Security.Hijack) -> Delete on reboot. [247576d03b4f7abc1796c8b3e420c43c] Registry Values Detected: 16 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVASTSVC.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [b3e6d3734c3e6dc960fda9d2a361a15f] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVASTUI.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [0a8f6ed88505ce68035c2457f50f6e92] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVGIDSAGENT.EXE|Debugger (Hijack.Security) -> Data: nqij.exe -> Delete on reboot. [8b0e81c5d5b58caa23f2b544bc476f91] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVP.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [9efb2a1c97f389ad604d1764a4608d73] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\BDAGENT.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [dcbd20267c0ea98d1bc87ffc59aba45c] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\EGUI.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [5b3ed6701476b87e16ae700c47bde31d] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\INSTUP.EXE|Debugger (Hijack.Security) -> Data: nqij.exe -> Delete on reboot. [60397ec8741658dee2340eeb22e138c8] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVASTSVC.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [d1c881c50d7d55e14f0e94e7e91b47b9] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVASTUI.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [fd9c92b48dfd86b0e47b5c1fe91bf60a] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVGIDSAGENT.EXE|Debugger (Hijack.Security) -> Data: nqij.exe -> Delete on reboot. [bbde4bfb6822a98d92832bcee81b1ce4] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVP.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [247576d03b4f7abc1796c8b3e420c43c] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\BDAGENT.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [9affec5a06847abc5b88e893ae5637c9] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\EGUI.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [f9a093b30e7c3303efd5ec906c98ef11] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\INSTUP.EXE|Debugger (Hijack.Security) -> Data: nqij.exe -> Delete on reboot. [f0a9f94d5e2c4aec37df64953ac9629e] HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\IME|WindowsUpdate (Trojan.Agent) -> Data: "C:\Windows\SysWOW64\Application Services\appsvc.exe" -> Delete on reboot. [61386dd96426d85eac1a7468d42f11ef] HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\SIDEBAR|WindowsUpdate (Trojan.Agent) -> Data: "C:\Windows\SysWOW64\Application Services\appsvc.exe" -> Delete on reboot. [b5e415318505bd79dcec914b679ca35d] Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 1 C:\Users\Frank\AppData\Roaming\msconfig.ini (Trojan.Agent) -> Delete on reboot. [2e6b77cfadddd363a89218d8bf456e92] Physical Sectors Detected: 0 (No malicious items detected) (end) Code:
ATTFilter Malwarebytes Anti-Rootkit BETA 1.09.1.1004 www.malwarebytes.org Database version: main: v2015.03.17.05 rootkit: v2015.02.25.01 Windows 8.1 x64 NTFS Internet Explorer 11.0.9600.17690 Frank :: UHURA2 [administrator] 17.03.2015 17:52:44 mbar-log-2015-03-17 (17-52-44).txt Scan type: Quick scan Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken Scan options disabled: Objects scanned: 351693 Time elapsed: 32 minute(s), 31 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) Physical Sectors Detected: 0 (No malicious items detected) (end) |
17.03.2015, 19:00 | #5 |
| Log-Datei TDSSkiller Hallo Schrauber, wenn ich geahnt hätte, wie schnell der durch war..., hier bitteschön: Code:
ATTFilter 18:55:06.0266 0x0e98 TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04 18:55:06.0266 0x0e98 UEFI system 18:55:10.0750 0x0e98 ============================================================ 18:55:10.0750 0x0e98 Current date / time: 2015/03/17 18:55:10.0750 18:55:10.0750 0x0e98 SystemInfo: 18:55:10.0750 0x0e98 18:55:10.0750 0x0e98 OS Version: 6.3.9600 ServicePack: 0.0 18:55:10.0750 0x0e98 Product type: Workstation 18:55:10.0750 0x0e98 ComputerName: UHURA2 18:55:10.0750 0x0e98 UserName: Frank 18:55:10.0750 0x0e98 Windows directory: C:\Windows 18:55:10.0750 0x0e98 System windows directory: C:\Windows 18:55:10.0750 0x0e98 Running under WOW64 18:55:10.0750 0x0e98 Processor architecture: Intel x64 18:55:10.0750 0x0e98 Number of processors: 2 18:55:10.0750 0x0e98 Page size: 0x1000 18:55:10.0750 0x0e98 Boot type: Normal boot 18:55:10.0750 0x0e98 ============================================================ 18:55:11.0375 0x0e98 KLMD registered as C:\Windows\system32\drivers\15516060.sys 18:55:12.0422 0x0e98 System UUID: {88236693-3643-6197-F76B-4C2FC963BD8E} 18:55:14.0563 0x0e98 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 18:55:14.0563 0x0e98 ============================================================ 18:55:14.0563 0x0e98 \Device\Harddisk0\DR0: 18:55:14.0563 0x0e98 GPT partitions: 18:55:14.0563 0x0e98 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {E7A7970D-EC3F-11E3-963A-201A06D7B10A}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0x200000 18:55:14.0563 0x0e98 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {E7A79713-EC3F-11E3-963A-201A06D7B10A}, Name: Basic data partition, StartLBA 0x200800, BlocksNum 0x32000 18:55:14.0563 0x0e98 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {E7A79715-EC3F-11E3-963A-201A06D7B10A}, Name: Basic data partition, StartLBA 0x232800, BlocksNum 0x40000 18:55:14.0563 0x0e98 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {E7A7971D-EC3F-11E3-963A-201A06D7B10A}, Name: Basic data partition, StartLBA 0x272800, BlocksNum 0x38C97800 18:55:14.0563 0x0e98 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {9FD6E8FE-2FBF-11E4-9FB7-F8A963F22B4A}, Name: Basic data partition, StartLBA 0x38F0A000, BlocksNum 0x147BB05 18:55:14.0563 0x0e98 MBR partitions: 18:55:14.0563 0x0e98 ============================================================ 18:55:14.0594 0x0e98 C: <-> \Device\Harddisk0\DR0\Partition4 18:55:14.0594 0x0e98 ============================================================ 18:55:14.0594 0x0e98 Initialize success 18:55:14.0594 0x0e98 ============================================================ 18:56:15.0124 0x17a0 ============================================================ 18:56:15.0124 0x17a0 Scan started 18:56:15.0124 0x17a0 Mode: Manual; SigCheck; TDLFS; 18:56:15.0124 0x17a0 ============================================================ 18:56:15.0124 0x17a0 KSN ping started 18:56:17.0562 0x17a0 KSN ping finished: true 18:56:19.0593 0x17a0 ================ Scan system memory ======================== 18:56:19.0593 0x17a0 System memory - ok 18:56:19.0593 0x17a0 ================ Scan services ============================= 18:56:19.0953 0x17a0 [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci C:\Windows\System32\drivers\1394ohci.sys 18:56:20.0062 0x17a0 1394ohci - ok 18:56:20.0093 0x17a0 [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware C:\Windows\system32\drivers\3ware.sys 18:56:20.0109 0x17a0 3ware - ok 18:56:20.0187 0x17a0 [ 9539F7917B4B6D92C90F0FAA6B86C605, B4C284E8EECC2E7025053A3320EFDC9F47BCA9828853AD2A805DB826CA4AC27E ] ACPI C:\Windows\system32\drivers\ACPI.sys 18:56:20.0234 0x17a0 ACPI - ok 18:56:20.0265 0x17a0 [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex C:\Windows\system32\Drivers\acpiex.sys 18:56:20.0281 0x17a0 acpiex - ok 18:56:20.0296 0x17a0 [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr C:\Windows\System32\drivers\acpipagr.sys 18:56:20.0343 0x17a0 acpipagr - ok 18:56:20.0359 0x17a0 [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi C:\Windows\System32\drivers\acpipmi.sys 18:56:20.0406 0x17a0 AcpiPmi - ok 18:56:20.0421 0x17a0 [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime C:\Windows\System32\drivers\acpitime.sys 18:56:20.0453 0x17a0 acpitime - ok 18:56:20.0562 0x17a0 [ FC5B75CA6A1DA31EDD4F8D53F5540B98, CDC445F2790ADFC4C5568C40D4DA8BB95CD71991665B38AEC3D84571C99C3520 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 18:56:20.0609 0x17a0 AdobeARMservice - ok 18:56:20.0781 0x17a0 [ 080255CDCB878813B481B8C348D47D8E, 75808821FBC732D0504795B8F85852E4C01D3B412989A1E597E1295CFF7B7A45 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 18:56:20.0812 0x17a0 AdobeFlashPlayerUpdateSvc - ok 18:56:20.0874 0x17a0 [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX C:\Windows\system32\drivers\ADP80XX.SYS 18:56:20.0921 0x17a0 ADP80XX - ok 18:56:20.0953 0x17a0 [ 0F17D49BE041B7EFF1D33BF1414E7AC6, F8B536B60903814DF88DAF535753288537EF0993E42AA4E734EDA8D68B24C7AB ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 18:56:20.0984 0x17a0 AeLookupSvc - ok 18:56:21.0062 0x17a0 [ 374E27295F0A9DCAA8FC96370F9BEEA5, 51C394E0C2322D7D093941A1B8766171B5D1F47DF2FE0834209492891EA7D999 ] AFD C:\Windows\system32\drivers\afd.sys 18:56:21.0171 0x17a0 AFD - ok 18:56:21.0218 0x17a0 [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440 C:\Windows\system32\drivers\agp440.sys 18:56:21.0281 0x17a0 agp440 - ok 18:56:21.0312 0x17a0 [ F0CB6DB513CAC393D04A0FCE0A59E1BF, E6EE159D0E6B1F666946B1FE421874044E89BB2EB60A521BAA111A1229FA7B2D ] ahcache C:\Windows\system32\DRIVERS\ahcache.sys 18:56:21.0390 0x17a0 ahcache - ok 18:56:21.0437 0x17a0 [ A91D8E1E433EFB32551BCE69037E1CE7, 41DFDD5B56918D19D09DFB3E4B07460AA85647A8647ABBBB906158D8D6653290 ] ALG C:\Windows\System32\alg.exe 18:56:21.0499 0x17a0 ALG - ok 18:56:21.0515 0x17a0 [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8 C:\Windows\System32\drivers\amdk8.sys 18:56:21.0546 0x17a0 AmdK8 - ok 18:56:21.0578 0x17a0 [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM C:\Windows\System32\drivers\amdppm.sys 18:56:21.0624 0x17a0 AmdPPM - ok 18:56:21.0624 0x17a0 [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata C:\Windows\system32\drivers\amdsata.sys 18:56:21.0656 0x17a0 amdsata - ok 18:56:21.0687 0x17a0 [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys 18:56:21.0703 0x17a0 amdsbs - ok 18:56:21.0718 0x17a0 [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata C:\Windows\system32\drivers\amdxata.sys 18:56:21.0734 0x17a0 amdxata - ok 18:56:21.0749 0x17a0 [ 04951A9A937CBE28A2D3FEEA360B6D1F, D8AAF000BE4FE4B203DC2EB2A64F780A542E5238CE3F9952FD03277379B11529 ] AppID C:\Windows\system32\drivers\appid.sys 18:56:21.0843 0x17a0 AppID - ok 18:56:21.0874 0x17a0 [ C0DC3F58214A227980AEB091CFD2F973, 0C3E8453C9F65ADA3E74C38C0E3AC3E0CBFD807B827097046265B38839E151E3 ] AppIDSvc C:\Windows\System32\appidsvc.dll 18:56:21.0984 0x17a0 AppIDSvc - ok 18:56:22.0031 0x17a0 [ 034ED41F13D9C1845C1E081F05B640DB, E4E17BA0B22C464DE60A6BF68D4D035D1B838DE4F0361029DED1AE00503E135C ] Appinfo C:\Windows\System32\appinfo.dll 18:56:22.0109 0x17a0 Appinfo - ok 18:56:22.0140 0x17a0 [ CB12C47647D8BDAFAA94C0856B14128B, 5590C98095357C92563EF94800107D3611AA6ECA1A70BE463C03B279E618A6C4 ] AppReadiness C:\Windows\system32\AppReadiness.dll 18:56:22.0203 0x17a0 AppReadiness - ok 18:56:22.0297 0x17a0 [ F7529BD3FFAC9C33D15F6DE3B7353B03, 8EF0A84C9687A246B60939A326E498121039E9CC617A7ABBA933EDD327F3467E ] AppXSvc C:\Windows\system32\appxdeploymentserver.dll 18:56:22.0390 0x17a0 AppXSvc - ok 18:56:22.0422 0x17a0 [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas C:\Windows\system32\drivers\arcsas.sys 18:56:22.0437 0x17a0 arcsas - ok 18:56:22.0453 0x17a0 [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi C:\Windows\system32\drivers\atapi.sys 18:56:22.0468 0x17a0 atapi - ok 18:56:22.0515 0x17a0 [ BCE510EB5CFB8814CF1EADE941E853EC, B354524414557225355BD8EEF81324BE3B354EF2F4103D3C5E1EB43651264917 ] AtherosSvc C:\Program Files (x86)\Bluetooth Suite\adminservice.exe 18:56:22.0578 0x17a0 AtherosSvc - detected UnsignedFile.Multi.Generic ( 1 ) 18:56:25.0031 0x17a0 Detect skipped due to KSN trusted 18:56:25.0031 0x17a0 AtherosSvc - ok 18:56:25.0343 0x17a0 [ 506CDD8280C18029753B8AB0E9F42432, 06BA160C0465D116AB07DDFC81D6B087F05E776F0365577CB59567CBC61971FC ] athr C:\Windows\system32\DRIVERS\athwbx.sys 18:56:25.0609 0x17a0 athr - ok 18:56:25.0672 0x17a0 [ 8779FDAE68BC948B0FE152E758CC8DA7, 13070C2073F8E7546B48AE9CF54067B9BB75DFCD98F2987B90FFAD20D40D54CF ] AudioEndpointBuilder C:\Windows\System32\AudioEndpointBuilder.dll 18:56:25.0734 0x17a0 AudioEndpointBuilder - ok 18:56:25.0812 0x17a0 [ 61EA45A645854FE81D8A924E2D93DFFE, 34F79532297F609CA93C380B68BB8B7B0F027F9C8F4FB8E02A9A43EA3D155F1B ] Audiosrv C:\Windows\System32\Audiosrv.dll 18:56:25.0890 0x17a0 Audiosrv - ok 18:56:25.0922 0x17a0 [ 6A300AD0E23A155B2C3A7FAB0D4AABD1, AD283CC530482C0C155727C3234BFA4773C8C80B4C9912448196F83407C3CFD4 ] avmaura C:\Windows\System32\drivers\avmaura.sys 18:56:26.0015 0x17a0 avmaura - ok 18:56:26.0062 0x17a0 [ 96E8CAF20FC4B6C31CAD7816A801EB78, E4870DB8FFBDCFEE98449338D0BDBF2DD0B5FEC75514E41C11A882BE6EB16833 ] AxInstSV C:\Windows\System32\AxInstSV.dll 18:56:26.0140 0x17a0 AxInstSV - ok 18:56:26.0203 0x17a0 [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys 18:56:26.0250 0x17a0 b06bdrv - ok 18:56:26.0281 0x17a0 [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay C:\Windows\System32\drivers\BasicDisplay.sys 18:56:26.0328 0x17a0 BasicDisplay - ok 18:56:26.0343 0x17a0 [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender C:\Windows\System32\drivers\BasicRender.sys 18:56:26.0390 0x17a0 BasicRender - ok 18:56:26.0422 0x17a0 [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2 C:\Windows\System32\drivers\bcmfn2.sys 18:56:26.0437 0x17a0 bcmfn2 - ok 18:56:26.0484 0x17a0 [ E07C80468D0C599BFF01D9D4EC7AEDC3, F675F455924DEC3FF69AD816DFEB6E74C804AEC3D3BFF7515953DB9D79C9B2D0 ] BDESVC C:\Windows\System32\bdesvc.dll 18:56:26.0562 0x17a0 BDESVC - ok 18:56:26.0594 0x17a0 [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep C:\Windows\system32\drivers\Beep.sys 18:56:26.0656 0x17a0 Beep - ok 18:56:26.0766 0x17a0 [ 20FB137ADDE1255F15F265A7BD9579BE, 87B4D5C91EFEAD987AAC3491A4360F82824C46AFF958B6F4CAED7C12224EF159 ] BFE C:\Windows\System32\bfe.dll 18:56:26.0828 0x17a0 BFE - ok 18:56:26.0969 0x17a0 [ 15225081966C785A9192782401643FD4, E2BA0C8D044556FDD9DD7A25F7F71553DE7A2924E78F9284413C2AC46F0BF4EB ] BITS C:\Windows\System32\qmgr.dll 18:56:27.0047 0x17a0 BITS - ok 18:56:27.0063 0x17a0 [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] bowser C:\Windows\system32\DRIVERS\bowser.sys 18:56:27.0094 0x17a0 bowser - ok 18:56:27.0125 0x17a0 [ E325BCD68EC0CF2E2EDD0AB7CC17C698, 4DEDEF91F6BD1CC8DBE118AC28CA6BD874449A053B9CDE9FFEB1C7B98501D938 ] BrokerInfrastructure C:\Windows\System32\bisrv.dll 18:56:27.0203 0x17a0 BrokerInfrastructure - ok 18:56:27.0235 0x17a0 [ 041A999E4FF9A7CDBE67357751881FB8, 356C52637EA715D6FA2B65BD311C9BF1635A582023434902EC2DE4A2448961F8 ] Browser C:\Windows\System32\browser.dll 18:56:27.0313 0x17a0 Browser - ok 18:56:27.0375 0x17a0 [ 8434237E1EC39E85D8ACE6FA694A5733, CE4261DC6AE5393327DC43D97F35FC9AE86665F89D17CC5708AA3D387B4FFFA5 ] BtFilter C:\Windows\system32\DRIVERS\btfilter.sys 18:56:27.0406 0x17a0 BtFilter - ok 18:56:27.0453 0x17a0 [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg C:\Windows\System32\drivers\BthAvrcpTg.sys 18:56:27.0516 0x17a0 BthAvrcpTg - ok 18:56:27.0563 0x17a0 [ 1104A31260CCF4318C884E0AE6C513BF, A8F83B558944DEF0F84414A11DC3CB90C3A92377B46760EC0A9B8BC22FB0D5C7 ] BthEnum C:\Windows\System32\drivers\BthEnum.sys 18:56:27.0656 0x17a0 BthEnum - ok 18:56:27.0672 0x17a0 [ 746B9F94214915AECDE4B7FEA5FF9664, EA2877D49DB4B7B9CE61653D63E8776DFF1CBCCAB12C14DB1D20DA44B8F06357 ] BthHFEnum C:\Windows\System32\drivers\bthhfenum.sys 18:56:27.0735 0x17a0 BthHFEnum - ok 18:56:27.0766 0x17a0 [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid C:\Windows\System32\drivers\BthHFHid.sys 18:56:27.0844 0x17a0 bthhfhid - ok 18:56:27.0891 0x17a0 [ D30C67473A2E229662D21F27EAA9AAA5, D009C4836B0DFE963D8E3DEEDE611068838F2BBCAB146E6D70692FAB838E11F1 ] BthLEEnum C:\Windows\system32\DRIVERS\BthLEEnum.sys 18:56:27.0985 0x17a0 BthLEEnum - ok 18:56:28.0000 0x17a0 [ 66B791F6B11DC4303DD18A224A501542, 502AE4D6FFC6B0FCED081B0E0F61F699F96F20DFEE737B53828F5DEE3BD0FCB1 ] BTHMODEM C:\Windows\System32\drivers\bthmodem.sys 18:56:28.0047 0x17a0 BTHMODEM - ok 18:56:28.0094 0x17a0 [ 25BB93167DEF270188072603F92A1EF5, CE4637CE4B63420E218F53CAF89A8C85D036B879B80456FEF3C7C395590E26BB ] BthPan C:\Windows\System32\drivers\bthpan.sys 18:56:28.0203 0x17a0 BthPan - ok 18:56:28.0328 0x17a0 [ C37F4930795B771400C63C3C87E7A6C2, 0D0F54184B2DAA45F646E4F69B85C4411E8DFA88EB4763BB0F386055A420F217 ] BTHPORT C:\Windows\System32\Drivers\BTHport.sys 18:56:28.0406 0x17a0 BTHPORT - ok 18:56:28.0438 0x17a0 [ E5E48FEED73D463175EAB1542495191C, 0A8182F5BA7B694AB1DD3680F1194E4A568FE40DBA4BFDFF2EA09BAD045FFB29 ] bthserv C:\Windows\system32\bthserv.dll 18:56:28.0500 0x17a0 bthserv - ok 18:56:28.0531 0x17a0 [ 08EA90955AED2D959EE67DF6EDF0E2B6, 0A70AA67E5DD24C473C66A570C0FEBA9D398A0F0AD8386FE05D01C4D16346968 ] BTHUSB C:\Windows\System32\Drivers\BTHUSB.sys 18:56:28.0594 0x17a0 BTHUSB - ok 18:56:28.0610 0x17a0 [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 18:56:28.0672 0x17a0 cdfs - ok 18:56:28.0688 0x17a0 [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom C:\Windows\System32\drivers\cdrom.sys 18:56:28.0735 0x17a0 cdrom - ok 18:56:28.0766 0x17a0 [ 11F35C8E745ADF8BF595E3EC2B390972, 754ACDF6226A142D753C136D7C0A2461705B05A0C2251287ABC06D89D78F81A8 ] CeKbFilter C:\Windows\system32\DRIVERS\CeKbFilter.sys 18:56:28.0781 0x17a0 CeKbFilter - ok 18:56:28.0813 0x17a0 [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] CertPropSvc C:\Windows\System32\certprop.dll 18:56:28.0860 0x17a0 CertPropSvc - ok 18:56:28.0875 0x17a0 [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass C:\Windows\System32\drivers\circlass.sys 18:56:28.0891 0x17a0 circlass - ok 18:56:28.0938 0x17a0 [ 179A41249055D5F039F1B6703F3B6D2B, 886CF715D9E85DB5C9B991EBCB9B12E27AA0EEE52528E222C80CA5B5B0A7AF52 ] CLFS C:\Windows\system32\drivers\CLFS.sys 18:56:28.0969 0x17a0 CLFS - ok 18:56:29.0016 0x17a0 [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt C:\Windows\System32\drivers\CmBatt.sys 18:56:29.0047 0x17a0 CmBatt - ok 18:56:29.0109 0x17a0 [ 3930E508DDA46C1FF68FD963F350AA0A, BF63F9C7AB30E2A8199D65EDD6DCBB797C93A4A0B972373643FBE1C38BCFA697 ] CNG C:\Windows\system32\Drivers\cng.sys 18:56:29.0156 0x17a0 CNG - ok 18:56:29.0172 0x17a0 [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus C:\Windows\System32\drivers\CompositeBus.sys 18:56:29.0203 0x17a0 CompositeBus - ok 18:56:29.0219 0x17a0 COMSysApp - ok 18:56:29.0234 0x17a0 [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv C:\Windows\system32\drivers\condrv.sys 18:56:29.0313 0x17a0 condrv - ok 18:56:29.0453 0x17a0 [ B37EB99764D332FBE5BB50779F9170CE, 97D551D518CB419542A09EBB71DB400412445904FDA8B7F612BC77C8E7597D48 ] cphs C:\Windows\SysWow64\IntelCpHeciSvc.exe 18:56:29.0500 0x17a0 cphs - ok 18:56:29.0547 0x17a0 [ 0EFE4B5884A8032617826A4D76F80969, 083D296CC623C83D36A97AEE343ADF819B17E490F931DBE4D161BD1E8C289E02 ] CryptSvc C:\Windows\system32\cryptsvc.dll 18:56:29.0578 0x17a0 CryptSvc - ok 18:56:29.0610 0x17a0 [ 315BA4BC19316D72B2E037534E048B93, 69613635DB23E6A935673B1025C2010ED3E195473D25368CF74234C4C36910BE ] dam C:\Windows\system32\drivers\dam.sys 18:56:29.0641 0x17a0 dam - ok 18:56:29.0703 0x17a0 [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] DcomLaunch C:\Windows\system32\rpcss.dll 18:56:29.0781 0x17a0 DcomLaunch - ok 18:56:29.0875 0x17a0 [ D249C3A58A4FCF755EF4C94F7047E015, 68C044CE2DB93FB502F85F6E081EA164F6E6DCBA6B3EE2A5CBDA122065E522F8 ] defragsvc C:\Windows\System32\defragsvc.dll 18:56:29.0953 0x17a0 defragsvc - ok 18:56:30.0047 0x17a0 [ 8F387C2C99EE09C6E2AC316205F86A17, EC9E8AE72A21992AA118964E17090BA4503EB051273AD18185C95172F57328CE ] DeviceAssociationService C:\Windows\system32\das.dll 18:56:30.0110 0x17a0 DeviceAssociationService - ok 18:56:30.0172 0x17a0 [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] DeviceInstall C:\Windows\system32\umpnpmgr.dll 18:56:30.0250 0x17a0 DeviceInstall - ok 18:56:30.0297 0x17a0 [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] Dfsc C:\Windows\system32\Drivers\dfsc.sys 18:56:30.0391 0x17a0 Dfsc - ok 18:56:30.0453 0x17a0 [ 05DE04005CE0D84D0E6AD21CAEB369C6, E6704A2A685BCFD560796D7C328F8E53DF0793DBDA590598A492D9070D109298 ] Dhcp C:\Windows\system32\dhcpcore.dll 18:56:30.0532 0x17a0 Dhcp - ok 18:56:30.0578 0x17a0 [ 4D40C9B33F738797CF50E77CB7C53E85, 7BA341342A47DEB15B51971C97A5237ACD8BDAD9033F63DF0000892BE43F8E13 ] disk C:\Windows\system32\drivers\disk.sys 18:56:30.0625 0x17a0 disk - ok 18:56:30.0641 0x17a0 [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc C:\Windows\System32\drivers\dmvsc.sys 18:56:30.0703 0x17a0 dmvsc - ok 18:56:30.0782 0x17a0 [ FE7656474448BE6A6C68E5C9BEB7CA94, 8B9F04CAA29A6EEFCA3D1E7BAFE340D5CCA8AF665474E69B1DF7E2A518B83A89 ] Dnscache C:\Windows\System32\dnsrslvr.dll 18:56:30.0844 0x17a0 Dnscache - ok 18:56:30.0891 0x17a0 [ 50288EA079BB520C2B8C8A154202D518, 8916A9180CA009D124FFDFB4CCF5FDFEF7FA2FD37CBCD49FAD4C68E051B4734D ] dot3svc C:\Windows\System32\dot3svc.dll 18:56:30.0938 0x17a0 dot3svc - ok 18:56:30.0953 0x17a0 [ 281BEE07BA97E3E98D12A822D923D0D8, 6EB482B2D4D6048D145C3738B2B6FA27A90B5EA53E9167447820F9981B004E63 ] DPS C:\Windows\system32\dps.dll 18:56:31.0031 0x17a0 DPS - ok 18:56:31.0047 0x17a0 [ DDC11A202207C0400CBE07315B8FDE5E, 3ED0CA3A714582D92001BA3BFF78BE082F4DC8021298D5A2632F3B2B0A1C09DC ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 18:56:31.0063 0x17a0 drmkaud - ok 18:56:31.0094 0x17a0 [ 5B074F14F5DD6418F46EE4CA2DEB7EA8, B8223D73C3DE123759101F7D5D45C60BD12B221F09D349575A1044CE3F43CBC5 ] DsmSvc C:\Windows\System32\DeviceSetupManager.dll 18:56:31.0141 0x17a0 DsmSvc - ok 18:56:31.0203 0x17a0 [ B2A2CAF9E5682AD6BC0B4926C3B78B73, 7A9BB9A49041CE4D8AAF00504A58B1FB1F733561667E5FAB32703415899DBB9F ] dts_apo_service C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe 18:56:31.0250 0x17a0 dts_apo_service - ok 18:56:31.0438 0x17a0 [ 313DCE665B57000B18CB26C6B6A10DFE, 6C332D4AD13A316C192321AB7E7597E66AF8E1688101FFD851E06C52128DBA52 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 18:56:31.0516 0x17a0 DXGKrnl - ok 18:56:31.0578 0x17a0 [ 6073537F250B45E1CB2A02E97F0FE1B2, 653F3F2F2019168EDF225944A88AFDBF8393B62AA076BD19980691778F3DB67D ] Eaphost C:\Windows\System32\eapsvc.dll 18:56:31.0625 0x17a0 Eaphost - ok 18:56:31.0797 0x17a0 [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv C:\Windows\system32\drivers\evbda.sys 18:56:31.0953 0x17a0 ebdrv - ok 18:56:32.0032 0x17a0 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] EFS C:\Windows\System32\lsass.exe 18:56:32.0094 0x17a0 EFS - ok 18:56:32.0141 0x17a0 [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass C:\Windows\system32\drivers\EhStorClass.sys 18:56:32.0172 0x17a0 EhStorClass - ok 18:56:32.0204 0x17a0 [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv C:\Windows\system32\drivers\EhStorTcgDrv.sys 18:56:32.0219 0x17a0 EhStorTcgDrv - ok 18:56:32.0235 0x17a0 [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev C:\Windows\System32\drivers\errdev.sys 18:56:32.0266 0x17a0 ErrDev - ok 18:56:32.0344 0x17a0 [ 030CE75B7D8F75FAA7BA1EC6FD0EB5A3, 5264734F0572FAEDCCB008221C9982CCB7922C4FFC358605424EA413CDCDAE99 ] EventSystem C:\Windows\system32\es.dll 18:56:32.0375 0x17a0 EventSystem - ok 18:56:32.0407 0x17a0 [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat C:\Windows\system32\drivers\exfat.sys 18:56:32.0453 0x17a0 exfat - ok 18:56:32.0485 0x17a0 [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat C:\Windows\system32\drivers\fastfat.sys 18:56:32.0532 0x17a0 fastfat - ok 18:56:32.0594 0x17a0 [ 2BC8532ABF2B3756B78FA1DA54147DDE, DF65EE2AB0255A2CF3221085A6BE7C37E3DB6BFEED3BCADCDD69BB1049F6DCB1 ] Fax C:\Windows\system32\fxssvc.exe 18:56:32.0657 0x17a0 Fax - ok 18:56:32.0688 0x17a0 [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc C:\Windows\System32\drivers\fdc.sys 18:56:32.0719 0x17a0 fdc - ok 18:56:32.0735 0x17a0 [ DC1A78BCCCB7EE53D6FD3BD615A8E222, EE16B6853185AAE779D7135035983938009901658F76A8856AAC12EBA15BB34E ] fdPHost C:\Windows\system32\fdPHost.dll 18:56:32.0813 0x17a0 fdPHost - ok 18:56:32.0844 0x17a0 [ E5AD448F2DC84B1CF387FA7F2A3D1936, BBB29C79A085C503F5EFFB5144596D5DEC48A4EB34A049A4E7B38B27F6D92E0A ] FDResPub C:\Windows\system32\fdrespub.dll 18:56:32.0891 0x17a0 FDResPub - ok 18:56:32.0907 0x17a0 [ 0046E0BD031213D37123876B0D0FA61C, A4FE17D56F0BAFB70D0D421ED9D1B6E50AF8ADAA4B59328A41AEC5B4C068A3CB ] fhsvc C:\Windows\system32\fhsvc.dll 18:56:32.0969 0x17a0 fhsvc - ok 18:56:32.0985 0x17a0 [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 18:56:33.0000 0x17a0 FileInfo - ok 18:56:33.0016 0x17a0 [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace C:\Windows\system32\drivers\filetrace.sys 18:56:33.0063 0x17a0 Filetrace - ok 18:56:33.0079 0x17a0 [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk C:\Windows\System32\drivers\flpydisk.sys 18:56:33.0110 0x17a0 flpydisk - ok 18:56:33.0157 0x17a0 [ 6592D192E2823C043EDBC010E7774053, C025A0EC5517DC3BD5D6656DC0F0F19021FB3D2EE90EC6194E1BD74E638EBBDC ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 18:56:33.0188 0x17a0 FltMgr - ok 18:56:33.0297 0x17a0 [ 3FA6DC6B29717E32E211C1FD821F2C75, E467F3775427C93CC2B87327B0A45669631A5FC460C558F6796BA26002A8BBFC ] FontCache C:\Windows\system32\FntCache.dll 18:56:33.0391 0x17a0 FontCache - ok 18:56:33.0485 0x17a0 [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 18:56:33.0547 0x17a0 FontCache3.0.0.0 - ok 18:56:33.0563 0x17a0 [ 35005534E600E993A90B036E4E599F2B, DA56FA3776FBD3D50276CB7410E0CB6F137DD8FCA84C0F3FEF8B1FEA5F6CA592 ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 18:56:33.0579 0x17a0 FsDepends - ok 18:56:33.0594 0x17a0 [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 18:56:33.0610 0x17a0 Fs_Rec - ok 18:56:33.0672 0x17a0 [ F152D55E497E12256290C43B31C7D0CE, FFC54B14CCFBC1548948C07FB3866E40A11D0C05AC352BD000E71CEF053F6A6E ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 18:56:33.0719 0x17a0 fvevol - ok 18:56:33.0751 0x17a0 [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM C:\Windows\System32\drivers\fxppm.sys 18:56:33.0782 0x17a0 FxPPM - ok 18:56:33.0797 0x17a0 [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys 18:56:33.0813 0x17a0 gagp30kx - ok 18:56:33.0844 0x17a0 [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter C:\Windows\System32\drivers\vmgencounter.sys 18:56:33.0860 0x17a0 gencounter - ok 18:56:33.0938 0x17a0 [ 73FC2954829A49FC8EB178B000D10120, 26BA58C9AF9C8A7AEBF222F491F786DAA0626BE44D34F170FEA3623D92828E63 ] GENERICDRV C:\Program Files (x86)\UEFI WinFlash\amifldrv64.sys 18:56:33.0969 0x17a0 GENERICDRV - ok 18:56:34.0016 0x17a0 [ 8DF1254093B5C354CE725EB6B9B0DE19, DE6C5661CC076DA44B8A5D044FDB7280EDCF38D322A98C14FDC82E25586B3014 ] GPIOClx0101 C:\Windows\system32\Drivers\msgpioclx.sys 18:56:34.0063 0x17a0 GPIOClx0101 - ok 18:56:34.0188 0x17a0 [ 69DB09F0263C637DA8568D404842466A, D042194266978AAD31E04DAF7018CD50754077212DC74A4D8AFF6BFEE80CDD20 ] gpsvc C:\Windows\System32\gpsvc.dll 18:56:34.0282 0x17a0 gpsvc - ok 18:56:34.0344 0x17a0 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 18:56:34.0360 0x17a0 gupdate - ok 18:56:34.0375 0x17a0 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 18:56:34.0391 0x17a0 gupdatem - ok 18:56:34.0438 0x17a0 [ 56F69F7C25FB67C970997D7066DBC593, 83E03A82237DCC5BCB3E722ACECACEF3510CAA619F33E0D7C4D902A482E90418 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 18:56:34.0485 0x17a0 HdAudAddService - ok 18:56:34.0516 0x17a0 [ D4B7ED39C7900384D9E5C1283F1E7926, F93F98858067B40F1C071EAD0F8E85442A78B95342BC692AF4D726540634923F ] HDAudBus C:\Windows\System32\drivers\HDAudBus.sys 18:56:34.0579 0x17a0 HDAudBus - ok 18:56:34.0641 0x17a0 [ 62FB29642745DD290910BFD79537FCE0, 56206F936958082B3A2AD93E4E5C7EDA9518A6F12670C6F26EC7A35D0D5305DF ] HH10Help.sys C:\Windows\system32\drivers\HH10Help.sys 18:56:34.0672 0x17a0 HH10Help.sys - ok 18:56:34.0704 0x17a0 [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt C:\Windows\System32\drivers\HidBatt.sys 18:56:34.0751 0x17a0 HidBatt - ok 18:56:34.0782 0x17a0 [ 42F88B57CAE42FC10059C887B3FCFCEA, 9363AA2B8E839A6935A7C6A36C491938DF78024886DCCE6D29CB18E1D6A6D806 ] HidBth C:\Windows\System32\drivers\hidbth.sys 18:56:34.0829 0x17a0 HidBth - ok 18:56:34.0860 0x17a0 [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c C:\Windows\System32\drivers\hidi2c.sys 18:56:34.0891 0x17a0 hidi2c - ok 18:56:34.0907 0x17a0 [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr C:\Windows\System32\drivers\hidir.sys 18:56:34.0922 0x17a0 HidIr - ok 18:56:34.0954 0x17a0 [ 449A20A674AA3FAA7F0DD4E33EE2DC20, 28B9BDA306456E8640C355718DE3477537B0FAF8C37F633C709129AAB64D9873 ] hidserv C:\Windows\system32\hidserv.dll 18:56:34.0985 0x17a0 hidserv - ok 18:56:35.0032 0x17a0 [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] HidUsb C:\Windows\System32\drivers\hidusb.sys 18:56:35.0079 0x17a0 HidUsb - ok 18:56:35.0126 0x17a0 [ 7BF3ADCBD021D4F4A84CF40EB49C71B5, 5758A51FD2EBE67E6DBE3A298D714D351910F9E01C428D0C1359457C9242B298 ] hkmsvc C:\Windows\system32\kmsvc.dll 18:56:35.0235 0x17a0 hkmsvc - ok 18:56:35.0266 0x17a0 [ 6CD9C3819BE8C0A3DACC82AE5D3C4F18, 46BF4A968E506DE17CA401401D716B444CDC10A5C60EB081890DD4B886AEDF5F ] HomeGroupListener C:\Windows\system32\ListSvc.dll 18:56:35.0344 0x17a0 HomeGroupListener - ok 18:56:35.0391 0x17a0 [ 1A4DA1D6287B99033D144B436C23B656, D4D1EEB372E61512EA36A33F095E68C225B8E6C72CC57ED8BD00533F88012F40 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 18:56:35.0438 0x17a0 HomeGroupProvider - ok 18:56:35.0469 0x17a0 [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 18:56:35.0485 0x17a0 HpSAMD - ok 18:56:35.0532 0x17a0 [ 9DDCA7F18983C5410DEFF79F819DF93C, CE97B4440377BFC5CA81BB600C3BD1DD9FB3951CA1EB70735F5E2050EBB74223 ] HTTP C:\Windows\system32\drivers\HTTP.sys 18:56:35.0594 0x17a0 HTTP - ok 18:56:35.0610 0x17a0 [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 18:56:35.0641 0x17a0 hwpolicy - ok 18:56:35.0657 0x17a0 [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd C:\Windows\System32\drivers\hyperkbd.sys 18:56:35.0704 0x17a0 hyperkbd - ok 18:56:35.0719 0x17a0 [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo C:\Windows\system32\DRIVERS\HyperVideo.sys 18:56:35.0735 0x17a0 HyperVideo - ok 18:56:35.0751 0x17a0 [ 84CFC5EFA97D0C965EDE1D56F116A541, 0155EA62BF07D99D98D1C9B6559C8E3301B016A20D03DF1EF64B2FAB8C37403B ] i8042prt C:\Windows\System32\drivers\i8042prt.sys 18:56:35.0782 0x17a0 i8042prt - ok 18:56:35.0813 0x17a0 [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO C:\Windows\System32\drivers\iaLPSSi_GPIO.sys 18:56:35.0829 0x17a0 iaLPSSi_GPIO - ok 18:56:35.0829 0x17a0 [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C C:\Windows\System32\drivers\iaLPSSi_I2C.sys 18:56:35.0844 0x17a0 iaLPSSi_I2C - ok 18:56:35.0907 0x17a0 [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV C:\Windows\system32\drivers\iaStorAV.sys 18:56:35.0938 0x17a0 iaStorAV - ok 18:56:35.0985 0x17a0 [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 18:56:36.0016 0x17a0 iaStorV - ok 18:56:36.0094 0x17a0 [ 83FF82FE209E7997067B375DAD6CF23D, E312DD068E51DBF96A8232D7D1C9F158652FDA23649655F1102928B320795091 ] ICCS C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe 18:56:36.0141 0x17a0 ICCS - ok 18:56:36.0157 0x17a0 IEEtwCollectorService - ok 18:56:36.0391 0x17a0 [ E786FA74AA145ECB7FA3467A362B1AF5, 4A84AA3595ADC586EB03526750735219B16629C9372B4A606F352424656AE6D3 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys 18:56:36.0704 0x17a0 igfx - ok 18:56:36.0829 0x17a0 [ DEA76F90F9777E3427D70E380222B23B, B917BA423896A12E45623E3D494CA03317A6FC612CA433C62C897524DC3E756B ] IKEEXT C:\Windows\System32\ikeext.dll 18:56:36.0922 0x17a0 IKEEXT - ok 18:56:36.0954 0x17a0 [ F0F581A2299CB2BAB1DF2597BCDDB80F, EE485AF3049C87666BC6D6BFFC8A0EB4B95831D9061EB81848ECEE29C4232BF4 ] intaud_WaveExtensible C:\Windows\system32\drivers\intelaud.sys 18:56:36.0969 0x17a0 intaud_WaveExtensible - ok 18:56:37.0172 0x17a0 [ 01262E2BE97708F54666E700482027DE, 7643FCFB6EBFABDD7D1A914C40FADE97DDC633C5D75BE2CADBAC61675564E5CD ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys 18:56:37.0313 0x17a0 IntcAzAudAddService - ok 18:56:37.0360 0x17a0 [ EC80E6B9E27DC3E22ED5B2E0E75A39C0, 8EEC89F88AE79DA256BB651983397773F6B25139006C8A7C8F77960F47774CF5 ] IntcDAud C:\Windows\system32\DRIVERS\IntcDAud.sys 18:56:37.0391 0x17a0 IntcDAud - ok 18:56:37.0579 0x17a0 [ 768DD5CB66952BC4A3BD474757AEE34F, 5A1F91FC8028D84FD83591D60CB7E3B24425C3B0FFF5A9BB0F7CE2E17AAB92D4 ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe 18:56:37.0610 0x17a0 Intel(R) Capability Licensing Service Interface - detected UnsignedFile.Multi.Generic ( 1 ) 18:56:40.0095 0x17a0 Detect skipped due to KSN trusted 18:56:40.0095 0x17a0 Intel(R) Capability Licensing Service Interface - ok 18:56:40.0219 0x17a0 [ 7C9ED65324CF268ACBA8024257F782D8, 1DC43DBA3612E26454D7786DEB0538B44A736B67EC99642B4CC574D8A03E0DC7 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe 18:56:40.0266 0x17a0 Intel(R) Capability Licensing Service TCP IP Interface - ok 18:56:40.0298 0x17a0 [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide C:\Windows\system32\drivers\intelide.sys 18:56:40.0329 0x17a0 intelide - ok 18:56:40.0360 0x17a0 [ A770340FC02B999EF0DE6C2A6BC8437C, 214567BE706B21BEA7EC13AF6B10FBFF658000511DBBA79BAA28D1D4EFD029A7 ] intelpep C:\Windows\system32\drivers\intelpep.sys 18:56:40.0391 0x17a0 intelpep - ok 18:56:40.0407 0x17a0 [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm C:\Windows\System32\drivers\intelppm.sys 18:56:40.0438 0x17a0 intelppm - ok 18:56:40.0454 0x17a0 [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 18:56:40.0470 0x17a0 IpFilterDriver - ok 18:56:40.0532 0x17a0 [ ACFEE9487693C2BD573DFCA71D98E17C, A347FD476147CD3568EEE6993B46AFC05A66A4269094CA51572D0FD013FCB535 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 18:56:40.0595 0x17a0 iphlpsvc - ok 18:56:40.0636 0x17a0 [ 9C096BF5E10CA8BFA56F32522A89FAF1, 6C1151160799338DA351C7237AB049926C6C15F24F5E154BBF5929B4A96C0B8D ] IPMIDRV C:\Windows\System32\drivers\IPMIDrv.sys 18:56:40.0687 0x17a0 IPMIDRV - ok 18:56:40.0734 0x17a0 [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT C:\Windows\system32\drivers\ipnat.sys 18:56:40.0796 0x17a0 IPNAT - ok 18:56:40.0812 0x17a0 [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM C:\Windows\system32\drivers\irenum.sys 18:56:40.0859 0x17a0 IRENUM - ok 18:56:40.0874 0x17a0 [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp C:\Windows\system32\drivers\isapnp.sys 18:56:40.0890 0x17a0 isapnp - ok 18:56:40.0921 0x17a0 [ D90AB68D0FAC9F357F663670FDBB511E, A82AAA5DF1B38EFBDCF834535A0C520D1BB2D7A4A906C18CFDD22BCF16BDB97D ] iScsiPrt C:\Windows\System32\drivers\msiscsi.sys 18:56:40.0953 0x17a0 iScsiPrt - ok 18:56:40.0968 0x17a0 [ C2BC9AC9C6514230A481BDCA6A24BEFD, 84E41675D11EF2EEECED23C8469503C8D12810A2C6B6743D7AA322EB6DF7E68D ] iwdbus C:\Windows\System32\drivers\iwdbus.sys 18:56:40.0984 0x17a0 iwdbus - ok 18:56:41.0015 0x17a0 [ 8BE92376799B6B44D543E8D07CDCF885, 425B8BB1BAF62F735B3CB5A002E6055879F02E7207E55942BFD37F1784F5F368 ] kbdclass C:\Windows\System32\drivers\kbdclass.sys 18:56:41.0031 0x17a0 kbdclass - ok 18:56:41.0046 0x17a0 [ FB6E47E569D4872ABEB506BE03A45FBA, 5C4056CADA8F67587A119D9AE2A0EFAB30387CF6298F4019FF68AC92E2F6F54B ] kbdhid C:\Windows\System32\drivers\kbdhid.sys 18:56:41.0078 0x17a0 kbdhid - ok 18:56:41.0093 0x17a0 [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic C:\Windows\system32\DRIVERS\kdnic.sys 18:56:41.0124 0x17a0 kdnic - ok 18:56:41.0140 0x17a0 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] KeyIso C:\Windows\system32\lsass.exe 18:56:41.0171 0x17a0 KeyIso - ok 18:56:41.0187 0x17a0 [ ADDECBCC777665BD113BED437E602AB0, B6283475A1219CE44E9F683DD3BEB8C42DA0943297E5C4699B22176AD8A6A7ED ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 18:56:41.0218 0x17a0 KSecDD - ok 18:56:41.0249 0x17a0 [ 15C8C65CEA018C02EA0F648448C491C5, DF909704D22D891BE439B2E3D8386EA659444F91DC92AABFF9766446AEE5EBC0 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 18:56:41.0281 0x17a0 KSecPkg - ok 18:56:41.0296 0x17a0 [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 18:56:41.0312 0x17a0 ksthunk - ok 18:56:41.0390 0x17a0 [ 32B1A8351160F307A8C66BCB0F94A9C2, 52F1DEC2BBD4D5DDBB85ED20B99D96BBA7EB83304D76F183A11FDAFDA364E873 ] KtmRm C:\Windows\system32\msdtckrm.dll 18:56:41.0437 0x17a0 KtmRm - ok 18:56:41.0484 0x17a0 [ 793EACA6BAE9F481C2059BCB3743EB4A, 2624905C6B6A1227BD1CAC7D4FE55A5F6543E1278DAB31EC553748472D180D1D ] LanmanServer C:\Windows\system32\srvsvc.dll 18:56:41.0546 0x17a0 LanmanServer - ok 18:56:41.0593 0x17a0 [ D0D9C2ECA4D03A8F06DCD91236B90C98, E2D1144DC8040EA5FEB0602A20BA4CB920B4BC86AD5AD05FC0DF7D74DC95DC66 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 18:56:41.0656 0x17a0 LanmanWorkstation - ok 18:56:41.0687 0x17a0 [ 626D19F1771E1AE72208AE9A8F3082F7, 78FDB64545ED2EAE9F51C08120E21D2C3285208F6846BD8BBA08CAA839E7A0C4 ] lfsvc C:\Windows\System32\GeofenceMonitorService.dll 18:56:41.0749 0x17a0 lfsvc - ok 18:56:41.0765 0x17a0 [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 18:56:41.0796 0x17a0 lltdio - ok 18:56:41.0843 0x17a0 [ 00E070FC0C673311AFD4B068D1242780, 50B0E0E625361145332C849709498FF444E46578DCAD2536E6D0289E0125580F ] lltdsvc C:\Windows\System32\lltdsvc.dll 18:56:41.0874 0x17a0 lltdsvc - ok 18:56:41.0890 0x17a0 [ D113FAD71A5E67AA94B32A0F8828D265, 08DDB4BBDB570C59926DBF5E27FCF46DCDF8B8212BB9251E97837E0504516FB3 ] lmhosts C:\Windows\System32\lmhsvc.dll 18:56:41.0937 0x17a0 lmhosts - ok 18:56:41.0968 0x17a0 [ 36077028C32E25E69645CCA02F55E1DE, 34E23BC6441B46638F9C80331FCCFEF360D520D9B4B4077BE4C1DE7B9BD3EA50 ] LPCFilter C:\Windows\system32\drivers\LPCFilter.sys 18:56:41.0968 0x17a0 LPCFilter - ok 18:56:42.0015 0x17a0 [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys 18:56:42.0046 0x17a0 LSI_SAS - ok 18:56:42.0062 0x17a0 [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys 18:56:42.0077 0x17a0 LSI_SAS2 - ok 18:56:42.0093 0x17a0 [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3 C:\Windows\system32\drivers\lsi_sas3.sys 18:56:42.0109 0x17a0 LSI_SAS3 - ok 18:56:42.0124 0x17a0 [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS C:\Windows\system32\drivers\lsi_sss.sys 18:56:42.0140 0x17a0 LSI_SSS - ok 18:56:42.0218 0x17a0 [ 8EBB271E4588D835784A3FF7E80076A8, A508BE95F6F5063A76F4C8726D9425BB1F00DE803EFE73A0BE145DD9AB82FF0A ] LSM C:\Windows\System32\lsm.dll 18:56:42.0312 0x17a0 LSM - ok 18:56:42.0343 0x17a0 [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv C:\Windows\system32\drivers\luafv.sys 18:56:42.0390 0x17a0 luafv - ok 18:56:42.0406 0x17a0 [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas C:\Windows\system32\drivers\megasas.sys 18:56:42.0437 0x17a0 megasas - ok 18:56:42.0593 0x17a0 [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr C:\Windows\system32\drivers\megasr.sys 18:56:42.0640 0x17a0 megasr - ok 18:56:42.0718 0x17a0 Microsoft SharePoint Workspace Audit Service - ok 18:56:42.0765 0x17a0 [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] MMCSS C:\Windows\system32\mmcss.dll 18:56:42.0812 0x17a0 MMCSS - ok 18:56:42.0828 0x17a0 [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem C:\Windows\system32\drivers\modem.sys 18:56:42.0859 0x17a0 Modem - ok 18:56:42.0874 0x17a0 [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] monitor C:\Windows\System32\drivers\monitor.sys 18:56:42.0921 0x17a0 monitor - ok 18:56:42.0953 0x17a0 [ CEAC6D40FE887CE8406C2393CF97DE06, 34E76908B802764FF0D7AB3AF89BE77BD35B44787983343FAD89891891C0A045 ] mouclass C:\Windows\System32\drivers\mouclass.sys 18:56:42.0968 0x17a0 mouclass - ok 18:56:42.0999 0x17a0 [ 02D98BF804084E9A0D69D1C69B02CCA9, EC5BC5D87043DFFD035FD4DD27B3D94E03119063519E4151BCC3522B613E2D7F ] mouhid C:\Windows\System32\drivers\mouhid.sys 18:56:43.0031 0x17a0 mouhid - ok 18:56:43.0062 0x17a0 [ 515549560D481138E6E21AF7C6998E56, C7E4B38D8CCAF15B9BDA63C8C8209F6193AD220DA02E1264F1B687AACD8F409F ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 18:56:43.0077 0x17a0 mountmgr - ok 18:56:43.0156 0x17a0 [ 81E8AF6407EC3F41908FE37F054353EA, 756C7656ED68AEAE4225E952ED1CED0717264D3378DB8DF0B2D70B6EBC67C62F ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 18:56:43.0203 0x17a0 MozillaMaintenance - ok 18:56:43.0218 0x17a0 [ F170510BE94CF45E3C6274578F6204B2, 344C3DDE1D622607CA2ABECB2C47CB0166D2D258BD94A7960C45A5ADBB640566 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 18:56:43.0249 0x17a0 mpsdrv - ok 18:56:43.0374 0x17a0 [ D186C5844393252147BE934F3871DB7A, 30160F8268B9F46E82C5CB536867E0CF280DC98074A481595072E3320200E343 ] MpsSvc C:\Windows\system32\mpssvc.dll 18:56:43.0453 0x17a0 MpsSvc - ok 18:56:43.0500 0x17a0 [ DB32958F0E704EFBF7F15161A569E39F, 8A26448B954F8A16EE9BA72EF47F6C549A75B30BD13FEB5A29EB099A74D8F678 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 18:56:43.0562 0x17a0 MRxDAV - ok 18:56:43.0656 0x17a0 [ 7A1A3F213CDB3363D179D5014272025D, 6756F5B7D9FBF6839DB1FF4E94EA45B5499D7DF925E75581C96FBBA4BE131542 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 18:56:43.0734 0x17a0 mrxsmb - ok 18:56:43.0796 0x17a0 [ 3E28B99198B514DFEB152EACF913025E, 6C1D8353DCD5F811F39C0C3CB5DF3D2457F0D17EE80FB06196AA169E3D19E9B2 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 18:56:43.0953 0x17a0 mrxsmb10 - ok 18:56:44.0031 0x17a0 [ C910E5D18958914A66F0E45689D0B40A, AD7C91DD8A60A511E580DD56BACC97F85075A539E7C5D95040A8F870A621DAF4 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 18:56:44.0093 0x17a0 mrxsmb20 - ok 18:56:44.0140 0x17a0 [ E0927EFA25D473367C3341B9F5969779, B77A162BD3334557623674373D8EC2BE7CC0B359DF06304E467ABFFEE0530271 ] MsBridge C:\Windows\system32\DRIVERS\bridge.sys 18:56:44.0249 0x17a0 MsBridge - ok 18:56:44.0296 0x17a0 [ A082C17D14D0790E27D064EA4B138AE1, 9A565ED885782D9D5135C8399C11C356DBF9EBF3B8EB4B4504BD2604AD0B45E6 ] MSDTC C:\Windows\System32\msdtc.exe 18:56:44.0359 0x17a0 MSDTC - ok 18:56:44.0406 0x17a0 [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs C:\Windows\system32\drivers\Msfs.sys 18:56:44.0437 0x17a0 Msfs - ok 18:56:44.0453 0x17a0 [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32 C:\Windows\System32\drivers\msgpiowin32.sys 18:56:44.0468 0x17a0 msgpiowin32 - ok 18:56:44.0499 0x17a0 [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 18:56:44.0515 0x17a0 mshidkmdf - ok 18:56:44.0531 0x17a0 [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf C:\Windows\System32\drivers\mshidumdf.sys 18:56:44.0562 0x17a0 mshidumdf - ok 18:56:44.0578 0x17a0 [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 18:56:44.0609 0x17a0 msisadrv - ok 18:56:44.0656 0x17a0 [ 810F8A0A0680662BB0CE44D0E2CEF90C, 5631B07911B7EF378CB1583A480A3C5715E59A5488B33A528F4D7A2F849B9113 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 18:56:44.0687 0x17a0 MSiSCSI - ok 18:56:44.0703 0x17a0 msiserver - ok 18:56:44.0703 0x17a0 [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 18:56:44.0734 0x17a0 MSKSSRV - ok 18:56:44.0749 0x17a0 [ 375E44168F2DFB91A68B8A3F619C5A7C, AC243E02E9A39D0B4DE9571F196941700EE6EB5E94F5B0BA8994FB551E73A7A8 ] MsLldp C:\Windows\system32\DRIVERS\mslldp.sys 18:56:44.0796 0x17a0 MsLldp - ok 18:56:44.0796 0x17a0 [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 18:56:44.0828 0x17a0 MSPCLOCK - ok 18:56:44.0843 0x17a0 [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 18:56:44.0859 0x17a0 MSPQM - ok 18:56:44.0890 0x17a0 [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 18:56:44.0937 0x17a0 MsRPC - ok 18:56:44.0937 0x17a0 [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios C:\Windows\System32\drivers\mssmbios.sys 18:56:44.0953 0x17a0 mssmbios - ok 18:56:44.0968 0x17a0 [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 18:56:44.0984 0x17a0 MSTEE - ok 18:56:44.0999 0x17a0 [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig C:\Windows\System32\drivers\MTConfig.sys 18:56:45.0031 0x17a0 MTConfig - ok 18:56:45.0078 0x17a0 [ 619CA29326B82372621DB2C0964D8365, 4091F08E266DB45A6E33A4A8B1CE9FA78BB294B3111526AA9E3868620F30AFDF ] Mup C:\Windows\system32\Drivers\mup.sys 18:56:45.0109 0x17a0 Mup - ok 18:56:45.0140 0x17a0 [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis C:\Windows\system32\drivers\mvumis.sys 18:56:45.0156 0x17a0 mvumis - ok 18:56:45.0203 0x17a0 [ 41A45D2A75494EABF2806EA051E00376, EB2497561C8E33A4297C044604C717FF854C7F046882A9E4A400AE7679BF5467 ] napagent C:\Windows\system32\qagentRT.dll 18:56:45.0249 0x17a0 napagent - ok 18:56:45.0296 0x17a0 [ 26ACA481FAFEC59FE311D719E3027BBA, 16A24CCA95A38BDFE970580159F6ACAA13FF1B74CF2290B1B020D909F90D3347 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 18:56:45.0343 0x17a0 NativeWifiP - ok 18:56:45.0374 0x17a0 [ 71E3C0100AA19D11373CCEB2F51A6008, 58FBF35F5FE19BEABE483C11E9996BE93D76721C8C34465350FA98B465CA3672 ] NcaSvc C:\Windows\System32\ncasvc.dll 18:56:45.0406 0x17a0 NcaSvc - ok 18:56:45.0421 0x17a0 [ 51DF09CAB2CAC64FEE3E371D9028ED01, 9B81604D0D0359AF8F54FED6DA7116FFD2F40407895028EAD99FF1D7CFDC2D14 ] NcbService C:\Windows\System32\ncbservice.dll 18:56:45.0484 0x17a0 NcbService - ok 18:56:45.0500 0x17a0 [ 2586C4C167499210DCBF3ECFD8CCE210, D8129FEDE9918BF4FB0057CC58700D4E08457060E810B9CC25CA0F598506ADB8 ] NcdAutoSetup C:\Windows\System32\NcdAutoSetup.dll 18:56:45.0562 0x17a0 NcdAutoSetup - ok 18:56:45.0640 0x17a0 [ 6D3A2565E01B3E4B0F1BEDB0D4B00B3F, 95F2608E17CA3E25BD7958D1A49F7030EC8088BC1DF12422F1DAC5BA99113E34 ] NDIS C:\Windows\system32\drivers\ndis.sys 18:56:45.0703 0x17a0 NDIS - ok 18:56:45.0718 0x17a0 [ C6BB12BC35D1637CA17AE16D3A4725EB, 01C1D9FA738886A195166F88207EEB6715A1DE0608978ED6C5DC738AF5C02513 ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 18:56:45.0796 0x17a0 NdisCap - ok 18:56:45.0828 0x17a0 [ B1AA3B19A2E596A59224F893E01A5A75, E08696CA5E087E51AC3E64D4FB8490EEADD612DDF30C9A94DD1BD1BA124B71B7 ] NdisImPlatform C:\Windows\system32\DRIVERS\NdisImPlatform.sys 18:56:45.0875 0x17a0 NdisImPlatform - ok 18:56:45.0906 0x17a0 [ 9423421E735BD5394351E0C47C76BB92, 763E5D06F896C0EF8AD52515464F28BA85DB7A1560E451857AC9AA68FAFCBC66 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 18:56:45.0953 0x17a0 NdisTapi - ok 18:56:45.0968 0x17a0 [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 18:56:46.0015 0x17a0 Ndisuio - ok 18:56:46.0031 0x17a0 [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus C:\Windows\System32\drivers\NdisVirtualBus.sys 18:56:46.0062 0x17a0 NdisVirtualBus - ok 18:56:46.0078 0x17a0 [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 18:56:46.0124 0x17a0 NdisWan - ok 18:56:46.0140 0x17a0 [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWanLegacy C:\Windows\system32\DRIVERS\ndiswan.sys 18:56:46.0171 0x17a0 NdisWanLegacy - ok 18:56:46.0171 0x17a0 [ A5BD69A8812FA79D1A487691DD3FB244, 67B5EDE101943E0E8B8041DB2353D20C8B9F2D253E77964761CFE8F136C0BBC7 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 18:56:46.0203 0x17a0 NDProxy - ok 18:56:46.0234 0x17a0 [ 5A072F0B90C29C5233D78BE33EF5ED78, B32ED76A674B1FC743361FB7BBD4C915A78B14132AB056AADD445D5995AD4F32 ] Ndu C:\Windows\system32\drivers\Ndu.sys 18:56:46.0265 0x17a0 Ndu - ok 18:56:46.0281 0x17a0 [ A83D67D347A684F10B7D3019C8A6380C, 2B86832967981C8C786BF24C1CF8E13E01745ACE3333CF5C821DD93D623B96E4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 18:56:46.0328 0x17a0 NetBIOS - ok 18:56:46.0375 0x17a0 [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 18:56:46.0421 0x17a0 NetBT - ok 18:56:46.0437 0x17a0 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] Netlogon C:\Windows\system32\lsass.exe 18:56:46.0453 0x17a0 Netlogon - ok 18:56:46.0531 0x17a0 [ B7AD851A21FEBA3BA214972627614207, 29605320CCC3DAAD062CAECF0009DACBC2F6D28ED4E8AF7CE76132129F5572A0 ] Netman C:\Windows\System32\netman.dll 18:56:46.0593 0x17a0 Netman - ok 18:56:46.0640 0x17a0 [ F0F0A372C2EF6358399C4936F91B6131, CE596C71EB4D1A5E104D3148F2D0D8789882C59FD198DCF33CCAC7A08B50E4EE ] netprofm C:\Windows\System32\netprofmsvc.dll 18:56:46.0687 0x17a0 netprofm - ok 18:56:46.0781 0x17a0 [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:56:46.0843 0x17a0 NetTcpPortSharing - ok 18:56:46.0875 0x17a0 [ 70414DB660BFBB7BD58FCE8EA4364E1B, 6DFB3897CD55E22BA1EDF0AE672F4D7A6A1F512F8A0A26AF106765E6B1CF65AC ] netvsc C:\Windows\system32\DRIVERS\netvsc63.sys 18:56:46.0906 0x17a0 netvsc - ok 18:56:46.0953 0x17a0 [ E94EB2A95D7D016E119C4D6868788831, 3E4A925D23262FBA0A6432DD635FBE94B0CEF76BD9BB323254B66977497FEE2A ] NlaSvc C:\Windows\System32\nlasvc.dll 18:56:47.0031 0x17a0 NlaSvc - ok 18:56:47.0078 0x17a0 [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs C:\Windows\system32\drivers\Npfs.sys 18:56:47.0156 0x17a0 Npfs - ok 18:56:47.0172 0x17a0 [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig C:\Windows\System32\drivers\npsvctrig.sys 18:56:47.0218 0x17a0 npsvctrig - ok 18:56:47.0250 0x17a0 [ 6E2271ED0C3E95B8E29F3752B91B9E84, 44026AD9757EA82967D7F7578455802FAD7FE0057EAC088E0AE207C15F594B86 ] nsi C:\Windows\system32\nsisvc.dll 18:56:47.0312 0x17a0 nsi - ok 18:56:47.0328 0x17a0 [ E490B459978CB87779E84C761D22B827, 1E5CA38626E41618E4CA16DD0C70EB2FA86E986F0CF21A749BDE2A17015DEEC6 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 18:56:47.0375 0x17a0 nsiproxy - ok 18:56:47.0468 0x17a0 [ 038C77D577900EE39410662478BB0D50, A33AAFD5750245C17A47EC71F3C6EAD2E0925CAD34C65AB3E6CEE44756C668E6 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 18:56:47.0562 0x17a0 Ntfs - ok 18:56:47.0609 0x17a0 [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null C:\Windows\system32\drivers\Null.sys 18:56:47.0656 0x17a0 Null - ok 18:56:47.0687 0x17a0 [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid C:\Windows\system32\drivers\nvraid.sys 18:56:47.0718 0x17a0 nvraid - ok 18:56:47.0734 0x17a0 [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor C:\Windows\system32\drivers\nvstor.sys 18:56:47.0765 0x17a0 nvstor - ok 18:56:47.0765 0x17a0 [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 18:56:47.0797 0x17a0 nv_agp - ok 18:56:47.0906 0x17a0 [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 18:56:47.0953 0x17a0 ose - ok 18:56:48.0000 0x17a0 [ 4965B005492CBA7719E82B71E3245495, 52AD72C05FACC1E0E416A1FA25F34FDD3CB274FAB973BEAAE911A2FACA42B650 ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE 18:56:48.0047 0x17a0 ose64 - ok 18:56:48.0390 0x17a0 [ 61BFFB5F57AD12F83AB64B7181829B34, 1DD0DD35E4158F95765EE6639F217DF03A0A19E624E020DBA609268C08A13846 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE 18:56:48.0578 0x17a0 osppsvc - ok 18:56:48.0640 0x17a0 [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 18:56:48.0734 0x17a0 p2pimsvc - ok 18:56:48.0812 0x17a0 [ 2A57A937BC5B1B2D6AFE6A8C5925F50B, 00D84EFED5A7129AAD86945940030474795905C32D65CBD5B1A3EBADCED8F873 ] p2psvc C:\Windows\system32\p2psvc.dll 18:56:48.0875 0x17a0 p2psvc - ok 18:56:48.0922 0x17a0 [ 764B1121867B2D9B31C491668AC72B2B, 32C04B6FCE1DDD09697B81473A23BDCED8BEEFBCD0D2D58DDC9A11A33C756967 ] Parport C:\Windows\System32\drivers\parport.sys 18:56:48.0953 0x17a0 Parport - ok 18:56:48.0984 0x17a0 [ EF0C1749C9A8CEE9A457473D433CC00F, A5FDAB5AD47471640D697C6CFBA6C67730878ABBA47D394EAA47C9733EDCE1F3 ] partmgr C:\Windows\system32\drivers\partmgr.sys 18:56:49.0000 0x17a0 partmgr - ok 18:56:49.0047 0x17a0 [ 9A5309EF92F39346CFD5A4C2C3D1BFAD, 5908E0C9562F9CB24784491BD9AE7983A33A6BDF81AFA0A08045518A0C9BB2B1 ] PcaSvc C:\Windows\System32\pcasvc.dll 18:56:49.0094 0x17a0 PcaSvc - ok 18:56:49.0140 0x17a0 [ 91ED124E261EA8FAA1C0FFDF2A71B0C4, 20E41A38067395D03184938983A9BE459717A1941352972DBC28D83D542319EC ] pci C:\Windows\system32\drivers\pci.sys 18:56:49.0172 0x17a0 pci - ok 18:56:49.0187 0x17a0 [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide C:\Windows\system32\drivers\pciide.sys 18:56:49.0203 0x17a0 pciide - ok 18:56:49.0218 0x17a0 [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia C:\Windows\system32\drivers\pcmcia.sys 18:56:49.0250 0x17a0 pcmcia - ok 18:56:49.0265 0x17a0 [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw C:\Windows\system32\drivers\pcw.sys 18:56:49.0281 0x17a0 pcw - ok 18:56:49.0297 0x17a0 [ 24A8DFC07E4BAF29AEA26E383D4CC886, 1B903FE52CD816662D37A8113930B4B7019B6996D49F1982D8F42933A3525A67 ] pdc C:\Windows\system32\drivers\pdc.sys 18:56:49.0312 0x17a0 pdc - ok 18:56:49.0359 0x17a0 [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH C:\Windows\system32\drivers\peauth.sys 18:56:49.0422 0x17a0 PEAUTH - ok 18:56:49.0515 0x17a0 [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost C:\Windows\SysWow64\perfhost.exe 18:56:49.0578 0x17a0 PerfHost - ok 18:56:49.0672 0x17a0 [ 928061178CD9856CA6B67FFFCE6BA766, 71DE3C7CA7F83EAAA550CD8A68FB67DE042B0AE51BFACB1ECB8852D502E11F50 ] pla C:\Windows\system32\pla.dll 18:56:49.0765 0x17a0 pla - ok 18:56:49.0797 0x17a0 [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 18:56:49.0844 0x17a0 PlugPlay - ok 18:56:49.0875 0x17a0 [ 045EB4F260606A03BE340D09DEAF3BA4, 6F34B8D414F7F69F4388F2F8A86E0F3AD179E423126990AF3E1EC4DCCB8E7693 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 18:56:50.0031 0x17a0 PNRPAutoReg - ok 18:56:50.0172 0x17a0 [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 18:56:50.0219 0x17a0 PNRPsvc - ok 18:56:50.0265 0x17a0 [ C16097D77A232A288D65F299E2E01105, 5CE4B44B06FD26569C0F92FF1D3991D0128D8444AE7BC9EBEF5A33811D721BE8 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 18:56:50.0297 0x17a0 PolicyAgent - ok 18:56:50.0328 0x17a0 [ 00E08B30E7F7C13ECE2CDF4F46A77311, 1807C0A64C1794E572C86730816C01DCF4D8F773ADE9CAEA3AC0658F7BD71A4E ] Power C:\Windows\system32\umpo.dll 18:56:50.0359 0x17a0 Power - ok 18:56:50.0578 0x17a0 [ 3C96A45CA3403A276B0F045C448EC27B, C0011DB8C5A85817CAF815CC0095EE2C1CDD5964DCD8EAF4C35A2495D6A873CC ] PrintNotify C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll 18:56:50.0718 0x17a0 PrintNotify - ok 18:56:50.0765 0x17a0 [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor C:\Windows\System32\drivers\processr.sys 18:56:50.0812 0x17a0 Processor - ok 18:56:50.0844 0x17a0 [ 19424364D8C03B990C4281BE53963FD0, 958FC8436E6B754858E20BC48B0D4B269991E8CA94C15C2761BF04ED52591907 ] ProfSvc C:\Windows\system32\profsvc.dll 18:56:50.0890 0x17a0 ProfSvc - ok 18:56:50.0906 0x17a0 [ 8528BB05E4D4E25945F78B00B2555FB7, FF8E0D4580F93CD348080967F52FE6C2C68B56DAEACAE2EAEF04E19412A953AE ] Psched C:\Windows\system32\DRIVERS\pacer.sys 18:56:50.0953 0x17a0 Psched - ok 18:56:51.0000 0x17a0 [ AF90BB44C99D6820BE52C9BBAA523283, 9772D9CC1666959EC8EE4ED740A5179473CE4F38762109F1123DD68010D20EA1 ] QWAVE C:\Windows\system32\qwave.dll 18:56:51.0047 0x17a0 QWAVE - ok 18:56:51.0062 0x17a0 [ 3FB466684609A4329858CF2EBD62E0FD, CFC8FBAB1436948F9D34CE6A2D6DE2F86F3E93E50B86851CED979C8CCE609798 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 18:56:51.0093 0x17a0 QWAVEdrv - ok 18:56:51.0125 0x17a0 [ 2C56F0EE27E4EF70CA4B4983D3638905, AFFDD686886CE982424B644D9168D61C6F86A5244FF97BC644DF75B321E415E5 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 18:56:51.0156 0x17a0 RasAcd - ok 18:56:51.0172 0x17a0 [ 5F061AC45266841A2860C1858ED863B8, 9E0D52BAC8A50225C32D0397C35350601B996443E2481C808CC59D3B0763FEF0 ] RasAuto C:\Windows\System32\rasauto.dll 18:56:51.0234 0x17a0 RasAuto - ok 18:56:51.0312 0x17a0 [ 5C7B86EE33505E36026AFAAB62DA6364, 903BB1A355AC746BF09C2A7C87B068168648DB79DEF39AB1DC710B6A7A5F6556 ] RasMan C:\Windows\System32\rasmans.dll 18:56:51.0375 0x17a0 RasMan - ok 18:56:51.0390 0x17a0 [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 18:56:51.0422 0x17a0 RasPppoe - ok 18:56:51.0468 0x17a0 [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 18:56:51.0531 0x17a0 rdbss - ok 18:56:51.0562 0x17a0 [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus C:\Windows\System32\drivers\rdpbus.sys 18:56:51.0641 0x17a0 rdpbus - ok 18:56:51.0687 0x17a0 [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR C:\Windows\system32\drivers\rdpdr.sys 18:56:51.0734 0x17a0 RDPDR - ok 18:56:51.0781 0x17a0 [ BC8A79C625568DDB7DCA49D0C2741A64, AB0A7ED9EC2282EC0356D27EA4F70515943E41C2112428B787636B8BEC278933 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys 18:56:51.0844 0x17a0 RdpVideoMiniport - ok 18:56:51.0875 0x17a0 [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 18:56:51.0906 0x17a0 rdyboost - ok 18:56:51.0969 0x17a0 [ E515A287C8FAE901EB8FB42F168E14F2, 9AE8D608587713FD18BB728BADD402C86FFF06A67359B22ED9431705522BC310 ] ReFS C:\Windows\system32\drivers\ReFS.sys 18:56:52.0031 0x17a0 ReFS - ok 18:56:52.0062 0x17a0 [ BFFB40FBE6D2C3469F8D06EE5E4934AB, 5B6763F973A740DCD53CEA75156926457BED8B075965033C484877DDA8B97F39 ] RemoteAccess C:\Windows\System32\mprdim.dll 18:56:52.0125 0x17a0 RemoteAccess - ok 18:56:52.0156 0x17a0 [ 4DCCABE03D06955ED61BABBD8EF9F30F, 531CD60315AAF283B73E0F6CF77D4DE093B809E73C44D2AC43B7247500B3485E ] RemoteRegistry C:\Windows\system32\regsvc.dll 18:56:52.0219 0x17a0 RemoteRegistry - ok 18:56:52.0250 0x17a0 [ DC66AE45816614D2999DCD3834DCCC4E, 1C26225135E851DDD1307F52401DD7055B26B3F3B8FDD693B21042C2896E235A ] RFCOMM C:\Windows\System32\drivers\rfcomm.sys 18:56:52.0297 0x17a0 RFCOMM - ok 18:56:52.0328 0x17a0 [ D894CBD7DA753C881EE8D5E33B583225, DA4472A85F10A3DF8CE969F731E67FE7C75EE6095908AB8AC2C44851DC5A3F8B ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 18:56:52.0375 0x17a0 RpcEptMapper - ok 18:56:52.0391 0x17a0 [ 5CAE8F47B31D5CFC322B5B898C19E0FE, FDB5F0B6EA36403E031D9147AB0519011FAAD3AC8190DE5B1F17FB5472D79D47 ] RpcLocator C:\Windows\system32\locator.exe 18:56:52.0453 0x17a0 RpcLocator - ok 18:56:52.0500 0x17a0 [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] RpcSs C:\Windows\system32\rpcss.dll 18:56:52.0547 0x17a0 RpcSs - ok 18:56:52.0594 0x17a0 [ 6A940599A059C6C9D6E54D7A3EF356B8, 3C3B7706197CD4A43369C639BB8F4A101EC0B159ABADA91373824B06615D4411 ] RSP2STOR C:\Windows\system32\DRIVERS\RtsP2Stor.sys 18:56:52.0609 0x17a0 RSP2STOR - ok 18:56:52.0656 0x17a0 [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 18:56:52.0703 0x17a0 rspndr - ok 18:56:52.0766 0x17a0 [ 7CC0D898D00675F14BA0C4BF056C1CF4, E9203DD2A201AEF206C1A4177FD564DDFC8E7468DC268BD99389626A2C6593D3 ] RTL8168 C:\Windows\system32\DRIVERS\Rt630x64.sys 18:56:52.0812 0x17a0 RTL8168 - ok 18:56:52.0812 0x17a0 [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap C:\Windows\System32\drivers\vms3cap.sys 18:56:52.0844 0x17a0 s3cap - ok 18:56:52.0875 0x17a0 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] SamSs C:\Windows\system32\lsass.exe 18:56:52.0890 0x17a0 SamSs - ok 18:56:52.0922 0x17a0 [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 18:56:52.0937 0x17a0 sbp2port - ok 18:56:52.0969 0x17a0 [ 47C497FA4DDEA908633CAA60CEBE6805, 4DF5742D4C99D3F7B6A5671AEDB1E5E47D3399D36B28BA19C105FA604D8D5A1C ] SCardSvr C:\Windows\System32\SCardSvr.dll 18:56:53.0000 0x17a0 SCardSvr - ok 18:56:53.0031 0x17a0 [ E76C4E98302AE39CC6FA5D20FC8B5438, B6B6B59CF427515087689285797F4A5763103440EBE5D87A61FA74F80F895BD0 ] ScDeviceEnum C:\Windows\System32\ScDeviceEnum.dll 18:56:53.0062 0x17a0 ScDeviceEnum - ok 18:56:53.0094 0x17a0 [ ABD0237B15DBD2B4695F4B7D734A58F7, D6831921F0CD3E03CBF1CA3ED5824EE0C75127842D12D4E897E74EC72B0792EB ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 18:56:53.0125 0x17a0 scfilter - ok 18:56:53.0219 0x17a0 [ D3AE5DB16EAF913860EC28654CE00E6B, AD76B6044F7247C6E86F6DCB7CFD6B25BCA2B9F09A97A419F043A999E66726A2 ] Schedule C:\Windows\system32\schedsvc.dll 18:56:53.0344 0x17a0 Schedule - ok 18:56:53.0391 0x17a0 [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] SCPolicySvc C:\Windows\System32\certprop.dll 18:56:53.0453 0x17a0 SCPolicySvc - ok 18:56:53.0484 0x17a0 [ 7B7C482CF48E6EE33664340D1A78E6FE, CE5077C4B0372F4F9F02B0B37AE58C0DAEFCA9D242065731A23F072506430575 ] sdbus C:\Windows\System32\drivers\sdbus.sys 18:56:53.0516 0x17a0 sdbus - ok 18:56:53.0531 0x17a0 [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor C:\Windows\System32\drivers\sdstor.sys 18:56:53.0547 0x17a0 sdstor - ok 18:56:53.0562 0x17a0 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys 18:56:53.0594 0x17a0 secdrv - ok 18:56:53.0625 0x17a0 [ C49009F897BA4F2F4F31043663AA1485, 48C8BE1E3A4F150662AD012AF4E0357ABA792AD1147AB90EFF6CB2630E2501B6 ] seclogon C:\Windows\system32\seclogon.dll 18:56:53.0781 0x17a0 seclogon - ok 18:56:53.0797 0x17a0 [ A88882E64BDC1D8E8D6E727B71CCCC53, 12D2235F54D0CEEED8AA268C17CDE44020269F4FEFC70CE957DBBF99AF7F553D ] SENS C:\Windows\System32\sens.dll 18:56:53.0844 0x17a0 SENS - ok 18:56:53.0875 0x17a0 [ E66A7C8CE7ED22DED6DF1CA479FB4790, ADEB076F131E7A8C3AD96022B09BB33EB9AB26C9C831503B8C6960AA763B8975 ] SensrSvc C:\Windows\system32\sensrsvc.dll 18:56:53.0922 0x17a0 SensrSvc - ok 18:56:53.0953 0x17a0 [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx C:\Windows\system32\drivers\SerCx.sys 18:56:53.0969 0x17a0 SerCx - ok 18:56:53.0984 0x17a0 [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2 C:\Windows\system32\drivers\SerCx2.sys 18:56:54.0015 0x17a0 SerCx2 - ok 18:56:54.0015 0x17a0 [ 3CD600C089C1251BEEB4CD4CD5164F9E, D9F81951B4454B24E821E33ACA53A851A61F3135E8EC6FBE6761A1A3E1CDCBE2 ] Serenum C:\Windows\System32\drivers\serenum.sys 18:56:54.0031 0x17a0 Serenum - ok 18:56:54.0047 0x17a0 [ D864381BC9C725FAB01D94C060660166, 132FED95222BBE3B0B25B3F1F0EFC5903D04564BD047BA4D2042AD51E3FDA724 ] Serial C:\Windows\System32\drivers\serial.sys 18:56:54.0078 0x17a0 Serial - ok 18:56:54.0094 0x17a0 [ 0BD2B65DCE756FDE95A2E5CCCBF7705D, F13FAFEC8FCF3E796196562717C433CE359A74A3E5876AB070647C717AF74028 ] sermouse C:\Windows\System32\drivers\sermouse.sys 18:56:54.0109 0x17a0 sermouse - ok 18:56:54.0203 0x17a0 [ D5C3776CBD8BC307DCCA3FD4CE667A37, 98E4253B770C25914C91A6148E2EA15ED0EF37ADCB042A47252DBA135972BF74 ] SessionEnv C:\Windows\system32\sessenv.dll 18:56:54.0297 0x17a0 SessionEnv - ok 18:56:54.0328 0x17a0 [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy C:\Windows\System32\drivers\sfloppy.sys 18:56:54.0375 0x17a0 sfloppy - ok 18:56:54.0438 0x17a0 [ F4414F57DF2CECB8FC969AA43A6B0D50, AD09A6E1294721507DD6BE82B91F2EEB0FF0151B9BC14A75840CD657DBFDECEC ] SharedAccess C:\Windows\System32\ipnathlp.dll 18:56:54.0531 0x17a0 SharedAccess - ok 18:56:54.0578 0x17a0 [ 0D190D8B4B20446BE6299AC734DFADF1, 6551095971F99820BBFC5FED8FAB9591A3F8ABFA0F027887F3B71B79325FF6D9 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 18:56:54.0641 0x17a0 ShellHWDetection - ok 18:56:54.0672 0x17a0 [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys 18:56:54.0703 0x17a0 SiSRaid2 - ok 18:56:54.0703 0x17a0 [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys 18:56:54.0734 0x17a0 SiSRaid4 - ok 18:56:54.0750 0x17a0 [ D885207A4A218EC4773E6F7D214FDEA3, EA64958C2058DCDB8858E0EDA0626BD89B90A973130FE2B8886CF28072BF19D9 ] SmbDrvI C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys 18:56:54.0766 0x17a0 SmbDrvI - ok 18:56:54.0812 0x17a0 [ 587ACA15210D1B01FBF272E07A08F91A, 1F3C13C218C5EA329C6E33E4AE7CFE88DAD59DA40F59FDE09D733AFD2E489000 ] smphost C:\Windows\System32\smphost.dll 18:56:54.0891 0x17a0 smphost - ok 18:56:54.0938 0x17a0 [ 49EEB92DE930B8566EF615D600781DB4, 0B7C929D24FAFC34F95BB4AA77DCBA29DDD8F1977EB42713B64228677D1FBFD3 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 18:56:54.0984 0x17a0 SNMPTRAP - ok 18:56:55.0031 0x17a0 [ 240C5C3793206725AA05665851E8C214, 96ADFB85EB1623EB00C251C1C6A1F441A1795F0EBFD10B17DD1CA58E3AE8A90D ] spaceport C:\Windows\system32\drivers\spaceport.sys 18:56:55.0062 0x17a0 spaceport - ok 18:56:55.0094 0x17a0 [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx C:\Windows\system32\drivers\SpbCx.sys 18:56:55.0125 0x17a0 SpbCx - ok 18:56:55.0187 0x17a0 [ 42FEA9E0BA9761D9E65A4F167D91515B, 9A34CE83F3ACD50608671BDABE5E475F8E0C8335D3B8B7B3D7E84B2A319FA29F ] Spooler C:\Windows\System32\spoolsv.exe 18:56:55.0266 0x17a0 Spooler - ok 18:56:55.0578 0x17a0 [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] sppsvc C:\Windows\system32\sppsvc.exe 18:56:55.0875 0x17a0 sppsvc - ok 18:56:55.0953 0x17a0 [ 6416E79A58A8FCC33A447A4DDDD3BF04, 839E3107ACCD520C309BD6C8324DF7A8EB724EAD442AB1F1CACB0D83F84BE488 ] srv C:\Windows\system32\DRIVERS\srv.sys 18:56:56.0016 0x17a0 srv - ok 18:56:56.0094 0x17a0 [ 5BED3AB69797C8786EF70AEA8C33748B, 0474EE6C43D437CBA9848BCF25D1341B122D7E9F371A0FF3C62C83D14B2CB095 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 18:56:56.0141 0x17a0 srv2 - ok 18:56:56.0172 0x17a0 [ D047CD668E6277FD80F0C613946F034C, BD0209E7FD89F9295D4DE48C9652DF2A2990277C16AFA473B96704B1CBD2F338 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 18:56:56.0219 0x17a0 srvnet - ok 18:56:56.0250 0x17a0 [ BB9ED3EDD8E85008215A7250D325A72E, D3404E31B7706B25CDEA7CB4260C343B5F090E8CCB9A5FA203B0F94A9112F1B3 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 18:56:56.0297 0x17a0 SSDPSRV - ok 18:56:56.0328 0x17a0 [ 3911418AFDE10EA6823B7799E4815524, A73517C4C1271E666B2B3A747756070098E923742B41572AA16573170440AA07 ] SstpSvc C:\Windows\system32\sstpsvc.dll 18:56:56.0406 0x17a0 SstpSvc - ok 18:56:56.0438 0x17a0 [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor C:\Windows\system32\drivers\stexstor.sys 18:56:56.0484 0x17a0 stexstor - ok 18:56:56.0562 0x17a0 [ D638904FE86A5FE542A1BA13A9D68E5C, 89A956F932316BC50DD99B54BAF4E2809DCAA084DBB04CB84D11E5470BEAF251 ] stisvc C:\Windows\System32\wiaservc.dll 18:56:56.0625 0x17a0 stisvc - ok 18:56:56.0672 0x17a0 [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci C:\Windows\system32\drivers\storahci.sys 18:56:56.0703 0x17a0 storahci - ok 18:56:56.0719 0x17a0 [ 7A08CEE1535F5A448215634C5EA74E50, 41529CDC08A3956F8FE9D5759B147E2E56E3305149EA415EB200249F7CD32094 ] storflt C:\Windows\system32\DRIVERS\vmstorfl.sys 18:56:56.0734 0x17a0 storflt - ok 18:56:56.0750 0x17a0 [ 6B06E2D11E604BE2B1A406C4CB3B90DE, 2DDEA1568A85AD64FCE5D10D348304FCD9BE6E96C2313353EF70A2933306D188 ] stornvme C:\Windows\system32\drivers\stornvme.sys 18:56:56.0781 0x17a0 stornvme - ok 18:56:56.0781 0x17a0 [ 3118058E3D07021A55324A943C6D722B, 0B255DF1977DADD2B9766EEEA814B464F0ABFA34D6439F3C453083850C121F16 ] StorSvc C:\Windows\system32\storsvc.dll 18:56:56.0828 0x17a0 StorSvc - ok 18:56:56.0828 0x17a0 [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc C:\Windows\system32\drivers\storvsc.sys 18:56:56.0844 0x17a0 storvsc - ok 18:56:56.0859 0x17a0 [ D8E1AE075AB3E8AD56F69C44AA978596, CAFF5116DE7F0EEFFEBE38724BCEE7D11B44153AD35EE43E314C56D5E210758A ] svsvc C:\Windows\system32\svsvc.dll 18:56:56.0906 0x17a0 svsvc - ok 18:56:56.0922 0x17a0 [ 84E0F5D41C138C5CC975137A2A98F6D3, 1E36CED05E4F4365C2AB020CAF920E3959995D7F89F3FABD7B2FB05985F85F38 ] swenum C:\Windows\System32\drivers\swenum.sys 18:56:56.0953 0x17a0 swenum - ok 18:56:57.0000 0x17a0 [ 850EBB87584484DC16F917E7B6F4A304, C253D1DFFCDFB018432063602FB01DBCBDDD6E03458E5C366AABD4670F114B0C ] swprv C:\Windows\System32\swprv.dll 18:56:57.0063 0x17a0 swprv - ok 18:56:57.0148 0x17a0 [ AC2AFB0CADC5AB87E6ACC4E1A7F774DD, 706A8CD9CA9225E486F5138DF3B67630067EE257C9E5FFEBA9DE35A11B8C8913 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys 18:56:57.0195 0x17a0 SynTP - ok 18:56:57.0305 0x17a0 [ 3DA26652B12E9AB43FD04976AC6DFD33, DEFE220D86197949E97342FE3487CD6A07DD2FFAF6D17A7C65419C2C1B9D1AB5 ] SysMain C:\Windows\system32\sysmain.dll 18:56:57.0398 0x17a0 SysMain - ok 18:56:57.0461 0x17a0 [ FD4EA8E9232ADD51DC31C295DDEF2768, 3EA40D7376AB5AA5DA2BCF4745C79F7BF819363466967ECC3CD15ADECBFD7244 ] SystemEventsBroker C:\Windows\System32\SystemEventsBrokerServer.dll 18:56:57.0539 0x17a0 SystemEventsBroker - ok 18:56:57.0586 0x17a0 [ BA6DD39266A5E15515C8C14DA2DA3E5C, 5BC917BA4E7281A67CC6CEF2F4D1972DF04DECBEFB6DED0B08FFBD06E15D4B4F ] TabletInputService C:\Windows\System32\TabSvc.dll 18:56:57.0617 0x17a0 TabletInputService - ok 18:56:57.0649 0x17a0 [ B517410F157693043DACA21B19B258A6, 2224EECEB575CEA811036C43BB5B0A408DE5F59BC97235AB948968E4C3E438F2 ] TapiSrv C:\Windows\System32\tapisrv.dll 18:56:57.0680 0x17a0 TapiSrv - ok 18:56:57.0852 0x17a0 [ CCB3A2BB60FE5073F2DEA63FE83CF8FE, 02982136236DD595D8974E6645A008D663B4DD3BC3824721E4DE4377B97887C7 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 18:56:57.0977 0x17a0 Tcpip - ok 18:56:58.0070 0x17a0 [ CCB3A2BB60FE5073F2DEA63FE83CF8FE, 02982136236DD595D8974E6645A008D663B4DD3BC3824721E4DE4377B97887C7 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 18:56:58.0195 0x17a0 TCPIP6 - ok 18:56:58.0227 0x17a0 [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 18:56:58.0273 0x17a0 tcpipreg - ok 18:56:58.0320 0x17a0 [ FFF28F9F6823EB1756C60F1649560BBF, 208DFF8BF0329D0D4761C7E31527AEED7FF5F3C36C5005953D01477F35408D5C ] tdx C:\Windows\system32\DRIVERS\tdx.sys 18:56:58.0414 0x17a0 tdx - ok 18:56:58.0508 0x17a0 [ 436183C39AB66B1A7AD0FA6B76DA00A9, 8A012B30110959D3CF6A9204B069517B959596FEEA5F8C5A028DFEBD1F7087B4 ] TemproMonitoringService C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe 18:56:58.0539 0x17a0 TemproMonitoringService - ok 18:56:58.0570 0x17a0 [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt C:\Windows\System32\drivers\terminpt.sys 18:56:58.0602 0x17a0 terminpt - ok 18:56:58.0696 0x17a0 [ 3D748E5558FD9A9F03182CB2330698DC, 70B2069AB7912EB49AB3ABD18D4B42CB94AC99CA6DE3F63F4888B8EAAC78AAA2 ] TermService C:\Windows\System32\termsrv.dll 18:56:58.0774 0x17a0 TermService - ok 18:56:58.0805 0x17a0 [ 05FBE1F7C13E87AF7A414CDF288B1F62, 24079E1A6B2E33A1A8E76A77F73473B93DD6B379E44C982CE50D6CEED9747838 ] Themes C:\Windows\system32\themeservice.dll 18:56:58.0867 0x17a0 Themes - ok 18:56:58.0899 0x17a0 [ 98F91C69689FB0493E8CC34A45B8FA0B, 17385AB817F74F70848E1C71503DA726A4D417D16A5DCE7593BAD112150F6922 ] Thotkey C:\Windows\System32\drivers\Thotkey.sys 18:56:58.0930 0x17a0 Thotkey - ok 18:56:58.0977 0x17a0 [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] THREADORDER C:\Windows\system32\mmcss.dll 18:56:59.0039 0x17a0 THREADORDER - ok 18:56:59.0086 0x17a0 [ 347A3E49CE18402305B8119A6EC7CFEB, 6768B20EE577880B0353FE84B980D4A18D323929A63FAE41F7A55123BBFC8DBA ] TimeBroker C:\Windows\System32\TimeBrokerServer.dll 18:56:59.0148 0x17a0 TimeBroker - ok 18:56:59.0242 0x17a0 [ 18688C5B1ED56FAF6310D07709F81EC0, 4631774A2274E9D4340D67AED026622BD3B74696F4F62E6A1EFBD6DA2267E36E ] TMachInfo C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe 18:56:59.0273 0x17a0 TMachInfo - ok 18:56:59.0430 0x17a0 [ AEAAB8C7EDD5981CA422617C6B612EEC, 543A15DF7011A5BC70AB6AFFC901F663E7121B7DEA90CEC308BFA54866F81625 ] TOSHIBA Bluetooth Service C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe 18:56:59.0477 0x17a0 TOSHIBA Bluetooth Service - ok 18:56:59.0586 0x17a0 [ CF7AC931C378178EB8F6220FA662ABF6, DAE865A27EC027AC0FFD7031F9EED5404C274FC2DCECE8ED8727688761D4DD23 ] TOSHIBA eco Utility Service C:\Program Files\TOSHIBA\Teco\TecoService.exe 18:56:59.0633 0x17a0 TOSHIBA eco Utility Service - ok 18:56:59.0680 0x17a0 [ E4C35827E0830E5ECBA77F4DC6ABF37F, 8270B34A361EE6EC054B2D1C482B0BDF7EC8949D82B6E8E0D5F44CECF9296D71 ] tosrfbd C:\Windows\system32\DRIVERS\tosrfbd.sys 18:56:59.0711 0x17a0 tosrfbd - ok 18:56:59.0727 0x17a0 Tosrfcom - ok 18:56:59.0758 0x17a0 [ 8E5E4DAB54D20CA50D9B7B45F9D46F10, EF20D91E7AB0A8B4DF25D11CFEF10431A28DEF1384FD53A161E8C81DC5A536F6 ] tosrfec C:\Windows\System32\drivers\tosrfec.sys 18:56:59.0774 0x17a0 tosrfec - ok 18:56:59.0789 0x17a0 [ 3D0D685F520CE2ED0B4D15AFE38362F8, AE133CEAF1477832551DB4520C9D39A188A7B387F5955D6CBB674C77288F1A91 ] Tosrfhid C:\Windows\system32\DRIVERS\Tosrfhid.sys 18:56:59.0805 0x17a0 Tosrfhid - ok 18:56:59.0852 0x17a0 [ F121F588D901563BBCE1D828679F1432, 2A294A9A5ED7CD55909149FFA6043A6F7056285CBD4D3BFD0EA6023B9E1EB9EF ] Tosrfusb C:\Windows\system32\DRIVERS\tosrfusb.sys 18:56:59.0867 0x17a0 Tosrfusb - ok 18:56:59.0977 0x17a0 [ ADC56716CAF55E3ABDF549E9425004F8, FDA93F583AAB6FA6E8447B169BDA6E6E8547959133BD95933228C137B69129B7 ] TPCHSrv C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe 18:57:00.0008 0x17a0 TPCHSrv - ok 18:57:00.0039 0x17a0 [ 82F909359600D3603FE852DB7F135626, 2EB2BB9D81AC9A2E432B2628E296B7B21F1C82EAE8009300EEF1B8596A9F418D ] TPM C:\Windows\system32\drivers\tpm.sys 18:57:00.0055 0x17a0 TPM - ok 18:57:00.0102 0x17a0 [ C97E14BB6A196B0554D6EB67D8818175, C00588C94988F10507F84584DFA4C0A43B8648AD1AD35E9BAE14CDD21FCF7B90 ] TrkWks C:\Windows\System32\trkwks.dll 18:57:00.0149 0x17a0 TrkWks - ok 18:57:00.0211 0x17a0 [ 887CC44830D3F367CAD17A0CA7CCA5C8, D4022A76433A11FD66D0F41A1EB4D6893BC5B22317E7E9E021739109EB493B44 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 18:57:00.0258 0x17a0 TrustedInstaller - ok 18:57:00.0321 0x17a0 [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 18:57:00.0399 0x17a0 TsUsbFlt - ok 18:57:00.0414 0x17a0 [ E0088068DCE2EE82897027DDB8E05254, FA9C201D3C885DAD2ABE6A23343EDCC83CFB342EFF9E3005FA50B1D88B21D203 ] TsUsbGD C:\Windows\System32\drivers\TsUsbGD.sys 18:57:00.0461 0x17a0 TsUsbGD - ok 18:57:00.0492 0x17a0 [ C8E0E78B5D284C2FF59BDFFDAF997242, BA1576C491A1246EF9866762426D110F4570F9DB42A68C174943C7D5020FE3E2 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 18:57:00.0539 0x17a0 tunnel - ok 18:57:00.0570 0x17a0 [ 54BDBF3D4DED58DA78B702471C68D4CA, D12F9F09FFE7D38A5EE6BF79DB74D775A9861C3C87E06D7C23259E47247B1782 ] TVALZ C:\Windows\system32\drivers\TVALZ_O.SYS 18:57:00.0586 0x17a0 TVALZ - ok 18:57:00.0617 0x17a0 [ 7B05B5B492E6E248C2B38CD04B4D3A96, 1E18025DDB5EDEBD30F2FAC8D121F55D768B71DA42D919E1A0E98E2E31AA73C8 ] TVALZFL C:\Windows\system32\Drivers\TVALZFL.sys 18:57:00.0649 0x17a0 TVALZFL - ok 18:57:00.0695 0x17a0 [ E624283C1A2F9BB4688A002914CC00A7, B6908C1FFDD6BCFFC5C2FC0C429FC3E237E340F891F80CFD737BE41E5EF7E328 ] TXEIx64 C:\Windows\System32\drivers\TXEIx64.sys 18:57:00.0711 0x17a0 TXEIx64 - ok 18:57:00.0758 0x17a0 [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35 C:\Windows\system32\drivers\uagp35.sys 18:57:00.0789 0x17a0 uagp35 - ok 18:57:00.0805 0x17a0 [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor C:\Windows\System32\drivers\uaspstor.sys 18:57:00.0836 0x17a0 UASPStor - ok 18:57:00.0852 0x17a0 [ B034A41891A36457B994307DFA772293, CA5E6500764A9777AE0E15B2AFB6F05982C90F01374E3F6DDC6DF3852282C66B ] UCX01000 C:\Windows\System32\drivers\ucx01000.sys 18:57:00.0883 0x17a0 UCX01000 - ok 18:57:00.0914 0x17a0 [ 1EC649F112896FAE33250F0B97AC5D0B, 0C0A1C2C7615DEB298AD3073340FD1BF91FEBE611F133E3B48D994A6EAA8369F ] udfs C:\Windows\system32\DRIVERS\udfs.sys 18:57:00.0945 0x17a0 udfs - ok 18:57:00.0961 0x17a0 [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI C:\Windows\System32\drivers\UEFI.sys 18:57:00.0992 0x17a0 UEFI - ok 18:57:01.0024 0x17a0 [ 320878AFECDBBD61BBE98624A6CAAC08, 15C090EA32A24D976B5FCB1373B1281DCC2295C075299C814345D694AEB47CB9 ] UI0Detect C:\Windows\system32\UI0Detect.exe 18:57:01.0055 0x17a0 UI0Detect - ok 18:57:01.0070 0x17a0 [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 18:57:01.0086 0x17a0 uliagpkx - ok 18:57:01.0117 0x17a0 [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus C:\Windows\System32\drivers\umbus.sys 18:57:01.0149 0x17a0 umbus - ok 18:57:01.0180 0x17a0 [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass C:\Windows\System32\drivers\umpass.sys 18:57:01.0211 0x17a0 UmPass - ok 18:57:01.0242 0x17a0 [ E3DDF7D43E05784FAA5E042605EEE528, 8E20E880FAB09AF4FF5C438BF9EAE9970D46C05167870110869B744E498FD761 ] UmRdpService C:\Windows\System32\umrdp.dll 18:57:01.0305 0x17a0 UmRdpService - ok 18:57:01.0352 0x17a0 [ 4A2FFDAC45F317E17DF642C7160EB633, F1AB762912FAA5F469F322407DA37C91556086C42D1643AD27516C12A84F74D0 ] upnphost C:\Windows\System32\upnphost.dll 18:57:01.0399 0x17a0 upnphost - ok 18:57:01.0430 0x17a0 [ FF78D053A05E5A394F4E3C1816CC65A8, 5DAE02414271231F5FDBB751AFEB99874779B467947020815D4AE54432D4269D ] usbccgp C:\Windows\System32\drivers\usbccgp.sys 18:57:01.0461 0x17a0 usbccgp - ok 18:57:01.0492 0x17a0 [ B3D6457D841A0CAEF4C52D88621715F2, CBDD76A8A28379B107B1FB530757B477B8AB74CD01F9F3CEDC7B1BA0C6E5A990 ] usbcir C:\Windows\System32\drivers\usbcir.sys 18:57:01.0524 0x17a0 usbcir - ok 18:57:01.0571 0x17a0 [ 48BA326A3DBA5B5BEB5F2777F4618696, B9EC8155F11A3A7644BD9DC8910681B46AE44AE3BF53F052DF50E9C5555E3229 ] usbehci C:\Windows\System32\drivers\usbehci.sys 18:57:01.0617 0x17a0 usbehci - ok 18:57:01.0664 0x17a0 [ FEF0BC107812B36849741C3211BA6B60, B3EF738BE1E6B6027F29C9713CD3F367EA067D2BE46580AFBC0FB58046EF6BBD ] usbhub C:\Windows\System32\drivers\usbhub.sys 18:57:01.0711 0x17a0 usbhub - ok 18:57:01.0789 0x17a0 [ 65392F3F3F65E4C6CC82A0F4F8A0B051, C11B662A28D95820717DFFC6B76DBB755E4876009A2342E5E3992DE32D6BFF61 ] USBHUB3 C:\Windows\System32\drivers\UsbHub3.sys 18:57:01.0821 0x17a0 USBHUB3 - ok 18:57:01.0867 0x17a0 [ 3019097FB6C985EF24C058090FF3BDBD, 24AC518D34E338D94BF3D5B3F72E53F8A1369BAA7F32FEA3EDBCF928C4FF1D17 ] usbohci C:\Windows\System32\drivers\usbohci.sys 18:57:01.0914 0x17a0 usbohci - ok 18:57:01.0930 0x17a0 [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint C:\Windows\System32\drivers\usbprint.sys 18:57:02.0008 0x17a0 usbprint - ok 18:57:02.0055 0x17a0 [ 66732C13628BDB1AB0D6FD46027327C2, B582C0F348D8F79419CA5A58F10CA151E06D7CA3BE162344CADA46D9D7FED97C ] USBSTOR C:\Windows\System32\drivers\USBSTOR.SYS 18:57:02.0102 0x17a0 USBSTOR - ok 18:57:02.0133 0x17a0 [ 064260B3A5868AC894A4943543BC7AB7, D3534E98B34C4AC9A430D7E0AB301A0E5E1511E3117C2FEA392636B0DE2C38E2 ] usbuhci C:\Windows\System32\drivers\usbuhci.sys 18:57:02.0180 0x17a0 usbuhci - ok 18:57:02.0227 0x17a0 [ 18F744E8CCEB2670040EBAF7AD77B8C6, C5E2DF4EA0D946B4DA67DE29FA9D0F079DED35EC59B98E532C4C2D5F8E86DA0A ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys 18:57:02.0274 0x17a0 usbvideo - ok 18:57:02.0305 0x17a0 [ 48430B0313FC1CFE3D2400553F1A93CD, 92994DE6B131E904AFF2C9C4FBB4E6B0D58525A1539763327373DA18C9F08193 ] USBXHCI C:\Windows\System32\drivers\USBXHCI.SYS 18:57:02.0336 0x17a0 USBXHCI - ok 18:57:02.0352 0x17a0 [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] VaultSvc C:\Windows\system32\lsass.exe 18:57:02.0367 0x17a0 VaultSvc - ok 18:57:02.0555 0x17a0 [ DBDEF06F1EA1E942BB141F0C2BE9992A, FFD74B73E122A568077F2BF5157FD2ADC37F9C8DDB1F0850BA2271C96A232B35 ] VC10SecS C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe 18:57:02.0586 0x17a0 VC10SecS - ok 18:57:02.0633 0x17a0 [ F0FAF3FB9B138F8CAFB65ECFFE9F4AB6, E0869E4E9271B484209BB44E6E17D99BE6CEA08A983132C0D69FA373202B14D7 ] vcd10bus C:\Windows\System32\drivers\vcd10bus.sys 18:57:02.0664 0x17a0 vcd10bus - ok 18:57:02.0664 0x17a0 Suspicious service (NoAccess): vdrv1000 18:57:02.0758 0x17a0 [ B61BDFD94D4C7B37BF4C898B32BA6396, 4D4DAAFCFDCA6495FE50D77988067023262AE0448148E899AC1C8FAA20A18437 ] vdrv1000 C:\Windows\System32\drivers\vdrv1000.sys 18:57:02.0774 0x17a0 vdrv1000 - detected LockedService.Multi.Generic ( 1 ) 18:57:05.0211 0x17a0 Detect skipped due to KSN trusted 18:57:05.0211 0x17a0 vdrv1000 - ok 18:57:05.0258 0x17a0 [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 18:57:05.0305 0x17a0 vdrvroot - ok 18:57:05.0399 0x17a0 [ E3EF58D4123B5AA29C8E19825AF84A5E, FB1046722BC643E955DBC3B1459DBF2A6D575EBA2BCF7B20A0FA51E3993835E2 ] vds C:\Windows\System32\vds.exe 18:57:05.0477 0x17a0 vds - ok 18:57:05.0508 0x17a0 [ A026EDEAA5EECAE0B08E2748B616D4BD, 2525A54DC7F49DDFBB999C22BF3FAB6D9E9F70C0806E58D81E90AC59F9F46089 ] VerifierExt C:\Windows\system32\drivers\VerifierExt.sys 18:57:05.0540 0x17a0 VerifierExt - ok 18:57:05.0571 0x17a0 [ 52E483A3701A5A61A75A06993720347D, 689E812755E485DF6960D1E049740FBAFB812467D23B673DCAA40C03FEBB544F ] vhdmp C:\Windows\System32\drivers\vhdmp.sys 18:57:05.0618 0x17a0 vhdmp - ok 18:57:05.0633 0x17a0 [ 06D38968028E9AB19DE9B618C7B6D199, 62022297A47F440D1C82CA0B0E57C0C8E9D5033D83DD3B40492B218DF65EBF68 ] viaide C:\Windows\system32\drivers\viaide.sys 18:57:05.0649 0x17a0 viaide - ok 18:57:05.0649 0x17a0 [ C6305BDFC4F7CE51F72BB072C03D4ACE, 73E62869CA3104F48CC3B0C45E69CE9BF4F8D7D06E29C2F049B9347ABB50554D ] vmbus C:\Windows\system32\drivers\vmbus.sys 18:57:05.0680 0x17a0 vmbus - ok 18:57:05.0680 0x17a0 [ DA40BEA0A863CE768C940CA9723BF81F, 567C0C3F422325635808B0CF76E05D3B6187F96845C33F85F92F98C9FE53A5B8 ] VMBusHID C:\Windows\System32\drivers\VMBusHID.sys 18:57:05.0711 0x17a0 VMBusHID - ok 18:57:05.0805 0x17a0 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicguestinterface C:\Windows\System32\ICSvc.dll 18:57:05.0868 0x17a0 vmicguestinterface - ok 18:57:05.0883 0x17a0 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicheartbeat C:\Windows\System32\ICSvc.dll 18:57:05.0930 0x17a0 vmicheartbeat - ok 18:57:05.0946 0x17a0 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmickvpexchange C:\Windows\System32\ICSvc.dll 18:57:05.0993 0x17a0 vmickvpexchange - ok 18:57:06.0024 0x17a0 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicrdv C:\Windows\System32\ICSvc.dll 18:57:06.0055 0x17a0 vmicrdv - ok 18:57:06.0086 0x17a0 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicshutdown C:\Windows\System32\ICSvc.dll 18:57:06.0118 0x17a0 vmicshutdown - ok 18:57:06.0149 0x17a0 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmictimesync C:\Windows\System32\ICSvc.dll 18:57:06.0180 0x17a0 vmictimesync - ok 18:57:06.0211 0x17a0 [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicvss C:\Windows\System32\ICSvc.dll 18:57:06.0243 0x17a0 vmicvss - ok 18:57:06.0274 0x17a0 [ 55D7D963DE85162F1C49721E502F9744, 5AD34D6DB707EF3E5242BD8CA67B21D6258EE7E7FC477D5227BD15500AE7F45F ] volmgr C:\Windows\system32\drivers\volmgr.sys 18:57:06.0289 0x17a0 volmgr - ok 18:57:06.0336 0x17a0 [ CCB9E901F7254BF96D28EB1B0E5329B7, F0E3CA4EFA544CDAEF4092284CF3EC7DF07F806A770285E281816457AD8813F5 ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 18:57:06.0368 0x17a0 volmgrx - ok 18:57:06.0415 0x17a0 [ 64CA2B4A49A8EAF495E435623ECCE7DB, 81151F295A54DE2B8B88C7F48C86BF58CDFF96F98493509C06D6F41484594386 ] volsnap C:\Windows\system32\drivers\volsnap.sys 18:57:06.0461 0x17a0 volsnap - ok 18:57:06.0477 0x17a0 [ 01355C98B5C3ED1EC446743CDA848FCE, B9FCF558C20E05DD0F53FFB70BBEF873EA57801E13A16701E636128D625C4B67 ] vpci C:\Windows\System32\drivers\vpci.sys 18:57:06.0493 0x17a0 vpci - ok 18:57:06.0508 0x17a0 [ 4539F45F9F4C9757A86A56C949421E07, DEC362314B2C66414F39354AFE79C02B18BF4EEF90787FB58307F6EB62237E2C ] vsmraid C:\Windows\system32\drivers\vsmraid.sys 18:57:06.0539 0x17a0 vsmraid - ok 18:57:06.0618 0x17a0 [ E369C59F2C0852DDD090C07E0DDE0051, 4FAC94458EAAEED4F84A86FBAB8FBB332D0AF85BD528E63C0C058A2DA8E3011D ] VSS C:\Windows\system32\vssvc.exe 18:57:06.0696 0x17a0 VSS - ok 18:57:06.0758 0x17a0 [ 0849B7260F26FE05EA56DED0672E2F4B, 7EAC0E7988F45CB4133A15932955B7B03CE715C967A3BAC9999D81543EBCAEC5 ] VSTXRAID C:\Windows\system32\drivers\vstxraid.sys 18:57:06.0789 0x17a0 VSTXRAID - ok 18:57:06.0805 0x17a0 [ BE970C369E43B509C1EDA2B8FA7CECB0, 18951F2AA842A0795AA79A4E164EE925A35E6270EBE4C4CDB19D0A891830E383 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys 18:57:06.0883 0x17a0 vwifibus - ok 18:57:06.0915 0x17a0 [ 35BF5C5F5E3C9902C98978C7640574DA, C61E50B04000DCEC72365723F0C0725C2E005529DAF2777A59E624C14DA29E55 ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys 18:57:06.0977 0x17a0 vwififlt - ok 18:57:07.0008 0x17a0 [ 65ED7B9CFEA893DF7748D5FF692690DE, 73AB9D8BB928B3247BDFC7BB47AD7FCA763B375DC250C251DB4E0573531040E8 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys 18:57:07.0024 0x17a0 vwifimp - ok 18:57:07.0086 0x17a0 [ 7599E582CA3A6AAA95A18FFE1172D339, A0410778FBBC4302EA91CF24B944427410B4706535F1192504D4F34C3ED4503E ] W32Time C:\Windows\system32\w32time.dll 18:57:07.0133 0x17a0 W32Time - ok 18:57:07.0149 0x17a0 [ 0910AB9ED404C1434E2D0376C2AD5D8B, 62585CA5F1375BDA440D28D5DF1ADDC9DE3DDFA196D49BBFF3456A5A09EE1C6B ] WacomPen C:\Windows\System32\drivers\wacompen.sys 18:57:07.0180 0x17a0 WacomPen - ok 18:57:07.0321 0x17a0 [ 61692DB39AD3DF2F29392D68EAA7BB93, 854D4B9C7DD1676968598ED973500650ECEC02C420E44C0B3957C24F073AA5FB ] wbengine C:\Windows\system32\wbengine.exe 18:57:07.0430 0x17a0 wbengine - ok 18:57:07.0477 0x17a0 [ 3BC1D1D56637A32CD91C8AE08E2484AA, 9EE1BD3FB0D289E25F3DDD0D8F67DC1C701A6B1D5418FADF348D0E642B1DEBEB ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 18:57:07.0555 0x17a0 WbioSrvc - ok 18:57:07.0587 0x17a0 [ A07CFC4B593D15B6BF06813C3B5B33BF, B57BD918E2AFF9943B51A24B95E0C4D3482B4DF73C0E2421E8CC67C2BC7A4C70 ] Wcmsvc C:\Windows\System32\wcmsvc.dll 18:57:07.0633 0x17a0 Wcmsvc - ok 18:57:07.0712 0x17a0 [ D2726823DF7E19F213F4805A9D6D145F, A7F582C99918D204264D3B374F70D75984BDA5805203041E3DECB8153D16E102 ] wcncsvc C:\Windows\System32\wcncsvc.dll 18:57:07.0758 0x17a0 wcncsvc - ok 18:57:07.0774 0x17a0 [ 846C02A8B48CBD921A3D6AB521AA0DC4, B07573A774A6C65D24E5718DC25DF378270EB5B40221CA5A53B21D47838381D3 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 18:57:07.0821 0x17a0 WcsPlugInService - ok 18:57:07.0868 0x17a0 [ 1751F6B031ADAC34724511057D2E455D, BCBC77DE02718868302F7469E8FBB8F2E7E0F8A5D3E46A5B4D48713E829FBAF6 ] WdBoot C:\Windows\system32\drivers\WdBoot.sys 18:57:07.0883 0x17a0 WdBoot - ok 18:57:07.0946 0x17a0 [ CB6C63FF8342B467E2EF76E98D5B934D, BE017CE91E3BAB293DE6ECF143797CCE3F33CC63024437472B4E38C6961AD884 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 18:57:07.0993 0x17a0 Wdf01000 - ok 18:57:08.0024 0x17a0 [ D296D0F0DB2CD1504F90405603664493, 9531034AE2E027B5C7366713AA9003085501800B35F971D1CE7FFB8E5DAE3825 ] WdFilter C:\Windows\system32\drivers\WdFilter.sys 18:57:08.0055 0x17a0 WdFilter - ok 18:57:08.0087 0x17a0 [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiServiceHost C:\Windows\system32\wdi.dll 18:57:08.0149 0x17a0 WdiServiceHost - ok 18:57:08.0149 0x17a0 [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiSystemHost C:\Windows\system32\wdi.dll 18:57:08.0180 0x17a0 WdiSystemHost - ok 18:57:08.0227 0x17a0 [ 9F4DF0043965808973023A9B51A11136, 3A799125CBC5C214D9FBB91C348B39563B1FDB7403B520270752E9A177464723 ] WdNisDrv C:\Windows\system32\Drivers\WdNisDrv.sys 18:57:08.0258 0x17a0 WdNisDrv - ok 18:57:08.0290 0x17a0 WdNisSvc - ok 18:57:08.0337 0x17a0 [ 91B18D7A1702ED589E67C6C81052B955, 5D1DA8B86106A28E50BBCCB36527CC130D41201F5BE1D3DC5F1D6F7ECCF807BA ] WebClient C:\Windows\System32\webclnt.dll 18:57:08.0383 0x17a0 WebClient - ok 18:57:08.0446 0x17a0 [ 3274312F263882B51B964329FAF49734, 99A020377ACF0762BE5ECD2D68EB5E1497B9D59963247E725F7F96FB5DF41FAD ] Wecsvc C:\Windows\system32\wecsvc.dll 18:57:08.0493 0x17a0 Wecsvc - ok 18:57:08.0508 0x17a0 [ 7CDD84E0023A0C5C230B06A7965EC65E, 6EC7DC18C76D66CF9A893C3DD20F9BE3ADD76546F9A9BA42CE4F24854709F9D9 ] WEPHOSTSVC C:\Windows\system32\wephostsvc.dll 18:57:08.0540 0x17a0 WEPHOSTSVC - ok 18:57:08.0571 0x17a0 [ 959534ACF085C137D2D094384EF89C45, D029F440789FE170A1C46217C6DE6D78DC0188A5CF33FCCC17FA65D3BC80C2B7 ] wercplsupport C:\Windows\System32\wercplsupport.dll 18:57:08.0602 0x17a0 wercplsupport - ok 18:57:08.0633 0x17a0 [ 82BCCF5FBE47AC9E8CBA2020994DFB3F, EA96C6BD98A701B465D0780EC10BDA92E45FE636D60C1385813AA3B456D8B931 ] WerSvc C:\Windows\System32\WerSvc.dll 18:57:08.0665 0x17a0 WerSvc - ok 18:57:08.0696 0x17a0 [ BFBE1C5F57FE7A885673A1962D5532B7, F0BD05B257108699FE6AB32EF11F927C31932F27062A705B3FEFA4F5B4C0D8C3 ] WFPLWFS C:\Windows\system32\DRIVERS\wfplwfs.sys 18:57:08.0727 0x17a0 WFPLWFS - ok 18:57:08.0758 0x17a0 [ E06AFE2F94BA7CFA2FE4FD2A449E60E2, 99A81E16366E9E77905D873B0246E4C11B383FE1E99E0E1D9A07FAD4E52EA9E4 ] WiaRpc C:\Windows\System32\wiarpc.dll 18:57:08.0790 0x17a0 WiaRpc - ok 18:57:08.0821 0x17a0 [ 867BCC69ED9C31C501465EB0E8BA9DFA, 678B7FF4D4E8624514301956CDA7FB451159BBFC83FF2E4E5E7DADAE3C7AB2EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys 18:57:08.0868 0x17a0 WIMMount - ok 18:57:08.0868 0x17a0 WinDefend - ok 18:57:08.0930 0x17a0 [ DD079EC8F44DCA3A176B345C6ADEFB66, 6CD9371B83EA23D2181891FAE1DB285BC111A78C35F374E57666ED09860C91A9 ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll 18:57:08.0977 0x17a0 WinHttpAutoProxySvc - ok 18:57:09.0071 0x17a0 [ 9DB490F3E823C5C3C070644B96CB9D59, 81937D0B331E43C7C61514E60B3AD51370C5201F7B4D12F8534840D91EDC32DD ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 18:57:09.0133 0x17a0 Winmgmt - ok 18:57:09.0274 0x17a0 [ 9CE162EB9057CF079736F4DD00FC0D6C, 412C34557866D2A3B3CDAFA5A03B87C01AACF75E349802E511098B20137028D9 ] WinRM C:\Windows\system32\WsmSvc.dll 18:57:09.0415 0x17a0 WinRM - ok 18:57:09.0524 0x17a0 [ 3F5EF31C6AA204B099EE76497DF80A26, CBE648A4E7E1D98A3D8C72582C1CB3C2FD2329EAA24EE4DCAD271AAA6F4D82CE ] WlanSvc C:\Windows\System32\wlansvc.dll 18:57:09.0602 0x17a0 WlanSvc - ok 18:57:09.0727 0x17a0 [ 5F56C0DE776C7AE43AF749845BFAA1EF, 837993C5853B7E682C7FB8401B7F5D951FFD15E5659EBB1B01DC3F5719ACEE19 ] wlidsvc C:\Windows\system32\wlidsvc.dll 18:57:09.0805 0x17a0 wlidsvc - ok 18:57:09.0821 0x17a0 [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] WmiAcpi C:\Windows\System32\drivers\wmiacpi.sys 18:57:09.0852 0x17a0 WmiAcpi - ok 18:57:09.0899 0x17a0 [ 7AFAC828F52D62F304A911EC32F42EEE, 4EDCF4149069413A166169F2E23F7505F47B39B7EC319E1EF6D2C46CD140AA24 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 18:57:10.0055 0x17a0 wmiApSrv - ok 18:57:10.0087 0x17a0 WMPNetworkSvc - ok 18:57:10.0149 0x17a0 [ 7FC5667DF73D4B04AA457CC3A4180E09, CB7B014945DCA16B6D120DBE0E5876C4C867A4ACD3C3536AEADC14B908613D4E ] Wof C:\Windows\system32\drivers\Wof.sys 18:57:10.0196 0x17a0 Wof - ok 18:57:10.0352 0x17a0 [ 61BF52E9FFAB27A0B6D621BE26088373, 81291D52C381360E69D51E7DEB05CFAC651A7E9EF781CA23062C0583D0C94708 ] workfolderssvc C:\Windows\system32\workfolderssvc.dll 18:57:10.0446 0x17a0 workfolderssvc - ok 18:57:10.0477 0x17a0 [ 182561A14F2E93E81E66FE3700D17A5A, FB9A06058A8BCCEDCDC5BF8899D9B2FBA5752C262C5FC6D2B8338884F3303D12 ] wpcfltr C:\Windows\system32\DRIVERS\wpcfltr.sys 18:57:10.0509 0x17a0 wpcfltr - ok 18:57:10.0555 0x17a0 [ 4E6A0F60DA7EF050D3D26417CD4D24E9, E6B3BFB007B641D41F8532ED086F92CB3D86E210023DBFAA9AD8152A9FD33CCA ] WPCSvc C:\Windows\System32\wpcsvc.dll 18:57:10.0602 0x17a0 WPCSvc - ok 18:57:10.0634 0x17a0 [ 618A19EB31ECA7B7F2AA0207BAF598A5, CB18CF9B781EAB3D775F8201F294A7135E058D6C963D2CC759DCA14D95EED538 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 18:57:10.0712 0x17a0 WPDBusEnum - ok 18:57:10.0741 0x17a0 [ 9F2904B55F6CECCD1A8D986B5CE2609A, E19ED4DD3CEF3A22C058FC324824604FB3FC98A029C94E6C2A3389F938D680B6 ] WpdUpFltr C:\Windows\system32\drivers\WpdUpFltr.sys 18:57:10.0749 0x17a0 WpdUpFltr - ok 18:57:10.0780 0x17a0 [ AE072B0339D0A18E455DC21666CAD572, AB1DAEA25E2C7AD610818D4B4783F6D4190D85EBB3963BBAD410E8CEA7899EDB ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 18:57:10.0827 0x17a0 ws2ifsl - ok 18:57:10.0858 0x17a0 [ 9654DE19551093CD73874281E1573C94, 5E3513EC0CB180D90904BE8970AB64A4434279E8C467AE2CF693254E47B1D11E ] wscsvc C:\Windows\System32\wscsvc.dll 18:57:10.0905 0x17a0 wscsvc - ok 18:57:10.0936 0x17a0 [ F586F3F1BF962FE9AE4316E0D896B22F, 8D0AD48D79294567123D943D0F5B6D5A32D7A82B129A24DC821D3095AFAA100B ] WSDPrintDevice C:\Windows\System32\drivers\WSDPrint.sys 18:57:10.0999 0x17a0 WSDPrintDevice - ok 18:57:11.0030 0x17a0 [ D38297814FB6E33655342D869996E617, 3701892EEF87D1BF0E73322B90678802B6EA4AFA9CBF6111F39611C79DBA96C7 ] WSDScan C:\Windows\System32\drivers\WSDScan.sys 18:57:11.0061 0x17a0 WSDScan - ok 18:57:11.0077 0x17a0 WSearch - ok 18:57:11.0295 0x17a0 [ 95B6670E6933E1DEE19686C55BE709A0, 4B9EB8F1712B7959A71F6DA445D29BD09B25EEFC6B30D736EFE30163D79B233E ] WSService C:\Windows\System32\WSService.dll 18:57:11.0467 0x17a0 WSService - ok 18:57:11.0624 0x17a0 [ D24002EB2F4A8A04897703067E81CC5D, 03806198D26DD7BA3E27EFE0911B49E5B48CAD8A05EC4F56AF45CF1E3FAD6916 ] wuauserv C:\Windows\system32\wuaueng.dll 18:57:11.0780 0x17a0 wuauserv - ok 18:57:11.0827 0x17a0 [ D537815E450A149752C15868392AD1F3, 8788CE493349299DB36E409C8CC3C6EA08301FA492C95D9D556E00BC13A05F13 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 18:57:11.0858 0x17a0 WudfPf - ok 18:57:11.0889 0x17a0 [ 7CCBBCEE408A5DBE3FE47297DB5A6CFC, FB44B65B37B1C1A12C618E16BEF195EF861A87179B9216E43024C671C3AE052C ] WUDFRd C:\Windows\System32\drivers\WUDFRd.sys 18:57:11.0905 0x17a0 WUDFRd - ok 18:57:11.0921 0x17a0 [ 7CCBBCEE408A5DBE3FE47297DB5A6CFC, FB44B65B37B1C1A12C618E16BEF195EF861A87179B9216E43024C671C3AE052C ] WUDFSensorLP C:\Windows\system32\DRIVERS\WUDFRd.sys 18:57:11.0952 0x17a0 WUDFSensorLP - ok 18:57:11.0968 0x17a0 [ 9CDC2059A23E3C9B57696178508777E7, B680A2E2EDA5C8C6A547E7D9B2F2F8E6407C3EA0A01B82A4B88D48A27913A597 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 18:57:11.0999 0x17a0 wudfsvc - ok 18:57:12.0030 0x17a0 [ 7CCBBCEE408A5DBE3FE47297DB5A6CFC, FB44B65B37B1C1A12C618E16BEF195EF861A87179B9216E43024C671C3AE052C ] WUDFWpdFs C:\Windows\system32\DRIVERS\WUDFRd.sys 18:57:12.0061 0x17a0 WUDFWpdFs - ok 18:57:12.0139 0x17a0 [ 2FA9794CA36147756F3FDFD6CA29B46F, 4B86DC38C2411C281686E9A4E64DA6FB2992E39391371F78E012D6D8BB85123F ] WwanSvc C:\Windows\System32\wwansvc.dll 18:57:12.0202 0x17a0 WwanSvc - ok 18:57:12.0233 0x17a0 ================ Scan global =============================== 18:57:12.0280 0x17a0 [ C89780A6F58D113C28A96D85D1261DC5, 185114F33A60916C7904E4A0F278CA43258454343E614F01F0DAFA98BAC981B1 ] C:\Windows\system32\basesrv.dll 18:57:12.0342 0x17a0 [ 00DD4D2ACC2E72155A8AAA82018BEC0D, 9D7CA68B4A81240477FCC85A3CC11EF986093F9D6228A6C5AC608EDAD664068C ] C:\Windows\system32\winsrv.dll 18:57:12.0389 0x17a0 [ 9C1833ABD62876856836C5AE55C7CE86, 0A21E2C8B2FF3B0438C86DA7151A548F9C6F5C62CD402CBBEDB435994C8508F1 ] C:\Windows\system32\sxssrv.dll 18:57:12.0499 0x17a0 [ 067CB90C277DB4A737D5DEABA3055972, C681BF013170F2D92A3FC4D783FC3F200CDC0C8173373B7ECC27FCF32A03CCBD ] C:\Windows\system32\services.exe 18:57:12.0514 0x17a0 [ Global ] - ok 18:57:12.0530 0x17a0 ================ Scan MBR ================================== 18:57:12.0546 0x17a0 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0 18:57:12.0608 0x17a0 \Device\Harddisk0\DR0 - ok 18:57:12.0608 0x17a0 ================ Scan VBR ================================== 18:57:12.0639 0x17a0 [ FACBB26C7B6E835C33813A1AEFEBA85B ] \Device\Harddisk0\DR0\Partition1 18:57:12.0655 0x17a0 \Device\Harddisk0\DR0\Partition1 - ok 18:57:12.0671 0x17a0 [ 2EE33C9BAF06932B8EA8D5283259D11D ] \Device\Harddisk0\DR0\Partition2 18:57:12.0686 0x17a0 \Device\Harddisk0\DR0\Partition2 - ok 18:57:12.0702 0x17a0 [ B9E5C41EFBE3D3BAACF61B4D6A6D2C68 ] \Device\Harddisk0\DR0\Partition3 18:57:12.0733 0x17a0 \Device\Harddisk0\DR0\Partition3 - ok 18:57:12.0764 0x17a0 [ 327B9ACFAFA86657BFCA88A3EFA1F993 ] \Device\Harddisk0\DR0\Partition4 18:57:12.0780 0x17a0 \Device\Harddisk0\DR0\Partition4 - ok 18:57:12.0811 0x17a0 [ 0D51288DEA1B4F8E09D58903C87B44D4 ] \Device\Harddisk0\DR0\Partition5 18:57:12.0811 0x17a0 \Device\Harddisk0\DR0\Partition5 - ok 18:57:12.0811 0x17a0 ================ Scan generic autorun ====================== 18:57:12.0858 0x17a0 [ 1FAA54E9FFEA6FD3E0CEAD951CDDFEF6, 222E10CAB93C02CFDB7B4208C053B8CA3683C6978BE964F9E801D6645B9B2182 ] C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe 18:57:12.0874 0x17a0 KeNotify - ok 18:57:12.0967 0x17a0 [ 18DBA177BD009B91D1884C9DB62BB039, 74777A7B69BB2886920B6F1A1039A90FCA8DC2DAA1D6F985ED7F49A35C2E0D42 ] c:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TosSmartViewLauncher.exe 18:57:12.0999 0x17a0 TSVU - ok 18:57:13.0155 0x17a0 [ 2DD00D79FD519E367D3DE1737D1DB776, DDF5D346D9D52000E80CF0612E6FA8B5189ED5AC6A71028F4643317647EB9BE5 ] C:\Program Files (x86)\ACD Systems\ACDSee\18.0\acdIDInTouch2.exe 18:57:13.0202 0x17a0 ACSW18DE - ok 18:57:13.0233 0x17a0 [ C8AEBDDAAD605E68DBCCD41CD58FC841, 97243EB73BD358D23E74AEEA8998A45B2DF23637282E892D39FDA0EFCB2EFB69 ] C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe 18:57:13.0249 0x17a0 ITSecMng - ok 18:57:13.0374 0x17a0 [ 0BE7DE2418D3DE2176DDE68D0851D36C, 488C4C56819D9B588E34DD9079173E3CEB9511F9971B3E99DC179E41A405E753 ] C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe 18:57:13.0405 0x17a0 VC10Player - ok 18:57:13.0515 0x17a0 [ ED70821F65B120FDBD76FCFF746FE219, D038CC5198099B2FE02F2789E6817E96E210E27CF6C0E8FF39E6746B31653DDE ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 18:57:13.0546 0x17a0 SunJavaUpdateSched - ok 18:57:13.0702 0x17a0 [ 34560253EF56416ED5F9192AA258407E, 1915FED010A852C65A4BF809D9DC8E8C96ECCABFC6707F1EBA946630F4E56CAF ] C:\Program Files (x86)\Trojan Remover\Trjscan.exe 18:57:13.0780 0x17a0 TrojanScanner - ok 18:57:13.0905 0x17a0 [ 40F7401928355A1515199676A5D00CDC, 4F16DE77F0BD7D1F9F61AE5712B3FD7BD53D19DCCEF88925E10180EF040A8E0B ] C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\AVMAutoStart.exe 18:57:13.0936 0x17a0 AVMUSBFernanschluss - detected UnsignedFile.Multi.Generic ( 1 ) 18:57:16.0530 0x17a0 AVMUSBFernanschluss ( UnsignedFile.Multi.Generic ) - warning 18:57:16.0530 0x17a0 Force sending object to P2P due to detect: C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\AVMAutoStart.exe 18:57:19.0093 0x17a0 Object send P2P result: true 18:57:21.0905 0x17a0 [ 845799C9874B68BEAE3B64059653C7E3, 2E0B9DD46569A6449989E2D7C60B88B46352A178019B4BD840C166674E798CFD ] C:\Program Files\CCleaner\CCleaner64.exe 18:57:22.0155 0x17a0 CCleaner Monitoring - ok 18:57:22.0280 0x17a0 [ 454FEB8B9B995B519667608B30B904BE, 71F3BE4345E6F2770511A356DA4DA105FBED97CDC54237AF353D1F63A262B65C ] C:\Program Files (x86)\ACD Systems\ACDSee\18.0\ACDSeeCommander18.exe 18:57:22.0358 0x17a0 ACDSeeCommander18 - ok 18:57:23.0093 0x17a0 [ B7275CEE6103BAD919BE61DFEE7D2895, D97619370A4EF70FEF462417479E0F492C765B3F7CC0E5B67DB0C8DFB52E5967 ] C:\Users\Frank\AppData\Local\Amazon Music\Amazon Music Helper.exe 18:57:23.0296 0x17a0 Amazon Music - ok 18:57:23.0343 0x17a0 GoogleDriveSync - ok 18:57:23.0359 0x17a0 Waiting for KSN requests completion. In queue: 3 18:57:24.0374 0x17a0 Waiting for KSN requests completion. In queue: 3 18:57:25.0390 0x17a0 Waiting for KSN requests completion. In queue: 3 18:57:26.0421 0x17a0 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.7.205.0 ), 0x61100 ( enabled : updated ) 18:57:26.0437 0x17a0 Win FW state via NFP2: enabled 18:57:28.0827 0x17a0 ============================================================ 18:57:28.0827 0x17a0 Scan finished 18:57:28.0827 0x17a0 ============================================================ 18:57:28.0859 0x17b4 Detected object count: 1 18:57:28.0859 0x17b4 Actual detected object count: 1 18:58:47.0584 0x17b4 AVMUSBFernanschluss ( UnsignedFile.Multi.Generic ) - skipped by user 18:58:47.0584 0x17b4 AVMUSBFernanschluss ( UnsignedFile.Multi.Generic ) - User select action: Skip |
18.03.2015, 09:25 | #6 |
/// the machine /// TB-Ausbilder | Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ --> Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden |
18.03.2015, 11:14 | #7 |
| Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden Guten Morgen Schrauber, hier die aktuellen Logs: mbam.txt Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 18.03.2015 Scan Time: 10:07:49 Logfile: mbam.txt Administrator: Yes Version: 2.00.4.1028 Malware Database: v2015.03.18.02 Rootkit Database: v2015.02.25.01 License: Trial Malware Protection: Enabled Malicious Website Protection: Enabled Self-protection: Disabled OS: Windows 8.1 CPU: x64 File System: NTFS User: Frank Scan Type: Threat Scan Result: Completed Objects Scanned: 343121 Time Elapsed: 28 min, 44 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Disabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registry Keys: 0 (No malicious items detected) Registry Values: 0 (No malicious items detected) Registry Data: 0 (No malicious items detected) Folders: 0 (No malicious items detected) Files: 0 (No malicious items detected) Physical Sectors: 0 (No malicious items detected) (end) Code:
ATTFilter # AdwCleaner v4.112 - Bericht erstellt 18/03/2015 um 10:43:15 # Aktualisiert 09/03/2015 von Xplode # Datenbank : 2015-03-15.1 [Server] # Betriebssystem : Windows 8.1 Connected (x64) # Benutzername : Frank - UHURA2 # Gestarted von : C:\Users\Frank\Desktop\AdwCleaner_4.112.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Geplante Tasks ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{26B19FA4-E8A1-4A1B-A163-1A1E46F830DD} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ***** [ Internetbrowser ] ***** -\\ Internet Explorer v11.0.9600.17416 -\\ Mozilla Firefox v36.0.1 (x86 de) -\\ Google Chrome v41.0.2272.89 [C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://de.ask.com/web?q={searchTerms} ************************* AdwCleaner[R0].txt - [1161 Bytes] - [18/03/2015 10:40:25] AdwCleaner[S0].txt - [1083 Bytes] - [18/03/2015 10:43:15] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1142 Bytes] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.4.5 (03.17.2015:1) OS: Windows 8.1 Connected x64 Ran by Frank on 18.03.2015 at 10:49:54,99 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 18.03.2015 at 10:57:44,48 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST.txt (Teil 1) Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015 Ran by Frank (administrator) on UHURA2 on 18-03-2015 10:59:06 Running from C:\Users\Frank\Desktop Loaded Profiles: Frank (Available profiles: Frank) Platform: Windows 8.1 Connected (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe () C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Toshiba Corporation) C:\Program Files\TOSHIBA\Teco\TecoService.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Teco\TecoResident.exe (AVM Berlin) C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe () C:\Program Files (x86)\ACD Systems\ACDSee\18.0\ACDSeeCommander18.exe () C:\Users\Frank\AppData\Local\Amazon Music\Amazon Music Helper.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe (TOSHIBA) C:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TDUSrv64.exe (ACD Systems) C:\Program Files (x86)\ACD Systems\ACDSee\18.0\acdIDInTouch2.exe (H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\vc10tray.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [] => [X] HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2556768 2013-10-09] (TOSHIBA Corporation) HKLM\...\Run: [TecoResident] => C:\Program Files\TOSHIBA\Teco\TecoResident.exe [179288 2014-01-05] (TOSHIBA Corporation) HKLM\...\Run: [TSSSrv] => C:\Program Files (x86)\TOSHIBA\System Setting\TSSSrv.exe [296008 2013-10-22] (TOSHIBA Corporation) HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [354144 2013-08-13] (TOSHIBA Corporation) HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-20] (IvoSoft) HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation) HKLM-x32\...\Run: [KeNotify] => C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [34160 2013-08-06] (TOSHIBA CORPORATION) HKLM-x32\...\Run: [TSVU] => c:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TosSmartViewLauncher.exe [516512 2013-07-23] (TOSHIBA) HKLM-x32\...\Run: [ACSW18DE] => C:\Program Files (x86)\ACD Systems\ACDSee\18.0\acdIDInTouch2.exe [1470224 2014-09-17] (ACD Systems) HKLM-x32\...\Run: [ITSecMng] => C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [80840 2011-04-01] (TOSHIBA CORPORATION) HKLM-x32\...\Run: [VC10Player] => C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe [416696 2012-10-25] (H+H Software GmbH) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation) HKLM-x32\...\Run: [TrojanScanner] => C:\Program Files (x86)\Trojan Remover\Trjscan.exe [1791856 2014-10-16] (Simply Super Software) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [AVMUSBFernanschluss] => C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\AVMAutoStart.exe [139264 2015-03-10] (AVM Berlin) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7416088 2015-02-19] (Piriform Ltd) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [ACDSeeCommander18] => C:\Program Files (x86)\ACD Systems\ACDSee\18.0\ACDSeeCommander18.exe [1973256 2014-12-17] () HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [Amazon Music] => C:\Users\Frank\AppData\Local\Amazon Music\Amazon Music Helper.exe [5886272 2015-03-02] () HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [26232152 2015-02-19] (Google) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x00000000 HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Winlogon: [Shell] C:\Windows\explorer.exe [2501368 2015-01-28] (Microsoft Corporation) <==== ATTENTION HKU\S-1-5-18\...\Run: [EPSONE8BE74 (Epson Stylus SX430)] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHAE.EXE [232448 2011-01-20] (SEIKO EPSON CORPORATION) ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.de/ HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://toshiba13.msn.com/?pc=TEJB HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://toshiba.eu/symbaloo_c SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2734555180-3142773653-1428810083-1001 -> {898DEB29-90E7-4FED-ADAC-FCDAB1A2CEFC} URL = BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft) BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20] (IvoSoft) BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2014-12-16] (Adblock Plus) BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-17] (Oracle Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-17] (Oracle Corporation) BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20] (IvoSoft) BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2014-12-16] (Adblock Plus) Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft) Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft) Tcpip\Parameters: [DhcpNameServer] 192.168.0.10 FireFox: ======== FF ProfilePath: C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll [2015-03-11] () FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.2.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-03-11] () FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-17] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-17] (Oracle Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-10] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-10] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.) FF Extension: Avira Browser Safety - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\abs@avira.com [2015-03-17] FF Extension: mediaplayerconnectivity - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{84b24861-62f6-364b-eba5-2e5e2061d7e6} [2015-03-11] FF Extension: Add to Amazon Wish List Button - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\amznUWL2@amazon.com.xpi [2015-03-11] FF Extension: NoScript - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2015-03-11] FF Extension: Video DownloadHelper - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2015-03-16] FF Extension: Adblock Plus - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-03-10] Chrome: ======= CHR HomePage: Default -> hxxp://go.microsoft.com/fwlink/?LinkId=69157 CHR Profile: C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Slides) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-17] CHR Extension: (Google Docs) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-17] CHR Extension: (Google Drive) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-17] CHR Extension: (YouTube) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-17] CHR Extension: (Adblock Plus) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-03-17] CHR Extension: (Google Search) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-17] CHR Extension: (Avira SafeSearch) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\eglgfnfolcgijipffhlhbbnefdcbjbml [2015-03-17] CHR Extension: (Google Sheets) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-17] CHR Extension: (Sticky Password Autofill Engine) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggepjhbdgijjkbelnggboeoehacbphed [2015-03-17] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-17] CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-03-17] CHR Extension: (Google Wallet) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-17] CHR Extension: (Gmail) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-17] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - https://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) Locked "vdrv1000" service was unlocked successfully. <===== ATTENTION R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [319104 2014-03-19] (Windows (R) Win 7 DDK provider) [File not signed] R2 dts_apo_service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [21840 2014-03-03] () R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-02] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-02] (Intel(R) Corporation) R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation) S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [116088 2014-08-05] (Toshiba Europe GmbH) R2 VC10SecS; C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe [147312 2014-12-15] (H+H Software GmbH) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3888640 2014-02-14] (Qualcomm Atheros Communications, Inc.) R3 avmaura; C:\Windows\System32\drivers\avmaura.sys [116480 2015-03-10] (AVM Berlin) S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation) S3 GENERICDRV; C:\Program Files (x86)\UEFI WinFlash\amifldrv64.sys [15640 2012-07-27] () S3 HH10Help.sys; C:\Windows\system32\drivers\HH10Help.sys [24088 2009-07-09] (H+H Software GmbH) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation) R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2015-03-18] (Malwarebytes Corporation) R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2014-11-21] (Malwarebytes Corporation) R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [291544 2014-01-03] (Realtek Semiconductor Corp.) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31472 2014-02-21] (Synaptics Incorporated) R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [33168 2013-10-10] (Windows (R) Win 7 DDK provider) S3 Tosrfcom; No ImagePath R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation) R1 vdrv1000; C:\Windows\System32\drivers\vdrv1000.sys [226080 2012-12-06] (H+H Software GmbH) R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-03-18 10:57 - 2015-03-18 10:57 - 00000624 _____ () C:\Users\Frank\Desktop\JRT.txt 2015-03-18 10:48 - 2015-03-18 10:48 - 01388672 _____ (Thisisu) C:\Users\Frank\Downloads\JRT.exe 2015-03-18 10:48 - 2015-03-18 10:48 - 01388672 _____ (Thisisu) C:\Users\Frank\Desktop\JRT.exe 2015-03-18 10:46 - 2015-03-18 10:46 - 00001222 _____ () C:\Users\Frank\Desktop\AdwCleaner[S0].txt 2015-03-18 10:39 - 2015-03-18 10:43 - 00000000 ____D () C:\AdwCleaner 2015-03-18 10:38 - 2015-03-18 10:38 - 02171392 _____ () C:\Users\Frank\Downloads\AdwCleaner_4.112.exe 2015-03-18 10:38 - 2015-03-18 10:38 - 02171392 _____ () C:\Users\Frank\Desktop\AdwCleaner_4.112.exe 2015-03-18 10:37 - 2015-03-18 10:37 - 00001042 _____ () C:\Users\Frank\Desktop\mbam.txt 2015-03-18 10:04 - 2015-03-18 10:05 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (3).exe 2015-03-17 18:54 - 2015-03-17 18:55 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Frank\Downloads\tdsskiller.exe 2015-03-17 17:10 - 2015-03-18 10:44 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-03-17 17:10 - 2015-03-18 10:02 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2015-03-17 17:09 - 2015-03-17 18:26 - 00000000 ____D () C:\Users\Frank\Desktop\mbar 2015-03-17 17:08 - 2015-03-17 17:08 - 16502728 _____ (Malwarebytes Corp.) C:\Users\Frank\Downloads\mbar-1.09.1.1004.exe 2015-03-17 17:08 - 2015-03-17 17:08 - 16502728 _____ (Malwarebytes Corp.) C:\Users\Frank\Desktop\mbar-1.09.1.1004.exe 2015-03-17 15:53 - 2015-03-17 15:53 - 00000291 _____ () C:\Users\Frank\Desktop\gmer.txt 2015-03-17 15:52 - 2015-03-17 15:52 - 00000000 _____ () C:\Users\Frank\Desktop\Neues Textdokument.txt 2015-03-17 15:50 - 2015-03-17 15:50 - 00380416 _____ () C:\Users\Frank\Downloads\Gmer-19357.exe 2015-03-17 15:48 - 2015-03-17 15:48 - 00000472 _____ () C:\Users\Frank\Downloads\defogger_disable.log 2015-03-17 15:48 - 2015-03-17 15:48 - 00000000 _____ () C:\Users\Frank\defogger_reenable 2015-03-17 15:47 - 2015-03-17 15:47 - 00050477 _____ () C:\Users\Frank\Downloads\Defogger.exe 2015-03-17 15:23 - 2015-03-17 15:24 - 00029764 _____ () C:\Users\Frank\Downloads\Addition.txt 2015-03-17 15:21 - 2015-03-17 15:24 - 00142748 _____ () C:\Users\Frank\Downloads\FRST.txt 2015-03-17 15:20 - 2015-03-17 15:21 - 02095616 _____ (Farbar) C:\Users\Frank\Downloads\FRST64.exe 2015-03-17 15:13 - 2015-03-17 15:13 - 00000022 _____ () C:\Users\Frank\Downloads\apppath.torun 2015-03-17 15:02 - 2015-03-17 15:02 - 00022528 _____ (Microsoft) C:\Users\Frank\Downloads\RunAsSystem.exe 2015-03-17 14:52 - 2015-03-18 10:06 - 00001084 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-03-17 14:52 - 2015-03-18 10:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-03-17 14:52 - 2015-03-18 10:06 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-03-17 14:52 - 2015-03-17 14:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (2).exe 2015-03-17 14:52 - 2015-03-17 14:52 - 00000000 ____D () C:\ProgramData\Malwarebytes 2015-03-17 14:52 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-03-17 14:52 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-03-17 14:52 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2015-03-17 14:51 - 2015-03-17 14:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (1).exe 2015-03-17 14:51 - 2015-03-17 14:52 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028.exe 2015-03-17 13:56 - 2015-03-17 13:56 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER 2015-03-17 13:41 - 2015-03-17 13:41 - 00000000 ____D () C:\OETemp 2015-03-17 13:23 - 2015-03-17 14:06 - 00000000 ____D () C:\Program Files (x86)\Avira 2015-03-17 13:22 - 2015-03-17 13:22 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\Frank\Downloads\avira_de_av_5946238192__ws.exe 2015-03-17 13:17 - 2015-03-17 13:18 - 00000000 ____D () C:\ProgramData\Kaspersky Lab Setup Files 2015-03-17 13:16 - 2015-03-17 13:16 - 00416576 _____ (Kaspersky Lab) C:\Users\Frank\Downloads\de-de.setup.exe 2015-03-17 13:15 - 2015-03-17 13:15 - 141468920 _____ (Microsoft Corporation) C:\Users\Frank\Downloads\msert.exe 2015-03-17 13:13 - 2015-03-17 13:14 - 00013513 _____ () C:\Users\Frank\Desktop\Addition.txt 2015-03-17 13:10 - 2015-03-18 10:59 - 00019019 _____ () C:\Users\Frank\Desktop\FRST.txt 2015-03-17 13:10 - 2015-03-18 10:59 - 00000000 ____D () C:\FRST 2015-03-17 12:30 - 2015-03-17 12:28 - 02095616 _____ (Farbar) C:\Users\Frank\Desktop\FRST64.exe 2015-03-17 12:20 - 2015-03-17 12:20 - 00001121 _____ () C:\Users\Public\Desktop\Trojan Remover.lnk 2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\Users\Frank\Documents\Simply Super Software 2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Simply Super Software 2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trojan Remover 2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\ProgramData\Licenses 2015-03-17 12:19 - 2015-03-17 12:20 - 00000000 ____D () C:\Program Files (x86)\Trojan Remover 2015-03-17 12:19 - 2015-03-17 12:19 - 00000000 ____D () C:\ProgramData\Simply Super Software 2015-03-17 12:18 - 2015-03-17 12:19 - 31390952 _____ (Simply Super Software ) C:\Users\Frank\Downloads\trjsetup691.exe 2015-03-17 12:04 - 2015-03-17 12:04 - 00000000 __SHD () C:\ProgramData\Application Services 2015-03-17 11:54 - 2015-03-17 12:21 - 00000000 __SHD () C:\Windows\SysWOW64\Application Services 2015-03-17 11:24 - 2015-03-18 10:44 - 00001160 _____ () C:\Windows\setupact.log 2015-03-17 11:24 - 2015-03-17 11:24 - 00000000 _____ () C:\Windows\setuperr.log 2015-03-17 11:23 - 2015-03-18 10:02 - 00143660 _____ () C:\Windows\PFRO.log 2015-03-17 11:09 - 2015-03-17 11:10 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Mp3tag 2015-03-17 10:48 - 2015-03-17 10:48 - 00650657 _____ () C:\Users\Frank\Downloads\lame3.99.5.zip 2015-03-17 10:41 - 2015-03-17 15:51 - 00000000 ____D () C:\Users\Frank\AppData\Local\CrashDumps 2015-03-17 10:40 - 2015-03-17 10:49 - 00000000 ____D () C:\Program Files (x86)\Exact Audio Copy 2015-03-17 10:40 - 2015-03-17 10:40 - 00001052 _____ () C:\Users\Public\Desktop\Exact Audio Copy.lnk 2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\EAC 2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\AccurateRip 2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Exact Audio Copy 2015-03-17 10:38 - 2015-03-17 10:39 - 00000000 ____D () C:\ProgramData\Oracle 2015-03-17 10:38 - 2015-03-17 10:38 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\ProgramData\Sun 2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\Program Files (x86)\Java 2015-03-17 10:37 - 2015-03-17 10:37 - 00561064 _____ (Oracle Corporation) C:\Users\Frank\Downloads\jxpiinstall.exe 2015-03-17 10:36 - 2015-03-17 10:39 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Freeplane 2015-03-17 10:36 - 2015-03-17 10:36 - 00000842 _____ () C:\Users\Public\Desktop\Freeplane.lnk 2015-03-17 10:36 - 2015-03-17 10:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freeplane 2015-03-17 10:36 - 2015-03-17 10:36 - 00000000 ____D () C:\Program Files\Freeplane 2015-03-17 10:29 - 2015-03-17 10:29 - 00000840 _____ () C:\Users\Frank\AppData\Local\recently-used.xbel 2015-03-17 10:29 - 2015-03-17 10:29 - 00000000 ____D () C:\Users\Frank\AppData\Local\gtk-2.0 2015-03-17 10:29 - 2015-03-17 10:29 - 00000000 ____D () C:\Users\Frank\.thumbnails 2015-03-17 10:22 - 2015-03-17 10:35 - 00000000 ____D () C:\Users\Frank\.gimp-2.8 2015-03-17 10:22 - 2015-03-17 10:22 - 04620717 _____ () C:\Users\Frank\Downloads\eac-1.0beta4.exe 2015-03-17 10:22 - 2015-03-17 10:22 - 00000000 ____D () C:\Users\Frank\AppData\Local\gegl-0.2 2015-03-17 10:14 - 2015-03-17 10:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\FileZilla 2015-03-17 10:14 - 2015-03-17 10:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 2015-03-17 10:14 - 2015-03-17 10:14 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client 2015-03-17 10:13 - 2015-03-17 10:26 - 00000916 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk 2015-03-17 10:12 - 2015-03-17 10:13 - 00000000 ____D () C:\Program Files\GIMP 2 2015-03-17 10:11 - 2015-03-17 16:25 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Notepad++ 2015-03-17 10:11 - 2015-03-17 10:12 - 00000000 ____D () C:\Program Files (x86)\Notepad++ 2015-03-17 10:11 - 2015-03-17 10:11 - 00001035 _____ () C:\Users\Frank\Desktop\Notepad++.lnk 2015-03-17 10:11 - 2015-03-17 10:11 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ 2015-03-17 10:11 - 2015-03-17 10:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2015-03-17 10:06 - 2015-03-17 10:06 - 06208736 _____ (Tim Kosse) C:\Users\Frank\Downloads\filezilla_3.10.2_win32-setup.exe 2015-03-17 10:05 - 2015-03-17 10:05 - 08271739 _____ () C:\Users\Frank\Downloads\npp.6.7.5.installer.exe 2015-03-17 10:00 - 2015-03-17 10:00 - 91931728 _____ (The GIMP Team ) C:\Users\Frank\Downloads\gimp-2.8.14-setup-1.exe 2015-03-17 09:58 - 2015-03-17 09:58 - 24430312 _____ (Open source ) C:\Users\Frank\Downloads\freeplane-setup-1.3.15.exe 2015-03-17 08:41 - 2015-03-18 10:46 - 00000000 ___RD () C:\Users\Frank\Google Drive 2015-03-17 08:28 - 2015-03-17 08:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-03-17 08:27 - 2015-03-17 08:27 - 00880208 _____ (Google Inc.) C:\Users\Frank\Downloads\ChromeSetup.exe 2015-03-17 08:13 - 2015-03-17 08:13 - 00000000 ____D () C:\Program Files\Adblock Plus for IE 2015-03-17 08:12 - 2015-03-17 08:12 - 05915456 _____ ( ) C:\Users\Frank\Downloads\adblockplusie-1.3.exe 2015-03-16 22:19 - 2015-03-17 19:19 - 01447352 _____ () C:\Windows\WindowsUpdate.log 2015-03-16 22:16 - 2015-03-16 22:19 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\WildTangent 2015-03-16 22:16 - 2015-03-16 22:16 - 00000000 ____D () C:\ProgramData\BlueStacks 2015-03-16 21:16 - 2015-03-16 21:16 - 15094704 _____ (Lamantine Software ) C:\Users\Frank\Downloads\stpass_free_606434.exe 2015-03-16 21:16 - 2015-03-16 21:16 - 15094696 _____ (Lamantine Software ) C:\Users\Frank\Downloads\stpass_trial_606434.exe 2015-03-16 19:46 - 2015-03-16 20:09 - 00121344 ___SH () C:\Users\Frank\Downloads\Thumbs.db 2015-03-16 17:26 - 2015-03-16 17:46 - 00000000 ___SD () C:\Users\Public\Virtual CDs 2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ___SD () C:\Users\Public\Virtual CD v10 2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ___SD () C:\Users\Frank\AppData\Roaming\Virtual CD v10 2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual CD v10 2015-03-16 17:26 - 2012-12-06 11:09 - 00226080 ____N (H+H Software GmbH) C:\Windows\system32\Drivers\vdrv1000.sys 2015-03-16 17:26 - 2009-07-09 11:24 - 00024088 _____ (H+H Software GmbH) C:\Windows\system32\Drivers\HH10Help.sys 2015-03-16 17:25 - 2015-03-16 17:26 - 00000000 ____D () C:\Program Files (x86)\Virtual CD v10 2015-03-16 17:24 - 2015-03-16 17:24 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\InstallShield 2015-03-16 17:24 - 2008-06-17 09:22 - 00040464 _____ (H+H Software GmbH) C:\Windows\system32\Drivers\vcd10bus.sys 2015-03-16 16:43 - 2000-10-29 15:33 - 00141312 _____ (Info-ZIP) C:\Windows\SysWOW64\Zip32.dll 2015-03-16 16:30 - 2015-03-16 17:01 - 00000000 ____D () C:\Users\Frank\Documents\TC Seth 2015-03-16 15:13 - 2015-03-16 16:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\M-DVD.Org V2 2015-03-16 15:13 - 2007-09-24 10:04 - 00675840 _____ () C:\Windows\SysWOW64\AudioGenie2.ocx 2015-03-16 15:13 - 2006-03-09 12:34 - 02945024 _____ (hxxp://mediainfo.sourceforge.net) C:\Windows\SysWOW64\MediaInfo.dll 2015-03-16 15:13 - 2004-05-27 00:32 - 00102400 _____ (Info-ZIP) C:\Windows\SysWOW64\unzip32.dll 2015-03-16 15:12 - 2015-03-16 16:43 - 00000000 ____D () C:\Program Files (x86)\M-DVD.Org V2 2015-03-16 15:12 - 2015-03-16 15:12 - 00000000 ____D () C:\ProgramData\M-DVD.Org V2 2015-03-16 15:12 - 2009-12-04 11:56 - 00061440 ____H (SynApp GmbH) C:\Windows\SysWOW64\ErrExplorer.dll 2015-03-16 15:12 - 2006-10-06 09:20 - 02899968 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11.dll 2015-03-16 15:12 - 2006-10-04 16:01 - 00351232 _____ (combit GmbH) C:\Windows\SysWOW64\cmpr11.dll 2015-03-16 15:12 - 2006-09-26 15:51 - 01399296 _____ (combit GmbH) C:\Windows\SysWOW64\cmct11.dll 2015-03-16 15:12 - 2006-09-26 15:39 - 01378304 _____ (combit GmbH) C:\Windows\SysWOW64\cmls11.dll 2015-03-16 15:12 - 2006-09-26 15:39 - 00893952 _____ (combit GmbH) C:\Windows\SysWOW64\cmbr11.dll 2015-03-16 15:12 - 2006-09-26 15:38 - 00739328 _____ (combit GmbH) C:\Windows\SysWOW64\cmdw11.dll 2015-03-16 15:12 - 2006-09-26 15:36 - 00337920 _____ (combit GmbH) C:\Windows\SysWOW64\cmut11.dll 2015-03-16 15:12 - 2006-09-13 10:29 - 00688640 _____ (combit GmbH) C:\Windows\SysWOW64\cmmx01.dll 2015-03-16 15:12 - 2006-07-19 07:00 - 00349184 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11pw.llx 2015-03-16 15:12 - 2006-06-22 08:50 - 00165584 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11o.ocx 2015-03-16 15:12 - 2005-09-13 13:29 - 00414720 _____ (combit GmbH) C:\Windows\SysWOW64\cmll1100.lng 2015-03-16 15:12 - 2005-08-08 16:10 - 00425984 _____ () C:\Windows\SysWOW64\cmmx0100.lng 2015-03-16 15:12 - 2005-07-12 09:41 - 00684032 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11xl.dll 2015-03-16 15:12 - 2005-06-23 15:17 - 01161492 _____ () C:\Windows\SysWOW64\cmLL1100.chm 2015-03-16 12:57 - 2015-03-17 12:10 - 00000000 ____D () C:\Program Files (x86)\Sticky Password 2015-03-16 12:04 - 2015-03-16 12:04 - 00000000 ____D () C:\ProgramData\ToshibaEurope 2015-03-16 12:04 - 2015-03-16 12:04 - 00000000 ____D () C:\ProgramData\TOSHIBA Tempro 2015-03-16 12:03 - 2015-03-16 12:03 - 00000000 ____D () C:\Windows\System32\Tasks\Toshiba 2015-03-16 12:03 - 2015-03-16 12:03 - 00000000 ____D () C:\Program Files (x86)\Toshiba TEMPRO 2015-03-16 11:55 - 2015-03-16 11:55 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieBrowserModeList 2015-03-16 11:54 - 2015-03-16 11:54 - 00000000 ____D () C:\ProgramData\IsolatedStorage 2015-03-16 08:57 - 2014-07-24 16:03 - 02141920 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2015-03-16 08:57 - 2014-07-24 14:36 - 02145472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2015-03-16 08:57 - 2014-07-24 10:44 - 16874496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2015-03-16 08:57 - 2014-07-24 10:16 - 12730880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2015-03-16 08:57 - 2014-07-24 09:53 - 01261056 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll 2015-03-16 08:57 - 2014-07-24 09:32 - 01532416 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll 2015-03-16 08:57 - 2014-07-24 08:28 - 01600000 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll 2015-03-16 08:57 - 2014-06-14 07:03 - 02389504 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2015-03-16 08:57 - 2014-06-14 06:46 - 02071552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2015-03-16 08:56 - 2014-07-24 16:28 - 00419648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2015-03-16 08:56 - 2014-07-24 16:28 - 00412992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys 2015-03-16 08:56 - 2014-07-24 16:28 - 00280384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys 2015-03-16 08:56 - 2014-07-24 16:28 - 00143680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2015-03-16 08:56 - 2014-07-24 16:25 - 00054752 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-03-16 08:56 - 2014-07-24 16:23 - 01519488 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2015-03-16 08:56 - 2014-07-24 16:23 - 00125472 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll 2015-03-16 08:56 - 2014-07-24 16:20 - 00263400 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe 2015-03-16 08:56 - 2014-07-24 16:16 - 02574208 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2015-03-16 08:56 - 2014-07-24 16:16 - 00211216 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe 2015-03-16 08:56 - 2014-07-24 16:07 - 02009920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2015-03-16 08:56 - 2014-07-24 16:05 - 01660048 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2015-03-16 08:56 - 2014-07-24 16:05 - 01519560 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2015-03-16 08:56 - 2014-07-24 16:05 - 01488008 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2015-03-16 08:56 - 2014-07-24 16:05 - 01356840 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2015-03-16 08:56 - 2014-07-24 16:03 - 00882136 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2015-03-16 08:56 - 2014-07-24 16:03 - 00360480 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll 2015-03-16 08:56 - 2014-07-24 16:03 - 00233888 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2015-03-16 08:56 - 2014-07-24 16:03 - 00205512 _____ (Microsoft Corporation) C:\Windows\system32\mftranscode.dll 2015-03-16 08:56 - 2014-07-24 14:50 - 00098048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll 2015-03-16 08:56 - 2014-07-24 14:48 - 02410976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2015-03-16 08:56 - 2014-07-24 14:48 - 00180208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe 2015-03-16 08:56 - 2014-07-24 14:36 - 00707536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll 2015-03-16 08:56 - 2014-07-24 14:36 - 00355800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll 2015-03-16 08:56 - 2014-07-24 14:36 - 00180720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mftranscode.dll 2015-03-16 08:56 - 2014-07-24 12:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDRUM.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL 2015-03-16 08:56 - 2014-07-24 12:46 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys 2015-03-16 08:56 - 2014-07-24 12:45 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys 2015-03-16 08:56 - 2014-07-24 12:44 - 00674816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2015-03-16 08:56 - 2014-07-24 12:43 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2015-03-16 08:56 - 2014-07-24 12:42 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys 2015-03-16 08:56 - 2014-07-24 12:42 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys 2015-03-16 08:56 - 2014-07-24 12:41 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthpan.sys 2015-03-16 08:56 - 2014-07-24 12:33 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-03-16 08:56 - 2014-07-24 12:33 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-03-16 08:56 - 2014-07-24 12:06 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\iasnap.dll 2015-03-16 08:56 - 2014-07-24 12:05 - 00287232 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll 2015-03-16 08:56 - 2014-07-24 12:05 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2015-03-16 08:56 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL 2015-03-16 08:56 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL 2015-03-16 08:56 - 2014-07-24 11:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRUM.DLL 2015-03-16 08:56 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL 2015-03-16 08:56 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL 2015-03-16 08:56 - 2014-07-24 11:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL 2015-03-16 08:56 - 2014-07-24 11:49 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersGPExt.dll 2015-03-16 08:56 - 2014-07-24 11:33 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-03-16 08:56 - 2014-07-24 11:32 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl 2015-03-16 08:56 - 2014-07-24 11:20 - 02050560 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll 2015-03-16 08:56 - 2014-07-24 11:18 - 01089024 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll 2015-03-16 08:56 - 2014-07-24 11:12 - 00878592 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll 2015-03-16 08:56 - 2014-07-24 11:10 - 01844224 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll 2015-03-16 08:56 - 2014-07-24 11:10 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2015-03-16 08:56 - 2014-07-24 11:10 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2015-03-16 08:56 - 2014-07-24 11:10 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasnap.dll 2015-03-16 08:56 - 2014-07-24 11:05 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll 2015-03-16 08:56 - 2014-07-24 10:52 - 00621056 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll 2015-03-16 08:56 - 2014-07-24 10:42 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl 2015-03-16 08:56 - 2014-07-24 10:40 - 00557056 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs.dll 2015-03-16 08:56 - 2014-07-24 10:39 - 00770048 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll 2015-03-16 08:56 - 2014-07-24 10:33 - 01741824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll 2015-03-16 08:56 - 2014-07-24 10:32 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpedit.dll 2015-03-16 08:56 - 2014-07-24 10:27 - 00779264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2015-03-16 08:56 - 2014-07-24 10:25 - 00832512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll 2015-03-16 08:56 - 2014-07-24 10:24 - 01817088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll 2015-03-16 08:56 - 2014-07-24 10:21 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2015-03-16 08:56 - 2014-07-24 10:18 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll 2015-03-16 08:56 - 2014-07-24 10:12 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll 2015-03-16 08:56 - 2014-07-24 10:11 - 00356864 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2015-03-16 08:56 - 2014-07-24 10:11 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll 2015-03-16 08:56 - 2014-07-24 10:10 - 00540672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll 2015-03-16 08:56 - 2014-07-24 10:04 - 00492032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll 2015-03-16 08:56 - 2014-07-24 10:04 - 00183808 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe 2015-03-16 08:56 - 2014-07-24 10:03 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll 2015-03-16 08:56 - 2014-07-24 09:58 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll 2015-03-16 08:56 - 2014-07-24 09:53 - 00449536 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll 2015-03-16 08:56 - 2014-07-24 09:49 - 01361408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll 2015-03-16 08:56 - 2014-07-24 09:49 - 01287680 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll 2015-03-16 08:56 - 2014-07-24 09:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll 2015-03-16 08:56 - 2014-07-24 09:48 - 00659968 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll 2015-03-16 08:56 - 2014-07-24 09:47 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll 2015-03-16 08:56 - 2014-07-24 09:43 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll 2015-03-16 08:56 - 2014-07-24 09:39 - 02397184 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll 2015-03-16 08:56 - 2014-07-24 09:38 - 00371200 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll 2015-03-16 08:56 - 2014-07-24 09:30 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll 2015-03-16 08:56 - 2014-07-24 09:29 - 00439296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll 2015-03-16 08:56 - 2014-07-24 09:28 - 00595456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll 2015-03-16 08:56 - 2014-07-24 09:23 - 01404416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll 2015-03-16 08:56 - 2014-07-24 09:22 - 00487936 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2015-03-16 08:56 - 2014-07-24 09:21 - 01231872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll 2015-03-16 08:56 - 2014-07-24 09:21 - 00302080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll 2015-03-16 08:56 - 2014-07-24 09:19 - 00388608 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll 2015-03-16 08:56 - 2014-07-24 09:18 - 01144320 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll 2015-03-16 08:56 - 2014-07-24 09:18 - 00795136 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe 2015-03-16 08:56 - 2014-07-24 09:16 - 00505344 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll 2015-03-16 08:56 - 2014-07-24 09:16 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll 2015-03-16 08:56 - 2014-07-24 09:15 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-03-16 08:56 - 2014-07-24 09:15 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll 2015-03-16 08:56 - 2014-07-24 09:15 - 00432128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll 2015-03-16 08:56 - 2014-07-24 09:13 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll 2015-03-16 08:56 - 2014-07-24 09:10 - 00889344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll 2015-03-16 08:56 - 2014-07-24 09:10 - 00371712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv 2015-03-16 08:56 - 2014-07-24 09:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll 2015-03-16 08:56 - 2014-07-24 09:07 - 01705472 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-03-16 08:56 - 2014-07-24 09:05 - 00448000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll 2015-03-16 08:56 - 2014-07-24 09:04 - 00667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-03-16 08:56 - 2014-07-24 09:02 - 03465216 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-03-16 08:56 - 2014-07-24 09:01 - 01992192 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2015-03-16 08:56 - 2014-07-24 08:58 - 00432640 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll 2015-03-16 08:56 - 2014-07-24 08:58 - 00288768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll 2015-03-16 08:56 - 2014-07-24 08:54 - 01290752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2015-03-16 08:56 - 2014-07-24 08:50 - 01182208 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll 2015-03-16 08:56 - 2014-07-24 08:47 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll 2015-03-16 08:56 - 2014-07-24 08:44 - 01057792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.dll 2015-03-16 08:56 - 2014-07-24 08:41 - 00459264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll 2015-03-16 08:56 - 2014-07-12 06:55 - 00268288 _____ (Microsoft Corporation) C:\Windows\system32\wisp.dll 2015-03-16 08:56 - 2014-07-12 05:58 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wisp.dll 2015-03-16 08:56 - 2014-07-04 13:59 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys 2015-03-16 08:56 - 2014-07-04 11:29 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSip.dll 2015-03-16 08:56 - 2014-07-04 11:20 - 01656832 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2015-03-16 08:56 - 2014-07-04 11:06 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxSip.dll 2015-03-16 08:56 - 2014-07-04 11:00 - 01351168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2015-03-16 08:56 - 2014-07-04 10:30 - 00544768 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll 2015-03-16 08:56 - 2014-07-04 10:27 - 00474112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll 2015-03-16 08:56 - 2014-06-27 07:22 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2015-03-16 08:56 - 2014-06-26 01:32 - 01029632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll 2015-03-16 08:56 - 2014-06-26 01:29 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll 2015-03-16 08:56 - 2014-06-20 00:37 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-03-16 08:56 - 2014-06-19 03:13 - 00310080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2015-03-16 08:56 - 2014-06-07 13:46 - 00216368 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll 2015-03-16 08:56 - 2014-06-07 11:20 - 00189016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll 2015-03-16 08:56 - 2014-06-05 11:18 - 01018368 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll 2015-03-16 08:56 - 2014-06-05 10:42 - 00889856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll 2015-03-16 08:56 - 2014-05-31 06:00 - 01463808 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll 2015-03-16 08:56 - 2014-05-31 05:18 - 01319936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll 2015-03-16 08:56 - 2014-05-29 07:23 - 00427008 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll 2015-03-16 08:56 - 2014-05-29 06:25 - 00313856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll 2015-03-16 08:56 - 2014-05-26 08:26 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll 2015-03-16 08:56 - 2014-05-10 11:12 - 00387896 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll 2015-03-16 08:56 - 2014-05-10 09:46 - 00335680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll 2015-03-16 08:56 - 2014-05-06 05:41 - 00486744 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll 2015-03-16 08:56 - 2014-05-06 01:55 - 00391000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll 2015-03-16 08:56 - 2014-03-25 03:27 - 00160600 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll 2015-03-16 08:56 - 2014-03-25 03:27 - 00123920 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll 2015-03-16 08:56 - 2014-03-25 02:20 - 00128568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll 2015-03-16 08:56 - 2014-03-25 02:20 - 00127544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmmbase.dll 2015-03-16 08:55 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTT102.DLL 2015-03-16 08:55 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTT102.DLL 2015-03-16 08:55 - 2014-07-24 10:14 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll 2015-03-16 08:55 - 2014-07-24 09:36 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll 2015-03-16 08:55 - 2014-07-24 09:18 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-03-16 08:55 - 2014-07-24 09:06 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-03-16 08:55 - 2014-07-24 09:00 - 02100736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll 2015-03-16 08:48 - 2014-07-30 02:56 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll 2015-03-16 08:48 - 2014-07-29 06:22 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\tcpmon.dll 2015-03-16 08:41 - 2014-08-15 01:36 - 00146752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys 2015-03-16 08:40 - 2015-03-16 08:40 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2015-03-16 08:40 - 2015-03-16 08:40 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2015-03-16 08:34 - 2015-01-27 05:22 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2015-03-16 08:34 - 2015-01-27 03:11 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2015-03-16 08:34 - 2014-10-29 04:56 - 00027456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys 2015-03-16 08:34 - 2014-10-29 03:37 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll 2015-03-12 17:13 - 2014-04-14 04:29 - 01018880 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2015-03-12 16:48 - 2015-03-04 22:24 - 00792032 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-03-12 16:48 - 2015-03-04 22:24 - 00178144 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-03-12 16:28 - 2015-03-12 16:35 - 00000000 ____D () C:\Windows\system32\MRT 2015-03-12 16:28 - 2015-02-26 21:14 - 122905848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-03-12 16:23 - 2014-03-20 00:36 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll 2015-03-12 16:23 - 2014-03-08 07:40 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll 2015-03-12 16:23 - 2014-03-04 08:00 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll 2015-03-12 16:23 - 2014-03-04 07:32 - 00356864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll 2015-03-12 16:22 - 2014-03-20 05:19 - 01291200 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2015-03-12 16:22 - 2014-03-20 04:41 - 00376152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys 2015-03-12 16:22 - 2014-03-20 01:53 - 00950784 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll 2015-03-12 16:22 - 2014-03-20 01:48 - 00201216 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll 2015-03-12 16:22 - 2014-03-20 00:55 - 01036288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2015-03-12 16:22 - 2014-03-20 00:39 - 00800256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll 2015-03-12 16:22 - 2014-03-19 06:50 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe 2015-03-12 16:22 - 2014-03-19 06:20 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe 2015-03-12 16:22 - 2014-03-13 13:35 - 00157016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys 2015-03-12 16:22 - 2014-03-08 21:38 - 01542768 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2015-03-12 16:22 - 2014-03-08 16:29 - 00356848 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll 2015-03-12 16:22 - 2014-03-08 12:34 - 01095488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2015-03-12 16:22 - 2014-03-08 10:02 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll 2015-03-12 16:22 - 2014-03-08 09:33 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll 2015-03-12 16:22 - 2014-03-08 09:25 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\SetNetworkLocation.dll 2015-03-12 16:22 - 2014-03-08 09:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxproxy.dll 2015-03-12 16:22 - 2014-03-08 08:47 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll 2015-03-12 16:22 - 2014-03-08 08:04 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll 2015-03-12 16:22 - 2014-03-08 07:48 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll 2015-03-12 16:22 - 2014-03-08 07:31 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll 2015-03-12 16:22 - 2014-03-08 07:30 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll 2015-03-12 16:22 - 2014-03-08 06:41 - 01306624 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll 2015-03-12 16:22 - 2014-03-08 06:11 - 00924160 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll 2015-03-12 16:22 - 2014-03-06 15:34 - 02331000 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2015-03-12 16:22 - 2014-03-06 15:34 - 00113648 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll 2015-03-12 16:22 - 2014-03-06 12:19 - 00094016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll 2015-03-12 16:22 - 2014-03-06 11:46 - 01679128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2015-03-12 16:22 - 2014-03-06 10:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2015-03-12 16:22 - 2014-03-06 10:24 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys 2015-03-12 16:22 - 2014-03-06 10:22 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys 2015-03-12 16:22 - 2014-03-06 10:19 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-03-12 16:22 - 2014-03-06 10:19 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2015-03-12 16:22 - 2014-03-06 10:19 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2015-03-12 16:22 - 2014-03-06 10:08 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll 2015-03-12 16:22 - 2014-03-06 09:41 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\DevPropMgr.dll 2015-03-12 16:22 - 2014-03-06 09:38 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2015-03-12 16:22 - 2014-03-06 09:14 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\WSDScDrv.dll 2015-03-12 16:22 - 2014-03-06 09:10 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\l2gpstore.dll 2015-03-12 16:22 - 2014-03-06 09:00 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll 2015-03-12 16:22 - 2014-03-06 08:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2015-03-12 16:22 - 2014-03-06 08:16 - 00171008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll 2015-03-12 16:22 - 2014-03-06 08:02 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll 2015-03-12 16:22 - 2014-03-06 07:29 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll 2015-03-12 16:22 - 2014-03-06 07:24 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll 2015-03-12 16:22 - 2014-03-06 07:23 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll 2015-03-12 16:22 - 2014-03-06 07:21 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll 2015-03-12 16:22 - 2014-03-06 07:06 - 00386560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll 2015-03-12 16:22 - 2014-03-06 07:04 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll 2015-03-12 16:22 - 2014-03-06 07:01 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll 2015-03-12 16:22 - 2014-03-06 06:51 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll 2015-03-12 16:22 - 2014-03-06 06:47 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll 2015-03-12 16:22 - 2014-03-06 06:42 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll 2015-03-12 16:22 - 2014-03-04 08:16 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2015-03-12 16:22 - 2014-03-04 08:13 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2015-03-12 16:22 - 2014-03-04 08:08 - 00299008 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll 2015-03-12 16:22 - 2014-03-04 07:56 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll 2015-03-12 16:22 - 2014-03-04 07:42 - 00494592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2015-03-12 16:22 - 2014-03-04 07:39 - 00254976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll 2015-03-12 16:22 - 2014-03-04 07:15 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll 2015-03-12 16:22 - 2014-03-04 07:05 - 00402432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll 2015-03-12 16:22 - 2014-03-04 07:03 - 00669696 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll 2015-03-12 16:22 - 2014-03-04 07:03 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll 2015-03-12 16:22 - 2014-03-04 06:54 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll 2015-03-12 16:22 - 2014-03-04 06:52 - 00605184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll 2015-03-12 16:22 - 2013-12-24 00:28 - 00262656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll 2015-03-12 16:22 - 2013-12-24 00:26 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll 2015-03-12 16:09 - 2014-12-09 04:45 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll 2015-03-12 16:09 - 2014-12-09 02:56 - 00538624 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll 2015-03-12 16:09 - 2014-09-27 08:13 - 00104336 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll 2015-03-12 16:09 - 2014-09-27 06:24 - 00088800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll 2015-03-12 16:09 - 2014-09-27 04:30 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll 2015-03-12 16:09 - 2014-06-20 02:48 - 01273184 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-03-12 16:09 - 2014-06-20 00:52 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-03-12 16:05 - 2015-01-23 08:17 - 00723072 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll 2015-03-12 16:05 - 2015-01-23 06:02 - 00560392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll 2015-03-12 16:05 - 2015-01-15 23:43 - 00563504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2015-03-12 16:05 - 2015-01-15 23:43 - 00177984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-03-12 16:05 - 2015-01-14 05:22 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2015-03-12 16:05 - 2015-01-14 04:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2015-03-12 16:05 - 2014-10-29 03:51 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-03-12 16:05 - 2014-10-29 03:50 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-03-12 16:05 - 2014-10-29 03:06 - 00736768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-03-12 16:05 - 2014-10-29 03:06 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-03-12 16:05 - 2014-10-29 02:31 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-03-12 16:05 - 2014-06-13 02:15 - 00517528 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2015-03-12 16:05 - 2014-06-13 02:14 - 01557848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2015-03-12 16:05 - 2014-06-13 01:10 - 00406400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2015-03-12 16:05 - 2014-03-06 13:53 - 02141912 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2015-03-12 16:05 - 2014-03-06 13:51 - 00379224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2015-03-12 16:05 - 2014-03-06 13:39 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2015-03-12 16:05 - 2014-03-06 12:13 - 01779800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2015-03-12 16:04 - 2015-03-06 03:53 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-03-12 16:04 - 2015-03-06 03:33 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-03-12 16:04 - 2015-02-26 00:26 - 04178944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-03-12 16:04 - 2015-02-20 04:03 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2015-03-12 16:04 - 2015-02-20 03:58 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2015-03-12 16:04 - 2015-02-20 03:20 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2015-03-12 16:04 - 2015-02-20 03:15 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2015-03-12 16:04 - 2015-01-31 00:42 - 03097600 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll 2015-03-12 16:04 - 2015-01-31 00:29 - 02484224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll 2015-03-12 16:04 - 2015-01-29 02:58 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll 2015-03-12 16:04 - 2015-01-29 02:29 - 00290816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\photowiz.dll 2015-03-12 16:04 - 2014-12-09 02:50 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2015-03-12 16:04 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll 2015-03-12 16:04 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll 2015-03-12 16:04 - 2014-10-29 03:49 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2015-03-12 16:04 - 2014-10-29 03:44 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2015-03-12 16:04 - 2014-10-29 03:44 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2015-03-12 16:04 - 2014-10-29 03:04 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2015-03-12 16:04 - 2014-10-29 03:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2015-03-12 16:04 - 2014-10-29 03:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2015-03-12 16:04 - 2014-08-07 03:12 - 01336624 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-03-12 16:04 - 2014-08-02 04:56 - 01064448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2015-03-12 16:04 - 2014-05-30 04:03 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2015-03-12 16:03 - 2015-02-07 00:09 - 00396419 _____ () C:\Windows\system32\ApnDatabase.xml 2015-03-12 16:03 - 2015-02-04 00:58 - 00264000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2015-03-12 16:03 - 2015-02-04 00:58 - 00114496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys 2015-03-12 16:03 - 2015-02-04 00:58 - 00044024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2015-03-12 16:03 - 2015-02-03 00:53 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll 2015-03-12 16:03 - 2015-02-03 00:53 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll 2015-03-12 16:03 - 2015-01-27 04:44 - 00933888 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe 2015-03-12 16:03 - 2015-01-24 02:51 - 00816128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe 2015-03-12 16:03 - 2014-12-19 09:57 - 00788680 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2015-03-12 16:03 - 2014-12-19 09:25 - 00602776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2015-03-12 16:03 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\SysWOW64\locale.nls 2015-03-12 16:03 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\system32\locale.nls 2015-03-12 16:03 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2015-03-12 16:03 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2015-03-12 16:03 - 2014-10-29 02:27 - 01200128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll 2015-03-12 16:03 - 2014-10-29 02:27 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll 2015-03-12 16:03 - 2014-10-29 02:04 - 00868352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll 2015-03-12 16:03 - 2014-10-29 02:04 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll 2015-03-12 16:03 - 2014-10-13 03:33 - 00116032 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2015-03-12 16:03 - 2014-10-11 01:58 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-03-12 16:03 - 2014-10-11 01:53 - 03607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2015-03-12 16:03 - 2014-10-08 08:30 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2015-03-12 16:03 - 2014-10-08 08:09 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2015-03-12 16:03 - 2014-10-08 07:27 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2015-03-12 16:03 - 2014-08-23 06:18 - 02149376 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2015-03-12 16:03 - 2014-08-23 06:03 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2015-03-12 16:03 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2015-03-12 16:03 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2015-03-12 16:03 - 2014-03-13 08:42 - 00308224 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe 2015-03-12 16:03 - 2014-03-13 07:51 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe 2015-03-12 16:02 - 2014-05-03 06:36 - 00997888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll 2015-03-12 16:02 - 2014-05-03 06:19 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll 2015-03-12 16:02 - 2014-05-03 06:08 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll 2015-03-12 16:02 - 2014-05-03 06:07 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll 2015-03-12 16:02 - 2014-05-03 05:46 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncobjapi.dll 2015-03-12 16:02 - 2014-05-03 05:37 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll 2015-03-12 16:02 - 2014-05-03 05:37 - 00207360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll 2015-03-12 16:02 - 2014-05-03 00:26 - 00050745 _____ () C:\Windows\system32\srms.dat 2015-03-12 16:02 - 2014-04-30 07:43 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys 2015-03-12 16:02 - 2014-04-30 07:41 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-03-12 16:02 - 2014-04-30 07:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys 2015-03-12 16:02 - 2014-04-30 07:41 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys 2015-03-12 16:02 - 2014-04-30 06:45 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe 2015-03-12 16:02 - 2014-04-30 05:48 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe 2015-03-12 16:02 - 2014-04-30 05:24 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2015-03-12 16:02 - 2014-04-30 05:23 - 00353280 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll 2015-03-12 16:02 - 2014-04-30 05:23 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2015-03-12 16:02 - 2014-04-30 05:23 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll 2015-03-12 16:02 - 2014-04-30 05:14 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2015-03-12 16:02 - 2014-04-30 04:59 - 01063424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2015-03-12 16:02 - 2014-04-30 04:46 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll 2015-03-12 16:02 - 2014-04-30 04:46 - 00229888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2015-03-12 16:02 - 2014-04-30 04:46 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2015-03-12 16:02 - 2014-04-30 04:45 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll 2015-03-12 16:02 - 2014-04-30 04:42 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll 2015-03-12 16:02 - 2014-04-28 23:40 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll 2015-03-12 16:02 - 2014-04-26 17:39 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll 2015-03-12 16:02 - 2014-04-14 10:37 - 02125344 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll 2015-03-12 16:02 - 2014-04-14 09:08 - 01797896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll 2015-03-12 16:02 - 2014-04-14 06:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll 2015-03-12 16:02 - 2014-03-08 21:40 - 00136024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys 2015-03-12 16:02 - 2014-03-08 07:41 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2015-03-12 16:02 - 2014-03-08 07:25 - 00264192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2015-03-12 16:02 - 2014-03-08 07:04 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2015-03-12 16:02 - 2014-03-08 06:58 - 00567296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2015-03-12 16:01 - 2014-08-23 07:10 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2015-03-12 16:01 - 2014-08-23 06:32 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2015-03-12 16:01 - 2014-08-23 05:33 - 00796672 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll 2015-03-12 16:01 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll 2015-03-12 16:01 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll 2015-03-12 16:01 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll 2015-03-12 16:01 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-03-12 16:01 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll 2015-03-12 16:01 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-03-12 16:00 - 2014-10-23 06:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2015-03-12 16:00 - 2014-10-23 06:05 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2015-03-12 16:00 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll 2015-03-12 16:00 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2015-03-12 16:00 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2015-03-12 16:00 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll 2015-03-12 16:00 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll 2015-03-12 16:00 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\httpprxm.dll 2015-03-12 16:00 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\ProximityService.dll 2015-03-12 16:00 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll 2015-03-12 16:00 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll 2015-03-12 16:00 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\adhsvc.dll 2015-03-12 16:00 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2015-03-12 16:00 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\pcsvDevice.dll 2015-03-12 16:00 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll 2015-03-12 16:00 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll 2015-03-12 16:00 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll 2015-03-12 16:00 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2015-03-12 16:00 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll 2015-03-12 16:00 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe 2015-03-12 16:00 - 2014-07-24 16:28 - 00468288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS 2015-03-12 16:00 - 2014-07-24 12:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys 2015-03-12 16:00 - 2014-07-24 11:09 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2015-03-12 16:00 - 2014-07-24 10:27 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2015-03-12 15:57 - 2014-04-08 23:46 - 00086688 _____ (Microsoft Corporation) C:\Windows\system32\mrt_map.dll 2015-03-12 15:57 - 2014-04-08 23:46 - 00028320 _____ (Microsoft Corporation) C:\Windows\system32\mrt100.dll 2015-03-12 15:57 - 2014-04-08 19:54 - 00080032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt_map.dll 2015-03-12 15:57 - 2014-04-08 19:54 - 00026784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt100.dll 2015-03-12 15:56 - 2014-08-02 01:18 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll 2015-03-12 15:55 - 2015-02-06 02:28 - 02257408 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2015-03-12 15:55 - 2015-02-06 02:08 - 01943040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2015-03-12 15:55 - 2015-01-29 02:11 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-03-12 15:55 - 2015-01-29 02:04 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2015-03-12 15:55 - 2015-01-29 02:04 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2015-03-12 15:55 - 2015-01-29 02:00 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-03-12 15:55 - 2015-01-29 01:55 - 00971776 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2015-03-12 15:55 - 2015-01-29 01:50 - 00811008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2015-03-12 15:55 - 2015-01-28 03:24 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\StorageContextHandler.dll 2015-03-12 15:55 - 2015-01-28 02:47 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorageContextHandler.dll 2015-03-12 15:55 - 2014-12-19 07:26 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2015-03-12 15:55 - 2014-12-12 01:51 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys 2015-03-12 15:55 - 2014-10-29 03:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\printui.exe 2015-03-12 15:55 - 2014-10-29 03:34 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll 2015-03-12 15:55 - 2014-10-29 03:34 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WSCollect.exe 2015-03-12 15:55 - 2014-10-29 03:34 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe 2015-03-12 15:55 - 2014-10-29 03:04 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll 2015-03-12 15:55 - 2014-10-29 02:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.exe 2015-03-12 15:55 - 2014-10-29 02:52 - 00289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compstui.dll 2015-03-12 15:55 - 2014-10-29 02:51 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll 2015-03-12 15:55 - 2014-10-29 02:45 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\prnntfy.dll 2015-03-12 15:55 - 2014-10-29 02:28 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll 2015-03-12 15:55 - 2014-10-29 02:20 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll 2015-03-12 15:55 - 2014-10-29 02:15 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnntfy.dll 2015-03-12 15:55 - 2014-10-29 02:13 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll 2015-03-12 15:55 - 2014-10-29 01:55 - 00223744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll 2015-03-12 15:55 - 2014-10-29 01:55 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll 2015-03-12 15:55 - 2014-10-29 01:44 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll 2015-03-12 15:55 - 2014-10-29 01:41 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll 2015-03-12 15:55 - 2014-10-29 01:35 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll 2015-03-12 15:55 - 2014-10-13 03:43 - 00238912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2015-03-12 15:55 - 2014-10-13 03:43 - 00153920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2015-03-12 15:55 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys 2015-03-12 15:55 - 2014-10-13 03:43 - 00039744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys 2015-03-12 15:55 - 2014-09-04 01:12 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 2015-03-12 15:55 - 2014-09-04 01:01 - 00514048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll 2015-03-12 15:55 - 2014-07-10 05:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\lockscreencn.dll 2015-03-12 15:54 - 2014-12-12 03:04 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2015-03-12 15:54 - 2014-07-15 19:16 - 03048880 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe 2015-03-12 15:54 - 2014-07-15 09:29 - 03118080 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2015-03-12 15:54 - 2014-07-15 09:22 - 02861056 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll 2015-03-12 15:54 - 2014-07-15 09:03 - 02344448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2015-03-12 15:53 - 2014-04-11 04:06 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-03-12 15:53 - 2014-04-11 04:05 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-03-12 15:53 - 2014-04-11 04:02 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-03-12 15:53 - 2014-04-11 04:01 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-03-12 15:53 - 2014-04-11 03:57 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll 2015-03-12 15:52 - 2015-02-05 21:24 - 01113920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2015-03-12 15:52 - 2015-02-03 01:03 - 03551744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll 2015-03-12 15:52 - 2015-02-03 01:02 - 04298240 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll 2015-03-12 15:52 - 2015-01-30 04:01 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys 2015-03-12 15:52 - 2015-01-30 04:00 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rfcomm.sys |
18.03.2015, 11:17 | #8 |
| Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden FRST.txt (Teil 2) Code:
ATTFilter 2015-03-12 15:52 - 2015-01-30 03:03 - 01488896 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll 2015-03-12 15:52 - 2015-01-30 03:03 - 01464832 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll 2015-03-12 15:52 - 2015-01-30 02:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll 2015-03-12 15:52 - 2015-01-30 02:42 - 01204224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll 2015-03-12 15:52 - 2015-01-30 02:29 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atlthunk.dll 2015-03-12 15:52 - 2015-01-19 19:42 - 01487976 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll 2015-03-12 15:52 - 2014-10-29 03:46 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS 2015-03-12 15:52 - 2014-10-29 03:46 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys 2015-03-12 15:52 - 2014-10-29 03:45 - 01198080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys 2015-03-12 15:52 - 2014-10-29 03:03 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\fsquirt.exe 2015-03-12 15:52 - 2014-10-29 02:28 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\atlthunk.dll 2015-03-12 15:51 - 2014-04-09 12:53 - 00337240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys 2015-03-12 15:51 - 2014-04-06 17:20 - 01403856 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll 2015-03-12 15:51 - 2014-04-06 17:20 - 01379064 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll 2015-03-12 15:51 - 2014-04-06 17:20 - 00765408 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll 2015-03-12 15:51 - 2014-04-06 17:20 - 00491744 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll 2015-03-12 15:51 - 2014-04-06 16:16 - 01209616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll 2015-03-12 15:51 - 2014-04-06 16:16 - 00669856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll 2015-03-12 15:51 - 2014-04-06 13:33 - 00335872 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe 2015-03-12 15:51 - 2014-04-06 11:05 - 01222656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll 2015-03-12 15:51 - 2014-04-06 10:59 - 00982016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll 2015-03-12 15:51 - 2014-03-28 16:58 - 00407016 _____ (Microsoft Corporation) C:\Windows\system32\services.exe 2015-03-12 15:51 - 2014-03-18 06:00 - 07173120 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll 2015-03-12 15:51 - 2014-03-18 05:52 - 05104640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll 2015-03-12 15:51 - 2014-03-17 06:09 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2015-03-12 15:51 - 2014-03-17 05:11 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2015-03-12 15:51 - 2014-03-14 07:26 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\GeofenceMonitorService.dll 2015-03-12 15:51 - 2014-03-14 07:10 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GeofenceMonitorService.dll 2015-03-12 15:50 - 2014-04-18 15:57 - 00032600 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll 2015-03-12 15:50 - 2014-04-18 10:44 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\energyprov.dll 2015-03-12 15:50 - 2014-04-14 10:20 - 00324888 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll 2015-03-12 15:50 - 2014-04-14 09:01 - 00285144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll 2015-03-12 15:50 - 2014-04-11 05:51 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll 2015-03-12 15:50 - 2014-04-11 05:23 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll 2015-03-12 15:50 - 2014-04-09 07:39 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2015-03-12 15:50 - 2014-04-09 06:44 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2015-03-12 15:50 - 2014-04-09 04:33 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll 2015-03-12 15:50 - 2014-04-08 03:01 - 00589656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2015-03-12 15:50 - 2014-04-06 17:34 - 00372568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2015-03-12 15:50 - 2014-04-06 17:34 - 00275800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2015-03-12 15:50 - 2014-04-06 17:30 - 00201920 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll 2015-03-12 15:50 - 2014-04-06 17:24 - 00360792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys 2015-03-12 15:50 - 2014-04-06 17:20 - 00609448 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2015-03-12 15:50 - 2014-04-06 17:20 - 00028408 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe 2015-03-12 15:50 - 2014-04-06 16:22 - 00178184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVideoDSP.dll 2015-03-12 15:50 - 2014-04-06 16:16 - 00518544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll 2015-03-12 15:50 - 2014-04-06 16:16 - 00387896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll 2015-03-12 15:50 - 2014-04-06 13:58 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2015-03-12 15:50 - 2014-04-06 13:51 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2015-03-12 15:50 - 2014-04-06 13:24 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2015-03-12 15:50 - 2014-04-06 13:06 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2015-03-12 15:50 - 2014-04-06 12:26 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll 2015-03-12 15:50 - 2014-04-03 09:12 - 00307304 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2015-03-12 15:50 - 2014-04-03 09:12 - 00130144 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll 2015-03-12 15:50 - 2014-04-03 05:03 - 00230808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2015-03-12 15:50 - 2014-04-03 05:03 - 00111528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll 2015-03-12 15:50 - 2014-04-03 03:23 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tlscsp.dll 2015-03-12 15:50 - 2014-04-03 03:22 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll 2015-03-12 15:50 - 2014-03-27 06:36 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll 2015-03-12 15:50 - 2014-03-27 05:48 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll 2015-03-12 15:50 - 2014-03-27 04:15 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll 2015-03-12 15:50 - 2014-03-27 04:10 - 01436160 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe 2015-03-12 15:50 - 2014-03-19 09:15 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll 2015-03-12 15:50 - 2014-03-19 08:24 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2015-03-12 15:50 - 2014-03-19 08:17 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll 2015-03-12 15:50 - 2014-03-06 10:19 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll 2015-03-12 15:50 - 2014-03-06 09:20 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll 2015-03-12 15:50 - 2014-01-27 19:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2015-03-12 15:48 - 2015-01-29 01:59 - 02773504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-03-12 15:48 - 2015-01-29 01:49 - 02459136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2015-03-12 15:48 - 2014-05-19 07:31 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\drvcfg.exe 2015-03-12 15:48 - 2014-05-19 07:21 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe 2015-03-12 15:48 - 2014-05-19 06:23 - 00098816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe 2015-03-12 15:48 - 2014-04-30 05:43 - 01975296 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-03-12 15:48 - 2014-04-30 05:26 - 01345536 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-03-12 15:48 - 2014-04-30 04:47 - 01509888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2015-03-12 15:11 - 2015-01-31 00:20 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll 2015-03-12 15:11 - 2014-06-02 03:10 - 00423768 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll 2015-03-12 15:11 - 2014-05-31 11:07 - 00440664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2015-03-12 15:11 - 2014-05-31 11:07 - 00089944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2015-03-12 15:11 - 2014-05-31 11:07 - 00027480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2015-03-12 15:11 - 2014-05-31 07:30 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2015-03-12 15:11 - 2014-05-31 07:27 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2015-03-12 15:11 - 2014-05-31 07:26 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2015-03-12 15:11 - 2014-05-31 05:01 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2015-03-12 15:11 - 2014-05-31 05:01 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2015-03-12 15:11 - 2014-05-31 05:01 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2015-03-12 15:11 - 2014-05-27 10:56 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\DaOtpCredentialProvider.dll 2015-03-12 15:11 - 2014-05-27 10:53 - 00270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DaOtpCredentialProvider.dll 2015-03-12 15:08 - 2015-01-28 16:41 - 07472960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-03-12 15:08 - 2015-01-28 16:41 - 01733440 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-03-12 15:08 - 2015-01-28 16:41 - 01498360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2015-03-12 15:08 - 2014-12-06 04:17 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2015-03-12 15:08 - 2014-12-06 02:41 - 00391680 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2015-03-12 15:08 - 2014-10-29 03:02 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2015-03-12 15:08 - 2014-10-29 03:02 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2015-03-12 15:08 - 2014-10-29 02:57 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2015-03-12 15:08 - 2014-10-29 02:24 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2015-03-12 15:08 - 2014-10-29 02:15 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2015-03-12 15:08 - 2014-10-29 02:15 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2015-03-12 15:08 - 2014-10-29 02:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2015-03-12 15:08 - 2014-10-29 02:13 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2015-03-12 15:08 - 2014-10-29 02:13 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2015-03-12 15:08 - 2014-10-29 02:01 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2015-03-12 13:31 - 2015-03-16 09:57 - 00000632 _____ () C:\Users\Frank\Documents\fehler.txt 2015-03-12 13:04 - 2015-03-17 11:22 - 00000000 ____D () C:\Users\Frank\Documents\Outlook-Dateien 2015-03-12 12:58 - 2015-02-21 02:16 - 25021440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-03-12 12:58 - 2015-02-21 01:41 - 12827648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-03-12 12:58 - 2015-02-21 01:27 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-03-12 12:58 - 2015-02-21 01:27 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2015-03-12 12:58 - 2015-02-21 01:25 - 19720192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-03-12 12:58 - 2015-02-21 00:58 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-03-12 12:58 - 2015-02-21 00:32 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-03-12 12:58 - 2015-02-20 03:49 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-03-12 12:58 - 2015-02-20 03:48 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-03-12 12:58 - 2015-02-20 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-03-12 12:58 - 2015-02-20 03:35 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-03-12 12:58 - 2015-02-20 03:34 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-03-12 12:58 - 2015-02-20 03:32 - 06035456 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-03-12 12:58 - 2015-02-20 03:09 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-03-12 12:58 - 2015-02-20 03:07 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2015-03-12 12:58 - 2015-02-20 03:06 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-03-12 12:58 - 2015-02-20 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-03-12 12:58 - 2015-02-20 03:03 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-03-12 12:58 - 2015-02-20 02:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2015-03-12 12:58 - 2015-02-20 02:56 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-03-12 12:58 - 2015-02-20 02:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2015-03-12 12:58 - 2015-02-20 02:49 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-03-12 12:58 - 2015-02-20 02:49 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-03-12 12:58 - 2015-02-20 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-03-12 12:58 - 2015-02-20 02:43 - 14398976 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-03-12 12:58 - 2015-02-20 02:30 - 04300288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-03-12 12:58 - 2015-02-20 02:30 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2015-03-12 12:58 - 2015-02-20 02:29 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2015-03-12 12:58 - 2015-02-20 02:28 - 02358784 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-03-12 12:58 - 2015-02-20 02:26 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2015-03-12 12:58 - 2015-02-20 02:24 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-03-12 12:58 - 2015-02-20 02:24 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-03-12 12:58 - 2015-02-20 02:16 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-03-12 12:58 - 2015-02-20 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-03-12 12:58 - 2015-02-20 02:01 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-03-12 12:58 - 2015-02-20 01:57 - 01311232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-03-12 12:58 - 2015-02-20 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-03-12 12:58 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-03-12 12:58 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-03-12 12:58 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-03-12 12:58 - 2015-01-12 02:23 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-03-12 12:58 - 2014-11-22 03:49 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-03-12 12:58 - 2014-11-22 03:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-03-12 12:58 - 2014-11-10 00:19 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-03-12 12:58 - 2014-11-10 00:19 - 00806400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-03-12 12:58 - 2014-11-10 00:18 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll 2015-03-12 12:58 - 2014-11-10 00:18 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll 2015-03-12 12:58 - 2014-10-31 06:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2015-03-12 12:58 - 2014-10-31 06:12 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2015-03-12 12:58 - 2014-10-31 06:10 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2015-03-12 12:58 - 2014-10-31 06:09 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2015-03-12 12:58 - 2014-10-31 06:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2015-03-12 12:58 - 2014-10-31 06:06 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2015-03-12 12:58 - 2014-10-31 06:06 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-03-12 12:58 - 2014-10-31 06:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-03-12 12:58 - 2014-10-31 05:57 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-03-12 12:58 - 2014-10-31 05:56 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-03-12 12:58 - 2014-10-31 05:54 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2015-03-12 12:58 - 2014-10-31 05:53 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-03-12 12:58 - 2014-10-31 05:52 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll 2015-03-12 12:58 - 2014-10-31 05:51 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-03-12 12:58 - 2014-10-31 05:51 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-03-12 12:58 - 2014-10-31 05:40 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2015-03-12 12:58 - 2014-10-31 05:30 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-03-12 12:58 - 2014-10-31 05:29 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2015-03-12 12:58 - 2014-10-31 05:29 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2015-03-12 12:58 - 2014-10-31 05:28 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2015-03-12 12:58 - 2014-10-31 05:25 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-03-12 12:58 - 2014-10-31 05:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2015-03-12 12:58 - 2014-10-31 05:19 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2015-03-12 12:58 - 2014-10-31 04:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2015-03-12 12:58 - 2014-10-31 04:28 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2015-03-12 12:58 - 2014-10-31 04:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2015-03-12 12:58 - 2014-10-31 04:27 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2015-03-12 12:58 - 2014-10-31 04:26 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2015-03-12 12:58 - 2014-10-31 04:25 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2015-03-12 12:58 - 2014-10-31 04:24 - 00235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2015-03-12 12:58 - 2014-10-31 04:24 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-03-12 12:58 - 2014-10-31 04:23 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-03-12 12:58 - 2014-10-31 04:16 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-03-12 12:58 - 2014-10-31 04:15 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-03-12 12:58 - 2014-10-31 04:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2015-03-12 12:58 - 2014-10-31 04:13 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-03-12 12:58 - 2014-10-31 04:13 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll 2015-03-12 12:58 - 2014-10-31 04:12 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-03-12 12:58 - 2014-10-31 04:11 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-03-12 12:58 - 2014-10-31 04:03 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2015-03-12 12:58 - 2014-10-31 03:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-03-12 12:58 - 2014-10-31 03:56 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2015-03-12 12:58 - 2014-10-31 03:56 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2015-03-12 12:58 - 2014-10-31 03:56 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2015-03-12 12:58 - 2014-10-31 03:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-03-12 12:58 - 2014-10-31 03:53 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2015-03-12 12:58 - 2014-10-31 03:48 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2015-03-12 12:58 - 2014-10-31 03:26 - 01042944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll 2015-03-12 12:58 - 2014-10-31 03:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2015-03-12 12:58 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-03-12 12:58 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-03-12 12:58 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-03-12 12:57 - 2015-02-12 18:40 - 22291584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2015-03-12 12:57 - 2015-02-12 18:34 - 19731824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2015-03-12 12:57 - 2015-01-29 19:45 - 01763352 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2015-03-12 12:57 - 2015-01-29 19:34 - 01488040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2015-03-12 12:57 - 2015-01-28 02:31 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2015-03-12 12:57 - 2015-01-28 02:11 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2015-03-12 12:57 - 2014-09-10 07:25 - 00474432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2015-03-12 12:57 - 2014-09-08 04:07 - 02497344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2015-03-12 12:57 - 2014-09-08 04:07 - 00428864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2015-03-12 12:57 - 2014-09-04 04:05 - 00836176 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll 2015-03-12 12:57 - 2014-09-04 03:22 - 00670384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll 2015-03-12 12:57 - 2014-09-04 01:10 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll 2015-03-12 12:57 - 2014-08-31 01:17 - 00148800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2015-03-12 12:57 - 2014-08-30 23:05 - 00615424 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll 2015-03-12 12:57 - 2014-08-30 22:58 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll 2015-03-12 12:57 - 2014-08-30 22:04 - 00941568 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll 2015-03-12 12:57 - 2014-08-30 21:53 - 00239104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSAPI.dll 2015-03-12 12:57 - 2014-08-30 21:17 - 00799744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll 2015-03-12 12:57 - 2014-08-28 01:21 - 02480128 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll 2015-03-12 12:57 - 2014-08-28 01:06 - 02030592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll 2015-03-12 12:57 - 2014-08-23 06:14 - 13424128 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2015-03-12 12:57 - 2014-08-23 06:04 - 11820544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2015-03-12 12:57 - 2014-08-23 05:50 - 02714112 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll 2015-03-12 12:57 - 2014-08-02 01:51 - 00545792 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll 2015-03-12 12:57 - 2014-08-02 01:35 - 00485376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll 2015-03-12 12:57 - 2014-05-13 08:01 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\BulkOperationHost.exe 2015-03-12 12:57 - 2014-03-06 07:27 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll 2015-03-12 12:56 - 2015-02-08 00:57 - 01090048 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll 2015-03-12 12:56 - 2015-02-08 00:49 - 00791040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll 2015-03-12 12:56 - 2015-01-30 03:02 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll 2015-03-12 12:56 - 2015-01-30 02:40 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll 2015-03-12 12:56 - 2015-01-30 02:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll 2015-03-12 12:56 - 2015-01-30 02:24 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll 2015-03-12 12:56 - 2015-01-30 02:24 - 00250880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll 2015-03-12 12:56 - 2015-01-30 02:16 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll 2015-03-12 12:56 - 2015-01-30 02:08 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll 2015-03-12 12:56 - 2015-01-30 02:06 - 00278016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll 2015-03-12 12:56 - 2015-01-28 00:47 - 02501368 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2015-03-12 12:56 - 2015-01-28 00:41 - 02207488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2015-03-12 12:56 - 2014-12-11 06:36 - 00046456 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentServer.exe 2015-03-12 12:56 - 2014-12-08 20:42 - 00535640 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2015-03-12 12:56 - 2014-12-08 20:42 - 00531616 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll 2015-03-12 12:56 - 2014-12-08 20:42 - 00448792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2015-03-12 12:56 - 2014-12-08 20:42 - 00413248 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll 2015-03-12 12:56 - 2014-12-08 20:42 - 00372408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll 2015-03-12 12:56 - 2014-12-08 20:42 - 00108944 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll 2015-03-12 12:56 - 2014-12-08 20:42 - 00038264 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe 2015-03-12 12:56 - 2014-12-08 20:42 - 00033584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe 2015-03-12 12:56 - 2014-12-06 02:35 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll 2015-03-12 12:56 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2015-03-12 12:56 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2015-03-12 12:56 - 2014-10-29 05:00 - 00465320 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe 2015-03-12 12:56 - 2014-10-29 05:00 - 00139984 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe 2015-03-12 12:56 - 2014-10-29 04:52 - 00500016 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2015-03-12 12:56 - 2014-10-29 04:52 - 00482872 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2015-03-12 12:56 - 2014-10-29 04:52 - 00394120 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2015-03-12 12:56 - 2014-10-29 04:52 - 00272248 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe 2015-03-12 12:56 - 2014-10-29 04:12 - 00413136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe 2015-03-12 12:56 - 2014-10-29 04:12 - 00136296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe 2015-03-12 12:56 - 2014-10-29 04:07 - 00424544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll 2015-03-12 12:56 - 2014-10-29 04:07 - 00370424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll 2015-03-12 12:56 - 2014-10-29 04:07 - 00344536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll 2015-03-12 12:56 - 2014-10-29 03:44 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll 2015-03-12 12:56 - 2014-10-29 02:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll 2015-03-12 12:56 - 2014-10-29 02:19 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll 2015-03-12 12:56 - 2014-10-29 02:02 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2015-03-12 12:56 - 2014-10-29 01:59 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappprxy.dll 2015-03-12 12:56 - 2014-07-12 05:17 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe 2015-03-12 12:56 - 2014-06-06 14:04 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2015-03-12 12:56 - 2014-06-06 13:18 - 00488960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2015-03-12 12:56 - 2014-05-01 14:31 - 00055328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys 2015-03-12 12:56 - 2014-05-01 06:24 - 02834944 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll 2015-03-12 12:55 - 2014-07-24 04:20 - 00875688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll 2015-03-12 12:55 - 2014-07-24 04:20 - 00869544 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll 2015-03-12 12:54 - 2014-05-31 11:06 - 00555736 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll 2015-03-12 12:54 - 2014-05-31 03:37 - 01054208 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll 2015-03-12 12:54 - 2014-05-31 03:35 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll 2015-03-12 12:54 - 2014-04-11 09:25 - 00419928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll 2015-03-12 12:49 - 2015-01-21 06:54 - 01384712 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2015-03-12 12:49 - 2015-01-21 06:15 - 01123848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll 2015-03-12 12:34 - 2015-03-12 12:34 - 00000000 ____D () C:\Program Files\Microsoft Synchronization Services 2015-03-12 12:33 - 2015-03-12 12:33 - 00000000 ____D () C:\Program Files\Microsoft Sync Framework 2015-03-12 12:33 - 2015-03-12 12:33 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition 2015-03-12 12:29 - 2015-03-12 12:29 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services 2015-03-12 11:52 - 2015-03-12 11:52 - 00000000 ____D () C:\MATS 2015-03-12 09:55 - 2015-03-12 09:55 - 282920160 _____ () C:\Users\Frank\Documents\registry.reg 2015-03-12 09:54 - 2015-03-12 09:54 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2015-03-12 08:41 - 2015-03-12 14:12 - 00000000 ____D () C:\Program Files (x86)\UEFI WinFlash 2015-03-12 08:36 - 2015-03-12 08:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\WinBatch 2015-03-11 22:27 - 2015-03-11 22:27 - 00000000 ____D () C:\Users\Frank\AppData\Local\Macromedia 2015-03-11 22:22 - 2015-03-17 11:28 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-03-11 22:22 - 2015-03-11 22:22 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2015-03-11 22:18 - 2015-03-17 11:12 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\vlc 2015-03-11 22:18 - 2015-03-11 22:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2015-03-11 22:18 - 2015-03-11 22:18 - 00000000 ____D () C:\Program Files\VideoLAN 2015-03-11 22:15 - 2015-03-11 22:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mp3tag 2015-03-11 22:14 - 2015-03-11 22:15 - 00000000 ____D () C:\Program Files (x86)\Mp3tag 2015-03-11 22:10 - 2015-03-11 22:10 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2015-03-11 19:18 - 2015-03-11 19:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON 2015-03-11 19:18 - 2015-03-11 19:18 - 00000000 ____D () C:\ProgramData\EPSON 2015-03-11 19:18 - 2015-03-11 19:18 - 00000000 ____D () C:\Program Files\Common Files\EPSON 2015-03-11 19:18 - 2009-09-30 18:01 - 00088064 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_IBCBHAE.DLL 2015-03-11 19:18 - 2008-11-11 18:00 - 00118784 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_ILMHAE.DLL 2015-03-11 19:18 - 2007-04-09 16:06 - 00010752 _____ (SEIKO EPSON CORP.) C:\Windows\system32\E_GCINST.DLL 2015-03-11 18:49 - 2015-03-16 17:23 - 00000000 ____D () C:\Users\Frank\Desktop\Multimedia 2015-03-11 18:49 - 2015-03-11 18:49 - 00000000 ____D () C:\Users\Frank\Desktop\Grafik & Fotos 2015-03-11 18:48 - 2015-03-16 22:22 - 00000000 ___RD () C:\Users\Frank\Desktop\System & Tools 2015-03-11 18:48 - 2015-03-11 18:48 - 00000000 ____D () C:\Users\Frank\Desktop\Download 2015-03-11 17:50 - 2006-09-12 20:00 - 00234496 _____ (CANON INC.) C:\Windows\system32\CNMLM86.DLL 2015-03-11 17:49 - 2014-03-27 15:35 - 00011294 _____ () C:\Users\Frank\Documents\Mappe2.xlsx 2015-03-11 17:49 - 2013-12-18 18:37 - 00013746 _____ () C:\Users\Frank\Documents\Weihnachtsgeschenke.xlsx 2015-03-11 17:49 - 2013-12-17 14:19 - 00103270 _____ () C:\Users\Frank\Documents\Kreditrechner-Excel.xlsx 2015-03-11 17:49 - 2013-12-17 14:16 - 00057344 _____ () C:\Users\Frank\Documents\Immobilien_Finanzierung.xls 2015-03-11 17:49 - 2013-12-17 14:10 - 00013049 _____ () C:\Users\Frank\Documents\Zinsberechnung.xlsx 2015-03-11 17:49 - 2013-12-13 10:29 - 00976384 _____ () C:\Users\Frank\Documents\Adventkalender.pps 2015-03-11 17:49 - 2013-10-14 18:08 - 02457631 _____ () C:\Users\Frank\Documents\icons.zip 2015-03-11 17:49 - 2012-12-29 16:29 - 00027136 _____ () C:\Users\Frank\Documents\Schallplatten.xls 2015-03-11 17:49 - 2012-12-28 18:15 - 00011254 _____ () C:\Users\Frank\Documents\ninco-schienen.xlsx 2015-03-11 17:49 - 2012-09-24 14:20 - 00072704 _____ () C:\Users\Frank\Documents\Tippformular Saison 2012-2013.xls 2015-03-11 17:49 - 2012-07-08 11:10 - 00010989 _____ () C:\Users\Frank\Documents\Auslagen Marcel.xlsx 2015-03-11 17:49 - 2012-03-17 10:09 - 00097792 _____ () C:\Users\Frank\Documents\ordner_auslesen_hyperlink2007.xls 2015-03-11 17:49 - 2012-02-04 11:45 - 00031232 _____ () C:\Users\Frank\Documents\Steam-Umsätze.xls 2015-03-11 17:49 - 2011-12-05 19:06 - 00011039 _____ () C:\Users\Frank\Documents\Renncenter_Urkunde.xlsx 2015-03-11 17:49 - 2011-11-22 07:32 - 00001303 _____ () C:\Users\Frank\Documents\UseNeXT - Verknüpfung.lnk 2015-03-11 17:49 - 2011-11-06 13:30 - 00012454 _____ () C:\Users\Frank\Documents\Abrechnung Marcel.xlsx 2015-03-11 17:49 - 2011-11-03 19:11 - 00001903 _____ () C:\Users\Frank\Documents\SV Henstedt-Ulzburg - Verknüpfung.lnk 2015-03-11 17:49 - 2011-08-24 09:42 - 00036864 _____ () C:\Users\Frank\Documents\Telefonliste_SVHU_D5_August2011.xls 2015-03-11 17:49 - 2011-07-27 18:51 - 00027648 _____ () C:\Users\Frank\Documents\Pierre.xls 2015-03-11 17:49 - 2011-04-19 13:26 - 00009640 _____ () C:\Users\Frank\Documents\verbrauch.xlsx 2015-03-11 17:49 - 2011-03-16 07:30 - 00199680 _____ () C:\Users\Frank\Documents\MS Visio & MS Project.cld 2015-03-11 17:49 - 2011-03-15 10:56 - 00033792 _____ () C:\Users\Frank\Documents\WG HUP-Kaufbestätigung - 564674586.msg 2015-03-11 17:49 - 2010-10-25 17:54 - 00044100 _____ () C:\Users\Frank\Documents\PC-Software.htm 2015-03-11 17:49 - 2010-10-25 17:53 - 00024576 _____ () C:\Users\Frank\Documents\PC-Software.xls 2015-03-11 17:49 - 2009-09-22 08:11 - 00000324 _____ () C:\Users\Frank\Documents\Outlook-Backup.obp 2015-03-11 17:49 - 2009-08-17 16:30 - 00008792 _____ () C:\Users\Frank\Documents\Java Printing.mdi 2015-03-11 17:49 - 2009-06-22 13:41 - 00071742 _____ () C:\Users\Frank\Documents\Re Spielerliste.htm 2015-03-11 17:49 - 2009-01-28 18:24 - 00011587 _____ () C:\Users\Frank\Documents\TSSTcorpCDDVDW_SN-S082H_SB01.html 2015-03-11 17:49 - 2008-12-07 10:26 - 00296960 _____ () C:\Users\Frank\Documents\Weihnachtsgruß.ppt 2015-03-11 17:49 - 2008-10-28 16:21 - 00013824 _____ () C:\Users\Frank\Documents\Body Mass Index.xls 2015-03-11 17:49 - 2008-09-20 10:36 - 00024064 _____ () C:\Users\Frank\Documents\VideoCDs und VHS.xls 2015-03-11 17:30 - 2015-03-11 17:30 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2015-03-11 17:29 - 2015-03-11 19:35 - 00000000 ____D () C:\ProgramData\Adobe 2015-03-11 17:29 - 2015-03-11 17:29 - 00000000 ____D () C:\Program Files (x86)\Adobe 2015-03-11 17:28 - 2015-03-11 22:22 - 00000000 ____D () C:\Users\Frank\AppData\Local\Adobe 2015-03-11 17:21 - 2015-03-17 11:54 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\UseNeXT 2015-03-11 17:21 - 2015-03-17 11:50 - 00000000 ____D () C:\Users\Frank\Documents\UseNeXT 2015-03-11 17:20 - 2015-03-11 17:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UseNeXT 2015-03-11 17:20 - 2015-03-11 17:20 - 00000000 ____D () C:\Program Files (x86)\UseNeXT 2015-03-11 17:15 - 2015-03-11 17:16 - 00000000 ____D () C:\Users\Frank\AppData\Local\ACD Systems 2015-03-11 17:15 - 2015-03-11 17:15 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\ACD Systems 2015-03-11 17:14 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2015-03-11 17:14 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ACD Systems 2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\ProgramData\ACD Systems 2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\Program Files\Common Files\ACD Systems 2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\Program Files (x86)\ACD Systems 2015-03-11 17:12 - 2015-03-11 17:12 - 00000000 ____D () C:\Users\Frank\AppData\Local\Downloaded Installations 2015-03-11 17:01 - 2015-03-11 17:01 - 00000000 ____D () C:\Program Files (x86)\MSECache 2015-03-11 16:46 - 2015-03-11 16:46 - 00000000 ____D () C:\Users\Frank\AppData\Local\Windows Live 2015-03-11 13:03 - 2015-03-12 12:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint 2015-03-11 13:03 - 2015-03-12 12:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2015-03-11 13:01 - 2015-03-11 13:01 - 00000000 ____D () C:\Program Files (x86)\Microsoft Synchronization Services 2015-03-11 13:00 - 2015-03-11 13:00 - 00000000 ____D () C:\Windows\PCHEALTH 2015-03-11 13:00 - 2015-03-11 13:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft Sync Framework 2015-03-11 13:00 - 2015-03-11 13:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2015-03-11 12:56 - 2015-03-11 12:56 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8 2015-03-11 12:55 - 2015-03-12 12:33 - 00000000 ____D () C:\Program Files\Microsoft Office 2015-03-11 12:55 - 2015-03-11 12:55 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services 2015-03-11 12:54 - 2015-03-11 13:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2015-03-11 12:54 - 2015-03-11 12:54 - 00000000 __RHD () C:\MSOCache 2015-03-11 09:47 - 2015-03-16 10:56 - 00000000 ____D () C:\Users\Frank\Documents\Backups 2015-03-11 09:45 - 2015-03-11 09:45 - 00000000 ____D () C:\Dokumente und Einstellungen 2015-03-11 09:36 - 2015-03-17 12:01 - 00000000 ___SD () C:\Users\Frank\Documents\Sticky Passwords 2015-03-11 09:15 - 2015-03-11 09:15 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2015-03-11 09:15 - 2015-03-11 09:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2015-03-11 09:15 - 2015-03-11 09:15 - 00000000 ____D () C:\Program Files\CCleaner 2015-03-11 09:06 - 2015-03-11 09:07 - 00000000 ____D () C:\Users\Public\Documents\CATraxx 2015-03-11 09:06 - 2015-03-11 09:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CATraxx 2015-03-11 09:06 - 2015-03-11 09:06 - 00000000 ____D () C:\Program Files (x86)\CATraxx 2015-03-11 09:06 - 2012-01-20 17:57 - 01163264 _____ (Chilkat Software, Inc.) C:\Windows\SysWOW64\ChilkatRsa.dll 2015-03-11 09:00 - 2015-03-12 12:22 - 00000000 ____D () C:\Users\Frank\Documents\_Outlook-Dateien 2015-03-11 08:59 - 2015-03-12 13:01 - 00000000 ____D () C:\Program Files (x86)\Outlook Backup Assistant 2015-03-11 08:59 - 2015-03-11 08:59 - 00000000 ____D () C:\Users\Frank\Documents\Add-in Express 2015-03-10 18:53 - 2015-03-10 18:53 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2015-03-10 18:48 - 2015-03-17 13:59 - 00000000 ____D () C:\ProgramData\Microsoft Help 2015-03-10 18:48 - 2015-03-11 14:00 - 00000000 ____D () C:\Users\Frank\AppData\Local\Microsoft Help 2015-03-10 17:23 - 2015-03-17 15:34 - 00000000 ____D () C:\Program Files (x86)\SpeedProject 2015-03-10 16:14 - 2015-03-10 16:14 - 00000000 ___HD () C:\ProgramData\CanonBJ 2015-03-10 16:14 - 2015-03-10 16:14 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2015-03-10 16:12 - 2015-03-16 12:07 - 00000000 ____D () C:\Users\Frank\AppData\Local\Deployment 2015-03-10 16:12 - 2015-03-10 16:12 - 00116480 _____ (AVM Berlin) C:\Windows\system32\Drivers\avmaura.sys 2015-03-10 16:12 - 2015-03-10 16:12 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FRITZ!Box 2015-03-10 16:12 - 2015-03-10 16:12 - 00000000 ____D () C:\Users\Frank\AppData\Local\Apps\2.0 2015-03-10 15:40 - 2015-03-10 15:40 - 00001186 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Mozilla 2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Users\Frank\AppData\Local\Mozilla 2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\ProgramData\Mozilla 2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2015-03-10 15:12 - 2015-03-03 14:17 - 00295552 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2015-03-10 15:06 - 2015-03-10 15:06 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieUserList 2015-03-10 15:06 - 2015-03-10 15:06 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieSiteList 2015-03-10 15:01 - 2015-03-17 19:18 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\ClassicShell 2015-03-10 15:01 - 2015-03-10 15:01 - 00000000 ____D () C:\ProgramData\ClassicShell 2015-03-10 14:58 - 2015-03-10 14:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell 2015-03-10 14:58 - 2015-03-10 14:58 - 00000000 ____D () C:\Program Files\Classic Shell 2015-03-10 14:57 - 2015-03-17 08:28 - 00000000 ____D () C:\Users\Frank\AppData\Local\Google 2015-03-10 14:54 - 2015-03-17 08:00 - 00003922 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{378DF711-DD0C-4AD7-98F3-CA1D88A8AD0B} 2015-03-10 14:49 - 2015-03-10 14:49 - 00000000 ____D () C:\Users\Default\AppData\Local\Google 2015-03-10 14:49 - 2015-03-10 14:49 - 00000000 ____D () C:\Users\Default User\AppData\Local\Google 2015-03-10 14:47 - 2015-03-18 10:45 - 00000000 ___DO () C:\Users\Frank\OneDrive 2015-03-10 14:46 - 2015-03-17 11:57 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2734555180-3142773653-1428810083-1001 2015-03-10 14:41 - 2015-03-10 17:24 - 00000000 ____D () C:\Users\Frank\AppData\Local\TOSHIBA 2015-03-10 14:40 - 2015-03-10 14:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Macromedia 2015-03-10 14:39 - 2015-03-16 13:58 - 00000000 ____D () C:\Users\Frank\AppData\Local\VirtualStore 2015-03-10 14:39 - 2015-03-11 17:47 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Adobe 2015-03-10 14:39 - 2015-03-10 14:43 - 00000000 ____D () C:\Users\Frank\AppData\Local\Packages 2015-03-10 14:39 - 2015-03-10 14:39 - 00001465 _____ () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-03-10 14:37 - 2015-03-17 15:48 - 00000000 ____D () C:\Users\Frank 2015-03-10 14:37 - 2015-03-10 14:37 - 00000020 ___SH () C:\Users\Frank\ntuser.ini 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Vorlagen 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Startmenü 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Netzwerkumgebung 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Lokale Einstellungen 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Eigene Dateien 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Druckumgebung 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Documents\Eigene Musik 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Documents\Eigene Bilder 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\AppData\Local\Verlauf 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\AppData\Local\Anwendungsdaten 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Anwendungsdaten 2015-03-10 14:37 - 2014-03-18 11:00 - 00000000 ___RD () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-03-10 14:37 - 2014-03-18 11:00 - 00000000 ___RD () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-03-10 14:37 - 2014-03-18 10:49 - 00000369 _____ () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2015-03-10 14:37 - 2014-03-18 10:49 - 00000369 _____ () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2015-03-10 14:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-03-10 14:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-02-17 15:19 - 2015-02-17 15:19 - 01614496 _____ (Microsoft Corporation) C:\Windows\system32\FM20.DLL ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-03-18 10:43 - 2013-08-22 14:25 - 00524288 ___SH () C:\Windows\system32\config\BBI 2015-03-17 19:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru 2015-03-17 15:00 - 2014-08-29 20:24 - 00000000 ____D () C:\ProgramData\Temp 2015-03-17 14:07 - 2013-08-22 15:44 - 00483008 _____ () C:\Windows\system32\FNTCACHE.DAT 2015-03-17 13:59 - 2013-08-22 14:25 - 00000199 _____ () C:\Windows\win.ini 2015-03-17 13:45 - 2014-08-29 20:24 - 00000000 ____D () C:\ProgramData\Package Cache 2015-03-17 12:03 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-03-17 11:49 - 2014-05-22 00:54 - 00001132 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-03-17 11:24 - 2014-05-22 00:54 - 00001128 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-03-17 11:18 - 2014-05-06 05:41 - 00765582 _____ () C:\Windows\system32\perfh007.dat 2015-03-17 11:18 - 2014-05-06 05:41 - 00159366 _____ () C:\Windows\system32\perfc007.dat 2015-03-17 11:18 - 2014-03-18 10:47 - 01776918 _____ () C:\Windows\system32\PerfStringBackup.INI 2015-03-17 08:28 - 2014-05-22 00:54 - 00000000 ____D () C:\Program Files (x86)\Google 2015-03-16 22:27 - 2008-12-07 17:20 - 00000000 ____D () C:\Users\Frank\Documents\Schriftverkehr 2015-03-16 22:19 - 2014-08-29 20:41 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-03-16 22:19 - 2014-08-29 20:41 - 00000000 ____D () C:\ProgramData\WildTangent 2015-03-16 22:19 - 2014-08-29 20:41 - 00000000 ____D () C:\Program Files (x86)\WildTangent Games 2015-03-16 17:25 - 2014-05-22 01:03 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2015-03-16 15:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache 2015-03-16 13:39 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp 2015-03-16 13:31 - 2014-05-06 05:40 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer 2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\winrm 2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\WCN 2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\slmgr 2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\winrm 2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\WCN 2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\slmgr 2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel 2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\WinStore 2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\MUI 2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\MUI 2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender 2015-03-16 13:31 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\Sysprep 2015-03-16 13:31 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\servicing 2015-03-16 13:13 - 2014-03-18 10:33 - 00000000 ____D () C:\Program Files\Windows Journal 2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Photo Viewer 2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\System 2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer 2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2015-03-16 13:12 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\Printing_Admin_Scripts 2015-03-16 13:12 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\Com 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\SystemResetPlatform 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\migwiz 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\Com 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\IME 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Help 2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\SysWOW64\oobe 2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\SysWOW64\Dism 2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\oobe 2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\Dism 2015-03-16 12:52 - 2013-08-22 16:36 - 00000000 ___SD () C:\Windows\system32\dsc 2015-03-16 12:03 - 2014-05-22 01:03 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA 2015-03-16 10:14 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\SecureBootUpdates 2015-03-16 10:03 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness 2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData 2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\setup 2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\InputMethod 2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\setup 2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS 2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS 2015-03-12 16:38 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2015-03-12 16:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\MediaViewer 2015-03-12 16:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\FileManager 2015-03-12 16:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Camera 2015-03-12 12:35 - 2014-03-18 10:33 - 00000000 ____D () C:\Windows\ShellNew 2015-03-12 12:34 - 2014-05-06 05:23 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2015-03-12 08:40 - 2014-08-29 20:10 - 00000000 ____D () C:\Program Files (x86)\TOSHIBA 2015-03-11 13:50 - 2014-05-22 00:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive 2015-03-11 12:10 - 2014-05-23 01:33 - 00000000 ____D () C:\Windows\Panther 2015-03-10 17:17 - 2014-08-29 20:30 - 00000000 ____D () C:\ProgramData\McAfee 2015-03-10 17:07 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\spool 2015-03-10 16:59 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\NDF 2015-03-10 15:13 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM 2015-03-10 15:09 - 2013-08-22 16:36 - 00000000 ___HD () C:\Windows\ELAMBKUP 2015-03-10 14:57 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\restore 2015-03-10 14:45 - 2014-05-22 00:54 - 00000000 ____D () C:\ProgramData\TOSHIBA 2015-03-10 14:44 - 2014-05-22 00:54 - 00004104 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-03-10 14:44 - 2014-05-22 00:54 - 00003868 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-03-10 14:39 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\sysprep 2015-03-06 09:11 - 2012-09-27 07:12 - 00000000 ____D () C:\Users\Frank\Documents\Tippspiel ==================== Files in the root of some directories ======= 2015-03-17 10:29 - 2015-03-17 10:29 - 0000840 _____ () C:\Users\Frank\AppData\Local\recently-used.xbel 2014-08-29 20:06 - 2014-08-29 20:06 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Some content of TEMP: ==================== C:\Users\Frank\AppData\Local\Temp\PresentationCore.dll C:\Users\Frank\AppData\Local\Temp\PresentationFramework.dll C:\Users\Frank\AppData\Local\Temp\Quarantine.exe C:\Users\Frank\AppData\Local\Temp\ReachFramework.dll C:\Users\Frank\AppData\Local\Temp\sqlite3.dll C:\Users\Frank\AppData\Local\Temp\UIAutomationProvider.dll C:\Users\Frank\AppData\Local\Temp\UIAutomationTypes.dll C:\Users\Frank\AppData\Local\Temp\WindowsBase.dll C:\Users\Frank\AppData\Local\Temp\WindowsFormsIntegration.dll C:\Users\Frank\AppData\Local\Temp\xmlUpdater.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-05-22 08:48 ==================== End Of Log ============================ Gruß Frank Selle |
18.03.2015, 17:22 | #9 |
/// the machine /// TB-Ausbilder | Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Winlogon: [Shell] C:\Windows\explorer.exe [2501368 2015-01-28] (Microsoft Corporation) <==== ATTENTION Emptytemp: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
ESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
18.03.2015, 19:54 | #10 |
| Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden und hier die fixlog.txt: Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-03-2015 Ran by Frank at 2015-03-18 17:31:08 Run:1 Running from C:\Users\Frank\Desktop Loaded Profiles: Frank (Available profiles: Frank) Boot Mode: Normal ============================================== Content of fixlist: ***************** HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Winlogon: [Shell] C:\Windows\explorer.exe [2501368 2015-01-28] (Microsoft Corporation) <==== ATTENTION Emptytemp: ***************** HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell => value deleted successfully. EmptyTemp: => Removed 475.3 MB temporary data. The system needed a reboot. ==== End of Fixlog 17:31:32 ==== Hallo Schrauber, mit dem Online-Scan hat es etwas gedauert, hier das Ergebnis: Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7623 # api_version=3.0.2 # EOSSerial=159c421baa72574887e6e2c13e4aa576 # engine=22968 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2015-03-18 06:40:58 # local_time=2015-03-18 07:40:58 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1031 # osver=6.2.9200 NT # compatibility_mode_1='' # compatibility_mode=5893 16776573 100 94 22222 4185190 0 0 # scanned=236696 # found=2 # cleaned=0 # scan_time=7218 sh=94D47A4F72A1D05EECF5A808B13FC72891C6C016 ft=1 fh=39c0f4beca1f3c20 vn="Variante von MSIL/Injector.EAD Trojaner" ac=I fn="C:\Windows\System32\Application Services\appsvc.exe.vir" sh=94D47A4F72A1D05EECF5A808B13FC72891C6C016 ft=1 fh=39c0f4beca1f3c20 vn="Variante von MSIL/Injector.EAD Trojaner" ac=I fn="C:\Windows\SysWOW64\Application Services\appsvc.exe.vir" Und hier die chekup.txt: Code:
ATTFilter Results of screen317's Security Check version 0.99.97 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Windows Defender WMI entry may not exist for antivirus; attempting automatic update. `````````Anti-malware/Other Utilities Check:````````` Trojan Remover 6.9.1 Java 8 Update 40 Java version 32-bit out of Date! Java 64-bit 8 Update 31 Adobe Flash Player 16.0.0.305 Adobe Reader XI Mozilla Firefox (36.0.1) Google Chrome (41.0.2272.89) ````````Process Check: objlist.exe by Laurent```````` Windows Defender MSMpEng.exe Malwarebytes Anti-Malware mbamservice.exe Malwarebytes Anti-Malware mbam.exe Malwarebytes Anti-Malware mbamscheduler.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: % ````````````````````End of Log`````````````````````` Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015 Ran by Frank (administrator) on UHURA2 on 18-03-2015 19:50:31 Running from C:\Users\Frank\Desktop Loaded Profiles: Frank (Available profiles: Frank) Platform: Windows 8.1 Connected (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe () C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Toshiba Corporation) C:\Program Files\TOSHIBA\Teco\TecoService.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Teco\TecoResident.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Program Files (x86)\ACD Systems\ACDSee\18.0\ACDSeeCommander18.exe () C:\Users\Frank\AppData\Local\Amazon Music\Amazon Music Helper.exe (AVM Berlin) C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe (TOSHIBA) C:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TDUSrv64.exe (ACD Systems) C:\Program Files (x86)\ACD Systems\ACDSee\18.0\acdIDInTouch2.exe (H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\vc10tray.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Don HO don.h@free.fr) C:\Program Files (x86)\Notepad++\notepad++.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [] => [X] HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2556768 2013-10-09] (TOSHIBA Corporation) HKLM\...\Run: [TecoResident] => C:\Program Files\TOSHIBA\Teco\TecoResident.exe [179288 2014-01-05] (TOSHIBA Corporation) HKLM\...\Run: [TSSSrv] => C:\Program Files (x86)\TOSHIBA\System Setting\TSSSrv.exe [296008 2013-10-22] (TOSHIBA Corporation) HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [354144 2013-08-13] (TOSHIBA Corporation) HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-20] (IvoSoft) HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation) HKLM-x32\...\Run: [KeNotify] => C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [34160 2013-08-06] (TOSHIBA CORPORATION) HKLM-x32\...\Run: [TSVU] => c:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TosSmartViewLauncher.exe [516512 2013-07-23] (TOSHIBA) HKLM-x32\...\Run: [ACSW18DE] => C:\Program Files (x86)\ACD Systems\ACDSee\18.0\acdIDInTouch2.exe [1470224 2014-09-17] (ACD Systems) HKLM-x32\...\Run: [ITSecMng] => C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [80840 2011-04-01] (TOSHIBA CORPORATION) HKLM-x32\...\Run: [VC10Player] => C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe [416696 2012-10-25] (H+H Software GmbH) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation) HKLM-x32\...\Run: [TrojanScanner] => C:\Program Files (x86)\Trojan Remover\Trjscan.exe [1791856 2014-10-16] (Simply Super Software) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [AVMUSBFernanschluss] => C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\AVMAutoStart.exe [139264 2015-03-10] (AVM Berlin) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7416088 2015-02-19] (Piriform Ltd) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [ACDSeeCommander18] => C:\Program Files (x86)\ACD Systems\ACDSee\18.0\ACDSeeCommander18.exe [1973256 2014-12-17] () HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [Amazon Music] => C:\Users\Frank\AppData\Local\Amazon Music\Amazon Music Helper.exe [5886272 2015-03-02] () HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [26232152 2015-02-19] (Google) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x00000000 HKU\S-1-5-18\...\Run: [EPSONE8BE74 (Epson Stylus SX430)] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHAE.EXE [232448 2011-01-20] (SEIKO EPSON CORPORATION) ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.de/ HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://toshiba13.msn.com/?pc=TEJB HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://toshiba.eu/symbaloo_c SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2734555180-3142773653-1428810083-1001 -> {898DEB29-90E7-4FED-ADAC-FCDAB1A2CEFC} URL = BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft) BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20] (IvoSoft) BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2014-12-16] (Adblock Plus) BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-17] (Oracle Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-17] (Oracle Corporation) BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20] (IvoSoft) BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2014-12-16] (Adblock Plus) Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft) Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft) Tcpip\Parameters: [DhcpNameServer] 192.168.0.10 FireFox: ======== FF ProfilePath: C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll [2015-03-11] () FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.2.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-03-11] () FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-17] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-17] (Oracle Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-10] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-10] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.) FF Extension: Avira Browser Safety - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\abs@avira.com [2015-03-17] FF Extension: mediaplayerconnectivity - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{84b24861-62f6-364b-eba5-2e5e2061d7e6} [2015-03-11] FF Extension: Add to Amazon Wish List Button - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\amznUWL2@amazon.com.xpi [2015-03-11] FF Extension: NoScript - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2015-03-11] FF Extension: Video DownloadHelper - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2015-03-16] FF Extension: Adblock Plus - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-03-10] Chrome: ======= CHR HomePage: Default -> hxxp://go.microsoft.com/fwlink/?LinkId=69157 CHR Profile: C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Slides) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-17] CHR Extension: (Google Docs) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-17] CHR Extension: (Google Drive) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-17] CHR Extension: (YouTube) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-17] CHR Extension: (Adblock Plus) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-03-17] CHR Extension: (Google Search) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-17] CHR Extension: (Avira SafeSearch) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\eglgfnfolcgijipffhlhbbnefdcbjbml [2015-03-17] CHR Extension: (Google Sheets) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-17] CHR Extension: (Sticky Password Autofill Engine) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggepjhbdgijjkbelnggboeoehacbphed [2015-03-17] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-17] CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-03-17] CHR Extension: (Google Wallet) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-17] CHR Extension: (Gmail) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-17] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - https://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) Locked "vdrv1000" service was unlocked successfully. <===== ATTENTION R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [319104 2014-03-19] (Windows (R) Win 7 DDK provider) [File not signed] R2 dts_apo_service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [21840 2014-03-03] () R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-02] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-02] (Intel(R) Corporation) R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation) S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [116088 2014-08-05] (Toshiba Europe GmbH) R2 VC10SecS; C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe [147312 2014-12-15] (H+H Software GmbH) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3888640 2014-02-14] (Qualcomm Atheros Communications, Inc.) R3 avmaura; C:\Windows\System32\drivers\avmaura.sys [116480 2015-03-10] (AVM Berlin) S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation) S3 GENERICDRV; C:\Program Files (x86)\UEFI WinFlash\amifldrv64.sys [15640 2012-07-27] () S3 HH10Help.sys; C:\Windows\system32\drivers\HH10Help.sys [24088 2009-07-09] (H+H Software GmbH) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation) R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2015-03-18] (Malwarebytes Corporation) R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2014-11-21] (Malwarebytes Corporation) R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [291544 2014-01-03] (Realtek Semiconductor Corp.) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31472 2014-02-21] (Synaptics Incorporated) R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [33168 2013-10-10] (Windows (R) Win 7 DDK provider) S3 Tosrfcom; No ImagePath R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation) R1 vdrv1000; C:\Windows\System32\drivers\vdrv1000.sys [226080 2012-12-06] (H+H Software GmbH) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-03-18 19:48 - 2015-03-18 19:47 - 00852604 _____ () C:\Users\Frank\Desktop\SecurityCheck.exe 2015-03-18 19:47 - 2015-03-18 19:47 - 00852604 _____ () C:\Users\Frank\Downloads\SecurityCheck.exe 2015-03-18 17:37 - 2015-03-18 17:37 - 02347384 _____ (ESET) C:\Users\Frank\Downloads\esetsmartinstaller_deu.exe 2015-03-18 11:01 - 2015-03-18 11:01 - 00143219 _____ () C:\Users\Frank\Desktop\FRST_neu.txt 2015-03-18 10:57 - 2015-03-18 10:57 - 00000624 _____ () C:\Users\Frank\Desktop\JRT.txt 2015-03-18 10:48 - 2015-03-18 10:48 - 01388672 _____ (Thisisu) C:\Users\Frank\Downloads\JRT.exe 2015-03-18 10:48 - 2015-03-18 10:48 - 01388672 _____ (Thisisu) C:\Users\Frank\Desktop\JRT.exe 2015-03-18 10:46 - 2015-03-18 10:46 - 00001222 _____ () C:\Users\Frank\Desktop\AdwCleaner[S0].txt 2015-03-18 10:39 - 2015-03-18 10:43 - 00000000 ____D () C:\AdwCleaner 2015-03-18 10:38 - 2015-03-18 10:38 - 02171392 _____ () C:\Users\Frank\Downloads\AdwCleaner_4.112.exe 2015-03-18 10:38 - 2015-03-18 10:38 - 02171392 _____ () C:\Users\Frank\Desktop\AdwCleaner_4.112.exe 2015-03-18 10:37 - 2015-03-18 10:37 - 00001042 _____ () C:\Users\Frank\Desktop\mbam.txt 2015-03-18 10:04 - 2015-03-18 10:05 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (3).exe 2015-03-17 18:54 - 2015-03-17 18:55 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Frank\Downloads\tdsskiller.exe 2015-03-17 17:10 - 2015-03-18 19:12 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-03-17 17:10 - 2015-03-18 10:02 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2015-03-17 17:09 - 2015-03-17 18:26 - 00000000 ____D () C:\Users\Frank\Desktop\mbar 2015-03-17 17:08 - 2015-03-17 17:08 - 16502728 _____ (Malwarebytes Corp.) C:\Users\Frank\Downloads\mbar-1.09.1.1004.exe 2015-03-17 17:08 - 2015-03-17 17:08 - 16502728 _____ (Malwarebytes Corp.) C:\Users\Frank\Desktop\mbar-1.09.1.1004.exe 2015-03-17 15:53 - 2015-03-17 15:53 - 00000291 _____ () C:\Users\Frank\Desktop\gmer.txt 2015-03-17 15:52 - 2015-03-17 15:52 - 00000000 _____ () C:\Users\Frank\Desktop\Neues Textdokument.txt 2015-03-17 15:50 - 2015-03-17 15:50 - 00380416 _____ () C:\Users\Frank\Downloads\Gmer-19357.exe 2015-03-17 15:48 - 2015-03-17 15:48 - 00000472 _____ () C:\Users\Frank\Downloads\defogger_disable.log 2015-03-17 15:48 - 2015-03-17 15:48 - 00000000 _____ () C:\Users\Frank\defogger_reenable 2015-03-17 15:47 - 2015-03-17 15:47 - 00050477 _____ () C:\Users\Frank\Downloads\Defogger.exe 2015-03-17 15:23 - 2015-03-17 15:24 - 00029764 _____ () C:\Users\Frank\Downloads\Addition.txt 2015-03-17 15:21 - 2015-03-17 15:24 - 00142748 _____ () C:\Users\Frank\Downloads\FRST.txt 2015-03-17 15:20 - 2015-03-17 15:21 - 02095616 _____ (Farbar) C:\Users\Frank\Downloads\FRST64.exe 2015-03-17 15:13 - 2015-03-17 15:13 - 00000022 _____ () C:\Users\Frank\Downloads\apppath.torun 2015-03-17 15:02 - 2015-03-17 15:02 - 00022528 _____ (Microsoft) C:\Users\Frank\Downloads\RunAsSystem.exe 2015-03-17 14:52 - 2015-03-18 10:06 - 00001084 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-03-17 14:52 - 2015-03-18 10:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-03-17 14:52 - 2015-03-18 10:06 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-03-17 14:52 - 2015-03-17 14:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (2).exe 2015-03-17 14:52 - 2015-03-17 14:52 - 00000000 ____D () C:\ProgramData\Malwarebytes 2015-03-17 14:52 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-03-17 14:52 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-03-17 14:52 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2015-03-17 14:51 - 2015-03-17 14:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (1).exe 2015-03-17 14:51 - 2015-03-17 14:52 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028.exe 2015-03-17 13:56 - 2015-03-17 13:56 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER 2015-03-17 13:41 - 2015-03-17 13:41 - 00000000 ____D () C:\OETemp 2015-03-17 13:23 - 2015-03-17 14:06 - 00000000 ____D () C:\Program Files (x86)\Avira 2015-03-17 13:22 - 2015-03-17 13:22 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\Frank\Downloads\avira_de_av_5946238192__ws.exe 2015-03-17 13:17 - 2015-03-17 13:18 - 00000000 ____D () C:\ProgramData\Kaspersky Lab Setup Files 2015-03-17 13:16 - 2015-03-17 13:16 - 00416576 _____ (Kaspersky Lab) C:\Users\Frank\Downloads\de-de.setup.exe 2015-03-17 13:15 - 2015-03-17 13:15 - 141468920 _____ (Microsoft Corporation) C:\Users\Frank\Downloads\msert.exe 2015-03-17 13:13 - 2015-03-17 13:14 - 00013513 _____ () C:\Users\Frank\Desktop\Addition.txt 2015-03-17 13:10 - 2015-03-18 19:50 - 00019442 _____ () C:\Users\Frank\Desktop\FRST.txt 2015-03-17 13:10 - 2015-03-18 19:50 - 00000000 ____D () C:\FRST 2015-03-17 12:30 - 2015-03-17 12:28 - 02095616 _____ (Farbar) C:\Users\Frank\Desktop\FRST64.exe 2015-03-17 12:20 - 2015-03-17 12:20 - 00001121 _____ () C:\Users\Public\Desktop\Trojan Remover.lnk 2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\Users\Frank\Documents\Simply Super Software 2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Simply Super Software 2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trojan Remover 2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\ProgramData\Licenses 2015-03-17 12:19 - 2015-03-17 12:20 - 00000000 ____D () C:\Program Files (x86)\Trojan Remover 2015-03-17 12:19 - 2015-03-17 12:19 - 00000000 ____D () C:\ProgramData\Simply Super Software 2015-03-17 12:18 - 2015-03-17 12:19 - 31390952 _____ (Simply Super Software ) C:\Users\Frank\Downloads\trjsetup691.exe 2015-03-17 12:04 - 2015-03-17 12:04 - 00000000 __SHD () C:\ProgramData\Application Services 2015-03-17 11:54 - 2015-03-17 12:21 - 00000000 __SHD () C:\Windows\SysWOW64\Application Services 2015-03-17 11:24 - 2015-03-18 17:32 - 00001276 _____ () C:\Windows\setupact.log 2015-03-17 11:24 - 2015-03-17 11:24 - 00000000 _____ () C:\Windows\setuperr.log 2015-03-17 11:23 - 2015-03-18 10:02 - 00143660 _____ () C:\Windows\PFRO.log 2015-03-17 11:09 - 2015-03-17 11:10 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Mp3tag 2015-03-17 10:48 - 2015-03-17 10:48 - 00650657 _____ () C:\Users\Frank\Downloads\lame3.99.5.zip 2015-03-17 10:41 - 2015-03-17 15:51 - 00000000 ____D () C:\Users\Frank\AppData\Local\CrashDumps 2015-03-17 10:40 - 2015-03-17 10:49 - 00000000 ____D () C:\Program Files (x86)\Exact Audio Copy 2015-03-17 10:40 - 2015-03-17 10:40 - 00001052 _____ () C:\Users\Public\Desktop\Exact Audio Copy.lnk 2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\EAC 2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\AccurateRip 2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Exact Audio Copy 2015-03-17 10:38 - 2015-03-17 10:39 - 00000000 ____D () C:\ProgramData\Oracle 2015-03-17 10:38 - 2015-03-17 10:38 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\ProgramData\Sun 2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\Program Files (x86)\Java 2015-03-17 10:37 - 2015-03-17 10:37 - 00561064 _____ (Oracle Corporation) C:\Users\Frank\Downloads\jxpiinstall.exe 2015-03-17 10:36 - 2015-03-17 10:39 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Freeplane 2015-03-17 10:36 - 2015-03-17 10:36 - 00000842 _____ () C:\Users\Public\Desktop\Freeplane.lnk 2015-03-17 10:36 - 2015-03-17 10:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freeplane 2015-03-17 10:36 - 2015-03-17 10:36 - 00000000 ____D () C:\Program Files\Freeplane 2015-03-17 10:29 - 2015-03-17 10:29 - 00000840 _____ () C:\Users\Frank\AppData\Local\recently-used.xbel 2015-03-17 10:29 - 2015-03-17 10:29 - 00000000 ____D () C:\Users\Frank\AppData\Local\gtk-2.0 2015-03-17 10:29 - 2015-03-17 10:29 - 00000000 ____D () C:\Users\Frank\.thumbnails 2015-03-17 10:22 - 2015-03-17 10:35 - 00000000 ____D () C:\Users\Frank\.gimp-2.8 2015-03-17 10:22 - 2015-03-17 10:22 - 04620717 _____ () C:\Users\Frank\Downloads\eac-1.0beta4.exe 2015-03-17 10:22 - 2015-03-17 10:22 - 00000000 ____D () C:\Users\Frank\AppData\Local\gegl-0.2 2015-03-17 10:14 - 2015-03-17 10:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\FileZilla 2015-03-17 10:14 - 2015-03-17 10:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 2015-03-17 10:14 - 2015-03-17 10:14 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client 2015-03-17 10:13 - 2015-03-17 10:26 - 00000916 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk 2015-03-17 10:12 - 2015-03-17 10:13 - 00000000 ____D () C:\Program Files\GIMP 2 2015-03-17 10:11 - 2015-03-17 16:25 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Notepad++ 2015-03-17 10:11 - 2015-03-17 10:12 - 00000000 ____D () C:\Program Files (x86)\Notepad++ 2015-03-17 10:11 - 2015-03-17 10:11 - 00001035 _____ () C:\Users\Frank\Desktop\Notepad++.lnk 2015-03-17 10:11 - 2015-03-17 10:11 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ 2015-03-17 10:11 - 2015-03-17 10:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2015-03-17 10:06 - 2015-03-17 10:06 - 06208736 _____ (Tim Kosse) C:\Users\Frank\Downloads\filezilla_3.10.2_win32-setup.exe 2015-03-17 10:05 - 2015-03-17 10:05 - 08271739 _____ () C:\Users\Frank\Downloads\npp.6.7.5.installer.exe 2015-03-17 10:00 - 2015-03-17 10:00 - 91931728 _____ (The GIMP Team ) C:\Users\Frank\Downloads\gimp-2.8.14-setup-1.exe 2015-03-17 09:58 - 2015-03-17 09:58 - 24430312 _____ (Open source ) C:\Users\Frank\Downloads\freeplane-setup-1.3.15.exe 2015-03-17 08:41 - 2015-03-18 17:34 - 00000000 ___RD () C:\Users\Frank\Google Drive 2015-03-17 08:28 - 2015-03-17 08:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-03-17 08:27 - 2015-03-17 08:27 - 00880208 _____ (Google Inc.) C:\Users\Frank\Downloads\ChromeSetup.exe 2015-03-17 08:13 - 2015-03-17 08:13 - 00000000 ____D () C:\Program Files\Adblock Plus for IE 2015-03-17 08:12 - 2015-03-17 08:12 - 05915456 _____ ( ) C:\Users\Frank\Downloads\adblockplusie-1.3.exe 2015-03-16 22:19 - 2015-03-18 14:06 - 01546988 _____ () C:\Windows\WindowsUpdate.log 2015-03-16 22:16 - 2015-03-16 22:19 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\WildTangent 2015-03-16 22:16 - 2015-03-16 22:16 - 00000000 ____D () C:\ProgramData\BlueStacks 2015-03-16 21:16 - 2015-03-16 21:16 - 15094704 _____ (Lamantine Software ) C:\Users\Frank\Downloads\stpass_free_606434.exe 2015-03-16 21:16 - 2015-03-16 21:16 - 15094696 _____ (Lamantine Software ) C:\Users\Frank\Downloads\stpass_trial_606434.exe 2015-03-16 19:46 - 2015-03-16 20:09 - 00121344 ___SH () C:\Users\Frank\Downloads\Thumbs.db 2015-03-16 17:26 - 2015-03-16 17:46 - 00000000 ___SD () C:\Users\Public\Virtual CDs 2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ___SD () C:\Users\Public\Virtual CD v10 2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ___SD () C:\Users\Frank\AppData\Roaming\Virtual CD v10 2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual CD v10 2015-03-16 17:26 - 2012-12-06 11:09 - 00226080 ____N (H+H Software GmbH) C:\Windows\system32\Drivers\vdrv1000.sys 2015-03-16 17:26 - 2009-07-09 11:24 - 00024088 _____ (H+H Software GmbH) C:\Windows\system32\Drivers\HH10Help.sys 2015-03-16 17:25 - 2015-03-16 17:26 - 00000000 ____D () C:\Program Files (x86)\Virtual CD v10 2015-03-16 17:24 - 2015-03-16 17:24 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\InstallShield 2015-03-16 17:24 - 2008-06-17 09:22 - 00040464 _____ (H+H Software GmbH) C:\Windows\system32\Drivers\vcd10bus.sys 2015-03-16 16:43 - 2000-10-29 15:33 - 00141312 _____ (Info-ZIP) C:\Windows\SysWOW64\Zip32.dll 2015-03-16 16:30 - 2015-03-16 17:01 - 00000000 ____D () C:\Users\Frank\Documents\TC Seth 2015-03-16 15:13 - 2015-03-16 16:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\M-DVD.Org V2 2015-03-16 15:13 - 2007-09-24 10:04 - 00675840 _____ () C:\Windows\SysWOW64\AudioGenie2.ocx 2015-03-16 15:13 - 2006-03-09 12:34 - 02945024 _____ (hxxp://mediainfo.sourceforge.net) C:\Windows\SysWOW64\MediaInfo.dll 2015-03-16 15:13 - 2004-05-27 00:32 - 00102400 _____ (Info-ZIP) C:\Windows\SysWOW64\unzip32.dll 2015-03-16 15:12 - 2015-03-16 16:43 - 00000000 ____D () C:\Program Files (x86)\M-DVD.Org V2 2015-03-16 15:12 - 2015-03-16 15:12 - 00000000 ____D () C:\ProgramData\M-DVD.Org V2 2015-03-16 15:12 - 2009-12-04 11:56 - 00061440 ____H (SynApp GmbH) C:\Windows\SysWOW64\ErrExplorer.dll 2015-03-16 15:12 - 2006-10-06 09:20 - 02899968 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11.dll 2015-03-16 15:12 - 2006-10-04 16:01 - 00351232 _____ (combit GmbH) C:\Windows\SysWOW64\cmpr11.dll 2015-03-16 15:12 - 2006-09-26 15:51 - 01399296 _____ (combit GmbH) C:\Windows\SysWOW64\cmct11.dll 2015-03-16 15:12 - 2006-09-26 15:39 - 01378304 _____ (combit GmbH) C:\Windows\SysWOW64\cmls11.dll 2015-03-16 15:12 - 2006-09-26 15:39 - 00893952 _____ (combit GmbH) C:\Windows\SysWOW64\cmbr11.dll 2015-03-16 15:12 - 2006-09-26 15:38 - 00739328 _____ (combit GmbH) C:\Windows\SysWOW64\cmdw11.dll 2015-03-16 15:12 - 2006-09-26 15:36 - 00337920 _____ (combit GmbH) C:\Windows\SysWOW64\cmut11.dll 2015-03-16 15:12 - 2006-09-13 10:29 - 00688640 _____ (combit GmbH) C:\Windows\SysWOW64\cmmx01.dll 2015-03-16 15:12 - 2006-07-19 07:00 - 00349184 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11pw.llx 2015-03-16 15:12 - 2006-06-22 08:50 - 00165584 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11o.ocx 2015-03-16 15:12 - 2005-09-13 13:29 - 00414720 _____ (combit GmbH) C:\Windows\SysWOW64\cmll1100.lng 2015-03-16 15:12 - 2005-08-08 16:10 - 00425984 _____ () C:\Windows\SysWOW64\cmmx0100.lng 2015-03-16 15:12 - 2005-07-12 09:41 - 00684032 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11xl.dll 2015-03-16 15:12 - 2005-06-23 15:17 - 01161492 _____ () C:\Windows\SysWOW64\cmLL1100.chm 2015-03-16 12:57 - 2015-03-17 12:10 - 00000000 ____D () C:\Program Files (x86)\Sticky Password 2015-03-16 12:04 - 2015-03-16 12:04 - 00000000 ____D () C:\ProgramData\ToshibaEurope 2015-03-16 12:04 - 2015-03-16 12:04 - 00000000 ____D () C:\ProgramData\TOSHIBA Tempro 2015-03-16 12:03 - 2015-03-16 12:03 - 00000000 ____D () C:\Windows\System32\Tasks\Toshiba 2015-03-16 12:03 - 2015-03-16 12:03 - 00000000 ____D () C:\Program Files (x86)\Toshiba TEMPRO 2015-03-16 11:55 - 2015-03-16 11:55 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieBrowserModeList 2015-03-16 11:54 - 2015-03-16 11:54 - 00000000 ____D () C:\ProgramData\IsolatedStorage 2015-03-16 08:57 - 2014-07-24 16:03 - 02141920 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2015-03-16 08:57 - 2014-07-24 14:36 - 02145472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2015-03-16 08:57 - 2014-07-24 10:44 - 16874496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2015-03-16 08:57 - 2014-07-24 10:16 - 12730880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2015-03-16 08:57 - 2014-07-24 09:53 - 01261056 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll 2015-03-16 08:57 - 2014-07-24 09:32 - 01532416 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll 2015-03-16 08:57 - 2014-07-24 08:28 - 01600000 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll 2015-03-16 08:57 - 2014-06-14 07:03 - 02389504 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2015-03-16 08:57 - 2014-06-14 06:46 - 02071552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2015-03-16 08:56 - 2014-07-24 16:28 - 00419648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2015-03-16 08:56 - 2014-07-24 16:28 - 00412992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys 2015-03-16 08:56 - 2014-07-24 16:28 - 00280384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys 2015-03-16 08:56 - 2014-07-24 16:28 - 00143680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2015-03-16 08:56 - 2014-07-24 16:25 - 00054752 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-03-16 08:56 - 2014-07-24 16:23 - 01519488 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2015-03-16 08:56 - 2014-07-24 16:23 - 00125472 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll 2015-03-16 08:56 - 2014-07-24 16:20 - 00263400 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe 2015-03-16 08:56 - 2014-07-24 16:16 - 02574208 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2015-03-16 08:56 - 2014-07-24 16:16 - 00211216 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe 2015-03-16 08:56 - 2014-07-24 16:07 - 02009920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2015-03-16 08:56 - 2014-07-24 16:05 - 01660048 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2015-03-16 08:56 - 2014-07-24 16:05 - 01519560 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2015-03-16 08:56 - 2014-07-24 16:05 - 01488008 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2015-03-16 08:56 - 2014-07-24 16:05 - 01356840 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2015-03-16 08:56 - 2014-07-24 16:03 - 00882136 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2015-03-16 08:56 - 2014-07-24 16:03 - 00360480 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll 2015-03-16 08:56 - 2014-07-24 16:03 - 00233888 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2015-03-16 08:56 - 2014-07-24 16:03 - 00205512 _____ (Microsoft Corporation) C:\Windows\system32\mftranscode.dll 2015-03-16 08:56 - 2014-07-24 14:50 - 00098048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll 2015-03-16 08:56 - 2014-07-24 14:48 - 02410976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2015-03-16 08:56 - 2014-07-24 14:48 - 00180208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe 2015-03-16 08:56 - 2014-07-24 14:36 - 00707536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll 2015-03-16 08:56 - 2014-07-24 14:36 - 00355800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll 2015-03-16 08:56 - 2014-07-24 14:36 - 00180720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mftranscode.dll 2015-03-16 08:56 - 2014-07-24 12:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDRUM.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL 2015-03-16 08:56 - 2014-07-24 12:46 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys 2015-03-16 08:56 - 2014-07-24 12:45 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys 2015-03-16 08:56 - 2014-07-24 12:44 - 00674816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2015-03-16 08:56 - 2014-07-24 12:43 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2015-03-16 08:56 - 2014-07-24 12:42 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys 2015-03-16 08:56 - 2014-07-24 12:42 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys 2015-03-16 08:56 - 2014-07-24 12:41 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthpan.sys 2015-03-16 08:56 - 2014-07-24 12:33 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-03-16 08:56 - 2014-07-24 12:33 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-03-16 08:56 - 2014-07-24 12:06 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\iasnap.dll 2015-03-16 08:56 - 2014-07-24 12:05 - 00287232 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll 2015-03-16 08:56 - 2014-07-24 12:05 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2015-03-16 08:56 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL 2015-03-16 08:56 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL 2015-03-16 08:56 - 2014-07-24 11:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRUM.DLL 2015-03-16 08:56 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL 2015-03-16 08:56 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL 2015-03-16 08:56 - 2014-07-24 11:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL 2015-03-16 08:56 - 2014-07-24 11:49 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersGPExt.dll 2015-03-16 08:56 - 2014-07-24 11:33 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-03-16 08:56 - 2014-07-24 11:32 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl 2015-03-16 08:56 - 2014-07-24 11:20 - 02050560 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll 2015-03-16 08:56 - 2014-07-24 11:18 - 01089024 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll 2015-03-16 08:56 - 2014-07-24 11:12 - 00878592 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll 2015-03-16 08:56 - 2014-07-24 11:10 - 01844224 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll 2015-03-16 08:56 - 2014-07-24 11:10 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2015-03-16 08:56 - 2014-07-24 11:10 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2015-03-16 08:56 - 2014-07-24 11:10 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasnap.dll 2015-03-16 08:56 - 2014-07-24 11:05 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll 2015-03-16 08:56 - 2014-07-24 10:52 - 00621056 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll 2015-03-16 08:56 - 2014-07-24 10:42 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl 2015-03-16 08:56 - 2014-07-24 10:40 - 00557056 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs.dll 2015-03-16 08:56 - 2014-07-24 10:39 - 00770048 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll 2015-03-16 08:56 - 2014-07-24 10:33 - 01741824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll 2015-03-16 08:56 - 2014-07-24 10:32 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpedit.dll 2015-03-16 08:56 - 2014-07-24 10:27 - 00779264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2015-03-16 08:56 - 2014-07-24 10:25 - 00832512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll 2015-03-16 08:56 - 2014-07-24 10:24 - 01817088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll 2015-03-16 08:56 - 2014-07-24 10:21 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2015-03-16 08:56 - 2014-07-24 10:18 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll 2015-03-16 08:56 - 2014-07-24 10:12 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll 2015-03-16 08:56 - 2014-07-24 10:11 - 00356864 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2015-03-16 08:56 - 2014-07-24 10:11 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll 2015-03-16 08:56 - 2014-07-24 10:10 - 00540672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll 2015-03-16 08:56 - 2014-07-24 10:04 - 00492032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll 2015-03-16 08:56 - 2014-07-24 10:04 - 00183808 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe 2015-03-16 08:56 - 2014-07-24 10:03 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll 2015-03-16 08:56 - 2014-07-24 09:58 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll 2015-03-16 08:56 - 2014-07-24 09:53 - 00449536 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll 2015-03-16 08:56 - 2014-07-24 09:49 - 01361408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll 2015-03-16 08:56 - 2014-07-24 09:49 - 01287680 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll 2015-03-16 08:56 - 2014-07-24 09:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll 2015-03-16 08:56 - 2014-07-24 09:48 - 00659968 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll 2015-03-16 08:56 - 2014-07-24 09:47 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll 2015-03-16 08:56 - 2014-07-24 09:43 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll 2015-03-16 08:56 - 2014-07-24 09:39 - 02397184 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll 2015-03-16 08:56 - 2014-07-24 09:38 - 00371200 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll 2015-03-16 08:56 - 2014-07-24 09:30 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll 2015-03-16 08:56 - 2014-07-24 09:29 - 00439296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll 2015-03-16 08:56 - 2014-07-24 09:28 - 00595456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll 2015-03-16 08:56 - 2014-07-24 09:23 - 01404416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll 2015-03-16 08:56 - 2014-07-24 09:22 - 00487936 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2015-03-16 08:56 - 2014-07-24 09:21 - 01231872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll 2015-03-16 08:56 - 2014-07-24 09:21 - 00302080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll 2015-03-16 08:56 - 2014-07-24 09:19 - 00388608 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll 2015-03-16 08:56 - 2014-07-24 09:18 - 01144320 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll 2015-03-16 08:56 - 2014-07-24 09:18 - 00795136 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe 2015-03-16 08:56 - 2014-07-24 09:16 - 00505344 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll 2015-03-16 08:56 - 2014-07-24 09:16 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll 2015-03-16 08:56 - 2014-07-24 09:15 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-03-16 08:56 - 2014-07-24 09:15 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll 2015-03-16 08:56 - 2014-07-24 09:15 - 00432128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll 2015-03-16 08:56 - 2014-07-24 09:13 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll 2015-03-16 08:56 - 2014-07-24 09:10 - 00889344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll 2015-03-16 08:56 - 2014-07-24 09:10 - 00371712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv 2015-03-16 08:56 - 2014-07-24 09:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll 2015-03-16 08:56 - 2014-07-24 09:07 - 01705472 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-03-16 08:56 - 2014-07-24 09:05 - 00448000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll 2015-03-16 08:56 - 2014-07-24 09:04 - 00667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-03-16 08:56 - 2014-07-24 09:02 - 03465216 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-03-16 08:56 - 2014-07-24 09:01 - 01992192 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2015-03-16 08:56 - 2014-07-24 08:58 - 00432640 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll 2015-03-16 08:56 - 2014-07-24 08:58 - 00288768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll 2015-03-16 08:56 - 2014-07-24 08:54 - 01290752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2015-03-16 08:56 - 2014-07-24 08:50 - 01182208 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll 2015-03-16 08:56 - 2014-07-24 08:47 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll 2015-03-16 08:56 - 2014-07-24 08:44 - 01057792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.dll 2015-03-16 08:56 - 2014-07-24 08:41 - 00459264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll 2015-03-16 08:56 - 2014-07-12 06:55 - 00268288 _____ (Microsoft Corporation) C:\Windows\system32\wisp.dll 2015-03-16 08:56 - 2014-07-12 05:58 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wisp.dll 2015-03-16 08:56 - 2014-07-04 13:59 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys 2015-03-16 08:56 - 2014-07-04 11:29 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSip.dll 2015-03-16 08:56 - 2014-07-04 11:20 - 01656832 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2015-03-16 08:56 - 2014-07-04 11:06 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxSip.dll 2015-03-16 08:56 - 2014-07-04 11:00 - 01351168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2015-03-16 08:56 - 2014-07-04 10:30 - 00544768 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll 2015-03-16 08:56 - 2014-07-04 10:27 - 00474112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll 2015-03-16 08:56 - 2014-06-27 07:22 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2015-03-16 08:56 - 2014-06-26 01:32 - 01029632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll 2015-03-16 08:56 - 2014-06-26 01:29 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll 2015-03-16 08:56 - 2014-06-20 00:37 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-03-16 08:56 - 2014-06-19 03:13 - 00310080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2015-03-16 08:56 - 2014-06-07 13:46 - 00216368 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll 2015-03-16 08:56 - 2014-06-07 11:20 - 00189016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll 2015-03-16 08:56 - 2014-06-05 11:18 - 01018368 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll 2015-03-16 08:56 - 2014-06-05 10:42 - 00889856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll 2015-03-16 08:56 - 2014-05-31 06:00 - 01463808 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll 2015-03-16 08:56 - 2014-05-31 05:18 - 01319936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll 2015-03-16 08:56 - 2014-05-29 07:23 - 00427008 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll 2015-03-16 08:56 - 2014-05-29 06:25 - 00313856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll 2015-03-16 08:56 - 2014-05-26 08:26 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll 2015-03-16 08:56 - 2014-05-10 11:12 - 00387896 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll 2015-03-16 08:56 - 2014-05-10 09:46 - 00335680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll 2015-03-16 08:56 - 2014-05-06 05:41 - 00486744 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll 2015-03-16 08:56 - 2014-05-06 01:55 - 00391000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll 2015-03-16 08:56 - 2014-03-25 03:27 - 00160600 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll 2015-03-16 08:56 - 2014-03-25 03:27 - 00123920 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll 2015-03-16 08:56 - 2014-03-25 02:20 - 00128568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll 2015-03-16 08:56 - 2014-03-25 02:20 - 00127544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmmbase.dll 2015-03-16 08:55 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTT102.DLL 2015-03-16 08:55 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTT102.DLL 2015-03-16 08:55 - 2014-07-24 10:14 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll 2015-03-16 08:55 - 2014-07-24 09:36 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll 2015-03-16 08:55 - 2014-07-24 09:18 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-03-16 08:55 - 2014-07-24 09:06 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-03-16 08:55 - 2014-07-24 09:00 - 02100736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll 2015-03-16 08:48 - 2014-07-30 02:56 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll 2015-03-16 08:48 - 2014-07-29 06:22 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\tcpmon.dll 2015-03-16 08:41 - 2014-08-15 01:36 - 00146752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys 2015-03-16 08:40 - 2015-03-16 08:40 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2015-03-16 08:40 - 2015-03-16 08:40 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2015-03-16 08:34 - 2015-01-27 05:22 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2015-03-16 08:34 - 2015-01-27 03:11 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2015-03-16 08:34 - 2014-10-29 04:56 - 00027456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys 2015-03-16 08:34 - 2014-10-29 03:37 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll 2015-03-12 17:13 - 2014-04-14 04:29 - 01018880 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2015-03-12 16:48 - 2015-03-04 22:24 - 00792032 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-03-12 16:48 - 2015-03-04 22:24 - 00178144 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-03-12 16:28 - 2015-03-12 16:35 - 00000000 ____D () C:\Windows\system32\MRT 2015-03-12 16:28 - 2015-02-26 21:14 - 122905848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-03-12 16:23 - 2014-03-20 00:36 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll 2015-03-12 16:23 - 2014-03-08 07:40 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll 2015-03-12 16:23 - 2014-03-04 08:00 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll 2015-03-12 16:23 - 2014-03-04 07:32 - 00356864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll 2015-03-12 16:22 - 2014-03-20 05:19 - 01291200 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2015-03-12 16:22 - 2014-03-20 04:41 - 00376152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys 2015-03-12 16:22 - 2014-03-20 01:53 - 00950784 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll 2015-03-12 16:22 - 2014-03-20 01:48 - 00201216 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll 2015-03-12 16:22 - 2014-03-20 00:55 - 01036288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2015-03-12 16:22 - 2014-03-20 00:39 - 00800256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll 2015-03-12 16:22 - 2014-03-19 06:50 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe 2015-03-12 16:22 - 2014-03-19 06:20 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe 2015-03-12 16:22 - 2014-03-13 13:35 - 00157016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys 2015-03-12 16:22 - 2014-03-08 21:38 - 01542768 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2015-03-12 16:22 - 2014-03-08 16:29 - 00356848 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll 2015-03-12 16:22 - 2014-03-08 12:34 - 01095488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2015-03-12 16:22 - 2014-03-08 10:02 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll 2015-03-12 16:22 - 2014-03-08 09:33 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll 2015-03-12 16:22 - 2014-03-08 09:25 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\SetNetworkLocation.dll 2015-03-12 16:22 - 2014-03-08 09:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxproxy.dll 2015-03-12 16:22 - 2014-03-08 08:47 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll 2015-03-12 16:22 - 2014-03-08 08:04 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll 2015-03-12 16:22 - 2014-03-08 07:48 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll 2015-03-12 16:22 - 2014-03-08 07:31 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll 2015-03-12 16:22 - 2014-03-08 07:30 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll 2015-03-12 16:22 - 2014-03-08 06:41 - 01306624 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll 2015-03-12 16:22 - 2014-03-08 06:11 - 00924160 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll 2015-03-12 16:22 - 2014-03-06 15:34 - 02331000 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2015-03-12 16:22 - 2014-03-06 15:34 - 00113648 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll 2015-03-12 16:22 - 2014-03-06 12:19 - 00094016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll 2015-03-12 16:22 - 2014-03-06 11:46 - 01679128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2015-03-12 16:22 - 2014-03-06 10:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2015-03-12 16:22 - 2014-03-06 10:24 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys 2015-03-12 16:22 - 2014-03-06 10:22 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys 2015-03-12 16:22 - 2014-03-06 10:19 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-03-12 16:22 - 2014-03-06 10:19 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2015-03-12 16:22 - 2014-03-06 10:19 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2015-03-12 16:22 - 2014-03-06 10:08 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll 2015-03-12 16:22 - 2014-03-06 09:41 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\DevPropMgr.dll 2015-03-12 16:22 - 2014-03-06 09:38 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2015-03-12 16:22 - 2014-03-06 09:14 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\WSDScDrv.dll 2015-03-12 16:22 - 2014-03-06 09:10 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\l2gpstore.dll 2015-03-12 16:22 - 2014-03-06 09:00 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll 2015-03-12 16:22 - 2014-03-06 08:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2015-03-12 16:22 - 2014-03-06 08:16 - 00171008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll 2015-03-12 16:22 - 2014-03-06 08:02 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll 2015-03-12 16:22 - 2014-03-06 07:29 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll 2015-03-12 16:22 - 2014-03-06 07:24 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll 2015-03-12 16:22 - 2014-03-06 07:23 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll 2015-03-12 16:22 - 2014-03-06 07:21 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll 2015-03-12 16:22 - 2014-03-06 07:06 - 00386560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll 2015-03-12 16:22 - 2014-03-06 07:04 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll 2015-03-12 16:22 - 2014-03-06 07:01 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll 2015-03-12 16:22 - 2014-03-06 06:51 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll 2015-03-12 16:22 - 2014-03-06 06:47 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll 2015-03-12 16:22 - 2014-03-06 06:42 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll 2015-03-12 16:22 - 2014-03-04 08:16 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2015-03-12 16:22 - 2014-03-04 08:13 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2015-03-12 16:22 - 2014-03-04 08:08 - 00299008 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll 2015-03-12 16:22 - 2014-03-04 07:56 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll 2015-03-12 16:22 - 2014-03-04 07:42 - 00494592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2015-03-12 16:22 - 2014-03-04 07:39 - 00254976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll 2015-03-12 16:22 - 2014-03-04 07:15 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll 2015-03-12 16:22 - 2014-03-04 07:05 - 00402432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll 2015-03-12 16:22 - 2014-03-04 07:03 - 00669696 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll 2015-03-12 16:22 - 2014-03-04 07:03 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll 2015-03-12 16:22 - 2014-03-04 06:54 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll 2015-03-12 16:22 - 2014-03-04 06:52 - 00605184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll 2015-03-12 16:22 - 2013-12-24 00:28 - 00262656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll 2015-03-12 16:22 - 2013-12-24 00:26 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll 2015-03-12 16:09 - 2014-12-09 04:45 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll 2015-03-12 16:09 - 2014-12-09 02:56 - 00538624 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll 2015-03-12 16:09 - 2014-09-27 08:13 - 00104336 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll 2015-03-12 16:09 - 2014-09-27 06:24 - 00088800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll 2015-03-12 16:09 - 2014-09-27 04:30 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll 2015-03-12 16:09 - 2014-06-20 02:48 - 01273184 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-03-12 16:09 - 2014-06-20 00:52 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-03-12 16:05 - 2015-01-23 08:17 - 00723072 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll 2015-03-12 16:05 - 2015-01-23 06:02 - 00560392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll 2015-03-12 16:05 - 2015-01-15 23:43 - 00563504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2015-03-12 16:05 - 2015-01-15 23:43 - 00177984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-03-12 16:05 - 2015-01-14 05:22 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2015-03-12 16:05 - 2015-01-14 04:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2015-03-12 16:05 - 2014-10-29 03:51 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-03-12 16:05 - 2014-10-29 03:50 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-03-12 16:05 - 2014-10-29 03:06 - 00736768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-03-12 16:05 - 2014-10-29 03:06 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-03-12 16:05 - 2014-10-29 02:31 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-03-12 16:05 - 2014-06-13 02:15 - 00517528 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2015-03-12 16:05 - 2014-06-13 02:14 - 01557848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2015-03-12 16:05 - 2014-06-13 01:10 - 00406400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2015-03-12 16:05 - 2014-03-06 13:53 - 02141912 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2015-03-12 16:05 - 2014-03-06 13:51 - 00379224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2015-03-12 16:05 - 2014-03-06 13:39 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2015-03-12 16:05 - 2014-03-06 12:13 - 01779800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2015-03-12 16:04 - 2015-03-06 03:53 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-03-12 16:04 - 2015-03-06 03:33 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-03-12 16:04 - 2015-02-26 00:26 - 04178944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-03-12 16:04 - 2015-02-20 04:03 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2015-03-12 16:04 - 2015-02-20 03:58 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2015-03-12 16:04 - 2015-02-20 03:20 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2015-03-12 16:04 - 2015-02-20 03:15 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2015-03-12 16:04 - 2015-01-31 00:42 - 03097600 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll 2015-03-12 16:04 - 2015-01-31 00:29 - 02484224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll 2015-03-12 16:04 - 2015-01-29 02:58 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll 2015-03-12 16:04 - 2015-01-29 02:29 - 00290816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\photowiz.dll 2015-03-12 16:04 - 2014-12-09 02:50 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2015-03-12 16:04 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll 2015-03-12 16:04 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll 2015-03-12 16:04 - 2014-10-29 03:49 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2015-03-12 16:04 - 2014-10-29 03:44 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2015-03-12 16:04 - 2014-10-29 03:44 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2015-03-12 16:04 - 2014-10-29 03:04 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2015-03-12 16:04 - 2014-10-29 03:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2015-03-12 16:04 - 2014-10-29 03:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2015-03-12 16:04 - 2014-08-07 03:12 - 01336624 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-03-12 16:04 - 2014-08-02 04:56 - 01064448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2015-03-12 16:04 - 2014-05-30 04:03 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2015-03-12 16:03 - 2015-02-07 00:09 - 00396419 _____ () C:\Windows\system32\ApnDatabase.xml 2015-03-12 16:03 - 2015-02-04 00:58 - 00264000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2015-03-12 16:03 - 2015-02-04 00:58 - 00114496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys 2015-03-12 16:03 - 2015-02-04 00:58 - 00044024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2015-03-12 16:03 - 2015-02-03 00:53 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll 2015-03-12 16:03 - 2015-02-03 00:53 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll 2015-03-12 16:03 - 2015-01-27 04:44 - 00933888 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe 2015-03-12 16:03 - 2015-01-24 02:51 - 00816128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe 2015-03-12 16:03 - 2014-12-19 09:57 - 00788680 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2015-03-12 16:03 - 2014-12-19 09:25 - 00602776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2015-03-12 16:03 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\SysWOW64\locale.nls 2015-03-12 16:03 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\system32\locale.nls 2015-03-12 16:03 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2015-03-12 16:03 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2015-03-12 16:03 - 2014-10-29 02:27 - 01200128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll 2015-03-12 16:03 - 2014-10-29 02:27 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll 2015-03-12 16:03 - 2014-10-29 02:04 - 00868352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll 2015-03-12 16:03 - 2014-10-29 02:04 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll 2015-03-12 16:03 - 2014-10-13 03:33 - 00116032 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2015-03-12 16:03 - 2014-10-11 01:58 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-03-12 16:03 - 2014-10-11 01:53 - 03607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2015-03-12 16:03 - 2014-10-08 08:30 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2015-03-12 16:03 - 2014-10-08 08:09 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2015-03-12 16:03 - 2014-10-08 07:27 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2015-03-12 16:03 - 2014-08-23 06:18 - 02149376 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2015-03-12 16:03 - 2014-08-23 06:03 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2015-03-12 16:03 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2015-03-12 16:03 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2015-03-12 16:03 - 2014-03-13 08:42 - 00308224 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe 2015-03-12 16:03 - 2014-03-13 07:51 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe 2015-03-12 16:02 - 2014-05-03 06:36 - 00997888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll 2015-03-12 16:02 - 2014-05-03 06:19 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll 2015-03-12 16:02 - 2014-05-03 06:08 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll 2015-03-12 16:02 - 2014-05-03 06:07 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll 2015-03-12 16:02 - 2014-05-03 05:46 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncobjapi.dll 2015-03-12 16:02 - 2014-05-03 05:37 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll 2015-03-12 16:02 - 2014-05-03 05:37 - 00207360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll 2015-03-12 16:02 - 2014-05-03 00:26 - 00050745 _____ () C:\Windows\system32\srms.dat 2015-03-12 16:02 - 2014-04-30 07:43 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys 2015-03-12 16:02 - 2014-04-30 07:41 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-03-12 16:02 - 2014-04-30 07:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys 2015-03-12 16:02 - 2014-04-30 07:41 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys 2015-03-12 16:02 - 2014-04-30 06:45 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe 2015-03-12 16:02 - 2014-04-30 05:48 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe 2015-03-12 16:02 - 2014-04-30 05:24 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2015-03-12 16:02 - 2014-04-30 05:23 - 00353280 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll 2015-03-12 16:02 - 2014-04-30 05:23 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2015-03-12 16:02 - 2014-04-30 05:23 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll 2015-03-12 16:02 - 2014-04-30 05:14 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2015-03-12 16:02 - 2014-04-30 04:59 - 01063424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2015-03-12 16:02 - 2014-04-30 04:46 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll 2015-03-12 16:02 - 2014-04-30 04:46 - 00229888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2015-03-12 16:02 - 2014-04-30 04:46 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2015-03-12 16:02 - 2014-04-30 04:45 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll 2015-03-12 16:02 - 2014-04-30 04:42 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll 2015-03-12 16:02 - 2014-04-28 23:40 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll 2015-03-12 16:02 - 2014-04-26 17:39 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll 2015-03-12 16:02 - 2014-04-14 10:37 - 02125344 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll 2015-03-12 16:02 - 2014-04-14 09:08 - 01797896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll 2015-03-12 16:02 - 2014-04-14 06:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll 2015-03-12 16:02 - 2014-03-08 21:40 - 00136024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys 2015-03-12 16:02 - 2014-03-08 07:41 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2015-03-12 16:02 - 2014-03-08 07:25 - 00264192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2015-03-12 16:02 - 2014-03-08 07:04 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2015-03-12 16:02 - 2014-03-08 06:58 - 00567296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2015-03-12 16:01 - 2014-08-23 07:10 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2015-03-12 16:01 - 2014-08-23 06:32 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2015-03-12 16:01 - 2014-08-23 05:33 - 00796672 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll 2015-03-12 16:01 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll 2015-03-12 16:01 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll 2015-03-12 16:01 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll 2015-03-12 16:01 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-03-12 16:01 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll 2015-03-12 16:01 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-03-12 16:00 - 2014-10-23 06:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2015-03-12 16:00 - 2014-10-23 06:05 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2015-03-12 16:00 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll 2015-03-12 16:00 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2015-03-12 16:00 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2015-03-12 16:00 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll 2015-03-12 16:00 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll 2015-03-12 16:00 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\httpprxm.dll 2015-03-12 16:00 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\ProximityService.dll 2015-03-12 16:00 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll 2015-03-12 16:00 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll 2015-03-12 16:00 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\adhsvc.dll 2015-03-12 16:00 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2015-03-12 16:00 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\pcsvDevice.dll 2015-03-12 16:00 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll 2015-03-12 16:00 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll 2015-03-12 16:00 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll 2015-03-12 16:00 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2015-03-12 16:00 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll 2015-03-12 16:00 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe 2015-03-12 16:00 - 2014-07-24 16:28 - 00468288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS 2015-03-12 16:00 - 2014-07-24 12:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys 2015-03-12 16:00 - 2014-07-24 11:09 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2015-03-12 16:00 - 2014-07-24 10:27 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2015-03-12 15:57 - 2014-04-08 23:46 - 00086688 _____ (Microsoft Corporation) C:\Windows\system32\mrt_map.dll 2015-03-12 15:57 - 2014-04-08 23:46 - 00028320 _____ (Microsoft Corporation) C:\Windows\system32\mrt100.dll 2015-03-12 15:57 - 2014-04-08 19:54 - 00080032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt_map.dll 2015-03-12 15:57 - 2014-04-08 19:54 - 00026784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt100.dll 2015-03-12 15:56 - 2014-08-02 01:18 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll 2015-03-12 15:55 - 2015-02-06 02:28 - 02257408 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2015-03-12 15:55 - 2015-02-06 02:08 - 01943040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2015-03-12 15:55 - 2015-01-29 02:11 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-03-12 15:55 - 2015-01-29 02:04 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2015-03-12 15:55 - 2015-01-29 02:04 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2015-03-12 15:55 - 2015-01-29 02:00 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-03-12 15:55 - 2015-01-29 01:55 - 00971776 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2015-03-12 15:55 - 2015-01-29 01:50 - 00811008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2015-03-12 15:55 - 2015-01-28 03:24 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\StorageContextHandler.dll 2015-03-12 15:55 - 2015-01-28 02:47 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorageContextHandler.dll 2015-03-12 15:55 - 2014-12-19 07:26 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2015-03-12 15:55 - 2014-12-12 01:51 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys 2015-03-12 15:55 - 2014-10-29 03:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\printui.exe 2015-03-12 15:55 - 2014-10-29 03:34 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll 2015-03-12 15:55 - 2014-10-29 03:34 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WSCollect.exe 2015-03-12 15:55 - 2014-10-29 03:34 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe 2015-03-12 15:55 - 2014-10-29 03:04 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll 2015-03-12 15:55 - 2014-10-29 02:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.exe 2015-03-12 15:55 - 2014-10-29 02:52 - 00289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compstui.dll 2015-03-12 15:55 - 2014-10-29 02:51 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll 2015-03-12 15:55 - 2014-10-29 02:45 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\prnntfy.dll 2015-03-12 15:55 - 2014-10-29 02:28 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll 2015-03-12 15:55 - 2014-10-29 02:20 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll 2015-03-12 15:55 - 2014-10-29 02:15 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnntfy.dll 2015-03-12 15:55 - 2014-10-29 02:13 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll 2015-03-12 15:55 - 2014-10-29 01:55 - 00223744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll 2015-03-12 15:55 - 2014-10-29 01:55 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll 2015-03-12 15:55 - 2014-10-29 01:44 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll 2015-03-12 15:55 - 2014-10-29 01:41 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll 2015-03-12 15:55 - 2014-10-29 01:35 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll 2015-03-12 15:55 - 2014-10-13 03:43 - 00238912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2015-03-12 15:55 - 2014-10-13 03:43 - 00153920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2015-03-12 15:55 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys 2015-03-12 15:55 - 2014-10-13 03:43 - 00039744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys 2015-03-12 15:55 - 2014-09-04 01:12 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 2015-03-12 15:55 - 2014-09-04 01:01 - 00514048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll 2015-03-12 15:55 - 2014-07-10 05:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\lockscreencn.dll 2015-03-12 15:54 - 2014-12-12 03:04 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2015-03-12 15:54 - 2014-07-15 19:16 - 03048880 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe 2015-03-12 15:54 - 2014-07-15 09:29 - 03118080 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2015-03-12 15:54 - 2014-07-15 09:22 - 02861056 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll 2015-03-12 15:54 - 2014-07-15 09:03 - 02344448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2015-03-12 15:53 - 2014-04-11 04:06 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe |
18.03.2015, 19:55 | #11 |
| Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden Und hier die ganz frische FRST-txt (Teil 1) Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015 Ran by Frank (administrator) on UHURA2 on 18-03-2015 19:50:31 Running from C:\Users\Frank\Desktop Loaded Profiles: Frank (Available profiles: Frank) Platform: Windows 8.1 Connected (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe () C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Toshiba Corporation) C:\Program Files\TOSHIBA\Teco\TecoService.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Teco\TecoResident.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Program Files (x86)\ACD Systems\ACDSee\18.0\ACDSeeCommander18.exe () C:\Users\Frank\AppData\Local\Amazon Music\Amazon Music Helper.exe (AVM Berlin) C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe (TOSHIBA) C:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TDUSrv64.exe (ACD Systems) C:\Program Files (x86)\ACD Systems\ACDSee\18.0\acdIDInTouch2.exe (H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\vc10tray.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Don HO don.h@free.fr) C:\Program Files (x86)\Notepad++\notepad++.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [] => [X] HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2556768 2013-10-09] (TOSHIBA Corporation) HKLM\...\Run: [TecoResident] => C:\Program Files\TOSHIBA\Teco\TecoResident.exe [179288 2014-01-05] (TOSHIBA Corporation) HKLM\...\Run: [TSSSrv] => C:\Program Files (x86)\TOSHIBA\System Setting\TSSSrv.exe [296008 2013-10-22] (TOSHIBA Corporation) HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [354144 2013-08-13] (TOSHIBA Corporation) HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-20] (IvoSoft) HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation) HKLM-x32\...\Run: [KeNotify] => C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [34160 2013-08-06] (TOSHIBA CORPORATION) HKLM-x32\...\Run: [TSVU] => c:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TosSmartViewLauncher.exe [516512 2013-07-23] (TOSHIBA) HKLM-x32\...\Run: [ACSW18DE] => C:\Program Files (x86)\ACD Systems\ACDSee\18.0\acdIDInTouch2.exe [1470224 2014-09-17] (ACD Systems) HKLM-x32\...\Run: [ITSecMng] => C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [80840 2011-04-01] (TOSHIBA CORPORATION) HKLM-x32\...\Run: [VC10Player] => C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe [416696 2012-10-25] (H+H Software GmbH) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation) HKLM-x32\...\Run: [TrojanScanner] => C:\Program Files (x86)\Trojan Remover\Trjscan.exe [1791856 2014-10-16] (Simply Super Software) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [AVMUSBFernanschluss] => C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\AVMAutoStart.exe [139264 2015-03-10] (AVM Berlin) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7416088 2015-02-19] (Piriform Ltd) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [ACDSeeCommander18] => C:\Program Files (x86)\ACD Systems\ACDSee\18.0\ACDSeeCommander18.exe [1973256 2014-12-17] () HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [Amazon Music] => C:\Users\Frank\AppData\Local\Amazon Music\Amazon Music Helper.exe [5886272 2015-03-02] () HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [26232152 2015-02-19] (Google) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x00000000 HKU\S-1-5-18\...\Run: [EPSONE8BE74 (Epson Stylus SX430)] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHAE.EXE [232448 2011-01-20] (SEIKO EPSON CORPORATION) ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.de/ HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://toshiba13.msn.com/?pc=TEJB HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://toshiba.eu/symbaloo_c SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2734555180-3142773653-1428810083-1001 -> {898DEB29-90E7-4FED-ADAC-FCDAB1A2CEFC} URL = BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft) BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20] (IvoSoft) BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2014-12-16] (Adblock Plus) BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-17] (Oracle Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-17] (Oracle Corporation) BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20] (IvoSoft) BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2014-12-16] (Adblock Plus) Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft) Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft) Tcpip\Parameters: [DhcpNameServer] 192.168.0.10 FireFox: ======== FF ProfilePath: C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll [2015-03-11] () FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.2.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-03-11] () FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-17] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-17] (Oracle Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-10] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-10] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.) FF Extension: Avira Browser Safety - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\abs@avira.com [2015-03-17] FF Extension: mediaplayerconnectivity - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{84b24861-62f6-364b-eba5-2e5e2061d7e6} [2015-03-11] FF Extension: Add to Amazon Wish List Button - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\amznUWL2@amazon.com.xpi [2015-03-11] FF Extension: NoScript - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2015-03-11] FF Extension: Video DownloadHelper - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2015-03-16] FF Extension: Adblock Plus - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-03-10] Chrome: ======= CHR HomePage: Default -> hxxp://go.microsoft.com/fwlink/?LinkId=69157 CHR Profile: C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Slides) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-17] CHR Extension: (Google Docs) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-17] CHR Extension: (Google Drive) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-17] CHR Extension: (YouTube) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-17] CHR Extension: (Adblock Plus) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-03-17] CHR Extension: (Google Search) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-17] CHR Extension: (Avira SafeSearch) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\eglgfnfolcgijipffhlhbbnefdcbjbml [2015-03-17] CHR Extension: (Google Sheets) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-17] CHR Extension: (Sticky Password Autofill Engine) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggepjhbdgijjkbelnggboeoehacbphed [2015-03-17] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-17] CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-03-17] CHR Extension: (Google Wallet) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-17] CHR Extension: (Gmail) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-17] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - https://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) Locked "vdrv1000" service was unlocked successfully. <===== ATTENTION R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [319104 2014-03-19] (Windows (R) Win 7 DDK provider) [File not signed] R2 dts_apo_service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [21840 2014-03-03] () R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-02] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-02] (Intel(R) Corporation) R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation) S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [116088 2014-08-05] (Toshiba Europe GmbH) R2 VC10SecS; C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe [147312 2014-12-15] (H+H Software GmbH) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3888640 2014-02-14] (Qualcomm Atheros Communications, Inc.) R3 avmaura; C:\Windows\System32\drivers\avmaura.sys [116480 2015-03-10] (AVM Berlin) S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation) S3 GENERICDRV; C:\Program Files (x86)\UEFI WinFlash\amifldrv64.sys [15640 2012-07-27] () S3 HH10Help.sys; C:\Windows\system32\drivers\HH10Help.sys [24088 2009-07-09] (H+H Software GmbH) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation) R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2015-03-18] (Malwarebytes Corporation) R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2014-11-21] (Malwarebytes Corporation) R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [291544 2014-01-03] (Realtek Semiconductor Corp.) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31472 2014-02-21] (Synaptics Incorporated) R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [33168 2013-10-10] (Windows (R) Win 7 DDK provider) S3 Tosrfcom; No ImagePath R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation) R1 vdrv1000; C:\Windows\System32\drivers\vdrv1000.sys [226080 2012-12-06] (H+H Software GmbH) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-03-18 19:48 - 2015-03-18 19:47 - 00852604 _____ () C:\Users\Frank\Desktop\SecurityCheck.exe 2015-03-18 19:47 - 2015-03-18 19:47 - 00852604 _____ () C:\Users\Frank\Downloads\SecurityCheck.exe 2015-03-18 17:37 - 2015-03-18 17:37 - 02347384 _____ (ESET) C:\Users\Frank\Downloads\esetsmartinstaller_deu.exe 2015-03-18 11:01 - 2015-03-18 11:01 - 00143219 _____ () C:\Users\Frank\Desktop\FRST_neu.txt 2015-03-18 10:57 - 2015-03-18 10:57 - 00000624 _____ () C:\Users\Frank\Desktop\JRT.txt 2015-03-18 10:48 - 2015-03-18 10:48 - 01388672 _____ (Thisisu) C:\Users\Frank\Downloads\JRT.exe 2015-03-18 10:48 - 2015-03-18 10:48 - 01388672 _____ (Thisisu) C:\Users\Frank\Desktop\JRT.exe 2015-03-18 10:46 - 2015-03-18 10:46 - 00001222 _____ () C:\Users\Frank\Desktop\AdwCleaner[S0].txt 2015-03-18 10:39 - 2015-03-18 10:43 - 00000000 ____D () C:\AdwCleaner 2015-03-18 10:38 - 2015-03-18 10:38 - 02171392 _____ () C:\Users\Frank\Downloads\AdwCleaner_4.112.exe 2015-03-18 10:38 - 2015-03-18 10:38 - 02171392 _____ () C:\Users\Frank\Desktop\AdwCleaner_4.112.exe 2015-03-18 10:37 - 2015-03-18 10:37 - 00001042 _____ () C:\Users\Frank\Desktop\mbam.txt 2015-03-18 10:04 - 2015-03-18 10:05 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (3).exe 2015-03-17 18:54 - 2015-03-17 18:55 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Frank\Downloads\tdsskiller.exe 2015-03-17 17:10 - 2015-03-18 19:12 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-03-17 17:10 - 2015-03-18 10:02 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2015-03-17 17:09 - 2015-03-17 18:26 - 00000000 ____D () C:\Users\Frank\Desktop\mbar 2015-03-17 17:08 - 2015-03-17 17:08 - 16502728 _____ (Malwarebytes Corp.) C:\Users\Frank\Downloads\mbar-1.09.1.1004.exe 2015-03-17 17:08 - 2015-03-17 17:08 - 16502728 _____ (Malwarebytes Corp.) C:\Users\Frank\Desktop\mbar-1.09.1.1004.exe 2015-03-17 15:53 - 2015-03-17 15:53 - 00000291 _____ () C:\Users\Frank\Desktop\gmer.txt 2015-03-17 15:52 - 2015-03-17 15:52 - 00000000 _____ () C:\Users\Frank\Desktop\Neues Textdokument.txt 2015-03-17 15:50 - 2015-03-17 15:50 - 00380416 _____ () C:\Users\Frank\Downloads\Gmer-19357.exe 2015-03-17 15:48 - 2015-03-17 15:48 - 00000472 _____ () C:\Users\Frank\Downloads\defogger_disable.log 2015-03-17 15:48 - 2015-03-17 15:48 - 00000000 _____ () C:\Users\Frank\defogger_reenable 2015-03-17 15:47 - 2015-03-17 15:47 - 00050477 _____ () C:\Users\Frank\Downloads\Defogger.exe 2015-03-17 15:23 - 2015-03-17 15:24 - 00029764 _____ () C:\Users\Frank\Downloads\Addition.txt 2015-03-17 15:21 - 2015-03-17 15:24 - 00142748 _____ () C:\Users\Frank\Downloads\FRST.txt 2015-03-17 15:20 - 2015-03-17 15:21 - 02095616 _____ (Farbar) C:\Users\Frank\Downloads\FRST64.exe 2015-03-17 15:13 - 2015-03-17 15:13 - 00000022 _____ () C:\Users\Frank\Downloads\apppath.torun 2015-03-17 15:02 - 2015-03-17 15:02 - 00022528 _____ (Microsoft) C:\Users\Frank\Downloads\RunAsSystem.exe 2015-03-17 14:52 - 2015-03-18 10:06 - 00001084 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-03-17 14:52 - 2015-03-18 10:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-03-17 14:52 - 2015-03-18 10:06 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-03-17 14:52 - 2015-03-17 14:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (2).exe 2015-03-17 14:52 - 2015-03-17 14:52 - 00000000 ____D () C:\ProgramData\Malwarebytes 2015-03-17 14:52 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-03-17 14:52 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-03-17 14:52 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2015-03-17 14:51 - 2015-03-17 14:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (1).exe 2015-03-17 14:51 - 2015-03-17 14:52 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028.exe 2015-03-17 13:56 - 2015-03-17 13:56 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER 2015-03-17 13:41 - 2015-03-17 13:41 - 00000000 ____D () C:\OETemp 2015-03-17 13:23 - 2015-03-17 14:06 - 00000000 ____D () C:\Program Files (x86)\Avira 2015-03-17 13:22 - 2015-03-17 13:22 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\Frank\Downloads\avira_de_av_5946238192__ws.exe 2015-03-17 13:17 - 2015-03-17 13:18 - 00000000 ____D () C:\ProgramData\Kaspersky Lab Setup Files 2015-03-17 13:16 - 2015-03-17 13:16 - 00416576 _____ (Kaspersky Lab) C:\Users\Frank\Downloads\de-de.setup.exe 2015-03-17 13:15 - 2015-03-17 13:15 - 141468920 _____ (Microsoft Corporation) C:\Users\Frank\Downloads\msert.exe 2015-03-17 13:13 - 2015-03-17 13:14 - 00013513 _____ () C:\Users\Frank\Desktop\Addition.txt 2015-03-17 13:10 - 2015-03-18 19:50 - 00019442 _____ () C:\Users\Frank\Desktop\FRST.txt 2015-03-17 13:10 - 2015-03-18 19:50 - 00000000 ____D () C:\FRST 2015-03-17 12:30 - 2015-03-17 12:28 - 02095616 _____ (Farbar) C:\Users\Frank\Desktop\FRST64.exe 2015-03-17 12:20 - 2015-03-17 12:20 - 00001121 _____ () C:\Users\Public\Desktop\Trojan Remover.lnk 2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\Users\Frank\Documents\Simply Super Software 2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Simply Super Software 2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trojan Remover 2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\ProgramData\Licenses 2015-03-17 12:19 - 2015-03-17 12:20 - 00000000 ____D () C:\Program Files (x86)\Trojan Remover 2015-03-17 12:19 - 2015-03-17 12:19 - 00000000 ____D () C:\ProgramData\Simply Super Software 2015-03-17 12:18 - 2015-03-17 12:19 - 31390952 _____ (Simply Super Software ) C:\Users\Frank\Downloads\trjsetup691.exe 2015-03-17 12:04 - 2015-03-17 12:04 - 00000000 __SHD () C:\ProgramData\Application Services 2015-03-17 11:54 - 2015-03-17 12:21 - 00000000 __SHD () C:\Windows\SysWOW64\Application Services 2015-03-17 11:24 - 2015-03-18 17:32 - 00001276 _____ () C:\Windows\setupact.log 2015-03-17 11:24 - 2015-03-17 11:24 - 00000000 _____ () C:\Windows\setuperr.log 2015-03-17 11:23 - 2015-03-18 10:02 - 00143660 _____ () C:\Windows\PFRO.log 2015-03-17 11:09 - 2015-03-17 11:10 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Mp3tag 2015-03-17 10:48 - 2015-03-17 10:48 - 00650657 _____ () C:\Users\Frank\Downloads\lame3.99.5.zip 2015-03-17 10:41 - 2015-03-17 15:51 - 00000000 ____D () C:\Users\Frank\AppData\Local\CrashDumps 2015-03-17 10:40 - 2015-03-17 10:49 - 00000000 ____D () C:\Program Files (x86)\Exact Audio Copy 2015-03-17 10:40 - 2015-03-17 10:40 - 00001052 _____ () C:\Users\Public\Desktop\Exact Audio Copy.lnk 2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\EAC 2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\AccurateRip 2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Exact Audio Copy 2015-03-17 10:38 - 2015-03-17 10:39 - 00000000 ____D () C:\ProgramData\Oracle 2015-03-17 10:38 - 2015-03-17 10:38 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\ProgramData\Sun 2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\Program Files (x86)\Java 2015-03-17 10:37 - 2015-03-17 10:37 - 00561064 _____ (Oracle Corporation) C:\Users\Frank\Downloads\jxpiinstall.exe 2015-03-17 10:36 - 2015-03-17 10:39 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Freeplane 2015-03-17 10:36 - 2015-03-17 10:36 - 00000842 _____ () C:\Users\Public\Desktop\Freeplane.lnk 2015-03-17 10:36 - 2015-03-17 10:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freeplane 2015-03-17 10:36 - 2015-03-17 10:36 - 00000000 ____D () C:\Program Files\Freeplane 2015-03-17 10:29 - 2015-03-17 10:29 - 00000840 _____ () C:\Users\Frank\AppData\Local\recently-used.xbel 2015-03-17 10:29 - 2015-03-17 10:29 - 00000000 ____D () C:\Users\Frank\AppData\Local\gtk-2.0 2015-03-17 10:29 - 2015-03-17 10:29 - 00000000 ____D () C:\Users\Frank\.thumbnails 2015-03-17 10:22 - 2015-03-17 10:35 - 00000000 ____D () C:\Users\Frank\.gimp-2.8 2015-03-17 10:22 - 2015-03-17 10:22 - 04620717 _____ () C:\Users\Frank\Downloads\eac-1.0beta4.exe 2015-03-17 10:22 - 2015-03-17 10:22 - 00000000 ____D () C:\Users\Frank\AppData\Local\gegl-0.2 2015-03-17 10:14 - 2015-03-17 10:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\FileZilla 2015-03-17 10:14 - 2015-03-17 10:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 2015-03-17 10:14 - 2015-03-17 10:14 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client 2015-03-17 10:13 - 2015-03-17 10:26 - 00000916 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk 2015-03-17 10:12 - 2015-03-17 10:13 - 00000000 ____D () C:\Program Files\GIMP 2 2015-03-17 10:11 - 2015-03-17 16:25 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Notepad++ 2015-03-17 10:11 - 2015-03-17 10:12 - 00000000 ____D () C:\Program Files (x86)\Notepad++ 2015-03-17 10:11 - 2015-03-17 10:11 - 00001035 _____ () C:\Users\Frank\Desktop\Notepad++.lnk 2015-03-17 10:11 - 2015-03-17 10:11 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ 2015-03-17 10:11 - 2015-03-17 10:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2015-03-17 10:06 - 2015-03-17 10:06 - 06208736 _____ (Tim Kosse) C:\Users\Frank\Downloads\filezilla_3.10.2_win32-setup.exe 2015-03-17 10:05 - 2015-03-17 10:05 - 08271739 _____ () C:\Users\Frank\Downloads\npp.6.7.5.installer.exe 2015-03-17 10:00 - 2015-03-17 10:00 - 91931728 _____ (The GIMP Team ) C:\Users\Frank\Downloads\gimp-2.8.14-setup-1.exe 2015-03-17 09:58 - 2015-03-17 09:58 - 24430312 _____ (Open source ) C:\Users\Frank\Downloads\freeplane-setup-1.3.15.exe 2015-03-17 08:41 - 2015-03-18 17:34 - 00000000 ___RD () C:\Users\Frank\Google Drive 2015-03-17 08:28 - 2015-03-17 08:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-03-17 08:27 - 2015-03-17 08:27 - 00880208 _____ (Google Inc.) C:\Users\Frank\Downloads\ChromeSetup.exe 2015-03-17 08:13 - 2015-03-17 08:13 - 00000000 ____D () C:\Program Files\Adblock Plus for IE 2015-03-17 08:12 - 2015-03-17 08:12 - 05915456 _____ ( ) C:\Users\Frank\Downloads\adblockplusie-1.3.exe 2015-03-16 22:19 - 2015-03-18 14:06 - 01546988 _____ () C:\Windows\WindowsUpdate.log 2015-03-16 22:16 - 2015-03-16 22:19 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\WildTangent 2015-03-16 22:16 - 2015-03-16 22:16 - 00000000 ____D () C:\ProgramData\BlueStacks 2015-03-16 21:16 - 2015-03-16 21:16 - 15094704 _____ (Lamantine Software ) C:\Users\Frank\Downloads\stpass_free_606434.exe 2015-03-16 21:16 - 2015-03-16 21:16 - 15094696 _____ (Lamantine Software ) C:\Users\Frank\Downloads\stpass_trial_606434.exe 2015-03-16 19:46 - 2015-03-16 20:09 - 00121344 ___SH () C:\Users\Frank\Downloads\Thumbs.db 2015-03-16 17:26 - 2015-03-16 17:46 - 00000000 ___SD () C:\Users\Public\Virtual CDs 2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ___SD () C:\Users\Public\Virtual CD v10 2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ___SD () C:\Users\Frank\AppData\Roaming\Virtual CD v10 2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual CD v10 2015-03-16 17:26 - 2012-12-06 11:09 - 00226080 ____N (H+H Software GmbH) C:\Windows\system32\Drivers\vdrv1000.sys 2015-03-16 17:26 - 2009-07-09 11:24 - 00024088 _____ (H+H Software GmbH) C:\Windows\system32\Drivers\HH10Help.sys 2015-03-16 17:25 - 2015-03-16 17:26 - 00000000 ____D () C:\Program Files (x86)\Virtual CD v10 2015-03-16 17:24 - 2015-03-16 17:24 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\InstallShield 2015-03-16 17:24 - 2008-06-17 09:22 - 00040464 _____ (H+H Software GmbH) C:\Windows\system32\Drivers\vcd10bus.sys 2015-03-16 16:43 - 2000-10-29 15:33 - 00141312 _____ (Info-ZIP) C:\Windows\SysWOW64\Zip32.dll 2015-03-16 16:30 - 2015-03-16 17:01 - 00000000 ____D () C:\Users\Frank\Documents\TC Seth 2015-03-16 15:13 - 2015-03-16 16:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\M-DVD.Org V2 2015-03-16 15:13 - 2007-09-24 10:04 - 00675840 _____ () C:\Windows\SysWOW64\AudioGenie2.ocx 2015-03-16 15:13 - 2006-03-09 12:34 - 02945024 _____ (hxxp://mediainfo.sourceforge.net) C:\Windows\SysWOW64\MediaInfo.dll 2015-03-16 15:13 - 2004-05-27 00:32 - 00102400 _____ (Info-ZIP) C:\Windows\SysWOW64\unzip32.dll 2015-03-16 15:12 - 2015-03-16 16:43 - 00000000 ____D () C:\Program Files (x86)\M-DVD.Org V2 2015-03-16 15:12 - 2015-03-16 15:12 - 00000000 ____D () C:\ProgramData\M-DVD.Org V2 2015-03-16 15:12 - 2009-12-04 11:56 - 00061440 ____H (SynApp GmbH) C:\Windows\SysWOW64\ErrExplorer.dll 2015-03-16 15:12 - 2006-10-06 09:20 - 02899968 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11.dll 2015-03-16 15:12 - 2006-10-04 16:01 - 00351232 _____ (combit GmbH) C:\Windows\SysWOW64\cmpr11.dll 2015-03-16 15:12 - 2006-09-26 15:51 - 01399296 _____ (combit GmbH) C:\Windows\SysWOW64\cmct11.dll 2015-03-16 15:12 - 2006-09-26 15:39 - 01378304 _____ (combit GmbH) C:\Windows\SysWOW64\cmls11.dll 2015-03-16 15:12 - 2006-09-26 15:39 - 00893952 _____ (combit GmbH) C:\Windows\SysWOW64\cmbr11.dll 2015-03-16 15:12 - 2006-09-26 15:38 - 00739328 _____ (combit GmbH) C:\Windows\SysWOW64\cmdw11.dll 2015-03-16 15:12 - 2006-09-26 15:36 - 00337920 _____ (combit GmbH) C:\Windows\SysWOW64\cmut11.dll 2015-03-16 15:12 - 2006-09-13 10:29 - 00688640 _____ (combit GmbH) C:\Windows\SysWOW64\cmmx01.dll 2015-03-16 15:12 - 2006-07-19 07:00 - 00349184 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11pw.llx 2015-03-16 15:12 - 2006-06-22 08:50 - 00165584 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11o.ocx 2015-03-16 15:12 - 2005-09-13 13:29 - 00414720 _____ (combit GmbH) C:\Windows\SysWOW64\cmll1100.lng 2015-03-16 15:12 - 2005-08-08 16:10 - 00425984 _____ () C:\Windows\SysWOW64\cmmx0100.lng 2015-03-16 15:12 - 2005-07-12 09:41 - 00684032 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11xl.dll 2015-03-16 15:12 - 2005-06-23 15:17 - 01161492 _____ () C:\Windows\SysWOW64\cmLL1100.chm 2015-03-16 12:57 - 2015-03-17 12:10 - 00000000 ____D () C:\Program Files (x86)\Sticky Password 2015-03-16 12:04 - 2015-03-16 12:04 - 00000000 ____D () C:\ProgramData\ToshibaEurope 2015-03-16 12:04 - 2015-03-16 12:04 - 00000000 ____D () C:\ProgramData\TOSHIBA Tempro 2015-03-16 12:03 - 2015-03-16 12:03 - 00000000 ____D () C:\Windows\System32\Tasks\Toshiba 2015-03-16 12:03 - 2015-03-16 12:03 - 00000000 ____D () C:\Program Files (x86)\Toshiba TEMPRO 2015-03-16 11:55 - 2015-03-16 11:55 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieBrowserModeList 2015-03-16 11:54 - 2015-03-16 11:54 - 00000000 ____D () C:\ProgramData\IsolatedStorage 2015-03-16 08:57 - 2014-07-24 16:03 - 02141920 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2015-03-16 08:57 - 2014-07-24 14:36 - 02145472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2015-03-16 08:57 - 2014-07-24 10:44 - 16874496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2015-03-16 08:57 - 2014-07-24 10:16 - 12730880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2015-03-16 08:57 - 2014-07-24 09:53 - 01261056 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll 2015-03-16 08:57 - 2014-07-24 09:32 - 01532416 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll 2015-03-16 08:57 - 2014-07-24 08:28 - 01600000 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll 2015-03-16 08:57 - 2014-06-14 07:03 - 02389504 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2015-03-16 08:57 - 2014-06-14 06:46 - 02071552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2015-03-16 08:56 - 2014-07-24 16:28 - 00419648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2015-03-16 08:56 - 2014-07-24 16:28 - 00412992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys 2015-03-16 08:56 - 2014-07-24 16:28 - 00280384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys 2015-03-16 08:56 - 2014-07-24 16:28 - 00143680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2015-03-16 08:56 - 2014-07-24 16:25 - 00054752 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-03-16 08:56 - 2014-07-24 16:23 - 01519488 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2015-03-16 08:56 - 2014-07-24 16:23 - 00125472 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll 2015-03-16 08:56 - 2014-07-24 16:20 - 00263400 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe 2015-03-16 08:56 - 2014-07-24 16:16 - 02574208 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2015-03-16 08:56 - 2014-07-24 16:16 - 00211216 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe 2015-03-16 08:56 - 2014-07-24 16:07 - 02009920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2015-03-16 08:56 - 2014-07-24 16:05 - 01660048 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2015-03-16 08:56 - 2014-07-24 16:05 - 01519560 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2015-03-16 08:56 - 2014-07-24 16:05 - 01488008 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2015-03-16 08:56 - 2014-07-24 16:05 - 01356840 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2015-03-16 08:56 - 2014-07-24 16:03 - 00882136 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2015-03-16 08:56 - 2014-07-24 16:03 - 00360480 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll 2015-03-16 08:56 - 2014-07-24 16:03 - 00233888 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2015-03-16 08:56 - 2014-07-24 16:03 - 00205512 _____ (Microsoft Corporation) C:\Windows\system32\mftranscode.dll 2015-03-16 08:56 - 2014-07-24 14:50 - 00098048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll 2015-03-16 08:56 - 2014-07-24 14:48 - 02410976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2015-03-16 08:56 - 2014-07-24 14:48 - 00180208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe 2015-03-16 08:56 - 2014-07-24 14:36 - 00707536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll 2015-03-16 08:56 - 2014-07-24 14:36 - 00355800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll 2015-03-16 08:56 - 2014-07-24 14:36 - 00180720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mftranscode.dll 2015-03-16 08:56 - 2014-07-24 12:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDRUM.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL 2015-03-16 08:56 - 2014-07-24 12:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL 2015-03-16 08:56 - 2014-07-24 12:46 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys 2015-03-16 08:56 - 2014-07-24 12:45 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys 2015-03-16 08:56 - 2014-07-24 12:44 - 00674816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2015-03-16 08:56 - 2014-07-24 12:43 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2015-03-16 08:56 - 2014-07-24 12:42 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys 2015-03-16 08:56 - 2014-07-24 12:42 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys 2015-03-16 08:56 - 2014-07-24 12:41 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthpan.sys 2015-03-16 08:56 - 2014-07-24 12:33 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-03-16 08:56 - 2014-07-24 12:33 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-03-16 08:56 - 2014-07-24 12:06 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\iasnap.dll 2015-03-16 08:56 - 2014-07-24 12:05 - 00287232 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll 2015-03-16 08:56 - 2014-07-24 12:05 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2015-03-16 08:56 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL 2015-03-16 08:56 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL 2015-03-16 08:56 - 2014-07-24 11:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRUM.DLL 2015-03-16 08:56 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL 2015-03-16 08:56 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL 2015-03-16 08:56 - 2014-07-24 11:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL 2015-03-16 08:56 - 2014-07-24 11:49 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersGPExt.dll 2015-03-16 08:56 - 2014-07-24 11:33 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-03-16 08:56 - 2014-07-24 11:32 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl 2015-03-16 08:56 - 2014-07-24 11:20 - 02050560 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll 2015-03-16 08:56 - 2014-07-24 11:18 - 01089024 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll 2015-03-16 08:56 - 2014-07-24 11:12 - 00878592 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll 2015-03-16 08:56 - 2014-07-24 11:10 - 01844224 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll 2015-03-16 08:56 - 2014-07-24 11:10 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2015-03-16 08:56 - 2014-07-24 11:10 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2015-03-16 08:56 - 2014-07-24 11:10 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasnap.dll 2015-03-16 08:56 - 2014-07-24 11:05 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll 2015-03-16 08:56 - 2014-07-24 10:52 - 00621056 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll 2015-03-16 08:56 - 2014-07-24 10:42 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl 2015-03-16 08:56 - 2014-07-24 10:40 - 00557056 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs.dll 2015-03-16 08:56 - 2014-07-24 10:39 - 00770048 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll 2015-03-16 08:56 - 2014-07-24 10:33 - 01741824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll 2015-03-16 08:56 - 2014-07-24 10:32 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpedit.dll 2015-03-16 08:56 - 2014-07-24 10:27 - 00779264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2015-03-16 08:56 - 2014-07-24 10:25 - 00832512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll 2015-03-16 08:56 - 2014-07-24 10:24 - 01817088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll 2015-03-16 08:56 - 2014-07-24 10:21 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2015-03-16 08:56 - 2014-07-24 10:18 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll 2015-03-16 08:56 - 2014-07-24 10:12 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll 2015-03-16 08:56 - 2014-07-24 10:11 - 00356864 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2015-03-16 08:56 - 2014-07-24 10:11 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll 2015-03-16 08:56 - 2014-07-24 10:10 - 00540672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll 2015-03-16 08:56 - 2014-07-24 10:04 - 00492032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll 2015-03-16 08:56 - 2014-07-24 10:04 - 00183808 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe 2015-03-16 08:56 - 2014-07-24 10:03 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll 2015-03-16 08:56 - 2014-07-24 09:58 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll 2015-03-16 08:56 - 2014-07-24 09:53 - 00449536 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll 2015-03-16 08:56 - 2014-07-24 09:49 - 01361408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll 2015-03-16 08:56 - 2014-07-24 09:49 - 01287680 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll 2015-03-16 08:56 - 2014-07-24 09:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll 2015-03-16 08:56 - 2014-07-24 09:48 - 00659968 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll 2015-03-16 08:56 - 2014-07-24 09:47 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll 2015-03-16 08:56 - 2014-07-24 09:43 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll 2015-03-16 08:56 - 2014-07-24 09:39 - 02397184 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll 2015-03-16 08:56 - 2014-07-24 09:38 - 00371200 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll 2015-03-16 08:56 - 2014-07-24 09:30 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll 2015-03-16 08:56 - 2014-07-24 09:29 - 00439296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll 2015-03-16 08:56 - 2014-07-24 09:28 - 00595456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll 2015-03-16 08:56 - 2014-07-24 09:23 - 01404416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll 2015-03-16 08:56 - 2014-07-24 09:22 - 00487936 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2015-03-16 08:56 - 2014-07-24 09:21 - 01231872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll 2015-03-16 08:56 - 2014-07-24 09:21 - 00302080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll 2015-03-16 08:56 - 2014-07-24 09:19 - 00388608 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll 2015-03-16 08:56 - 2014-07-24 09:18 - 01144320 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll 2015-03-16 08:56 - 2014-07-24 09:18 - 00795136 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe 2015-03-16 08:56 - 2014-07-24 09:16 - 00505344 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll 2015-03-16 08:56 - 2014-07-24 09:16 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll 2015-03-16 08:56 - 2014-07-24 09:15 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-03-16 08:56 - 2014-07-24 09:15 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll 2015-03-16 08:56 - 2014-07-24 09:15 - 00432128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll 2015-03-16 08:56 - 2014-07-24 09:13 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll 2015-03-16 08:56 - 2014-07-24 09:10 - 00889344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll 2015-03-16 08:56 - 2014-07-24 09:10 - 00371712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv 2015-03-16 08:56 - 2014-07-24 09:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll 2015-03-16 08:56 - 2014-07-24 09:07 - 01705472 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-03-16 08:56 - 2014-07-24 09:05 - 00448000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll 2015-03-16 08:56 - 2014-07-24 09:04 - 00667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-03-16 08:56 - 2014-07-24 09:02 - 03465216 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-03-16 08:56 - 2014-07-24 09:01 - 01992192 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2015-03-16 08:56 - 2014-07-24 08:58 - 00432640 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll 2015-03-16 08:56 - 2014-07-24 08:58 - 00288768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll 2015-03-16 08:56 - 2014-07-24 08:54 - 01290752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2015-03-16 08:56 - 2014-07-24 08:50 - 01182208 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll 2015-03-16 08:56 - 2014-07-24 08:47 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll 2015-03-16 08:56 - 2014-07-24 08:44 - 01057792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.dll 2015-03-16 08:56 - 2014-07-24 08:41 - 00459264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll 2015-03-16 08:56 - 2014-07-12 06:55 - 00268288 _____ (Microsoft Corporation) C:\Windows\system32\wisp.dll 2015-03-16 08:56 - 2014-07-12 05:58 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wisp.dll 2015-03-16 08:56 - 2014-07-04 13:59 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys 2015-03-16 08:56 - 2014-07-04 11:29 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSip.dll 2015-03-16 08:56 - 2014-07-04 11:20 - 01656832 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2015-03-16 08:56 - 2014-07-04 11:06 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxSip.dll 2015-03-16 08:56 - 2014-07-04 11:00 - 01351168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2015-03-16 08:56 - 2014-07-04 10:30 - 00544768 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll 2015-03-16 08:56 - 2014-07-04 10:27 - 00474112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll 2015-03-16 08:56 - 2014-06-27 07:22 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2015-03-16 08:56 - 2014-06-26 01:32 - 01029632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll 2015-03-16 08:56 - 2014-06-26 01:29 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll 2015-03-16 08:56 - 2014-06-20 00:37 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-03-16 08:56 - 2014-06-19 03:13 - 00310080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2015-03-16 08:56 - 2014-06-07 13:46 - 00216368 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll 2015-03-16 08:56 - 2014-06-07 11:20 - 00189016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll 2015-03-16 08:56 - 2014-06-05 11:18 - 01018368 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll 2015-03-16 08:56 - 2014-06-05 10:42 - 00889856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll 2015-03-16 08:56 - 2014-05-31 06:00 - 01463808 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll 2015-03-16 08:56 - 2014-05-31 05:18 - 01319936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll 2015-03-16 08:56 - 2014-05-29 07:23 - 00427008 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll 2015-03-16 08:56 - 2014-05-29 06:25 - 00313856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll 2015-03-16 08:56 - 2014-05-26 08:26 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll 2015-03-16 08:56 - 2014-05-10 11:12 - 00387896 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll 2015-03-16 08:56 - 2014-05-10 09:46 - 00335680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll 2015-03-16 08:56 - 2014-05-06 05:41 - 00486744 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll 2015-03-16 08:56 - 2014-05-06 01:55 - 00391000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll 2015-03-16 08:56 - 2014-03-25 03:27 - 00160600 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll 2015-03-16 08:56 - 2014-03-25 03:27 - 00123920 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll 2015-03-16 08:56 - 2014-03-25 02:20 - 00128568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll 2015-03-16 08:56 - 2014-03-25 02:20 - 00127544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmmbase.dll 2015-03-16 08:55 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTT102.DLL 2015-03-16 08:55 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTT102.DLL 2015-03-16 08:55 - 2014-07-24 10:14 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll 2015-03-16 08:55 - 2014-07-24 09:36 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll 2015-03-16 08:55 - 2014-07-24 09:18 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-03-16 08:55 - 2014-07-24 09:06 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-03-16 08:55 - 2014-07-24 09:00 - 02100736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll 2015-03-16 08:48 - 2014-07-30 02:56 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll 2015-03-16 08:48 - 2014-07-29 06:22 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\tcpmon.dll 2015-03-16 08:41 - 2014-08-15 01:36 - 00146752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys 2015-03-16 08:40 - 2015-03-16 08:40 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2015-03-16 08:40 - 2015-03-16 08:40 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2015-03-16 08:34 - 2015-01-27 05:22 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2015-03-16 08:34 - 2015-01-27 03:11 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2015-03-16 08:34 - 2014-10-29 04:56 - 00027456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys 2015-03-16 08:34 - 2014-10-29 03:37 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll 2015-03-12 17:13 - 2014-04-14 04:29 - 01018880 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2015-03-12 16:48 - 2015-03-04 22:24 - 00792032 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-03-12 16:48 - 2015-03-04 22:24 - 00178144 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-03-12 16:28 - 2015-03-12 16:35 - 00000000 ____D () C:\Windows\system32\MRT 2015-03-12 16:28 - 2015-02-26 21:14 - 122905848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-03-12 16:23 - 2014-03-20 00:36 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll 2015-03-12 16:23 - 2014-03-08 07:40 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll 2015-03-12 16:23 - 2014-03-04 08:00 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll 2015-03-12 16:23 - 2014-03-04 07:32 - 00356864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll 2015-03-12 16:22 - 2014-03-20 05:19 - 01291200 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2015-03-12 16:22 - 2014-03-20 04:41 - 00376152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys 2015-03-12 16:22 - 2014-03-20 01:53 - 00950784 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll 2015-03-12 16:22 - 2014-03-20 01:48 - 00201216 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll 2015-03-12 16:22 - 2014-03-20 00:55 - 01036288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2015-03-12 16:22 - 2014-03-20 00:39 - 00800256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll 2015-03-12 16:22 - 2014-03-19 06:50 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe 2015-03-12 16:22 - 2014-03-19 06:20 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe 2015-03-12 16:22 - 2014-03-13 13:35 - 00157016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys 2015-03-12 16:22 - 2014-03-08 21:38 - 01542768 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2015-03-12 16:22 - 2014-03-08 16:29 - 00356848 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll 2015-03-12 16:22 - 2014-03-08 12:34 - 01095488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2015-03-12 16:22 - 2014-03-08 10:02 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll 2015-03-12 16:22 - 2014-03-08 09:33 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll 2015-03-12 16:22 - 2014-03-08 09:25 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\SetNetworkLocation.dll 2015-03-12 16:22 - 2014-03-08 09:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxproxy.dll 2015-03-12 16:22 - 2014-03-08 08:47 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll 2015-03-12 16:22 - 2014-03-08 08:04 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll 2015-03-12 16:22 - 2014-03-08 07:48 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll 2015-03-12 16:22 - 2014-03-08 07:31 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll 2015-03-12 16:22 - 2014-03-08 07:30 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll 2015-03-12 16:22 - 2014-03-08 06:41 - 01306624 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll 2015-03-12 16:22 - 2014-03-08 06:11 - 00924160 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll 2015-03-12 16:22 - 2014-03-06 15:34 - 02331000 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2015-03-12 16:22 - 2014-03-06 15:34 - 00113648 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll 2015-03-12 16:22 - 2014-03-06 12:19 - 00094016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll 2015-03-12 16:22 - 2014-03-06 11:46 - 01679128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2015-03-12 16:22 - 2014-03-06 10:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2015-03-12 16:22 - 2014-03-06 10:24 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys 2015-03-12 16:22 - 2014-03-06 10:22 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys 2015-03-12 16:22 - 2014-03-06 10:19 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-03-12 16:22 - 2014-03-06 10:19 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2015-03-12 16:22 - 2014-03-06 10:19 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2015-03-12 16:22 - 2014-03-06 10:08 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll 2015-03-12 16:22 - 2014-03-06 09:41 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\DevPropMgr.dll 2015-03-12 16:22 - 2014-03-06 09:38 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2015-03-12 16:22 - 2014-03-06 09:14 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\WSDScDrv.dll 2015-03-12 16:22 - 2014-03-06 09:10 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\l2gpstore.dll 2015-03-12 16:22 - 2014-03-06 09:00 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll 2015-03-12 16:22 - 2014-03-06 08:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2015-03-12 16:22 - 2014-03-06 08:16 - 00171008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll 2015-03-12 16:22 - 2014-03-06 08:02 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll 2015-03-12 16:22 - 2014-03-06 07:29 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll 2015-03-12 16:22 - 2014-03-06 07:24 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll 2015-03-12 16:22 - 2014-03-06 07:23 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll 2015-03-12 16:22 - 2014-03-06 07:21 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll 2015-03-12 16:22 - 2014-03-06 07:06 - 00386560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll 2015-03-12 16:22 - 2014-03-06 07:04 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll 2015-03-12 16:22 - 2014-03-06 07:01 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll 2015-03-12 16:22 - 2014-03-06 06:51 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll 2015-03-12 16:22 - 2014-03-06 06:47 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll 2015-03-12 16:22 - 2014-03-06 06:42 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll 2015-03-12 16:22 - 2014-03-04 08:16 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2015-03-12 16:22 - 2014-03-04 08:13 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2015-03-12 16:22 - 2014-03-04 08:08 - 00299008 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll 2015-03-12 16:22 - 2014-03-04 07:56 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll 2015-03-12 16:22 - 2014-03-04 07:42 - 00494592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2015-03-12 16:22 - 2014-03-04 07:39 - 00254976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll 2015-03-12 16:22 - 2014-03-04 07:15 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll 2015-03-12 16:22 - 2014-03-04 07:05 - 00402432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll 2015-03-12 16:22 - 2014-03-04 07:03 - 00669696 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll 2015-03-12 16:22 - 2014-03-04 07:03 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll 2015-03-12 16:22 - 2014-03-04 06:54 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll 2015-03-12 16:22 - 2014-03-04 06:52 - 00605184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll 2015-03-12 16:22 - 2013-12-24 00:28 - 00262656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll 2015-03-12 16:22 - 2013-12-24 00:26 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll 2015-03-12 16:09 - 2014-12-09 04:45 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll 2015-03-12 16:09 - 2014-12-09 02:56 - 00538624 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll 2015-03-12 16:09 - 2014-09-27 08:13 - 00104336 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll 2015-03-12 16:09 - 2014-09-27 06:24 - 00088800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll 2015-03-12 16:09 - 2014-09-27 04:30 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll 2015-03-12 16:09 - 2014-06-20 02:48 - 01273184 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-03-12 16:09 - 2014-06-20 00:52 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-03-12 16:05 - 2015-01-23 08:17 - 00723072 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll 2015-03-12 16:05 - 2015-01-23 06:02 - 00560392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll 2015-03-12 16:05 - 2015-01-15 23:43 - 00563504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2015-03-12 16:05 - 2015-01-15 23:43 - 00177984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-03-12 16:05 - 2015-01-14 05:22 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2015-03-12 16:05 - 2015-01-14 04:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2015-03-12 16:05 - 2014-10-29 03:51 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-03-12 16:05 - 2014-10-29 03:50 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-03-12 16:05 - 2014-10-29 03:06 - 00736768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-03-12 16:05 - 2014-10-29 03:06 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-03-12 16:05 - 2014-10-29 02:31 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-03-12 16:05 - 2014-06-13 02:15 - 00517528 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2015-03-12 16:05 - 2014-06-13 02:14 - 01557848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2015-03-12 16:05 - 2014-06-13 01:10 - 00406400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2015-03-12 16:05 - 2014-03-06 13:53 - 02141912 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2015-03-12 16:05 - 2014-03-06 13:51 - 00379224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2015-03-12 16:05 - 2014-03-06 13:39 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2015-03-12 16:05 - 2014-03-06 12:13 - 01779800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2015-03-12 16:04 - 2015-03-06 03:53 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-03-12 16:04 - 2015-03-06 03:33 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-03-12 16:04 - 2015-02-26 00:26 - 04178944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-03-12 16:04 - 2015-02-20 04:03 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2015-03-12 16:04 - 2015-02-20 03:58 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2015-03-12 16:04 - 2015-02-20 03:20 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2015-03-12 16:04 - 2015-02-20 03:15 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2015-03-12 16:04 - 2015-01-31 00:42 - 03097600 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll 2015-03-12 16:04 - 2015-01-31 00:29 - 02484224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll 2015-03-12 16:04 - 2015-01-29 02:58 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll 2015-03-12 16:04 - 2015-01-29 02:29 - 00290816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\photowiz.dll 2015-03-12 16:04 - 2014-12-09 02:50 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2015-03-12 16:04 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll 2015-03-12 16:04 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll 2015-03-12 16:04 - 2014-10-29 03:49 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2015-03-12 16:04 - 2014-10-29 03:44 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2015-03-12 16:04 - 2014-10-29 03:44 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2015-03-12 16:04 - 2014-10-29 03:04 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2015-03-12 16:04 - 2014-10-29 03:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2015-03-12 16:04 - 2014-10-29 03:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2015-03-12 16:04 - 2014-08-07 03:12 - 01336624 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-03-12 16:04 - 2014-08-02 04:56 - 01064448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2015-03-12 16:04 - 2014-05-30 04:03 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2015-03-12 16:03 - 2015-02-07 00:09 - 00396419 _____ () C:\Windows\system32\ApnDatabase.xml 2015-03-12 16:03 - 2015-02-04 00:58 - 00264000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2015-03-12 16:03 - 2015-02-04 00:58 - 00114496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys 2015-03-12 16:03 - 2015-02-04 00:58 - 00044024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2015-03-12 16:03 - 2015-02-03 00:53 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll 2015-03-12 16:03 - 2015-02-03 00:53 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll 2015-03-12 16:03 - 2015-01-27 04:44 - 00933888 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe 2015-03-12 16:03 - 2015-01-24 02:51 - 00816128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe 2015-03-12 16:03 - 2014-12-19 09:57 - 00788680 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2015-03-12 16:03 - 2014-12-19 09:25 - 00602776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2015-03-12 16:03 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\SysWOW64\locale.nls 2015-03-12 16:03 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\system32\locale.nls 2015-03-12 16:03 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2015-03-12 16:03 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2015-03-12 16:03 - 2014-10-29 02:27 - 01200128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll 2015-03-12 16:03 - 2014-10-29 02:27 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll 2015-03-12 16:03 - 2014-10-29 02:04 - 00868352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll 2015-03-12 16:03 - 2014-10-29 02:04 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll 2015-03-12 16:03 - 2014-10-13 03:33 - 00116032 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2015-03-12 16:03 - 2014-10-11 01:58 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-03-12 16:03 - 2014-10-11 01:53 - 03607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2015-03-12 16:03 - 2014-10-08 08:30 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2015-03-12 16:03 - 2014-10-08 08:09 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2015-03-12 16:03 - 2014-10-08 07:27 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2015-03-12 16:03 - 2014-08-23 06:18 - 02149376 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2015-03-12 16:03 - 2014-08-23 06:03 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2015-03-12 16:03 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2015-03-12 16:03 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2015-03-12 16:03 - 2014-03-13 08:42 - 00308224 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe 2015-03-12 16:03 - 2014-03-13 07:51 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe 2015-03-12 16:02 - 2014-05-03 06:36 - 00997888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll 2015-03-12 16:02 - 2014-05-03 06:19 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll 2015-03-12 16:02 - 2014-05-03 06:08 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll 2015-03-12 16:02 - 2014-05-03 06:07 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll 2015-03-12 16:02 - 2014-05-03 05:46 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncobjapi.dll 2015-03-12 16:02 - 2014-05-03 05:37 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll 2015-03-12 16:02 - 2014-05-03 05:37 - 00207360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll 2015-03-12 16:02 - 2014-05-03 00:26 - 00050745 _____ () C:\Windows\system32\srms.dat 2015-03-12 16:02 - 2014-04-30 07:43 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys 2015-03-12 16:02 - 2014-04-30 07:41 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-03-12 16:02 - 2014-04-30 07:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys 2015-03-12 16:02 - 2014-04-30 07:41 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys 2015-03-12 16:02 - 2014-04-30 06:45 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe 2015-03-12 16:02 - 2014-04-30 05:48 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe 2015-03-12 16:02 - 2014-04-30 05:24 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2015-03-12 16:02 - 2014-04-30 05:23 - 00353280 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll 2015-03-12 16:02 - 2014-04-30 05:23 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2015-03-12 16:02 - 2014-04-30 05:23 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll 2015-03-12 16:02 - 2014-04-30 05:14 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2015-03-12 16:02 - 2014-04-30 04:59 - 01063424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2015-03-12 16:02 - 2014-04-30 04:46 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll 2015-03-12 16:02 - 2014-04-30 04:46 - 00229888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2015-03-12 16:02 - 2014-04-30 04:46 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2015-03-12 16:02 - 2014-04-30 04:45 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll 2015-03-12 16:02 - 2014-04-30 04:42 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll 2015-03-12 16:02 - 2014-04-28 23:40 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll 2015-03-12 16:02 - 2014-04-26 17:39 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll 2015-03-12 16:02 - 2014-04-14 10:37 - 02125344 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll 2015-03-12 16:02 - 2014-04-14 09:08 - 01797896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll 2015-03-12 16:02 - 2014-04-14 06:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll 2015-03-12 16:02 - 2014-03-08 21:40 - 00136024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys 2015-03-12 16:02 - 2014-03-08 07:41 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2015-03-12 16:02 - 2014-03-08 07:25 - 00264192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2015-03-12 16:02 - 2014-03-08 07:04 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2015-03-12 16:02 - 2014-03-08 06:58 - 00567296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2015-03-12 16:01 - 2014-08-23 07:10 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2015-03-12 16:01 - 2014-08-23 06:32 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2015-03-12 16:01 - 2014-08-23 05:33 - 00796672 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll 2015-03-12 16:01 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll 2015-03-12 16:01 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll 2015-03-12 16:01 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll 2015-03-12 16:01 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-03-12 16:01 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll 2015-03-12 16:01 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-03-12 16:00 - 2014-10-23 06:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2015-03-12 16:00 - 2014-10-23 06:05 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2015-03-12 16:00 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll 2015-03-12 16:00 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2015-03-12 16:00 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2015-03-12 16:00 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll 2015-03-12 16:00 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll 2015-03-12 16:00 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\httpprxm.dll 2015-03-12 16:00 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\ProximityService.dll 2015-03-12 16:00 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll 2015-03-12 16:00 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll 2015-03-12 16:00 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\adhsvc.dll 2015-03-12 16:00 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2015-03-12 16:00 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\pcsvDevice.dll 2015-03-12 16:00 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll 2015-03-12 16:00 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll 2015-03-12 16:00 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll 2015-03-12 16:00 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2015-03-12 16:00 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll 2015-03-12 16:00 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe 2015-03-12 16:00 - 2014-07-24 16:28 - 00468288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS 2015-03-12 16:00 - 2014-07-24 12:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys 2015-03-12 16:00 - 2014-07-24 11:09 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2015-03-12 16:00 - 2014-07-24 10:27 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2015-03-12 15:57 - 2014-04-08 23:46 - 00086688 _____ (Microsoft Corporation) C:\Windows\system32\mrt_map.dll 2015-03-12 15:57 - 2014-04-08 23:46 - 00028320 _____ (Microsoft Corporation) C:\Windows\system32\mrt100.dll 2015-03-12 15:57 - 2014-04-08 19:54 - 00080032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt_map.dll 2015-03-12 15:57 - 2014-04-08 19:54 - 00026784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt100.dll 2015-03-12 15:56 - 2014-08-02 01:18 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll 2015-03-12 15:55 - 2015-02-06 02:28 - 02257408 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2015-03-12 15:55 - 2015-02-06 02:08 - 01943040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2015-03-12 15:55 - 2015-01-29 02:11 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-03-12 15:55 - 2015-01-29 02:04 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2015-03-12 15:55 - 2015-01-29 02:04 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2015-03-12 15:55 - 2015-01-29 02:00 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-03-12 15:55 - 2015-01-29 01:55 - 00971776 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2015-03-12 15:55 - 2015-01-29 01:50 - 00811008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2015-03-12 15:55 - 2015-01-28 03:24 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\StorageContextHandler.dll 2015-03-12 15:55 - 2015-01-28 02:47 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorageContextHandler.dll 2015-03-12 15:55 - 2014-12-19 07:26 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2015-03-12 15:55 - 2014-12-12 01:51 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys 2015-03-12 15:55 - 2014-10-29 03:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\printui.exe 2015-03-12 15:55 - 2014-10-29 03:34 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll 2015-03-12 15:55 - 2014-10-29 03:34 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WSCollect.exe 2015-03-12 15:55 - 2014-10-29 03:34 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe 2015-03-12 15:55 - 2014-10-29 03:04 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll 2015-03-12 15:55 - 2014-10-29 02:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.exe 2015-03-12 15:55 - 2014-10-29 02:52 - 00289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compstui.dll 2015-03-12 15:55 - 2014-10-29 02:51 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll 2015-03-12 15:55 - 2014-10-29 02:45 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\prnntfy.dll 2015-03-12 15:55 - 2014-10-29 02:28 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll 2015-03-12 15:55 - 2014-10-29 02:20 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll 2015-03-12 15:55 - 2014-10-29 02:15 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnntfy.dll 2015-03-12 15:55 - 2014-10-29 02:13 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll 2015-03-12 15:55 - 2014-10-29 01:55 - 00223744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll 2015-03-12 15:55 - 2014-10-29 01:55 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll 2015-03-12 15:55 - 2014-10-29 01:44 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll 2015-03-12 15:55 - 2014-10-29 01:41 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll 2015-03-12 15:55 - 2014-10-29 01:35 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll 2015-03-12 15:55 - 2014-10-13 03:43 - 00238912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2015-03-12 15:55 - 2014-10-13 03:43 - 00153920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2015-03-12 15:55 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys 2015-03-12 15:55 - 2014-10-13 03:43 - 00039744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys 2015-03-12 15:55 - 2014-09-04 01:12 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 2015-03-12 15:55 - 2014-09-04 01:01 - 00514048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll 2015-03-12 15:55 - 2014-07-10 05:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\lockscreencn.dll 2015-03-12 15:54 - 2014-12-12 03:04 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2015-03-12 15:54 - 2014-07-15 19:16 - 03048880 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe 2015-03-12 15:54 - 2014-07-15 09:29 - 03118080 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2015-03-12 15:54 - 2014-07-15 09:22 - 02861056 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll 2015-03-12 15:54 - 2014-07-15 09:03 - 02344448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2015-03-12 15:53 - 2014-04-11 04:06 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe |
18.03.2015, 19:56 | #12 |
| Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden und der zweite Teil: Code:
ATTFilter 2015-03-12 15:53 - 2014-04-11 04:05 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-03-12 15:53 - 2014-04-11 04:02 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-03-12 15:53 - 2014-04-11 04:01 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-03-12 15:53 - 2014-04-11 03:57 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll 2015-03-12 15:52 - 2015-02-05 21:24 - 01113920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2015-03-12 15:52 - 2015-02-03 01:03 - 03551744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll 2015-03-12 15:52 - 2015-02-03 01:02 - 04298240 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll 2015-03-12 15:52 - 2015-01-30 04:01 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys 2015-03-12 15:52 - 2015-01-30 04:00 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rfcomm.sys 2015-03-12 15:52 - 2015-01-30 03:03 - 01488896 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll 2015-03-12 15:52 - 2015-01-30 03:03 - 01464832 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll 2015-03-12 15:52 - 2015-01-30 02:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll 2015-03-12 15:52 - 2015-01-30 02:42 - 01204224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll 2015-03-12 15:52 - 2015-01-30 02:29 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atlthunk.dll 2015-03-12 15:52 - 2015-01-19 19:42 - 01487976 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll 2015-03-12 15:52 - 2014-10-29 03:46 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS 2015-03-12 15:52 - 2014-10-29 03:46 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys 2015-03-12 15:52 - 2014-10-29 03:45 - 01198080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys 2015-03-12 15:52 - 2014-10-29 03:03 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\fsquirt.exe 2015-03-12 15:52 - 2014-10-29 02:28 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\atlthunk.dll 2015-03-12 15:51 - 2014-04-09 12:53 - 00337240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys 2015-03-12 15:51 - 2014-04-06 17:20 - 01403856 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll 2015-03-12 15:51 - 2014-04-06 17:20 - 01379064 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll 2015-03-12 15:51 - 2014-04-06 17:20 - 00765408 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll 2015-03-12 15:51 - 2014-04-06 17:20 - 00491744 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll 2015-03-12 15:51 - 2014-04-06 16:16 - 01209616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll 2015-03-12 15:51 - 2014-04-06 16:16 - 00669856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll 2015-03-12 15:51 - 2014-04-06 13:33 - 00335872 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe 2015-03-12 15:51 - 2014-04-06 11:05 - 01222656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll 2015-03-12 15:51 - 2014-04-06 10:59 - 00982016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll 2015-03-12 15:51 - 2014-03-28 16:58 - 00407016 _____ (Microsoft Corporation) C:\Windows\system32\services.exe 2015-03-12 15:51 - 2014-03-18 06:00 - 07173120 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll 2015-03-12 15:51 - 2014-03-18 05:52 - 05104640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll 2015-03-12 15:51 - 2014-03-17 06:09 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2015-03-12 15:51 - 2014-03-17 05:11 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2015-03-12 15:51 - 2014-03-14 07:26 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\GeofenceMonitorService.dll 2015-03-12 15:51 - 2014-03-14 07:10 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GeofenceMonitorService.dll 2015-03-12 15:50 - 2014-04-18 15:57 - 00032600 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll 2015-03-12 15:50 - 2014-04-18 10:44 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\energyprov.dll 2015-03-12 15:50 - 2014-04-14 10:20 - 00324888 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll 2015-03-12 15:50 - 2014-04-14 09:01 - 00285144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll 2015-03-12 15:50 - 2014-04-11 05:51 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll 2015-03-12 15:50 - 2014-04-11 05:23 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll 2015-03-12 15:50 - 2014-04-09 07:39 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2015-03-12 15:50 - 2014-04-09 06:44 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2015-03-12 15:50 - 2014-04-09 04:33 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll 2015-03-12 15:50 - 2014-04-08 03:01 - 00589656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2015-03-12 15:50 - 2014-04-06 17:34 - 00372568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2015-03-12 15:50 - 2014-04-06 17:34 - 00275800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2015-03-12 15:50 - 2014-04-06 17:30 - 00201920 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll 2015-03-12 15:50 - 2014-04-06 17:24 - 00360792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys 2015-03-12 15:50 - 2014-04-06 17:20 - 00609448 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2015-03-12 15:50 - 2014-04-06 17:20 - 00028408 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe 2015-03-12 15:50 - 2014-04-06 16:22 - 00178184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVideoDSP.dll 2015-03-12 15:50 - 2014-04-06 16:16 - 00518544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll 2015-03-12 15:50 - 2014-04-06 16:16 - 00387896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll 2015-03-12 15:50 - 2014-04-06 13:58 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2015-03-12 15:50 - 2014-04-06 13:51 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2015-03-12 15:50 - 2014-04-06 13:24 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2015-03-12 15:50 - 2014-04-06 13:06 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2015-03-12 15:50 - 2014-04-06 12:26 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll 2015-03-12 15:50 - 2014-04-03 09:12 - 00307304 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2015-03-12 15:50 - 2014-04-03 09:12 - 00130144 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll 2015-03-12 15:50 - 2014-04-03 05:03 - 00230808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2015-03-12 15:50 - 2014-04-03 05:03 - 00111528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll 2015-03-12 15:50 - 2014-04-03 03:23 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tlscsp.dll 2015-03-12 15:50 - 2014-04-03 03:22 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll 2015-03-12 15:50 - 2014-03-27 06:36 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll 2015-03-12 15:50 - 2014-03-27 05:48 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll 2015-03-12 15:50 - 2014-03-27 04:15 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll 2015-03-12 15:50 - 2014-03-27 04:10 - 01436160 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe 2015-03-12 15:50 - 2014-03-19 09:15 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll 2015-03-12 15:50 - 2014-03-19 08:24 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2015-03-12 15:50 - 2014-03-19 08:17 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll 2015-03-12 15:50 - 2014-03-06 10:19 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll 2015-03-12 15:50 - 2014-03-06 09:20 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll 2015-03-12 15:50 - 2014-01-27 19:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2015-03-12 15:48 - 2015-01-29 01:59 - 02773504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-03-12 15:48 - 2015-01-29 01:49 - 02459136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2015-03-12 15:48 - 2014-05-19 07:31 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\drvcfg.exe 2015-03-12 15:48 - 2014-05-19 07:21 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe 2015-03-12 15:48 - 2014-05-19 06:23 - 00098816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe 2015-03-12 15:48 - 2014-04-30 05:43 - 01975296 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-03-12 15:48 - 2014-04-30 05:26 - 01345536 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-03-12 15:48 - 2014-04-30 04:47 - 01509888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2015-03-12 15:11 - 2015-01-31 00:20 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll 2015-03-12 15:11 - 2014-06-02 03:10 - 00423768 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll 2015-03-12 15:11 - 2014-05-31 11:07 - 00440664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2015-03-12 15:11 - 2014-05-31 11:07 - 00089944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2015-03-12 15:11 - 2014-05-31 11:07 - 00027480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2015-03-12 15:11 - 2014-05-31 07:30 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2015-03-12 15:11 - 2014-05-31 07:27 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2015-03-12 15:11 - 2014-05-31 07:26 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2015-03-12 15:11 - 2014-05-31 05:01 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2015-03-12 15:11 - 2014-05-31 05:01 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2015-03-12 15:11 - 2014-05-31 05:01 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2015-03-12 15:11 - 2014-05-27 10:56 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\DaOtpCredentialProvider.dll 2015-03-12 15:11 - 2014-05-27 10:53 - 00270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DaOtpCredentialProvider.dll 2015-03-12 15:08 - 2015-01-28 16:41 - 07472960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-03-12 15:08 - 2015-01-28 16:41 - 01733440 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-03-12 15:08 - 2015-01-28 16:41 - 01498360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2015-03-12 15:08 - 2014-12-06 04:17 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2015-03-12 15:08 - 2014-12-06 02:41 - 00391680 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2015-03-12 15:08 - 2014-10-29 03:02 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2015-03-12 15:08 - 2014-10-29 03:02 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2015-03-12 15:08 - 2014-10-29 02:57 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2015-03-12 15:08 - 2014-10-29 02:24 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2015-03-12 15:08 - 2014-10-29 02:15 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2015-03-12 15:08 - 2014-10-29 02:15 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2015-03-12 15:08 - 2014-10-29 02:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2015-03-12 15:08 - 2014-10-29 02:13 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2015-03-12 15:08 - 2014-10-29 02:13 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2015-03-12 15:08 - 2014-10-29 02:01 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2015-03-12 13:31 - 2015-03-16 09:57 - 00000632 _____ () C:\Users\Frank\Documents\fehler.txt 2015-03-12 13:04 - 2015-03-17 11:22 - 00000000 ____D () C:\Users\Frank\Documents\Outlook-Dateien 2015-03-12 12:58 - 2015-02-21 02:16 - 25021440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-03-12 12:58 - 2015-02-21 01:41 - 12827648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-03-12 12:58 - 2015-02-21 01:27 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-03-12 12:58 - 2015-02-21 01:27 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2015-03-12 12:58 - 2015-02-21 01:25 - 19720192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-03-12 12:58 - 2015-02-21 00:58 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-03-12 12:58 - 2015-02-21 00:32 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-03-12 12:58 - 2015-02-20 03:49 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-03-12 12:58 - 2015-02-20 03:48 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-03-12 12:58 - 2015-02-20 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-03-12 12:58 - 2015-02-20 03:35 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-03-12 12:58 - 2015-02-20 03:34 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-03-12 12:58 - 2015-02-20 03:32 - 06035456 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-03-12 12:58 - 2015-02-20 03:09 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-03-12 12:58 - 2015-02-20 03:07 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2015-03-12 12:58 - 2015-02-20 03:06 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-03-12 12:58 - 2015-02-20 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-03-12 12:58 - 2015-02-20 03:03 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-03-12 12:58 - 2015-02-20 02:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2015-03-12 12:58 - 2015-02-20 02:56 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-03-12 12:58 - 2015-02-20 02:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2015-03-12 12:58 - 2015-02-20 02:49 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-03-12 12:58 - 2015-02-20 02:49 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-03-12 12:58 - 2015-02-20 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-03-12 12:58 - 2015-02-20 02:43 - 14398976 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-03-12 12:58 - 2015-02-20 02:30 - 04300288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-03-12 12:58 - 2015-02-20 02:30 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2015-03-12 12:58 - 2015-02-20 02:29 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2015-03-12 12:58 - 2015-02-20 02:28 - 02358784 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-03-12 12:58 - 2015-02-20 02:26 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2015-03-12 12:58 - 2015-02-20 02:24 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-03-12 12:58 - 2015-02-20 02:24 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-03-12 12:58 - 2015-02-20 02:16 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-03-12 12:58 - 2015-02-20 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-03-12 12:58 - 2015-02-20 02:01 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-03-12 12:58 - 2015-02-20 01:57 - 01311232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-03-12 12:58 - 2015-02-20 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-03-12 12:58 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-03-12 12:58 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-03-12 12:58 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-03-12 12:58 - 2015-01-12 02:23 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-03-12 12:58 - 2014-11-22 03:49 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-03-12 12:58 - 2014-11-22 03:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-03-12 12:58 - 2014-11-10 00:19 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-03-12 12:58 - 2014-11-10 00:19 - 00806400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-03-12 12:58 - 2014-11-10 00:18 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll 2015-03-12 12:58 - 2014-11-10 00:18 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll 2015-03-12 12:58 - 2014-10-31 06:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2015-03-12 12:58 - 2014-10-31 06:12 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2015-03-12 12:58 - 2014-10-31 06:10 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2015-03-12 12:58 - 2014-10-31 06:09 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2015-03-12 12:58 - 2014-10-31 06:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2015-03-12 12:58 - 2014-10-31 06:06 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2015-03-12 12:58 - 2014-10-31 06:06 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-03-12 12:58 - 2014-10-31 06:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-03-12 12:58 - 2014-10-31 05:57 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-03-12 12:58 - 2014-10-31 05:56 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-03-12 12:58 - 2014-10-31 05:54 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2015-03-12 12:58 - 2014-10-31 05:53 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-03-12 12:58 - 2014-10-31 05:52 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll 2015-03-12 12:58 - 2014-10-31 05:51 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-03-12 12:58 - 2014-10-31 05:51 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-03-12 12:58 - 2014-10-31 05:40 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2015-03-12 12:58 - 2014-10-31 05:30 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-03-12 12:58 - 2014-10-31 05:29 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2015-03-12 12:58 - 2014-10-31 05:29 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2015-03-12 12:58 - 2014-10-31 05:28 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2015-03-12 12:58 - 2014-10-31 05:25 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-03-12 12:58 - 2014-10-31 05:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2015-03-12 12:58 - 2014-10-31 05:19 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2015-03-12 12:58 - 2014-10-31 04:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2015-03-12 12:58 - 2014-10-31 04:28 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2015-03-12 12:58 - 2014-10-31 04:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2015-03-12 12:58 - 2014-10-31 04:27 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2015-03-12 12:58 - 2014-10-31 04:26 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2015-03-12 12:58 - 2014-10-31 04:25 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2015-03-12 12:58 - 2014-10-31 04:24 - 00235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2015-03-12 12:58 - 2014-10-31 04:24 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-03-12 12:58 - 2014-10-31 04:23 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-03-12 12:58 - 2014-10-31 04:16 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-03-12 12:58 - 2014-10-31 04:15 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-03-12 12:58 - 2014-10-31 04:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2015-03-12 12:58 - 2014-10-31 04:13 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-03-12 12:58 - 2014-10-31 04:13 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll 2015-03-12 12:58 - 2014-10-31 04:12 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-03-12 12:58 - 2014-10-31 04:11 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-03-12 12:58 - 2014-10-31 04:03 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2015-03-12 12:58 - 2014-10-31 03:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-03-12 12:58 - 2014-10-31 03:56 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2015-03-12 12:58 - 2014-10-31 03:56 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2015-03-12 12:58 - 2014-10-31 03:56 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2015-03-12 12:58 - 2014-10-31 03:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-03-12 12:58 - 2014-10-31 03:53 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2015-03-12 12:58 - 2014-10-31 03:48 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2015-03-12 12:58 - 2014-10-31 03:26 - 01042944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll 2015-03-12 12:58 - 2014-10-31 03:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2015-03-12 12:58 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-03-12 12:58 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-03-12 12:58 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-03-12 12:57 - 2015-02-12 18:40 - 22291584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2015-03-12 12:57 - 2015-02-12 18:34 - 19731824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2015-03-12 12:57 - 2015-01-29 19:45 - 01763352 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2015-03-12 12:57 - 2015-01-29 19:34 - 01488040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2015-03-12 12:57 - 2015-01-28 02:31 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2015-03-12 12:57 - 2015-01-28 02:11 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2015-03-12 12:57 - 2014-09-10 07:25 - 00474432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2015-03-12 12:57 - 2014-09-08 04:07 - 02497344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2015-03-12 12:57 - 2014-09-08 04:07 - 00428864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2015-03-12 12:57 - 2014-09-04 04:05 - 00836176 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll 2015-03-12 12:57 - 2014-09-04 03:22 - 00670384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll 2015-03-12 12:57 - 2014-09-04 01:10 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll 2015-03-12 12:57 - 2014-08-31 01:17 - 00148800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2015-03-12 12:57 - 2014-08-30 23:05 - 00615424 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll 2015-03-12 12:57 - 2014-08-30 22:58 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll 2015-03-12 12:57 - 2014-08-30 22:04 - 00941568 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll 2015-03-12 12:57 - 2014-08-30 21:53 - 00239104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSAPI.dll 2015-03-12 12:57 - 2014-08-30 21:17 - 00799744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll 2015-03-12 12:57 - 2014-08-28 01:21 - 02480128 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll 2015-03-12 12:57 - 2014-08-28 01:06 - 02030592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll 2015-03-12 12:57 - 2014-08-23 06:14 - 13424128 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2015-03-12 12:57 - 2014-08-23 06:04 - 11820544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2015-03-12 12:57 - 2014-08-23 05:50 - 02714112 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll 2015-03-12 12:57 - 2014-08-02 01:51 - 00545792 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll 2015-03-12 12:57 - 2014-08-02 01:35 - 00485376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll 2015-03-12 12:57 - 2014-05-13 08:01 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\BulkOperationHost.exe 2015-03-12 12:57 - 2014-03-06 07:27 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll 2015-03-12 12:56 - 2015-02-08 00:57 - 01090048 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll 2015-03-12 12:56 - 2015-02-08 00:49 - 00791040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll 2015-03-12 12:56 - 2015-01-30 03:02 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll 2015-03-12 12:56 - 2015-01-30 02:40 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll 2015-03-12 12:56 - 2015-01-30 02:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll 2015-03-12 12:56 - 2015-01-30 02:24 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll 2015-03-12 12:56 - 2015-01-30 02:24 - 00250880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll 2015-03-12 12:56 - 2015-01-30 02:16 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll 2015-03-12 12:56 - 2015-01-30 02:08 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll 2015-03-12 12:56 - 2015-01-30 02:06 - 00278016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll 2015-03-12 12:56 - 2015-01-28 00:47 - 02501368 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2015-03-12 12:56 - 2015-01-28 00:41 - 02207488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2015-03-12 12:56 - 2014-12-11 06:36 - 00046456 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentServer.exe 2015-03-12 12:56 - 2014-12-08 20:42 - 00535640 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2015-03-12 12:56 - 2014-12-08 20:42 - 00531616 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll 2015-03-12 12:56 - 2014-12-08 20:42 - 00448792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2015-03-12 12:56 - 2014-12-08 20:42 - 00413248 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll 2015-03-12 12:56 - 2014-12-08 20:42 - 00372408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll 2015-03-12 12:56 - 2014-12-08 20:42 - 00108944 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll 2015-03-12 12:56 - 2014-12-08 20:42 - 00038264 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe 2015-03-12 12:56 - 2014-12-08 20:42 - 00033584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe 2015-03-12 12:56 - 2014-12-06 02:35 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll 2015-03-12 12:56 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2015-03-12 12:56 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2015-03-12 12:56 - 2014-10-29 05:00 - 00465320 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe 2015-03-12 12:56 - 2014-10-29 05:00 - 00139984 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe 2015-03-12 12:56 - 2014-10-29 04:52 - 00500016 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2015-03-12 12:56 - 2014-10-29 04:52 - 00482872 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2015-03-12 12:56 - 2014-10-29 04:52 - 00394120 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2015-03-12 12:56 - 2014-10-29 04:52 - 00272248 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe 2015-03-12 12:56 - 2014-10-29 04:12 - 00413136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe 2015-03-12 12:56 - 2014-10-29 04:12 - 00136296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe 2015-03-12 12:56 - 2014-10-29 04:07 - 00424544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll 2015-03-12 12:56 - 2014-10-29 04:07 - 00370424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll 2015-03-12 12:56 - 2014-10-29 04:07 - 00344536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll 2015-03-12 12:56 - 2014-10-29 03:44 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll 2015-03-12 12:56 - 2014-10-29 02:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll 2015-03-12 12:56 - 2014-10-29 02:19 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll 2015-03-12 12:56 - 2014-10-29 02:02 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2015-03-12 12:56 - 2014-10-29 01:59 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappprxy.dll 2015-03-12 12:56 - 2014-07-12 05:17 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe 2015-03-12 12:56 - 2014-06-06 14:04 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2015-03-12 12:56 - 2014-06-06 13:18 - 00488960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2015-03-12 12:56 - 2014-05-01 14:31 - 00055328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys 2015-03-12 12:56 - 2014-05-01 06:24 - 02834944 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll 2015-03-12 12:55 - 2014-07-24 04:20 - 00875688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll 2015-03-12 12:55 - 2014-07-24 04:20 - 00869544 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll 2015-03-12 12:54 - 2014-05-31 11:06 - 00555736 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll 2015-03-12 12:54 - 2014-05-31 03:37 - 01054208 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll 2015-03-12 12:54 - 2014-05-31 03:35 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll 2015-03-12 12:54 - 2014-04-11 09:25 - 00419928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll 2015-03-12 12:49 - 2015-01-21 06:54 - 01384712 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2015-03-12 12:49 - 2015-01-21 06:15 - 01123848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll 2015-03-12 12:34 - 2015-03-12 12:34 - 00000000 ____D () C:\Program Files\Microsoft Synchronization Services 2015-03-12 12:33 - 2015-03-12 12:33 - 00000000 ____D () C:\Program Files\Microsoft Sync Framework 2015-03-12 12:33 - 2015-03-12 12:33 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition 2015-03-12 12:29 - 2015-03-12 12:29 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services 2015-03-12 11:52 - 2015-03-12 11:52 - 00000000 ____D () C:\MATS 2015-03-12 09:55 - 2015-03-12 09:55 - 282920160 _____ () C:\Users\Frank\Documents\registry.reg 2015-03-12 09:54 - 2015-03-12 09:54 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2015-03-12 08:41 - 2015-03-12 14:12 - 00000000 ____D () C:\Program Files (x86)\UEFI WinFlash 2015-03-12 08:36 - 2015-03-12 08:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\WinBatch 2015-03-11 22:27 - 2015-03-11 22:27 - 00000000 ____D () C:\Users\Frank\AppData\Local\Macromedia 2015-03-11 22:22 - 2015-03-17 11:28 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-03-11 22:22 - 2015-03-11 22:22 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2015-03-11 22:18 - 2015-03-17 11:12 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\vlc 2015-03-11 22:18 - 2015-03-11 22:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2015-03-11 22:18 - 2015-03-11 22:18 - 00000000 ____D () C:\Program Files\VideoLAN 2015-03-11 22:15 - 2015-03-11 22:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mp3tag 2015-03-11 22:14 - 2015-03-11 22:15 - 00000000 ____D () C:\Program Files (x86)\Mp3tag 2015-03-11 22:10 - 2015-03-11 22:10 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2015-03-11 19:18 - 2015-03-11 19:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON 2015-03-11 19:18 - 2015-03-11 19:18 - 00000000 ____D () C:\ProgramData\EPSON 2015-03-11 19:18 - 2015-03-11 19:18 - 00000000 ____D () C:\Program Files\Common Files\EPSON 2015-03-11 19:18 - 2009-09-30 18:01 - 00088064 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_IBCBHAE.DLL 2015-03-11 19:18 - 2008-11-11 18:00 - 00118784 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_ILMHAE.DLL 2015-03-11 19:18 - 2007-04-09 16:06 - 00010752 _____ (SEIKO EPSON CORP.) C:\Windows\system32\E_GCINST.DLL 2015-03-11 18:49 - 2015-03-16 17:23 - 00000000 ____D () C:\Users\Frank\Desktop\Multimedia 2015-03-11 18:49 - 2015-03-11 18:49 - 00000000 ____D () C:\Users\Frank\Desktop\Grafik & Fotos 2015-03-11 18:48 - 2015-03-16 22:22 - 00000000 ___RD () C:\Users\Frank\Desktop\System & Tools 2015-03-11 18:48 - 2015-03-11 18:48 - 00000000 ____D () C:\Users\Frank\Desktop\Download 2015-03-11 17:50 - 2006-09-12 20:00 - 00234496 _____ (CANON INC.) C:\Windows\system32\CNMLM86.DLL 2015-03-11 17:49 - 2014-03-27 15:35 - 00011294 _____ () C:\Users\Frank\Documents\Mappe2.xlsx 2015-03-11 17:49 - 2013-12-18 18:37 - 00013746 _____ () C:\Users\Frank\Documents\Weihnachtsgeschenke.xlsx 2015-03-11 17:49 - 2013-12-17 14:19 - 00103270 _____ () C:\Users\Frank\Documents\Kreditrechner-Excel.xlsx 2015-03-11 17:49 - 2013-12-17 14:16 - 00057344 _____ () C:\Users\Frank\Documents\Immobilien_Finanzierung.xls 2015-03-11 17:49 - 2013-12-17 14:10 - 00013049 _____ () C:\Users\Frank\Documents\Zinsberechnung.xlsx 2015-03-11 17:49 - 2013-12-13 10:29 - 00976384 _____ () C:\Users\Frank\Documents\Adventkalender.pps 2015-03-11 17:49 - 2013-10-14 18:08 - 02457631 _____ () C:\Users\Frank\Documents\icons.zip 2015-03-11 17:49 - 2012-12-29 16:29 - 00027136 _____ () C:\Users\Frank\Documents\Schallplatten.xls 2015-03-11 17:49 - 2012-12-28 18:15 - 00011254 _____ () C:\Users\Frank\Documents\ninco-schienen.xlsx 2015-03-11 17:49 - 2012-09-24 14:20 - 00072704 _____ () C:\Users\Frank\Documents\Tippformular Saison 2012-2013.xls 2015-03-11 17:49 - 2012-07-08 11:10 - 00010989 _____ () C:\Users\Frank\Documents\Auslagen Marcel.xlsx 2015-03-11 17:49 - 2012-03-17 10:09 - 00097792 _____ () C:\Users\Frank\Documents\ordner_auslesen_hyperlink2007.xls 2015-03-11 17:49 - 2012-02-04 11:45 - 00031232 _____ () C:\Users\Frank\Documents\Steam-Umsätze.xls 2015-03-11 17:49 - 2011-12-05 19:06 - 00011039 _____ () C:\Users\Frank\Documents\Renncenter_Urkunde.xlsx 2015-03-11 17:49 - 2011-11-22 07:32 - 00001303 _____ () C:\Users\Frank\Documents\UseNeXT - Verknüpfung.lnk 2015-03-11 17:49 - 2011-11-06 13:30 - 00012454 _____ () C:\Users\Frank\Documents\Abrechnung Marcel.xlsx 2015-03-11 17:49 - 2011-11-03 19:11 - 00001903 _____ () C:\Users\Frank\Documents\SV Henstedt-Ulzburg - Verknüpfung.lnk 2015-03-11 17:49 - 2011-08-24 09:42 - 00036864 _____ () C:\Users\Frank\Documents\Telefonliste_SVHU_D5_August2011.xls 2015-03-11 17:49 - 2011-07-27 18:51 - 00027648 _____ () C:\Users\Frank\Documents\Pierre.xls 2015-03-11 17:49 - 2011-04-19 13:26 - 00009640 _____ () C:\Users\Frank\Documents\verbrauch.xlsx 2015-03-11 17:49 - 2011-03-16 07:30 - 00199680 _____ () C:\Users\Frank\Documents\MS Visio & MS Project.cld 2015-03-11 17:49 - 2011-03-15 10:56 - 00033792 _____ () C:\Users\Frank\Documents\WG HUP-Kaufbestätigung - 564674586.msg 2015-03-11 17:49 - 2010-10-25 17:54 - 00044100 _____ () C:\Users\Frank\Documents\PC-Software.htm 2015-03-11 17:49 - 2010-10-25 17:53 - 00024576 _____ () C:\Users\Frank\Documents\PC-Software.xls 2015-03-11 17:49 - 2009-09-22 08:11 - 00000324 _____ () C:\Users\Frank\Documents\Outlook-Backup.obp 2015-03-11 17:49 - 2009-08-17 16:30 - 00008792 _____ () C:\Users\Frank\Documents\Java Printing.mdi 2015-03-11 17:49 - 2009-06-22 13:41 - 00071742 _____ () C:\Users\Frank\Documents\Re Spielerliste.htm 2015-03-11 17:49 - 2009-01-28 18:24 - 00011587 _____ () C:\Users\Frank\Documents\TSSTcorpCDDVDW_SN-S082H_SB01.html 2015-03-11 17:49 - 2008-12-07 10:26 - 00296960 _____ () C:\Users\Frank\Documents\Weihnachtsgruß.ppt 2015-03-11 17:49 - 2008-10-28 16:21 - 00013824 _____ () C:\Users\Frank\Documents\Body Mass Index.xls 2015-03-11 17:49 - 2008-09-20 10:36 - 00024064 _____ () C:\Users\Frank\Documents\VideoCDs und VHS.xls 2015-03-11 17:30 - 2015-03-11 17:30 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2015-03-11 17:29 - 2015-03-11 19:35 - 00000000 ____D () C:\ProgramData\Adobe 2015-03-11 17:29 - 2015-03-11 17:29 - 00000000 ____D () C:\Program Files (x86)\Adobe 2015-03-11 17:28 - 2015-03-11 22:22 - 00000000 ____D () C:\Users\Frank\AppData\Local\Adobe 2015-03-11 17:21 - 2015-03-17 11:54 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\UseNeXT 2015-03-11 17:21 - 2015-03-17 11:50 - 00000000 ____D () C:\Users\Frank\Documents\UseNeXT 2015-03-11 17:20 - 2015-03-11 17:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UseNeXT 2015-03-11 17:20 - 2015-03-11 17:20 - 00000000 ____D () C:\Program Files (x86)\UseNeXT 2015-03-11 17:15 - 2015-03-11 17:16 - 00000000 ____D () C:\Users\Frank\AppData\Local\ACD Systems 2015-03-11 17:15 - 2015-03-11 17:15 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\ACD Systems 2015-03-11 17:14 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2015-03-11 17:14 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ACD Systems 2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\ProgramData\ACD Systems 2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\Program Files\Common Files\ACD Systems 2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\Program Files (x86)\ACD Systems 2015-03-11 17:12 - 2015-03-11 17:12 - 00000000 ____D () C:\Users\Frank\AppData\Local\Downloaded Installations 2015-03-11 17:01 - 2015-03-11 17:01 - 00000000 ____D () C:\Program Files (x86)\MSECache 2015-03-11 16:46 - 2015-03-11 16:46 - 00000000 ____D () C:\Users\Frank\AppData\Local\Windows Live 2015-03-11 13:03 - 2015-03-12 12:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint 2015-03-11 13:03 - 2015-03-12 12:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2015-03-11 13:01 - 2015-03-11 13:01 - 00000000 ____D () C:\Program Files (x86)\Microsoft Synchronization Services 2015-03-11 13:00 - 2015-03-11 13:00 - 00000000 ____D () C:\Windows\PCHEALTH 2015-03-11 13:00 - 2015-03-11 13:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft Sync Framework 2015-03-11 13:00 - 2015-03-11 13:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2015-03-11 12:56 - 2015-03-11 12:56 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8 2015-03-11 12:55 - 2015-03-12 12:33 - 00000000 ____D () C:\Program Files\Microsoft Office 2015-03-11 12:55 - 2015-03-11 12:55 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services 2015-03-11 12:54 - 2015-03-11 13:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2015-03-11 12:54 - 2015-03-11 12:54 - 00000000 __RHD () C:\MSOCache 2015-03-11 09:47 - 2015-03-16 10:56 - 00000000 ____D () C:\Users\Frank\Documents\Backups 2015-03-11 09:45 - 2015-03-11 09:45 - 00000000 ____D () C:\Dokumente und Einstellungen 2015-03-11 09:36 - 2015-03-17 12:01 - 00000000 ___SD () C:\Users\Frank\Documents\Sticky Passwords 2015-03-11 09:15 - 2015-03-11 09:15 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2015-03-11 09:15 - 2015-03-11 09:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2015-03-11 09:15 - 2015-03-11 09:15 - 00000000 ____D () C:\Program Files\CCleaner 2015-03-11 09:06 - 2015-03-11 09:07 - 00000000 ____D () C:\Users\Public\Documents\CATraxx 2015-03-11 09:06 - 2015-03-11 09:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CATraxx 2015-03-11 09:06 - 2015-03-11 09:06 - 00000000 ____D () C:\Program Files (x86)\CATraxx 2015-03-11 09:06 - 2012-01-20 17:57 - 01163264 _____ (Chilkat Software, Inc.) C:\Windows\SysWOW64\ChilkatRsa.dll 2015-03-11 09:00 - 2015-03-12 12:22 - 00000000 ____D () C:\Users\Frank\Documents\_Outlook-Dateien 2015-03-11 08:59 - 2015-03-12 13:01 - 00000000 ____D () C:\Program Files (x86)\Outlook Backup Assistant 2015-03-11 08:59 - 2015-03-11 08:59 - 00000000 ____D () C:\Users\Frank\Documents\Add-in Express 2015-03-10 18:53 - 2015-03-10 18:53 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2015-03-10 18:48 - 2015-03-17 13:59 - 00000000 ____D () C:\ProgramData\Microsoft Help 2015-03-10 18:48 - 2015-03-11 14:00 - 00000000 ____D () C:\Users\Frank\AppData\Local\Microsoft Help 2015-03-10 17:23 - 2015-03-17 15:34 - 00000000 ____D () C:\Program Files (x86)\SpeedProject 2015-03-10 16:14 - 2015-03-10 16:14 - 00000000 ___HD () C:\ProgramData\CanonBJ 2015-03-10 16:14 - 2015-03-10 16:14 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2015-03-10 16:12 - 2015-03-16 12:07 - 00000000 ____D () C:\Users\Frank\AppData\Local\Deployment 2015-03-10 16:12 - 2015-03-10 16:12 - 00116480 _____ (AVM Berlin) C:\Windows\system32\Drivers\avmaura.sys 2015-03-10 16:12 - 2015-03-10 16:12 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FRITZ!Box 2015-03-10 16:12 - 2015-03-10 16:12 - 00000000 ____D () C:\Users\Frank\AppData\Local\Apps\2.0 2015-03-10 15:40 - 2015-03-10 15:40 - 00001186 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Mozilla 2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Users\Frank\AppData\Local\Mozilla 2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\ProgramData\Mozilla 2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2015-03-10 15:12 - 2015-03-03 14:17 - 00295552 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2015-03-10 15:06 - 2015-03-10 15:06 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieUserList 2015-03-10 15:06 - 2015-03-10 15:06 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieSiteList 2015-03-10 15:01 - 2015-03-18 19:46 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\ClassicShell 2015-03-10 15:01 - 2015-03-10 15:01 - 00000000 ____D () C:\ProgramData\ClassicShell 2015-03-10 14:58 - 2015-03-10 14:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell 2015-03-10 14:58 - 2015-03-10 14:58 - 00000000 ____D () C:\Program Files\Classic Shell 2015-03-10 14:57 - 2015-03-17 08:28 - 00000000 ____D () C:\Users\Frank\AppData\Local\Google 2015-03-10 14:54 - 2015-03-17 08:00 - 00003922 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{378DF711-DD0C-4AD7-98F3-CA1D88A8AD0B} 2015-03-10 14:49 - 2015-03-10 14:49 - 00000000 ____D () C:\Users\Default\AppData\Local\Google 2015-03-10 14:49 - 2015-03-10 14:49 - 00000000 ____D () C:\Users\Default User\AppData\Local\Google 2015-03-10 14:47 - 2015-03-18 17:33 - 00000000 ___DO () C:\Users\Frank\OneDrive 2015-03-10 14:46 - 2015-03-17 11:57 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2734555180-3142773653-1428810083-1001 2015-03-10 14:41 - 2015-03-10 17:24 - 00000000 ____D () C:\Users\Frank\AppData\Local\TOSHIBA 2015-03-10 14:40 - 2015-03-10 14:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Macromedia 2015-03-10 14:39 - 2015-03-16 13:58 - 00000000 ____D () C:\Users\Frank\AppData\Local\VirtualStore 2015-03-10 14:39 - 2015-03-11 17:47 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Adobe 2015-03-10 14:39 - 2015-03-10 14:43 - 00000000 ____D () C:\Users\Frank\AppData\Local\Packages 2015-03-10 14:39 - 2015-03-10 14:39 - 00001465 _____ () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-03-10 14:37 - 2015-03-17 15:48 - 00000000 ____D () C:\Users\Frank 2015-03-10 14:37 - 2015-03-10 14:37 - 00000020 ___SH () C:\Users\Frank\ntuser.ini 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Vorlagen 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Startmenü 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Netzwerkumgebung 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Lokale Einstellungen 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Eigene Dateien 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Druckumgebung 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Documents\Eigene Musik 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Documents\Eigene Bilder 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\AppData\Local\Verlauf 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\AppData\Local\Anwendungsdaten 2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Anwendungsdaten 2015-03-10 14:37 - 2014-03-18 11:00 - 00000000 ___RD () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-03-10 14:37 - 2014-03-18 11:00 - 00000000 ___RD () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-03-10 14:37 - 2014-03-18 10:49 - 00000369 _____ () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2015-03-10 14:37 - 2014-03-18 10:49 - 00000369 _____ () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2015-03-10 14:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-03-10 14:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-02-17 15:19 - 2015-02-17 15:19 - 01614496 _____ (Microsoft Corporation) C:\Windows\system32\FM20.DLL ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-03-18 19:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru 2015-03-18 17:31 - 2013-08-22 14:25 - 00524288 ___SH () C:\Windows\system32\config\BBI 2015-03-17 15:00 - 2014-08-29 20:24 - 00000000 ____D () C:\ProgramData\Temp 2015-03-17 14:07 - 2013-08-22 15:44 - 00483008 _____ () C:\Windows\system32\FNTCACHE.DAT 2015-03-17 13:59 - 2013-08-22 14:25 - 00000199 _____ () C:\Windows\win.ini 2015-03-17 13:45 - 2014-08-29 20:24 - 00000000 ____D () C:\ProgramData\Package Cache 2015-03-17 12:03 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-03-17 11:49 - 2014-05-22 00:54 - 00001132 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-03-17 11:24 - 2014-05-22 00:54 - 00001128 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-03-17 11:18 - 2014-05-06 05:41 - 00765582 _____ () C:\Windows\system32\perfh007.dat 2015-03-17 11:18 - 2014-05-06 05:41 - 00159366 _____ () C:\Windows\system32\perfc007.dat 2015-03-17 11:18 - 2014-03-18 10:47 - 01776918 _____ () C:\Windows\system32\PerfStringBackup.INI 2015-03-17 08:28 - 2014-05-22 00:54 - 00000000 ____D () C:\Program Files (x86)\Google 2015-03-16 22:27 - 2008-12-07 17:20 - 00000000 ____D () C:\Users\Frank\Documents\Schriftverkehr 2015-03-16 22:19 - 2014-08-29 20:41 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-03-16 22:19 - 2014-08-29 20:41 - 00000000 ____D () C:\ProgramData\WildTangent 2015-03-16 22:19 - 2014-08-29 20:41 - 00000000 ____D () C:\Program Files (x86)\WildTangent Games 2015-03-16 17:25 - 2014-05-22 01:03 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2015-03-16 15:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache 2015-03-16 13:39 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp 2015-03-16 13:31 - 2014-05-06 05:40 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer 2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\winrm 2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\WCN 2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\slmgr 2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\winrm 2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\WCN 2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\slmgr 2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel 2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\WinStore 2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\MUI 2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\MUI 2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender 2015-03-16 13:31 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\Sysprep 2015-03-16 13:31 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\servicing 2015-03-16 13:13 - 2014-03-18 10:33 - 00000000 ____D () C:\Program Files\Windows Journal 2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Photo Viewer 2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\System 2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer 2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2015-03-16 13:12 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\Printing_Admin_Scripts 2015-03-16 13:12 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\Com 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\SystemResetPlatform 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\migwiz 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\Com 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\IME 2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Help 2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\SysWOW64\oobe 2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\SysWOW64\Dism 2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\oobe 2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\Dism 2015-03-16 12:52 - 2013-08-22 16:36 - 00000000 ___SD () C:\Windows\system32\dsc 2015-03-16 12:03 - 2014-05-22 01:03 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA 2015-03-16 10:14 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\SecureBootUpdates 2015-03-16 10:03 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness 2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData 2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\setup 2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\InputMethod 2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\setup 2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS 2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS 2015-03-12 16:38 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2015-03-12 16:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\MediaViewer 2015-03-12 16:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\FileManager 2015-03-12 16:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Camera 2015-03-12 12:35 - 2014-03-18 10:33 - 00000000 ____D () C:\Windows\ShellNew 2015-03-12 12:34 - 2014-05-06 05:23 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2015-03-12 08:40 - 2014-08-29 20:10 - 00000000 ____D () C:\Program Files (x86)\TOSHIBA 2015-03-11 13:50 - 2014-05-22 00:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive 2015-03-11 12:10 - 2014-05-23 01:33 - 00000000 ____D () C:\Windows\Panther 2015-03-10 17:17 - 2014-08-29 20:30 - 00000000 ____D () C:\ProgramData\McAfee 2015-03-10 17:07 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\spool 2015-03-10 16:59 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\NDF 2015-03-10 15:13 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM 2015-03-10 15:09 - 2013-08-22 16:36 - 00000000 ___HD () C:\Windows\ELAMBKUP 2015-03-10 14:57 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\restore 2015-03-10 14:45 - 2014-05-22 00:54 - 00000000 ____D () C:\ProgramData\TOSHIBA 2015-03-10 14:44 - 2014-05-22 00:54 - 00004104 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-03-10 14:44 - 2014-05-22 00:54 - 00003868 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-03-10 14:39 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\sysprep 2015-03-06 09:11 - 2012-09-27 07:12 - 00000000 ____D () C:\Users\Frank\Documents\Tippspiel ==================== Files in the root of some directories ======= 2015-03-17 10:29 - 2015-03-17 10:29 - 0000840 _____ () C:\Users\Frank\AppData\Local\recently-used.xbel 2014-08-29 20:06 - 2014-08-29 20:06 - 0000000 ____H () C:\ProgramData\DP45977C.lfl ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-05-22 08:48 ==================== End Of Log ============================ |
19.03.2015, 10:14 | #13 |
/// the machine /// TB-Ausbilder | Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden Java updaten. Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter C:\Windows\System32\Application Services\appsvc.exe.vir C:\Windows\SysWOW64\Application Services\appsvc.exe.vir Emptytemp: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Cleanup: (Die Reihenfolge ist hier entscheidend) Falls Defogger verwendet wurde: Erneut starten und auf Re-enable klicken. Falls Combofix verwendet wurde: Combofix deinstallieren
Alle Logs gepostet? Dann lade Dir bitte DelFix herunter.
Hinweis: DelFix entfernt u.a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst. Starte Deinen Rechner abschließend neu. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein, kannst Du diese bedenkenlos löschen. Wenn Du möchtest, kannst Du hier sagen, ob Du mit mir und meiner Hilfe zufrieden warst...und/oder das Forum mit einer kleinen Spende unterstützen. Absicherung: Beim Betriebsystem Windows die automatischen Updates aktivieren. Auch die sicherheitsrelevante Software sollte immer nur in der aktuellsten Version vorliegen: Browser Java Flash-Player PDF-Reader Sicherheitslücken in deren alten Versionen werden dazu ausgenutzt, um beim einfachen Besuch einer manipulierten Website per "Drive-by" Malware zu installieren. Ich empfehle z.B. die Verwendung von Mozilla Firefox statt des Internet Explorers. Zudem lassen sich mit dem Firefox auch PDF-Dokumente öffnen. Aktiviere eine Firewall. Die in Windows integrierte genügt im Normalfall völlig. Verwende ein Antivirusprogramm mit Echtzeitscanner und stets aktueller Signaturendatenbank. Meine Empfehlung: Emsisoft Zusätzlich kannst Du Deinen PC regelmäßig mit Malwarebytes Anti-Malware und ESET scannen. Optional: NoScript verhindert das Ausführen von aktiven Inhalten (Java, JavaScript, Flash,...) für sämtliche Websites. Man kann aber nach dem Prinzip einer Whitelist festlegen, auf welchen Seiten Scripts erlaubt werden sollen. Malwarebytes Anti Exploit: Schützt die Anwendungen des Computers vor der Ausnutzung bekannter Schwachstellen. Lade Software von einem sauberen Portal wie . Wähle beim Installieren von Software immer die benutzerdefinierte Option und entferne den Haken bei allen optional angebotenen Toolbars oder sonstigen, fürs Programm, irrelevanten Ergänzungen. Um Adware wieder los zu werden, empfiehlt sich zunächst die Deinstallation sowie die anschließende Resteentfernung mit Adwcleaner . Abschließend noch ein paar grundsätzliche Bemerkungen: Ändere regelmäßig Deine wichtigen Online-Passwörter und erstelle regelmäßig Backups Deiner wichtigen Dateien oder des Systems. Der Nutzen von Registry-Cleanern, Optimizern usw. zur Performancesteigerung ist umstritten. Ich empfehle deshalb, die Finger von der Registry zu lassen und lieber die windowseigene Datenträgerbereinigung zu verwenden.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
19.03.2015, 10:45 | #14 |
| Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden Guten Morgen Schrauber, hier die fixlog.txt: Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-03-2015 Ran by Frank at 2015-03-19 10:39:48 Run:2 Running from C:\Users\Frank\Desktop Loaded Profiles: Frank & (Available profiles: Frank) Boot Mode: Normal ============================================== Content of fixlist: ***************** C:\Windows\System32\Application Services\appsvc.exe.vir C:\Windows\SysWOW64\Application Services\appsvc.exe.vir Emptytemp: ***************** "C:\Windows\System32\Application Services\appsvc.exe.vir" => File/Directory not found. C:\Windows\SysWOW64\Application Services\appsvc.exe.vir => Moved successfully. EmptyTemp: => Removed 74.7 MB temporary data. The system needed a reboot. ==== End of Fixlog 10:40:02 ==== Gruß Frank Selle |
19.03.2015, 20:59 | #15 |
/// the machine /// TB-Ausbilder | Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden ok
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden |
administrator, antivireprogramme, defender, explorer, hijack.security, homepage, installation, kaspersky, microsoft, msil/injector.ead, nqij.exe, programme, reaktivieren, registry, security.hijack, software, super, trojan.agent, trojaner, windows 8 |