Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

Antwort
Alt 17.03.2015, 16:37   #1
Dorfkicker
 
Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden - Standard

Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden



Hallo zusammen,
ich habe mir beim Einrichten eines neuen Toshiba-NBs mit vorinstalliertem Win 8.1 (64bit) offenbar einen Trojaner eingefangen. Rechner wurde plötzlich langsam und Windows Defender ließ sich nicht mehr starten. Der Versuch, diesen zu reaktivieren oder andere Antivirenprogramme zu installieren, schlug immer fehl. Installation klappte zwar, beim Start des Programms gab es dann jedesmal eine Fehlermeldung.

Erst der Trojan Remover fand dann den Eintrag nqij.exe in der Registry beim Startaufruf der diversen Antivir-Programme, konnte die Registry jedoch nicht bereinigen.

Bin dann über Google auf eurer Seite gelandet. Habe die virt. Laufwerke deaktiviert und GMER gestartet, letzteres brach aber sofort mit Fehlermeldung ab (s.u.). Ich bin dankbar für jede Hilfe, das Gerät hat mich jetzt schon zwei Tage gekostet.

Logfiles:
FRST.txt (Teil 1)

Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Frank (administrator) on UHURA2 on 17-03-2015 15:48:16
Running from C:\Users\Frank\Desktop
Loaded Profiles: Frank (Available profiles: Frank)
Platform: Windows 8.1 Connected (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
() C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
(H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Toshiba Corporation) C:\Program Files\TOSHIBA\Teco\TecoService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Teco\TecoResident.exe
() C:\Program Files (x86)\ACD Systems\ACDSee\18.0\ACDSeeCommander18.exe
(AVM Berlin) C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe
() C:\Users\Frank\AppData\Local\Amazon Music\Amazon Music Helper.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
(TOSHIBA) C:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TDUSrv64.exe
(ACD Systems) C:\Program Files (x86)\ACD Systems\ACDSee\18.0\acdIDInTouch2.exe
(H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\vc10tray.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Priotecs IT GmbH) C:\Program Files (x86)\Outlook Backup Assistant\OutlookBackupAssistant.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [] => [X]
HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2556768 2013-10-09] (TOSHIBA Corporation)
HKLM\...\Run: [TecoResident] => C:\Program Files\TOSHIBA\Teco\TecoResident.exe [179288 2014-01-05] (TOSHIBA Corporation)
HKLM\...\Run: [TSSSrv] => C:\Program Files (x86)\TOSHIBA\System Setting\TSSSrv.exe [296008 2013-10-22] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [354144 2013-08-13] (TOSHIBA Corporation)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-20] (IvoSoft)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [KeNotify] => C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [34160 2013-08-06] (TOSHIBA CORPORATION)
HKLM-x32\...\Run: [TSVU] => c:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TosSmartViewLauncher.exe [516512 2013-07-23] (TOSHIBA)
HKLM-x32\...\Run: [ACSW18DE] => C:\Program Files (x86)\ACD Systems\ACDSee\18.0\acdIDInTouch2.exe [1470224 2014-09-17] (ACD Systems)
HKLM-x32\...\Run: [ITSecMng] => C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [80840 2011-04-01] (TOSHIBA CORPORATION)
HKLM-x32\...\Run: [VC10Player] => C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe [416696 2012-10-25] (H+H Software GmbH)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation)
HKLM-x32\...\Run: [TrojanScanner] => C:\Program Files (x86)\Trojan Remover\Trjscan.exe [1791856 2014-10-16] (Simply Super Software)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [AVMUSBFernanschluss] => C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\AVMAutoStart.exe [139264 2015-03-10] (AVM Berlin)
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7416088 2015-02-19] (Piriform Ltd)
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [ACDSeeCommander18] => C:\Program Files (x86)\ACD Systems\ACDSee\18.0\ACDSeeCommander18.exe [1973256 2014-12-17] ()
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [Amazon Music] => C:\Users\Frank\AppData\Local\Amazon Music\Amazon Music Helper.exe [5886272 2015-03-02] ()
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [26232152 2015-02-19] (Google)
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x00000000
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Winlogon: [Shell] C:\Windows\explorer.exe [2501368 2015-01-28] (Microsoft Corporation) <==== ATTENTION 
HKU\S-1-5-18\...\Run: [EPSONE8BE74 (Epson Stylus SX430)] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHAE.EXE [232448 2011-01-20] (SEIKO EPSON CORPORATION)
IFEO\AvastSvc.exe: [Debugger] nqij.exe
IFEO\AvastUI.exe: [Debugger] nqij.exe
IFEO\avcenter.exe: [Debugger] nqij.exe
IFEO\avconfig.exe: [Debugger] nqij.exe
IFEO\avgcsrvx.exe: [Debugger] nqij.exe
IFEO\avgidsagent.exe: [Debugger] nqij.exe
IFEO\avgnt.exe: [Debugger] nqij.exe
IFEO\avgrsx.exe: [Debugger] nqij.exe
IFEO\avguard.exe: [Debugger] nqij.exe
IFEO\avgui.exe: [Debugger] nqij.exe
IFEO\avgwdsvc.exe: [Debugger] nqij.exe
IFEO\avp.exe: [Debugger] nqij.exe
IFEO\avscan.exe: [Debugger] nqij.exe
IFEO\bdagent.exe: [Debugger] nqij.exe
IFEO\blindman.exe: [Debugger] nqij.exe
IFEO\ccuac.exe: [Debugger] nqij.exe
IFEO\ComboFix.exe: [Debugger] nqij.exe
IFEO\egui.exe: [Debugger] nqij.exe
IFEO\hijackthis.exe: [Debugger] nqij.exe
IFEO\instup.exe: [Debugger] nqij.exe
IFEO\keyscrambler.exe: [Debugger] nqij.exe
IFEO\mbam.exe: [Debugger] nqij.exe
IFEO\mbamgui.exe: [Debugger] nqij.exe
IFEO\mbampt.exe: [Debugger] nqij.exe
IFEO\mbamscheduler.exe: [Debugger] nqij.exe
IFEO\mbamservice.exe: [Debugger] nqij.exe
IFEO\MSASCui.exe: [Debugger] nqij.exe
IFEO\rstrui.exe: [Debugger] nqij.exe
IFEO\SDFiles.exe: [Debugger] nqij.exe
IFEO\SDMain.exe: [Debugger] nqij.exe
IFEO\SDWinSec.exe: [Debugger] nqij.exe
IFEO\spybotsd.exe: [Debugger] nqij.exe
IFEO\wireshark.exe: [Debugger] nqij.exe
IFEO\zlclient.exe: [Debugger] nqij.exe
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.de/
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://toshiba13.msn.com/?pc=TEJB
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://toshiba.eu/symbaloo_c
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2734555180-3142773653-1428810083-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2734555180-3142773653-1428810083-1001 -> {898DEB29-90E7-4FED-ADAC-FCDAB1A2CEFC} URL = 
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20] (IvoSoft)
BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2014-12-16] (Adblock Plus)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-17] (Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-17] (Oracle Corporation)
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20] (IvoSoft)
BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2014-12-16] (Adblock Plus)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.10

FireFox:
========
FF ProfilePath: C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll [2015-03-11] ()
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-03-11] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-17] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-17] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-10] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-10] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Extension: Avira Browser Safety - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\abs@avira.com [2015-03-17]
FF Extension: mediaplayerconnectivity - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{84b24861-62f6-364b-eba5-2e5e2061d7e6} [2015-03-11]
FF Extension: Add to Amazon Wish List Button - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\amznUWL2@amazon.com.xpi [2015-03-11]
FF Extension: NoScript - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2015-03-11]
FF Extension: Video DownloadHelper - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2015-03-16]
FF Extension: Adblock Plus - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-03-10]

Chrome: 
=======
CHR HomePage: Default -> hxxp://go.microsoft.com/fwlink/?LinkId=69157
CHR Profile: C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-17]
CHR Extension: (Google Docs) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-17]
CHR Extension: (Google Drive) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-17]
CHR Extension: (YouTube) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-17]
CHR Extension: (Adblock Plus) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-03-17]
CHR Extension: (Google Search) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-17]
CHR Extension: (Avira SafeSearch) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\eglgfnfolcgijipffhlhbbnefdcbjbml [2015-03-17]
CHR Extension: (Google Sheets) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-17]
CHR Extension: (Sticky Password Autofill Engine) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggepjhbdgijjkbelnggboeoehacbphed [2015-03-17]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-17]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-03-17]
CHR Extension: (Google Wallet) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-17]
CHR Extension: (Gmail) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-17]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [319104 2014-03-19] (Windows (R) Win 7 DDK provider) [File not signed]
R2 dts_apo_service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [21840 2014-03-03] ()
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-02] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-02] (Intel(R) Corporation)
S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [116088 2014-08-05] (Toshiba Europe GmbH)
R2 VC10SecS; C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe [147312 2014-12-15] (H+H Software GmbH)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3888640 2014-02-14] (Qualcomm Atheros Communications, Inc.)
R3 avmaura; C:\Windows\System32\drivers\avmaura.sys [116480 2015-03-10] (AVM Berlin)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
S3 GENERICDRV; C:\Program Files (x86)\UEFI WinFlash\amifldrv64.sys [15640 2012-07-27] ()
S3 HH10Help.sys; C:\Windows\system32\drivers\HH10Help.sys [24088 2009-07-09] (H+H Software GmbH)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [291544 2014-01-03] (Realtek Semiconductor Corp.)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31472 2014-02-21] (Synaptics Incorporated)
R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [33168 2013-10-10] (Windows (R) Win 7 DDK provider)
S3 Tosrfcom; No ImagePath
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation)
R1 vdrv1000; C:\Windows\System32\drivers\vdrv1000.sys [226080 2012-12-06] (H+H Software GmbH)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-17 15:48 - 2015-03-17 15:48 - 00000472 _____ () C:\Users\Frank\Downloads\defogger_disable.log
2015-03-17 15:48 - 2015-03-17 15:48 - 00000000 _____ () C:\Users\Frank\defogger_reenable
2015-03-17 15:47 - 2015-03-17 15:47 - 00050477 _____ () C:\Users\Frank\Downloads\Defogger.exe
2015-03-17 15:23 - 2015-03-17 15:24 - 00029764 _____ () C:\Users\Frank\Downloads\Addition.txt
2015-03-17 15:21 - 2015-03-17 15:24 - 00142748 _____ () C:\Users\Frank\Downloads\FRST.txt
2015-03-17 15:20 - 2015-03-17 15:21 - 02095616 _____ (Farbar) C:\Users\Frank\Downloads\FRST64.exe
2015-03-17 15:13 - 2015-03-17 15:13 - 00000022 _____ () C:\Users\Frank\Downloads\apppath.torun
2015-03-17 15:02 - 2015-03-17 15:02 - 00022528 _____ (Microsoft) C:\Users\Frank\Downloads\RunAsSystem.exe
2015-03-17 14:52 - 2015-03-17 14:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (2).exe
2015-03-17 14:52 - 2015-03-17 14:52 - 00001084 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2015-03-17 14:52 - 2015-03-17 14:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2015-03-17 14:52 - 2015-03-17 14:52 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-03-17 14:52 - 2015-03-17 14:52 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2015-03-17 14:52 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-03-17 14:52 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-03-17 14:52 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-03-17 14:51 - 2015-03-17 14:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (1).exe
2015-03-17 14:51 - 2015-03-17 14:52 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028.exe
2015-03-17 13:56 - 2015-03-17 13:56 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2015-03-17 13:41 - 2015-03-17 13:41 - 00000000 ____D () C:\OETemp
2015-03-17 13:23 - 2015-03-17 14:06 - 00000000 ____D () C:\Program Files (x86)\Avira
2015-03-17 13:22 - 2015-03-17 13:22 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\Frank\Downloads\avira_de_av_5946238192__ws.exe
2015-03-17 13:17 - 2015-03-17 13:18 - 00000000 ____D () C:\ProgramData\Kaspersky Lab Setup Files
2015-03-17 13:16 - 2015-03-17 13:16 - 00416576 _____ (Kaspersky Lab) C:\Users\Frank\Downloads\de-de.setup.exe
2015-03-17 13:15 - 2015-03-17 13:15 - 141468920 _____ (Microsoft Corporation) C:\Users\Frank\Downloads\msert.exe
2015-03-17 13:13 - 2015-03-17 13:14 - 00013513 _____ () C:\Users\Frank\Desktop\Addition.txt
2015-03-17 13:10 - 2015-03-17 15:48 - 00020033 _____ () C:\Users\Frank\Desktop\FRST.txt
2015-03-17 13:10 - 2015-03-17 15:48 - 00000000 ____D () C:\FRST
2015-03-17 12:30 - 2015-03-17 12:28 - 02095616 _____ (Farbar) C:\Users\Frank\Desktop\FRST64.exe
2015-03-17 12:20 - 2015-03-17 12:20 - 00001121 _____ () C:\Users\Public\Desktop\Trojan Remover.lnk
2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\Users\Frank\Documents\Simply Super Software
2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Simply Super Software
2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trojan Remover
2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\ProgramData\Licenses
2015-03-17 12:19 - 2015-03-17 12:20 - 00000000 ____D () C:\Program Files (x86)\Trojan Remover
2015-03-17 12:19 - 2015-03-17 12:19 - 00000000 ____D () C:\ProgramData\Simply Super Software
2015-03-17 12:18 - 2015-03-17 12:19 - 31390952 _____ (Simply Super Software ) C:\Users\Frank\Downloads\trjsetup691.exe
2015-03-17 12:04 - 2015-03-17 12:04 - 00000000 __SHD () C:\ProgramData\Application Services
2015-03-17 11:54 - 2015-03-17 12:21 - 00008108 _____ () C:\Users\Frank\AppData\Roaming\msconfig.ini
2015-03-17 11:54 - 2015-03-17 12:21 - 00000000 __SHD () C:\Windows\SysWOW64\Application Services
2015-03-17 11:24 - 2015-03-17 15:35 - 00000812 _____ () C:\Windows\setupact.log
2015-03-17 11:24 - 2015-03-17 11:24 - 00000000 _____ () C:\Windows\setuperr.log
2015-03-17 11:23 - 2015-03-17 15:34 - 00142982 _____ () C:\Windows\PFRO.log
2015-03-17 11:09 - 2015-03-17 11:10 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Mp3tag
2015-03-17 10:48 - 2015-03-17 10:48 - 00650657 _____ () C:\Users\Frank\Downloads\lame3.99.5.zip
2015-03-17 10:41 - 2015-03-17 10:41 - 00000000 ____D () C:\Users\Frank\AppData\Local\CrashDumps
2015-03-17 10:40 - 2015-03-17 10:49 - 00000000 ____D () C:\Program Files (x86)\Exact Audio Copy
2015-03-17 10:40 - 2015-03-17 10:40 - 00001052 _____ () C:\Users\Public\Desktop\Exact Audio Copy.lnk
2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\EAC
2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\AccurateRip
2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Exact Audio Copy
2015-03-17 10:38 - 2015-03-17 10:39 - 00000000 ____D () C:\ProgramData\Oracle
2015-03-17 10:38 - 2015-03-17 10:38 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\ProgramData\Sun
2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\Program Files (x86)\Java
2015-03-17 10:37 - 2015-03-17 10:37 - 00561064 _____ (Oracle Corporation) C:\Users\Frank\Downloads\jxpiinstall.exe
2015-03-17 10:36 - 2015-03-17 10:39 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Freeplane
2015-03-17 10:36 - 2015-03-17 10:36 - 00000842 _____ () C:\Users\Public\Desktop\Freeplane.lnk
2015-03-17 10:36 - 2015-03-17 10:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freeplane
2015-03-17 10:36 - 2015-03-17 10:36 - 00000000 ____D () C:\Program Files\Freeplane
2015-03-17 10:29 - 2015-03-17 10:29 - 00000840 _____ () C:\Users\Frank\AppData\Local\recently-used.xbel
2015-03-17 10:29 - 2015-03-17 10:29 - 00000000 ____D () C:\Users\Frank\AppData\Local\gtk-2.0
2015-03-17 10:29 - 2015-03-17 10:29 - 00000000 ____D () C:\Users\Frank\.thumbnails
2015-03-17 10:22 - 2015-03-17 10:35 - 00000000 ____D () C:\Users\Frank\.gimp-2.8
2015-03-17 10:22 - 2015-03-17 10:22 - 04620717 _____ () C:\Users\Frank\Downloads\eac-1.0beta4.exe
2015-03-17 10:22 - 2015-03-17 10:22 - 00000000 ____D () C:\Users\Frank\AppData\Local\gegl-0.2
2015-03-17 10:14 - 2015-03-17 10:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\FileZilla
2015-03-17 10:14 - 2015-03-17 10:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2015-03-17 10:14 - 2015-03-17 10:14 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client
2015-03-17 10:13 - 2015-03-17 10:26 - 00000916 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk
2015-03-17 10:12 - 2015-03-17 10:13 - 00000000 ____D () C:\Program Files\GIMP 2
2015-03-17 10:11 - 2015-03-17 10:12 - 00000000 ____D () C:\Program Files (x86)\Notepad++
2015-03-17 10:11 - 2015-03-17 10:11 - 00001035 _____ () C:\Users\Frank\Desktop\Notepad++.lnk
2015-03-17 10:11 - 2015-03-17 10:11 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Notepad++
2015-03-17 10:11 - 2015-03-17 10:11 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2015-03-17 10:11 - 2015-03-17 10:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
2015-03-17 10:06 - 2015-03-17 10:06 - 06208736 _____ (Tim Kosse) C:\Users\Frank\Downloads\filezilla_3.10.2_win32-setup.exe
2015-03-17 10:05 - 2015-03-17 10:05 - 08271739 _____ () C:\Users\Frank\Downloads\npp.6.7.5.installer.exe
2015-03-17 10:00 - 2015-03-17 10:00 - 91931728 _____ (The GIMP Team ) C:\Users\Frank\Downloads\gimp-2.8.14-setup-1.exe
2015-03-17 09:58 - 2015-03-17 09:58 - 24430312 _____ (Open source ) C:\Users\Frank\Downloads\freeplane-setup-1.3.15.exe
2015-03-17 08:41 - 2015-03-17 15:37 - 00000000 ___RD () C:\Users\Frank\Google Drive
2015-03-17 08:28 - 2015-03-17 08:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-03-17 08:27 - 2015-03-17 08:27 - 00880208 _____ (Google Inc.) C:\Users\Frank\Downloads\ChromeSetup.exe
2015-03-17 08:13 - 2015-03-17 08:13 - 00000000 ____D () C:\Program Files\Adblock Plus for IE
2015-03-17 08:12 - 2015-03-17 08:12 - 05915456 _____ ( ) C:\Users\Frank\Downloads\adblockplusie-1.3.exe
2015-03-16 22:19 - 2015-03-17 13:59 - 01435900 _____ () C:\Windows\WindowsUpdate.log
2015-03-16 22:16 - 2015-03-16 22:19 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\WildTangent
2015-03-16 22:16 - 2015-03-16 22:16 - 00000000 ____D () C:\ProgramData\BlueStacks
2015-03-16 21:16 - 2015-03-16 21:16 - 15094704 _____ (Lamantine Software ) C:\Users\Frank\Downloads\stpass_free_606434.exe
2015-03-16 21:16 - 2015-03-16 21:16 - 15094696 _____ (Lamantine Software ) C:\Users\Frank\Downloads\stpass_trial_606434.exe
2015-03-16 19:46 - 2015-03-16 20:09 - 00121344 ___SH () C:\Users\Frank\Downloads\Thumbs.db
2015-03-16 17:26 - 2015-03-16 17:46 - 00000000 ___SD () C:\Users\Public\Virtual CDs
2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ___SD () C:\Users\Public\Virtual CD v10
2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ___SD () C:\Users\Frank\AppData\Roaming\Virtual CD v10
2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual CD v10
2015-03-16 17:26 - 2012-12-06 11:09 - 00226080 ____N (H+H Software GmbH) C:\Windows\system32\Drivers\vdrv1000.sys
2015-03-16 17:26 - 2009-07-09 11:24 - 00024088 _____ (H+H Software GmbH) C:\Windows\system32\Drivers\HH10Help.sys
2015-03-16 17:25 - 2015-03-16 17:26 - 00000000 ____D () C:\Program Files (x86)\Virtual CD v10
2015-03-16 17:24 - 2015-03-16 17:24 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\InstallShield
2015-03-16 17:24 - 2008-06-17 09:22 - 00040464 _____ (H+H Software GmbH) C:\Windows\system32\Drivers\vcd10bus.sys
2015-03-16 16:43 - 2000-10-29 15:33 - 00141312 _____ (Info-ZIP) C:\Windows\SysWOW64\Zip32.dll
2015-03-16 16:30 - 2015-03-16 17:01 - 00000000 ____D () C:\Users\Frank\Documents\TC Seth
2015-03-16 15:13 - 2015-03-16 16:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\M-DVD.Org V2
2015-03-16 15:13 - 2007-09-24 10:04 - 00675840 _____ () C:\Windows\SysWOW64\AudioGenie2.ocx
2015-03-16 15:13 - 2006-03-09 12:34 - 02945024 _____ (hxxp://mediainfo.sourceforge.net) C:\Windows\SysWOW64\MediaInfo.dll
2015-03-16 15:13 - 2004-05-27 00:32 - 00102400 _____ (Info-ZIP) C:\Windows\SysWOW64\unzip32.dll
2015-03-16 15:12 - 2015-03-16 16:43 - 00000000 ____D () C:\Program Files (x86)\M-DVD.Org V2
2015-03-16 15:12 - 2015-03-16 15:12 - 00000000 ____D () C:\ProgramData\M-DVD.Org V2
2015-03-16 15:12 - 2009-12-04 11:56 - 00061440 ____H (SynApp GmbH) C:\Windows\SysWOW64\ErrExplorer.dll
2015-03-16 15:12 - 2006-10-06 09:20 - 02899968 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11.dll
2015-03-16 15:12 - 2006-10-04 16:01 - 00351232 _____ (combit GmbH) C:\Windows\SysWOW64\cmpr11.dll
2015-03-16 15:12 - 2006-09-26 15:51 - 01399296 _____ (combit GmbH) C:\Windows\SysWOW64\cmct11.dll
2015-03-16 15:12 - 2006-09-26 15:39 - 01378304 _____ (combit GmbH) C:\Windows\SysWOW64\cmls11.dll
2015-03-16 15:12 - 2006-09-26 15:39 - 00893952 _____ (combit GmbH) C:\Windows\SysWOW64\cmbr11.dll
2015-03-16 15:12 - 2006-09-26 15:38 - 00739328 _____ (combit GmbH) C:\Windows\SysWOW64\cmdw11.dll
2015-03-16 15:12 - 2006-09-26 15:36 - 00337920 _____ (combit GmbH) C:\Windows\SysWOW64\cmut11.dll
2015-03-16 15:12 - 2006-09-13 10:29 - 00688640 _____ (combit GmbH) C:\Windows\SysWOW64\cmmx01.dll
2015-03-16 15:12 - 2006-07-19 07:00 - 00349184 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11pw.llx
2015-03-16 15:12 - 2006-06-22 08:50 - 00165584 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11o.ocx
2015-03-16 15:12 - 2005-09-13 13:29 - 00414720 _____ (combit GmbH) C:\Windows\SysWOW64\cmll1100.lng
2015-03-16 15:12 - 2005-08-08 16:10 - 00425984 _____ () C:\Windows\SysWOW64\cmmx0100.lng
2015-03-16 15:12 - 2005-07-12 09:41 - 00684032 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11xl.dll
2015-03-16 15:12 - 2005-06-23 15:17 - 01161492 _____ () C:\Windows\SysWOW64\cmLL1100.chm
2015-03-16 12:57 - 2015-03-17 12:10 - 00000000 ____D () C:\Program Files (x86)\Sticky Password
2015-03-16 12:04 - 2015-03-16 12:04 - 00000000 ____D () C:\ProgramData\ToshibaEurope
2015-03-16 12:04 - 2015-03-16 12:04 - 00000000 ____D () C:\ProgramData\TOSHIBA Tempro
2015-03-16 12:03 - 2015-03-16 12:03 - 00000000 ____D () C:\Windows\System32\Tasks\Toshiba
2015-03-16 12:03 - 2015-03-16 12:03 - 00000000 ____D () C:\Program Files (x86)\Toshiba TEMPRO
2015-03-16 11:55 - 2015-03-16 11:55 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieBrowserModeList
2015-03-16 11:54 - 2015-03-16 11:54 - 00000000 ____D () C:\ProgramData\IsolatedStorage
2015-03-16 08:57 - 2014-07-24 16:03 - 02141920 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2015-03-16 08:57 - 2014-07-24 14:36 - 02145472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2015-03-16 08:57 - 2014-07-24 10:44 - 16874496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2015-03-16 08:57 - 2014-07-24 10:16 - 12730880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2015-03-16 08:57 - 2014-07-24 09:53 - 01261056 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2015-03-16 08:57 - 2014-07-24 09:32 - 01532416 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2015-03-16 08:57 - 2014-07-24 08:28 - 01600000 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2015-03-16 08:57 - 2014-06-14 07:03 - 02389504 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-03-16 08:57 - 2014-06-14 06:46 - 02071552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-03-16 08:56 - 2014-07-24 16:28 - 00419648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-03-16 08:56 - 2014-07-24 16:28 - 00412992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2015-03-16 08:56 - 2014-07-24 16:28 - 00280384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2015-03-16 08:56 - 2014-07-24 16:28 - 00143680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2015-03-16 08:56 - 2014-07-24 16:25 - 00054752 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-03-16 08:56 - 2014-07-24 16:23 - 01519488 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2015-03-16 08:56 - 2014-07-24 16:23 - 00125472 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2015-03-16 08:56 - 2014-07-24 16:20 - 00263400 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2015-03-16 08:56 - 2014-07-24 16:16 - 02574208 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2015-03-16 08:56 - 2014-07-24 16:16 - 00211216 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe
2015-03-16 08:56 - 2014-07-24 16:07 - 02009920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-03-16 08:56 - 2014-07-24 16:05 - 01660048 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-03-16 08:56 - 2014-07-24 16:05 - 01519560 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-03-16 08:56 - 2014-07-24 16:05 - 01488008 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-03-16 08:56 - 2014-07-24 16:05 - 01356840 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-03-16 08:56 - 2014-07-24 16:03 - 00882136 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-03-16 08:56 - 2014-07-24 16:03 - 00360480 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2015-03-16 08:56 - 2014-07-24 16:03 - 00233888 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-03-16 08:56 - 2014-07-24 16:03 - 00205512 _____ (Microsoft Corporation) C:\Windows\system32\mftranscode.dll
2015-03-16 08:56 - 2014-07-24 14:50 - 00098048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2015-03-16 08:56 - 2014-07-24 14:48 - 02410976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2015-03-16 08:56 - 2014-07-24 14:48 - 00180208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe
2015-03-16 08:56 - 2014-07-24 14:36 - 00707536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-03-16 08:56 - 2014-07-24 14:36 - 00355800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2015-03-16 08:56 - 2014-07-24 14:36 - 00180720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mftranscode.dll
2015-03-16 08:56 - 2014-07-24 12:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDRUM.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2015-03-16 08:56 - 2014-07-24 12:46 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys
2015-03-16 08:56 - 2014-07-24 12:45 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2015-03-16 08:56 - 2014-07-24 12:44 - 00674816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2015-03-16 08:56 - 2014-07-24 12:43 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2015-03-16 08:56 - 2014-07-24 12:42 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2015-03-16 08:56 - 2014-07-24 12:42 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys
2015-03-16 08:56 - 2014-07-24 12:41 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthpan.sys
2015-03-16 08:56 - 2014-07-24 12:33 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-03-16 08:56 - 2014-07-24 12:33 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-03-16 08:56 - 2014-07-24 12:06 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\iasnap.dll
2015-03-16 08:56 - 2014-07-24 12:05 - 00287232 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll
2015-03-16 08:56 - 2014-07-24 12:05 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-03-16 08:56 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2015-03-16 08:56 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2015-03-16 08:56 - 2014-07-24 11:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRUM.DLL
2015-03-16 08:56 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2015-03-16 08:56 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2015-03-16 08:56 - 2014-07-24 11:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2015-03-16 08:56 - 2014-07-24 11:49 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersGPExt.dll
2015-03-16 08:56 - 2014-07-24 11:33 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-03-16 08:56 - 2014-07-24 11:32 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl
2015-03-16 08:56 - 2014-07-24 11:20 - 02050560 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2015-03-16 08:56 - 2014-07-24 11:18 - 01089024 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll
2015-03-16 08:56 - 2014-07-24 11:12 - 00878592 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2015-03-16 08:56 - 2014-07-24 11:10 - 01844224 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2015-03-16 08:56 - 2014-07-24 11:10 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2015-03-16 08:56 - 2014-07-24 11:10 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-03-16 08:56 - 2014-07-24 11:10 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasnap.dll
2015-03-16 08:56 - 2014-07-24 11:05 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2015-03-16 08:56 - 2014-07-24 10:52 - 00621056 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2015-03-16 08:56 - 2014-07-24 10:42 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl
2015-03-16 08:56 - 2014-07-24 10:40 - 00557056 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs.dll
2015-03-16 08:56 - 2014-07-24 10:39 - 00770048 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2015-03-16 08:56 - 2014-07-24 10:33 - 01741824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll
2015-03-16 08:56 - 2014-07-24 10:32 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpedit.dll
2015-03-16 08:56 - 2014-07-24 10:27 - 00779264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2015-03-16 08:56 - 2014-07-24 10:25 - 00832512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll
2015-03-16 08:56 - 2014-07-24 10:24 - 01817088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll
2015-03-16 08:56 - 2014-07-24 10:21 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2015-03-16 08:56 - 2014-07-24 10:18 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll
2015-03-16 08:56 - 2014-07-24 10:12 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll
2015-03-16 08:56 - 2014-07-24 10:11 - 00356864 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-03-16 08:56 - 2014-07-24 10:11 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll
2015-03-16 08:56 - 2014-07-24 10:10 - 00540672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2015-03-16 08:56 - 2014-07-24 10:04 - 00492032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll
2015-03-16 08:56 - 2014-07-24 10:04 - 00183808 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe
2015-03-16 08:56 - 2014-07-24 10:03 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2015-03-16 08:56 - 2014-07-24 09:58 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll
2015-03-16 08:56 - 2014-07-24 09:53 - 00449536 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll
2015-03-16 08:56 - 2014-07-24 09:49 - 01361408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2015-03-16 08:56 - 2014-07-24 09:49 - 01287680 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2015-03-16 08:56 - 2014-07-24 09:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2015-03-16 08:56 - 2014-07-24 09:48 - 00659968 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2015-03-16 08:56 - 2014-07-24 09:47 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2015-03-16 08:56 - 2014-07-24 09:43 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll
2015-03-16 08:56 - 2014-07-24 09:39 - 02397184 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll
2015-03-16 08:56 - 2014-07-24 09:38 - 00371200 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2015-03-16 08:56 - 2014-07-24 09:30 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
2015-03-16 08:56 - 2014-07-24 09:29 - 00439296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2015-03-16 08:56 - 2014-07-24 09:28 - 00595456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll
2015-03-16 08:56 - 2014-07-24 09:23 - 01404416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll
2015-03-16 08:56 - 2014-07-24 09:22 - 00487936 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2015-03-16 08:56 - 2014-07-24 09:21 - 01231872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2015-03-16 08:56 - 2014-07-24 09:21 - 00302080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll
2015-03-16 08:56 - 2014-07-24 09:19 - 00388608 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2015-03-16 08:56 - 2014-07-24 09:18 - 01144320 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll
2015-03-16 08:56 - 2014-07-24 09:18 - 00795136 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2015-03-16 08:56 - 2014-07-24 09:16 - 00505344 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll
2015-03-16 08:56 - 2014-07-24 09:16 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll
2015-03-16 08:56 - 2014-07-24 09:15 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-03-16 08:56 - 2014-07-24 09:15 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll
2015-03-16 08:56 - 2014-07-24 09:15 - 00432128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2015-03-16 08:56 - 2014-07-24 09:13 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2015-03-16 08:56 - 2014-07-24 09:10 - 00889344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2015-03-16 08:56 - 2014-07-24 09:10 - 00371712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2015-03-16 08:56 - 2014-07-24 09:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2015-03-16 08:56 - 2014-07-24 09:07 - 01705472 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-03-16 08:56 - 2014-07-24 09:05 - 00448000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll
2015-03-16 08:56 - 2014-07-24 09:04 - 00667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-03-16 08:56 - 2014-07-24 09:02 - 03465216 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-03-16 08:56 - 2014-07-24 09:01 - 01992192 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2015-03-16 08:56 - 2014-07-24 08:58 - 00432640 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2015-03-16 08:56 - 2014-07-24 08:58 - 00288768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll
2015-03-16 08:56 - 2014-07-24 08:54 - 01290752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2015-03-16 08:56 - 2014-07-24 08:50 - 01182208 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll
2015-03-16 08:56 - 2014-07-24 08:47 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2015-03-16 08:56 - 2014-07-24 08:44 - 01057792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.dll
2015-03-16 08:56 - 2014-07-24 08:41 - 00459264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2015-03-16 08:56 - 2014-07-12 06:55 - 00268288 _____ (Microsoft Corporation) C:\Windows\system32\wisp.dll
2015-03-16 08:56 - 2014-07-12 05:58 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wisp.dll
2015-03-16 08:56 - 2014-07-04 13:59 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2015-03-16 08:56 - 2014-07-04 11:29 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSip.dll
2015-03-16 08:56 - 2014-07-04 11:20 - 01656832 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2015-03-16 08:56 - 2014-07-04 11:06 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxSip.dll
2015-03-16 08:56 - 2014-07-04 11:00 - 01351168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2015-03-16 08:56 - 2014-07-04 10:30 - 00544768 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2015-03-16 08:56 - 2014-07-04 10:27 - 00474112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2015-03-16 08:56 - 2014-06-27 07:22 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2015-03-16 08:56 - 2014-06-26 01:32 - 01029632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2015-03-16 08:56 - 2014-06-26 01:29 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll
2015-03-16 08:56 - 2014-06-20 00:37 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-03-16 08:56 - 2014-06-19 03:13 - 00310080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2015-03-16 08:56 - 2014-06-07 13:46 - 00216368 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll
2015-03-16 08:56 - 2014-06-07 11:20 - 00189016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll
2015-03-16 08:56 - 2014-06-05 11:18 - 01018368 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll
2015-03-16 08:56 - 2014-06-05 10:42 - 00889856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll
2015-03-16 08:56 - 2014-05-31 06:00 - 01463808 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2015-03-16 08:56 - 2014-05-31 05:18 - 01319936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2015-03-16 08:56 - 2014-05-29 07:23 - 00427008 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2015-03-16 08:56 - 2014-05-29 06:25 - 00313856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2015-03-16 08:56 - 2014-05-26 08:26 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll
2015-03-16 08:56 - 2014-05-10 11:12 - 00387896 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2015-03-16 08:56 - 2014-05-10 09:46 - 00335680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2015-03-16 08:56 - 2014-05-06 05:41 - 00486744 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2015-03-16 08:56 - 2014-05-06 01:55 - 00391000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll
2015-03-16 08:56 - 2014-03-25 03:27 - 00160600 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll
2015-03-16 08:56 - 2014-03-25 03:27 - 00123920 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll
2015-03-16 08:56 - 2014-03-25 02:20 - 00128568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll
2015-03-16 08:56 - 2014-03-25 02:20 - 00127544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmmbase.dll
2015-03-16 08:55 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTT102.DLL
2015-03-16 08:55 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTT102.DLL
2015-03-16 08:55 - 2014-07-24 10:14 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2015-03-16 08:55 - 2014-07-24 09:36 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll
2015-03-16 08:55 - 2014-07-24 09:18 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-03-16 08:55 - 2014-07-24 09:06 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-03-16 08:55 - 2014-07-24 09:00 - 02100736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll
2015-03-16 08:48 - 2014-07-30 02:56 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll
2015-03-16 08:48 - 2014-07-29 06:22 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\tcpmon.dll
2015-03-16 08:41 - 2014-08-15 01:36 - 00146752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys
2015-03-16 08:40 - 2015-03-16 08:40 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2015-03-16 08:40 - 2015-03-16 08:40 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2015-03-16 08:34 - 2015-01-27 05:22 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2015-03-16 08:34 - 2015-01-27 03:11 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2015-03-16 08:34 - 2014-10-29 04:56 - 00027456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2015-03-16 08:34 - 2014-10-29 03:37 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll
2015-03-12 17:13 - 2014-04-14 04:29 - 01018880 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2015-03-12 16:48 - 2015-03-04 22:24 - 00792032 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-03-12 16:48 - 2015-03-04 22:24 - 00178144 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-03-12 16:28 - 2015-03-12 16:35 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-12 16:28 - 2015-02-26 21:14 - 122905848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-03-12 16:23 - 2014-03-20 00:36 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll
2015-03-12 16:23 - 2014-03-08 07:40 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2015-03-12 16:23 - 2014-03-04 08:00 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll
2015-03-12 16:23 - 2014-03-04 07:32 - 00356864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll
2015-03-12 16:22 - 2014-03-20 05:19 - 01291200 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-03-12 16:22 - 2014-03-20 04:41 - 00376152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2015-03-12 16:22 - 2014-03-20 01:53 - 00950784 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2015-03-12 16:22 - 2014-03-20 01:48 - 00201216 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll
2015-03-12 16:22 - 2014-03-20 00:55 - 01036288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-03-12 16:22 - 2014-03-20 00:39 - 00800256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2015-03-12 16:22 - 2014-03-19 06:50 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe
2015-03-12 16:22 - 2014-03-19 06:20 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe
2015-03-12 16:22 - 2014-03-13 13:35 - 00157016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys
2015-03-12 16:22 - 2014-03-08 21:38 - 01542768 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-03-12 16:22 - 2014-03-08 16:29 - 00356848 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2015-03-12 16:22 - 2014-03-08 12:34 - 01095488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-03-12 16:22 - 2014-03-08 10:02 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll
2015-03-12 16:22 - 2014-03-08 09:33 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll
2015-03-12 16:22 - 2014-03-08 09:25 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\SetNetworkLocation.dll
2015-03-12 16:22 - 2014-03-08 09:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxproxy.dll
2015-03-12 16:22 - 2014-03-08 08:47 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll
2015-03-12 16:22 - 2014-03-08 08:04 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2015-03-12 16:22 - 2014-03-08 07:48 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2015-03-12 16:22 - 2014-03-08 07:31 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2015-03-12 16:22 - 2014-03-08 07:30 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2015-03-12 16:22 - 2014-03-08 06:41 - 01306624 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2015-03-12 16:22 - 2014-03-08 06:11 - 00924160 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2015-03-12 16:22 - 2014-03-06 15:34 - 02331000 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-03-12 16:22 - 2014-03-06 15:34 - 00113648 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2015-03-12 16:22 - 2014-03-06 12:19 - 00094016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll
2015-03-12 16:22 - 2014-03-06 11:46 - 01679128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-03-12 16:22 - 2014-03-06 10:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2015-03-12 16:22 - 2014-03-06 10:24 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2015-03-12 16:22 - 2014-03-06 10:22 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2015-03-12 16:22 - 2014-03-06 10:19 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-03-12 16:22 - 2014-03-06 10:19 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2015-03-12 16:22 - 2014-03-06 10:19 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2015-03-12 16:22 - 2014-03-06 10:08 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll
2015-03-12 16:22 - 2014-03-06 09:41 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\DevPropMgr.dll
2015-03-12 16:22 - 2014-03-06 09:38 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-03-12 16:22 - 2014-03-06 09:14 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\WSDScDrv.dll
2015-03-12 16:22 - 2014-03-06 09:10 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\l2gpstore.dll
2015-03-12 16:22 - 2014-03-06 09:00 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
2015-03-12 16:22 - 2014-03-06 08:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-03-12 16:22 - 2014-03-06 08:16 - 00171008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll
2015-03-12 16:22 - 2014-03-06 08:02 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2015-03-12 16:22 - 2014-03-06 07:29 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2015-03-12 16:22 - 2014-03-06 07:24 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll
2015-03-12 16:22 - 2014-03-06 07:23 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll
2015-03-12 16:22 - 2014-03-06 07:21 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2015-03-12 16:22 - 2014-03-06 07:06 - 00386560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll
2015-03-12 16:22 - 2014-03-06 07:04 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2015-03-12 16:22 - 2014-03-06 07:01 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll
2015-03-12 16:22 - 2014-03-06 06:51 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll
2015-03-12 16:22 - 2014-03-06 06:47 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2015-03-12 16:22 - 2014-03-06 06:42 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll
2015-03-12 16:22 - 2014-03-04 08:16 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2015-03-12 16:22 - 2014-03-04 08:13 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2015-03-12 16:22 - 2014-03-04 08:08 - 00299008 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2015-03-12 16:22 - 2014-03-04 07:56 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll
2015-03-12 16:22 - 2014-03-04 07:42 - 00494592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2015-03-12 16:22 - 2014-03-04 07:39 - 00254976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll
2015-03-12 16:22 - 2014-03-04 07:15 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll
2015-03-12 16:22 - 2014-03-04 07:05 - 00402432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll
2015-03-12 16:22 - 2014-03-04 07:03 - 00669696 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2015-03-12 16:22 - 2014-03-04 07:03 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll
2015-03-12 16:22 - 2014-03-04 06:54 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll
2015-03-12 16:22 - 2014-03-04 06:52 - 00605184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll
2015-03-12 16:22 - 2013-12-24 00:28 - 00262656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll
2015-03-12 16:22 - 2013-12-24 00:26 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll
2015-03-12 16:09 - 2014-12-09 04:45 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-03-12 16:09 - 2014-12-09 02:56 - 00538624 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-03-12 16:09 - 2014-09-27 08:13 - 00104336 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll
2015-03-12 16:09 - 2014-09-27 06:24 - 00088800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll
2015-03-12 16:09 - 2014-09-27 04:30 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2015-03-12 16:09 - 2014-06-20 02:48 - 01273184 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-03-12 16:09 - 2014-06-20 00:52 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-03-12 16:05 - 2015-01-23 08:17 - 00723072 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2015-03-12 16:05 - 2015-01-23 06:02 - 00560392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2015-03-12 16:05 - 2015-01-15 23:43 - 00563504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-03-12 16:05 - 2015-01-15 23:43 - 00177984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-03-12 16:05 - 2015-01-14 05:22 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-03-12 16:05 - 2015-01-14 04:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-03-12 16:05 - 2014-10-29 03:51 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-03-12 16:05 - 2014-10-29 03:50 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-03-12 16:05 - 2014-10-29 03:06 - 00736768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-03-12 16:05 - 2014-10-29 03:06 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-03-12 16:05 - 2014-10-29 02:31 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-03-12 16:05 - 2014-06-13 02:15 - 00517528 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-03-12 16:05 - 2014-06-13 02:14 - 01557848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-03-12 16:05 - 2014-06-13 01:10 - 00406400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-03-12 16:05 - 2014-03-06 13:53 - 02141912 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-03-12 16:05 - 2014-03-06 13:51 - 00379224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-03-12 16:05 - 2014-03-06 13:39 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2015-03-12 16:05 - 2014-03-06 12:13 - 01779800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2015-03-12 16:04 - 2015-03-06 03:53 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-12 16:04 - 2015-03-06 03:33 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-03-12 16:04 - 2015-02-26 00:26 - 04178944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-12 16:04 - 2015-02-20 04:03 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-12 16:04 - 2015-02-20 03:58 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-12 16:04 - 2015-02-20 03:20 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-03-12 16:04 - 2015-02-20 03:15 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
         

Alt 17.03.2015, 16:43   #2
Dorfkicker
 
Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden - Standard

Win 8.1 (64bit) verweigert Antivirenprogramme (Teil2)



FRST.txt (Teil2)

Code:
ATTFilter
2015-03-12 16:04 - 2015-01-31 00:42 - 03097600 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-03-12 16:04 - 2015-01-31 00:29 - 02484224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-03-12 16:04 - 2015-01-29 02:58 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll
2015-03-12 16:04 - 2015-01-29 02:29 - 00290816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\photowiz.dll
2015-03-12 16:04 - 2014-12-09 02:50 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-03-12 16:04 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll
2015-03-12 16:04 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll
2015-03-12 16:04 - 2014-10-29 03:49 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-03-12 16:04 - 2014-10-29 03:44 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-03-12 16:04 - 2014-10-29 03:44 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-03-12 16:04 - 2014-10-29 03:04 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-03-12 16:04 - 2014-10-29 03:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-03-12 16:04 - 2014-10-29 03:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-03-12 16:04 - 2014-08-07 03:12 - 01336624 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-03-12 16:04 - 2014-08-02 04:56 - 01064448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-03-12 16:04 - 2014-05-30 04:03 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-03-12 16:03 - 2015-02-07 00:09 - 00396419 _____ () C:\Windows\system32\ApnDatabase.xml
2015-03-12 16:03 - 2015-02-04 00:58 - 00264000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2015-03-12 16:03 - 2015-02-04 00:58 - 00114496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys
2015-03-12 16:03 - 2015-02-04 00:58 - 00044024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2015-03-12 16:03 - 2015-02-03 00:53 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll
2015-03-12 16:03 - 2015-02-03 00:53 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll
2015-03-12 16:03 - 2015-01-27 04:44 - 00933888 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe
2015-03-12 16:03 - 2015-01-24 02:51 - 00816128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe
2015-03-12 16:03 - 2014-12-19 09:57 - 00788680 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-03-12 16:03 - 2014-12-19 09:25 - 00602776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-03-12 16:03 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\SysWOW64\locale.nls
2015-03-12 16:03 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\system32\locale.nls
2015-03-12 16:03 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-03-12 16:03 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-03-12 16:03 - 2014-10-29 02:27 - 01200128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2015-03-12 16:03 - 2014-10-29 02:27 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll
2015-03-12 16:03 - 2014-10-29 02:04 - 00868352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2015-03-12 16:03 - 2014-10-29 02:04 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll
2015-03-12 16:03 - 2014-10-13 03:33 - 00116032 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-03-12 16:03 - 2014-10-11 01:58 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-03-12 16:03 - 2014-10-11 01:53 - 03607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-03-12 16:03 - 2014-10-08 08:30 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-03-12 16:03 - 2014-10-08 08:09 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-03-12 16:03 - 2014-10-08 07:27 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-03-12 16:03 - 2014-08-23 06:18 - 02149376 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-03-12 16:03 - 2014-08-23 06:03 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-03-12 16:03 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2015-03-12 16:03 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-03-12 16:03 - 2014-03-13 08:42 - 00308224 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe
2015-03-12 16:03 - 2014-03-13 07:51 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe
2015-03-12 16:02 - 2014-05-03 06:36 - 00997888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2015-03-12 16:02 - 2014-05-03 06:19 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll
2015-03-12 16:02 - 2014-05-03 06:08 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll
2015-03-12 16:02 - 2014-05-03 06:07 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll
2015-03-12 16:02 - 2014-05-03 05:46 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncobjapi.dll
2015-03-12 16:02 - 2014-05-03 05:37 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll
2015-03-12 16:02 - 2014-05-03 05:37 - 00207360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll
2015-03-12 16:02 - 2014-05-03 00:26 - 00050745 _____ () C:\Windows\system32\srms.dat
2015-03-12 16:02 - 2014-04-30 07:43 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys
2015-03-12 16:02 - 2014-04-30 07:41 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-03-12 16:02 - 2014-04-30 07:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys
2015-03-12 16:02 - 2014-04-30 07:41 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys
2015-03-12 16:02 - 2014-04-30 06:45 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe
2015-03-12 16:02 - 2014-04-30 05:48 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe
2015-03-12 16:02 - 2014-04-30 05:24 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2015-03-12 16:02 - 2014-04-30 05:23 - 00353280 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2015-03-12 16:02 - 2014-04-30 05:23 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2015-03-12 16:02 - 2014-04-30 05:23 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll
2015-03-12 16:02 - 2014-04-30 05:14 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2015-03-12 16:02 - 2014-04-30 04:59 - 01063424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2015-03-12 16:02 - 2014-04-30 04:46 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll
2015-03-12 16:02 - 2014-04-30 04:46 - 00229888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2015-03-12 16:02 - 2014-04-30 04:46 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2015-03-12 16:02 - 2014-04-30 04:45 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll
2015-03-12 16:02 - 2014-04-30 04:42 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2015-03-12 16:02 - 2014-04-28 23:40 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2015-03-12 16:02 - 2014-04-26 17:39 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll
2015-03-12 16:02 - 2014-04-14 10:37 - 02125344 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2015-03-12 16:02 - 2014-04-14 09:08 - 01797896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2015-03-12 16:02 - 2014-04-14 06:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll
2015-03-12 16:02 - 2014-03-08 21:40 - 00136024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2015-03-12 16:02 - 2014-03-08 07:41 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2015-03-12 16:02 - 2014-03-08 07:25 - 00264192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2015-03-12 16:02 - 2014-03-08 07:04 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2015-03-12 16:02 - 2014-03-08 06:58 - 00567296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2015-03-12 16:01 - 2014-08-23 07:10 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
2015-03-12 16:01 - 2014-08-23 06:32 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2015-03-12 16:01 - 2014-08-23 05:33 - 00796672 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2015-03-12 16:01 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2015-03-12 16:01 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2015-03-12 16:01 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll
2015-03-12 16:01 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-03-12 16:01 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2015-03-12 16:01 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-03-12 16:00 - 2014-10-23 06:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2015-03-12 16:00 - 2014-10-23 06:05 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2015-03-12 16:00 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2015-03-12 16:00 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-03-12 16:00 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-03-12 16:00 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2015-03-12 16:00 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll
2015-03-12 16:00 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\httpprxm.dll
2015-03-12 16:00 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\ProximityService.dll
2015-03-12 16:00 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2015-03-12 16:00 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2015-03-12 16:00 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\adhsvc.dll
2015-03-12 16:00 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2015-03-12 16:00 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\pcsvDevice.dll
2015-03-12 16:00 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2015-03-12 16:00 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll
2015-03-12 16:00 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll
2015-03-12 16:00 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2015-03-12 16:00 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2015-03-12 16:00 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe
2015-03-12 16:00 - 2014-07-24 16:28 - 00468288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2015-03-12 16:00 - 2014-07-24 12:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys
2015-03-12 16:00 - 2014-07-24 11:09 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2015-03-12 16:00 - 2014-07-24 10:27 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2015-03-12 15:57 - 2014-04-08 23:46 - 00086688 _____ (Microsoft Corporation) C:\Windows\system32\mrt_map.dll
2015-03-12 15:57 - 2014-04-08 23:46 - 00028320 _____ (Microsoft Corporation) C:\Windows\system32\mrt100.dll
2015-03-12 15:57 - 2014-04-08 19:54 - 00080032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt_map.dll
2015-03-12 15:57 - 2014-04-08 19:54 - 00026784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt100.dll
2015-03-12 15:56 - 2014-08-02 01:18 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2015-03-12 15:55 - 2015-02-06 02:28 - 02257408 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-03-12 15:55 - 2015-02-06 02:08 - 01943040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-03-12 15:55 - 2015-01-29 02:11 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-12 15:55 - 2015-01-29 02:04 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-03-12 15:55 - 2015-01-29 02:04 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2015-03-12 15:55 - 2015-01-29 02:00 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-12 15:55 - 2015-01-29 01:55 - 00971776 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2015-03-12 15:55 - 2015-01-29 01:50 - 00811008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2015-03-12 15:55 - 2015-01-28 03:24 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\StorageContextHandler.dll
2015-03-12 15:55 - 2015-01-28 02:47 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorageContextHandler.dll
2015-03-12 15:55 - 2014-12-19 07:26 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-03-12 15:55 - 2014-12-12 01:51 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2015-03-12 15:55 - 2014-10-29 03:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\printui.exe
2015-03-12 15:55 - 2014-10-29 03:34 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll
2015-03-12 15:55 - 2014-10-29 03:34 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WSCollect.exe
2015-03-12 15:55 - 2014-10-29 03:34 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe
2015-03-12 15:55 - 2014-10-29 03:04 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll
2015-03-12 15:55 - 2014-10-29 02:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.exe
2015-03-12 15:55 - 2014-10-29 02:52 - 00289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compstui.dll
2015-03-12 15:55 - 2014-10-29 02:51 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2015-03-12 15:55 - 2014-10-29 02:45 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\prnntfy.dll
2015-03-12 15:55 - 2014-10-29 02:28 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll
2015-03-12 15:55 - 2014-10-29 02:20 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2015-03-12 15:55 - 2014-10-29 02:15 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnntfy.dll
2015-03-12 15:55 - 2014-10-29 02:13 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2015-03-12 15:55 - 2014-10-29 01:55 - 00223744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2015-03-12 15:55 - 2014-10-29 01:55 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll
2015-03-12 15:55 - 2014-10-29 01:44 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll
2015-03-12 15:55 - 2014-10-29 01:41 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll
2015-03-12 15:55 - 2014-10-29 01:35 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll
2015-03-12 15:55 - 2014-10-13 03:43 - 00238912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2015-03-12 15:55 - 2014-10-13 03:43 - 00153920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2015-03-12 15:55 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2015-03-12 15:55 - 2014-10-13 03:43 - 00039744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2015-03-12 15:55 - 2014-09-04 01:12 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2015-03-12 15:55 - 2014-09-04 01:01 - 00514048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2015-03-12 15:55 - 2014-07-10 05:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\lockscreencn.dll
2015-03-12 15:54 - 2014-12-12 03:04 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-03-12 15:54 - 2014-07-15 19:16 - 03048880 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2015-03-12 15:54 - 2014-07-15 09:29 - 03118080 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2015-03-12 15:54 - 2014-07-15 09:22 - 02861056 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll
2015-03-12 15:54 - 2014-07-15 09:03 - 02344448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2015-03-12 15:53 - 2014-04-11 04:06 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-03-12 15:53 - 2014-04-11 04:05 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-03-12 15:53 - 2014-04-11 04:02 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-03-12 15:53 - 2014-04-11 04:01 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-03-12 15:53 - 2014-04-11 03:57 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
2015-03-12 15:52 - 2015-02-05 21:24 - 01113920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-03-12 15:52 - 2015-02-03 01:03 - 03551744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2015-03-12 15:52 - 2015-02-03 01:02 - 04298240 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2015-03-12 15:52 - 2015-01-30 04:01 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys
2015-03-12 15:52 - 2015-01-30 04:00 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rfcomm.sys
2015-03-12 15:52 - 2015-01-30 03:03 - 01488896 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2015-03-12 15:52 - 2015-01-30 03:03 - 01464832 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2015-03-12 15:52 - 2015-01-30 02:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll
2015-03-12 15:52 - 2015-01-30 02:42 - 01204224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll
2015-03-12 15:52 - 2015-01-30 02:29 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atlthunk.dll
2015-03-12 15:52 - 2015-01-19 19:42 - 01487976 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2015-03-12 15:52 - 2014-10-29 03:46 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2015-03-12 15:52 - 2014-10-29 03:46 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2015-03-12 15:52 - 2014-10-29 03:45 - 01198080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2015-03-12 15:52 - 2014-10-29 03:03 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\fsquirt.exe
2015-03-12 15:52 - 2014-10-29 02:28 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\atlthunk.dll
2015-03-12 15:51 - 2014-04-09 12:53 - 00337240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2015-03-12 15:51 - 2014-04-06 17:20 - 01403856 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2015-03-12 15:51 - 2014-04-06 17:20 - 01379064 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2015-03-12 15:51 - 2014-04-06 17:20 - 00765408 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2015-03-12 15:51 - 2014-04-06 17:20 - 00491744 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2015-03-12 15:51 - 2014-04-06 16:16 - 01209616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2015-03-12 15:51 - 2014-04-06 16:16 - 00669856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2015-03-12 15:51 - 2014-04-06 13:33 - 00335872 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe
2015-03-12 15:51 - 2014-04-06 11:05 - 01222656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2015-03-12 15:51 - 2014-04-06 10:59 - 00982016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
2015-03-12 15:51 - 2014-03-28 16:58 - 00407016 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-03-12 15:51 - 2014-03-18 06:00 - 07173120 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2015-03-12 15:51 - 2014-03-18 05:52 - 05104640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2015-03-12 15:51 - 2014-03-17 06:09 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-03-12 15:51 - 2014-03-17 05:11 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2015-03-12 15:51 - 2014-03-14 07:26 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\GeofenceMonitorService.dll
2015-03-12 15:51 - 2014-03-14 07:10 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GeofenceMonitorService.dll
2015-03-12 15:50 - 2014-04-18 15:57 - 00032600 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll
2015-03-12 15:50 - 2014-04-18 10:44 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\energyprov.dll
2015-03-12 15:50 - 2014-04-14 10:20 - 00324888 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll
2015-03-12 15:50 - 2014-04-14 09:01 - 00285144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll
2015-03-12 15:50 - 2014-04-11 05:51 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2015-03-12 15:50 - 2014-04-11 05:23 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll
2015-03-12 15:50 - 2014-04-09 07:39 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2015-03-12 15:50 - 2014-04-09 06:44 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2015-03-12 15:50 - 2014-04-09 04:33 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
2015-03-12 15:50 - 2014-04-08 03:01 - 00589656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2015-03-12 15:50 - 2014-04-06 17:34 - 00372568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2015-03-12 15:50 - 2014-04-06 17:34 - 00275800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2015-03-12 15:50 - 2014-04-06 17:30 - 00201920 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll
2015-03-12 15:50 - 2014-04-06 17:24 - 00360792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2015-03-12 15:50 - 2014-04-06 17:20 - 00609448 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-03-12 15:50 - 2014-04-06 17:20 - 00028408 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-03-12 15:50 - 2014-04-06 16:22 - 00178184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVideoDSP.dll
2015-03-12 15:50 - 2014-04-06 16:16 - 00518544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-03-12 15:50 - 2014-04-06 16:16 - 00387896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2015-03-12 15:50 - 2014-04-06 13:58 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-03-12 15:50 - 2014-04-06 13:51 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-03-12 15:50 - 2014-04-06 13:24 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-03-12 15:50 - 2014-04-06 13:06 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-03-12 15:50 - 2014-04-06 12:26 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll
2015-03-12 15:50 - 2014-04-03 09:12 - 00307304 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-03-12 15:50 - 2014-04-03 09:12 - 00130144 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll
2015-03-12 15:50 - 2014-04-03 05:03 - 00230808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-03-12 15:50 - 2014-04-03 05:03 - 00111528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll
2015-03-12 15:50 - 2014-04-03 03:23 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tlscsp.dll
2015-03-12 15:50 - 2014-04-03 03:22 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll
2015-03-12 15:50 - 2014-03-27 06:36 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2015-03-12 15:50 - 2014-03-27 05:48 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2015-03-12 15:50 - 2014-03-27 04:15 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll
2015-03-12 15:50 - 2014-03-27 04:10 - 01436160 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2015-03-12 15:50 - 2014-03-19 09:15 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2015-03-12 15:50 - 2014-03-19 08:24 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-03-12 15:50 - 2014-03-19 08:17 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll
2015-03-12 15:50 - 2014-03-06 10:19 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2015-03-12 15:50 - 2014-03-06 09:20 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll
2015-03-12 15:50 - 2014-01-27 19:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-03-12 15:48 - 2015-01-29 01:59 - 02773504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-03-12 15:48 - 2015-01-29 01:49 - 02459136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-03-12 15:48 - 2014-05-19 07:31 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\drvcfg.exe
2015-03-12 15:48 - 2014-05-19 07:21 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe
2015-03-12 15:48 - 2014-05-19 06:23 - 00098816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe
2015-03-12 15:48 - 2014-04-30 05:43 - 01975296 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-03-12 15:48 - 2014-04-30 05:26 - 01345536 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-03-12 15:48 - 2014-04-30 04:47 - 01509888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-03-12 15:11 - 2015-01-31 00:20 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-03-12 15:11 - 2014-06-02 03:10 - 00423768 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2015-03-12 15:11 - 2014-05-31 11:07 - 00440664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2015-03-12 15:11 - 2014-05-31 11:07 - 00089944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2015-03-12 15:11 - 2014-05-31 11:07 - 00027480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2015-03-12 15:11 - 2014-05-31 07:30 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2015-03-12 15:11 - 2014-05-31 07:27 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2015-03-12 15:11 - 2014-05-31 07:26 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2015-03-12 15:11 - 2014-05-31 05:01 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2015-03-12 15:11 - 2014-05-31 05:01 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2015-03-12 15:11 - 2014-05-31 05:01 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2015-03-12 15:11 - 2014-05-27 10:56 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\DaOtpCredentialProvider.dll
2015-03-12 15:11 - 2014-05-27 10:53 - 00270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DaOtpCredentialProvider.dll
2015-03-12 15:08 - 2015-01-28 16:41 - 07472960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-12 15:08 - 2015-01-28 16:41 - 01733440 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-03-12 15:08 - 2015-01-28 16:41 - 01498360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-03-12 15:08 - 2014-12-06 04:17 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-03-12 15:08 - 2014-12-06 02:41 - 00391680 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-03-12 15:08 - 2014-10-29 03:02 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-03-12 15:08 - 2014-10-29 03:02 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-03-12 15:08 - 2014-10-29 02:57 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-03-12 15:08 - 2014-10-29 02:24 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2015-03-12 15:08 - 2014-10-29 02:15 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-03-12 15:08 - 2014-10-29 02:15 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-03-12 15:08 - 2014-10-29 02:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-03-12 15:08 - 2014-10-29 02:13 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-03-12 15:08 - 2014-10-29 02:13 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-03-12 15:08 - 2014-10-29 02:01 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-03-12 13:31 - 2015-03-16 09:57 - 00000632 _____ () C:\Users\Frank\Documents\fehler.txt
2015-03-12 13:04 - 2015-03-17 11:22 - 00000000 ____D () C:\Users\Frank\Documents\Outlook-Dateien
2015-03-12 12:58 - 2015-02-21 02:16 - 25021440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-12 12:58 - 2015-02-21 01:41 - 12827648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-03-12 12:58 - 2015-02-21 01:27 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-03-12 12:58 - 2015-02-21 01:27 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-03-12 12:58 - 2015-02-21 01:25 - 19720192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-03-12 12:58 - 2015-02-21 00:58 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-12 12:58 - 2015-02-21 00:32 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-03-12 12:58 - 2015-02-20 03:49 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-12 12:58 - 2015-02-20 03:48 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-12 12:58 - 2015-02-20 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-03-12 12:58 - 2015-02-20 03:35 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-03-12 12:58 - 2015-02-20 03:34 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-03-12 12:58 - 2015-02-20 03:32 - 06035456 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-12 12:58 - 2015-02-20 03:09 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-03-12 12:58 - 2015-02-20 03:07 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-03-12 12:58 - 2015-02-20 03:06 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-03-12 12:58 - 2015-02-20 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-12 12:58 - 2015-02-20 03:03 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-03-12 12:58 - 2015-02-20 02:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-03-12 12:58 - 2015-02-20 02:56 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-03-12 12:58 - 2015-02-20 02:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-03-12 12:58 - 2015-02-20 02:49 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-12 12:58 - 2015-02-20 02:49 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-03-12 12:58 - 2015-02-20 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-12 12:58 - 2015-02-20 02:43 - 14398976 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-12 12:58 - 2015-02-20 02:30 - 04300288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-03-12 12:58 - 2015-02-20 02:30 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-03-12 12:58 - 2015-02-20 02:29 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-03-12 12:58 - 2015-02-20 02:28 - 02358784 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-12 12:58 - 2015-02-20 02:26 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-03-12 12:58 - 2015-02-20 02:24 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-03-12 12:58 - 2015-02-20 02:24 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-03-12 12:58 - 2015-02-20 02:16 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-12 12:58 - 2015-02-20 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-03-12 12:58 - 2015-02-20 02:01 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-03-12 12:58 - 2015-02-20 01:57 - 01311232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-03-12 12:58 - 2015-02-20 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-03-12 12:58 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-03-12 12:58 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-03-12 12:58 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-03-12 12:58 - 2015-01-12 02:23 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-03-12 12:58 - 2014-11-22 03:49 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-03-12 12:58 - 2014-11-22 03:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-03-12 12:58 - 2014-11-10 00:19 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-03-12 12:58 - 2014-11-10 00:19 - 00806400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-03-12 12:58 - 2014-11-10 00:18 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2015-03-12 12:58 - 2014-11-10 00:18 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2015-03-12 12:58 - 2014-10-31 06:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2015-03-12 12:58 - 2014-10-31 06:12 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-03-12 12:58 - 2014-10-31 06:10 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2015-03-12 12:58 - 2014-10-31 06:09 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2015-03-12 12:58 - 2014-10-31 06:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-03-12 12:58 - 2014-10-31 06:06 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-03-12 12:58 - 2014-10-31 06:06 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-03-12 12:58 - 2014-10-31 06:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-03-12 12:58 - 2014-10-31 05:57 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-03-12 12:58 - 2014-10-31 05:56 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-03-12 12:58 - 2014-10-31 05:54 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2015-03-12 12:58 - 2014-10-31 05:53 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-03-12 12:58 - 2014-10-31 05:52 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll
2015-03-12 12:58 - 2014-10-31 05:51 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-03-12 12:58 - 2014-10-31 05:51 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-03-12 12:58 - 2014-10-31 05:40 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-03-12 12:58 - 2014-10-31 05:30 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-03-12 12:58 - 2014-10-31 05:29 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2015-03-12 12:58 - 2014-10-31 05:29 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-03-12 12:58 - 2014-10-31 05:28 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2015-03-12 12:58 - 2014-10-31 05:25 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-03-12 12:58 - 2014-10-31 05:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-03-12 12:58 - 2014-10-31 05:19 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-03-12 12:58 - 2014-10-31 04:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2015-03-12 12:58 - 2014-10-31 04:28 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2015-03-12 12:58 - 2014-10-31 04:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2015-03-12 12:58 - 2014-10-31 04:27 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2015-03-12 12:58 - 2014-10-31 04:26 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2015-03-12 12:58 - 2014-10-31 04:25 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2015-03-12 12:58 - 2014-10-31 04:24 - 00235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2015-03-12 12:58 - 2014-10-31 04:24 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-03-12 12:58 - 2014-10-31 04:23 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-03-12 12:58 - 2014-10-31 04:16 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-03-12 12:58 - 2014-10-31 04:15 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-03-12 12:58 - 2014-10-31 04:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2015-03-12 12:58 - 2014-10-31 04:13 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-03-12 12:58 - 2014-10-31 04:13 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll
2015-03-12 12:58 - 2014-10-31 04:12 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-03-12 12:58 - 2014-10-31 04:11 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-03-12 12:58 - 2014-10-31 04:03 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2015-03-12 12:58 - 2014-10-31 03:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-03-12 12:58 - 2014-10-31 03:56 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2015-03-12 12:58 - 2014-10-31 03:56 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2015-03-12 12:58 - 2014-10-31 03:56 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-03-12 12:58 - 2014-10-31 03:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-03-12 12:58 - 2014-10-31 03:53 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2015-03-12 12:58 - 2014-10-31 03:48 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2015-03-12 12:58 - 2014-10-31 03:26 - 01042944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-03-12 12:58 - 2014-10-31 03:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2015-03-12 12:58 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-03-12 12:58 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-03-12 12:58 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-03-12 12:57 - 2015-02-12 18:40 - 22291584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-12 12:57 - 2015-02-12 18:34 - 19731824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-03-12 12:57 - 2015-01-29 19:45 - 01763352 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-12 12:57 - 2015-01-29 19:34 - 01488040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-03-12 12:57 - 2015-01-28 02:31 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-12 12:57 - 2015-01-28 02:11 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-03-12 12:57 - 2014-09-10 07:25 - 00474432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2015-03-12 12:57 - 2014-09-08 04:07 - 02497344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-03-12 12:57 - 2014-09-08 04:07 - 00428864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2015-03-12 12:57 - 2014-09-04 04:05 - 00836176 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2015-03-12 12:57 - 2014-09-04 03:22 - 00670384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2015-03-12 12:57 - 2014-09-04 01:10 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll
2015-03-12 12:57 - 2014-08-31 01:17 - 00148800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2015-03-12 12:57 - 2014-08-30 23:05 - 00615424 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll
2015-03-12 12:57 - 2014-08-30 22:58 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll
2015-03-12 12:57 - 2014-08-30 22:04 - 00941568 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2015-03-12 12:57 - 2014-08-30 21:53 - 00239104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSAPI.dll
2015-03-12 12:57 - 2014-08-30 21:17 - 00799744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2015-03-12 12:57 - 2014-08-28 01:21 - 02480128 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2015-03-12 12:57 - 2014-08-28 01:06 - 02030592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2015-03-12 12:57 - 2014-08-23 06:14 - 13424128 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2015-03-12 12:57 - 2014-08-23 06:04 - 11820544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2015-03-12 12:57 - 2014-08-23 05:50 - 02714112 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2015-03-12 12:57 - 2014-08-02 01:51 - 00545792 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll
2015-03-12 12:57 - 2014-08-02 01:35 - 00485376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll
2015-03-12 12:57 - 2014-05-13 08:01 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\BulkOperationHost.exe
2015-03-12 12:57 - 2014-03-06 07:27 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2015-03-12 12:56 - 2015-02-08 00:57 - 01090048 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2015-03-12 12:56 - 2015-02-08 00:49 - 00791040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2015-03-12 12:56 - 2015-01-30 03:02 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2015-03-12 12:56 - 2015-01-30 02:40 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2015-03-12 12:56 - 2015-01-30 02:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2015-03-12 12:56 - 2015-01-30 02:24 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2015-03-12 12:56 - 2015-01-30 02:24 - 00250880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2015-03-12 12:56 - 2015-01-30 02:16 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2015-03-12 12:56 - 2015-01-30 02:08 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll
2015-03-12 12:56 - 2015-01-30 02:06 - 00278016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll
2015-03-12 12:56 - 2015-01-28 00:47 - 02501368 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2015-03-12 12:56 - 2015-01-28 00:41 - 02207488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2015-03-12 12:56 - 2014-12-11 06:36 - 00046456 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentServer.exe
2015-03-12 12:56 - 2014-12-08 20:42 - 00535640 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-03-12 12:56 - 2014-12-08 20:42 - 00531616 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-03-12 12:56 - 2014-12-08 20:42 - 00448792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2015-03-12 12:56 - 2014-12-08 20:42 - 00413248 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2015-03-12 12:56 - 2014-12-08 20:42 - 00372408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2015-03-12 12:56 - 2014-12-08 20:42 - 00108944 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-03-12 12:56 - 2014-12-08 20:42 - 00038264 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2015-03-12 12:56 - 2014-12-08 20:42 - 00033584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2015-03-12 12:56 - 2014-12-06 02:35 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-03-12 12:56 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-03-12 12:56 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-03-12 12:56 - 2014-10-29 05:00 - 00465320 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2015-03-12 12:56 - 2014-10-29 05:00 - 00139984 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2015-03-12 12:56 - 2014-10-29 04:52 - 00500016 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-03-12 12:56 - 2014-10-29 04:52 - 00482872 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-03-12 12:56 - 2014-10-29 04:52 - 00394120 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-03-12 12:56 - 2014-10-29 04:52 - 00272248 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-03-12 12:56 - 2014-10-29 04:12 - 00413136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2015-03-12 12:56 - 2014-10-29 04:12 - 00136296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2015-03-12 12:56 - 2014-10-29 04:07 - 00424544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-03-12 12:56 - 2014-10-29 04:07 - 00370424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-03-12 12:56 - 2014-10-29 04:07 - 00344536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-03-12 12:56 - 2014-10-29 03:44 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2015-03-12 12:56 - 2014-10-29 02:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
2015-03-12 12:56 - 2014-10-29 02:19 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll
2015-03-12 12:56 - 2014-10-29 02:02 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-03-12 12:56 - 2014-10-29 01:59 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappprxy.dll
2015-03-12 12:56 - 2014-07-12 05:17 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2015-03-12 12:56 - 2014-06-06 14:04 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2015-03-12 12:56 - 2014-06-06 13:18 - 00488960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2015-03-12 12:56 - 2014-05-01 14:31 - 00055328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys
2015-03-12 12:56 - 2014-05-01 06:24 - 02834944 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2015-03-12 12:55 - 2014-07-24 04:20 - 00875688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll
2015-03-12 12:55 - 2014-07-24 04:20 - 00869544 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll
2015-03-12 12:54 - 2014-05-31 11:06 - 00555736 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2015-03-12 12:54 - 2014-05-31 03:37 - 01054208 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2015-03-12 12:54 - 2014-05-31 03:35 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2015-03-12 12:54 - 2014-04-11 09:25 - 00419928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2015-03-12 12:49 - 2015-01-21 06:54 - 01384712 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-12 12:49 - 2015-01-21 06:15 - 01123848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2015-03-12 12:34 - 2015-03-12 12:34 - 00000000 ____D () C:\Program Files\Microsoft Synchronization Services
2015-03-12 12:33 - 2015-03-12 12:33 - 00000000 ____D () C:\Program Files\Microsoft Sync Framework
2015-03-12 12:33 - 2015-03-12 12:33 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2015-03-12 12:29 - 2015-03-12 12:29 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2015-03-12 11:52 - 2015-03-12 11:52 - 00000000 ____D () C:\MATS
2015-03-12 09:55 - 2015-03-12 09:55 - 282920160 _____ () C:\Users\Frank\Documents\registry.reg
2015-03-12 09:54 - 2015-03-12 09:54 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2015-03-12 08:41 - 2015-03-12 14:12 - 00000000 ____D () C:\Program Files (x86)\UEFI WinFlash
2015-03-12 08:36 - 2015-03-12 08:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\WinBatch
2015-03-11 22:27 - 2015-03-11 22:27 - 00000000 ____D () C:\Users\Frank\AppData\Local\Macromedia
2015-03-11 22:22 - 2015-03-17 11:28 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-03-11 22:22 - 2015-03-11 22:22 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-03-11 22:18 - 2015-03-17 11:12 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\vlc
2015-03-11 22:18 - 2015-03-11 22:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2015-03-11 22:18 - 2015-03-11 22:18 - 00000000 ____D () C:\Program Files\VideoLAN
2015-03-11 22:15 - 2015-03-11 22:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mp3tag
2015-03-11 22:14 - 2015-03-11 22:15 - 00000000 ____D () C:\Program Files (x86)\Mp3tag
2015-03-11 22:10 - 2015-03-11 22:10 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2015-03-11 19:18 - 2015-03-11 19:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
2015-03-11 19:18 - 2015-03-11 19:18 - 00000000 ____D () C:\ProgramData\EPSON
2015-03-11 19:18 - 2015-03-11 19:18 - 00000000 ____D () C:\Program Files\Common Files\EPSON
2015-03-11 19:18 - 2009-09-30 18:01 - 00088064 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_IBCBHAE.DLL
2015-03-11 19:18 - 2008-11-11 18:00 - 00118784 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_ILMHAE.DLL
2015-03-11 19:18 - 2007-04-09 16:06 - 00010752 _____ (SEIKO EPSON CORP.) C:\Windows\system32\E_GCINST.DLL
2015-03-11 18:49 - 2015-03-16 17:23 - 00000000 ____D () C:\Users\Frank\Desktop\Multimedia
2015-03-11 18:49 - 2015-03-11 18:49 - 00000000 ____D () C:\Users\Frank\Desktop\Grafik & Fotos
2015-03-11 18:48 - 2015-03-16 22:22 - 00000000 ___RD () C:\Users\Frank\Desktop\System & Tools
2015-03-11 18:48 - 2015-03-11 18:48 - 00000000 ____D () C:\Users\Frank\Desktop\Download
2015-03-11 17:50 - 2006-09-12 20:00 - 00234496 _____ (CANON INC.) C:\Windows\system32\CNMLM86.DLL
2015-03-11 17:49 - 2014-03-27 15:35 - 00011294 _____ () C:\Users\Frank\Documents\Mappe2.xlsx
2015-03-11 17:49 - 2013-12-18 18:37 - 00013746 _____ () C:\Users\Frank\Documents\Weihnachtsgeschenke.xlsx
2015-03-11 17:49 - 2013-12-17 14:19 - 00103270 _____ () C:\Users\Frank\Documents\Kreditrechner-Excel.xlsx
2015-03-11 17:49 - 2013-12-17 14:16 - 00057344 _____ () C:\Users\Frank\Documents\Immobilien_Finanzierung.xls
2015-03-11 17:49 - 2013-12-17 14:10 - 00013049 _____ () C:\Users\Frank\Documents\Zinsberechnung.xlsx
2015-03-11 17:49 - 2013-12-13 10:29 - 00976384 _____ () C:\Users\Frank\Documents\Adventkalender.pps
2015-03-11 17:49 - 2013-10-14 18:08 - 02457631 _____ () C:\Users\Frank\Documents\icons.zip
2015-03-11 17:49 - 2012-12-29 16:29 - 00027136 _____ () C:\Users\Frank\Documents\Schallplatten.xls
2015-03-11 17:49 - 2012-12-28 18:15 - 00011254 _____ () C:\Users\Frank\Documents\ninco-schienen.xlsx
2015-03-11 17:49 - 2012-09-24 14:20 - 00072704 _____ () C:\Users\Frank\Documents\Tippformular Saison 2012-2013.xls
2015-03-11 17:49 - 2012-07-08 11:10 - 00010989 _____ () C:\Users\Frank\Documents\Auslagen Marcel.xlsx
2015-03-11 17:49 - 2012-03-17 10:09 - 00097792 _____ () C:\Users\Frank\Documents\ordner_auslesen_hyperlink2007.xls
2015-03-11 17:49 - 2012-02-04 11:45 - 00031232 _____ () C:\Users\Frank\Documents\Steam-Umsätze.xls
2015-03-11 17:49 - 2011-12-05 19:06 - 00011039 _____ () C:\Users\Frank\Documents\Renncenter_Urkunde.xlsx
2015-03-11 17:49 - 2011-11-22 07:32 - 00001303 _____ () C:\Users\Frank\Documents\UseNeXT - Verknüpfung.lnk
2015-03-11 17:49 - 2011-11-06 13:30 - 00012454 _____ () C:\Users\Frank\Documents\Abrechnung Marcel.xlsx
2015-03-11 17:49 - 2011-11-03 19:11 - 00001903 _____ () C:\Users\Frank\Documents\SV Henstedt-Ulzburg - Verknüpfung.lnk
2015-03-11 17:49 - 2011-08-24 09:42 - 00036864 _____ () C:\Users\Frank\Documents\Telefonliste_SVHU_D5_August2011.xls
2015-03-11 17:49 - 2011-07-27 18:51 - 00027648 _____ () C:\Users\Frank\Documents\Pierre.xls
2015-03-11 17:49 - 2011-04-19 13:26 - 00009640 _____ () C:\Users\Frank\Documents\verbrauch.xlsx
2015-03-11 17:49 - 2011-03-16 07:30 - 00199680 _____ () C:\Users\Frank\Documents\MS Visio & MS Project.cld
2015-03-11 17:49 - 2011-03-15 10:56 - 00033792 _____ () C:\Users\Frank\Documents\WG HUP-Kaufbestätigung - 564674586.msg
2015-03-11 17:49 - 2010-10-25 17:54 - 00044100 _____ () C:\Users\Frank\Documents\PC-Software.htm
2015-03-11 17:49 - 2010-10-25 17:53 - 00024576 _____ () C:\Users\Frank\Documents\PC-Software.xls
2015-03-11 17:49 - 2009-09-22 08:11 - 00000324 _____ () C:\Users\Frank\Documents\Outlook-Backup.obp
2015-03-11 17:49 - 2009-08-17 16:30 - 00008792 _____ () C:\Users\Frank\Documents\Java Printing.mdi
2015-03-11 17:49 - 2009-06-22 13:41 - 00071742 _____ () C:\Users\Frank\Documents\Re Spielerliste.htm
2015-03-11 17:49 - 2009-01-28 18:24 - 00011587 _____ () C:\Users\Frank\Documents\TSSTcorpCDDVDW_SN-S082H_SB01.html
2015-03-11 17:49 - 2008-12-07 10:26 - 00296960 _____ () C:\Users\Frank\Documents\Weihnachtsgruß.ppt
2015-03-11 17:49 - 2008-10-28 16:21 - 00013824 _____ () C:\Users\Frank\Documents\Body Mass Index.xls
2015-03-11 17:49 - 2008-09-20 10:36 - 00024064 _____ () C:\Users\Frank\Documents\VideoCDs und VHS.xls
2015-03-11 17:30 - 2015-03-11 17:30 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-03-11 17:29 - 2015-03-11 19:35 - 00000000 ____D () C:\ProgramData\Adobe
2015-03-11 17:29 - 2015-03-11 17:29 - 00000000 ____D () C:\Program Files (x86)\Adobe
2015-03-11 17:28 - 2015-03-11 22:22 - 00000000 ____D () C:\Users\Frank\AppData\Local\Adobe
2015-03-11 17:21 - 2015-03-17 11:54 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\UseNeXT
2015-03-11 17:21 - 2015-03-17 11:50 - 00000000 ____D () C:\Users\Frank\Documents\UseNeXT
2015-03-11 17:20 - 2015-03-11 17:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UseNeXT
2015-03-11 17:20 - 2015-03-11 17:20 - 00000000 ____D () C:\Program Files (x86)\UseNeXT
2015-03-11 17:15 - 2015-03-11 17:16 - 00000000 ____D () C:\Users\Frank\AppData\Local\ACD Systems
2015-03-11 17:15 - 2015-03-11 17:15 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\ACD Systems
2015-03-11 17:14 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2015-03-11 17:14 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ACD Systems
2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\ProgramData\ACD Systems
2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\Program Files\Common Files\ACD Systems
2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\Program Files (x86)\ACD Systems
2015-03-11 17:12 - 2015-03-11 17:12 - 00000000 ____D () C:\Users\Frank\AppData\Local\Downloaded Installations
2015-03-11 17:01 - 2015-03-11 17:01 - 00000000 ____D () C:\Program Files (x86)\MSECache
2015-03-11 16:46 - 2015-03-11 16:46 - 00000000 ____D () C:\Users\Frank\AppData\Local\Windows Live
2015-03-11 13:03 - 2015-03-12 12:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2015-03-11 13:03 - 2015-03-12 12:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-03-11 13:01 - 2015-03-11 13:01 - 00000000 ____D () C:\Program Files (x86)\Microsoft Synchronization Services
2015-03-11 13:00 - 2015-03-11 13:00 - 00000000 ____D () C:\Windows\PCHEALTH
2015-03-11 13:00 - 2015-03-11 13:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft Sync Framework
2015-03-11 13:00 - 2015-03-11 13:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2015-03-11 12:56 - 2015-03-11 12:56 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8
2015-03-11 12:55 - 2015-03-12 12:33 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-03-11 12:55 - 2015-03-11 12:55 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2015-03-11 12:54 - 2015-03-11 13:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-03-11 12:54 - 2015-03-11 12:54 - 00000000 __RHD () C:\MSOCache
2015-03-11 09:47 - 2015-03-16 10:56 - 00000000 ____D () C:\Users\Frank\Documents\Backups
2015-03-11 09:45 - 2015-03-11 09:45 - 00000000 ____D () C:\Dokumente und Einstellungen
2015-03-11 09:36 - 2015-03-17 12:01 - 00000000 ___SD () C:\Users\Frank\Documents\Sticky Passwords
2015-03-11 09:15 - 2015-03-11 09:15 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2015-03-11 09:15 - 2015-03-11 09:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-03-11 09:15 - 2015-03-11 09:15 - 00000000 ____D () C:\Program Files\CCleaner
2015-03-11 09:06 - 2015-03-11 09:07 - 00000000 ____D () C:\Users\Public\Documents\CATraxx
2015-03-11 09:06 - 2015-03-11 09:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CATraxx
2015-03-11 09:06 - 2015-03-11 09:06 - 00000000 ____D () C:\Program Files (x86)\CATraxx
2015-03-11 09:06 - 2012-01-20 17:57 - 01163264 _____ (Chilkat Software, Inc.) C:\Windows\SysWOW64\ChilkatRsa.dll
2015-03-11 09:00 - 2015-03-12 12:22 - 00000000 ____D () C:\Users\Frank\Documents\_Outlook-Dateien
2015-03-11 08:59 - 2015-03-12 13:01 - 00000000 ____D () C:\Program Files (x86)\Outlook Backup Assistant
2015-03-11 08:59 - 2015-03-11 08:59 - 00000000 ____D () C:\Users\Frank\Documents\Add-in Express
2015-03-10 18:53 - 2015-03-10 18:53 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-03-10 18:48 - 2015-03-17 13:59 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-10 18:48 - 2015-03-11 14:00 - 00000000 ____D () C:\Users\Frank\AppData\Local\Microsoft Help
2015-03-10 17:23 - 2015-03-17 15:34 - 00000000 ____D () C:\Program Files (x86)\SpeedProject
2015-03-10 16:14 - 2015-03-10 16:14 - 00000000 ___HD () C:\ProgramData\CanonBJ
2015-03-10 16:14 - 2015-03-10 16:14 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2015-03-10 16:12 - 2015-03-16 12:07 - 00000000 ____D () C:\Users\Frank\AppData\Local\Deployment
2015-03-10 16:12 - 2015-03-10 16:12 - 00116480 _____ (AVM Berlin) C:\Windows\system32\Drivers\avmaura.sys
2015-03-10 16:12 - 2015-03-10 16:12 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FRITZ!Box
2015-03-10 16:12 - 2015-03-10 16:12 - 00000000 ____D () C:\Users\Frank\AppData\Local\Apps\2.0
2015-03-10 15:40 - 2015-03-10 15:40 - 00001186 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Mozilla
2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Users\Frank\AppData\Local\Mozilla
2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\ProgramData\Mozilla
2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-03-10 15:12 - 2015-03-03 14:17 - 00295552 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-03-10 15:06 - 2015-03-10 15:06 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieUserList
2015-03-10 15:06 - 2015-03-10 15:06 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieSiteList
2015-03-10 15:01 - 2015-03-17 15:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\ClassicShell
2015-03-10 15:01 - 2015-03-10 15:01 - 00000000 ____D () C:\ProgramData\ClassicShell
2015-03-10 14:58 - 2015-03-10 14:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell
2015-03-10 14:58 - 2015-03-10 14:58 - 00000000 ____D () C:\Program Files\Classic Shell
2015-03-10 14:57 - 2015-03-17 08:28 - 00000000 ____D () C:\Users\Frank\AppData\Local\Google
2015-03-10 14:54 - 2015-03-17 08:00 - 00003922 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{378DF711-DD0C-4AD7-98F3-CA1D88A8AD0B}
2015-03-10 14:49 - 2015-03-10 14:49 - 00000000 ____D () C:\Users\Default\AppData\Local\Google
2015-03-10 14:49 - 2015-03-10 14:49 - 00000000 ____D () C:\Users\Default User\AppData\Local\Google
2015-03-10 14:47 - 2015-03-17 15:37 - 00000000 ___DO () C:\Users\Frank\OneDrive
2015-03-10 14:46 - 2015-03-17 11:57 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2734555180-3142773653-1428810083-1001
2015-03-10 14:41 - 2015-03-10 17:24 - 00000000 ____D () C:\Users\Frank\AppData\Local\TOSHIBA
2015-03-10 14:40 - 2015-03-10 14:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Macromedia
2015-03-10 14:39 - 2015-03-16 13:58 - 00000000 ____D () C:\Users\Frank\AppData\Local\VirtualStore
2015-03-10 14:39 - 2015-03-11 17:47 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Adobe
2015-03-10 14:39 - 2015-03-10 14:43 - 00000000 ____D () C:\Users\Frank\AppData\Local\Packages
2015-03-10 14:39 - 2015-03-10 14:39 - 00001465 _____ () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-03-10 14:37 - 2015-03-17 15:48 - 00000000 ____D () C:\Users\Frank
2015-03-10 14:37 - 2015-03-10 14:37 - 00000020 ___SH () C:\Users\Frank\ntuser.ini
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Vorlagen
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Startmenü
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Netzwerkumgebung
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Lokale Einstellungen
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Eigene Dateien
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Druckumgebung
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Documents\Eigene Musik
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Documents\Eigene Bilder
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\AppData\Local\Verlauf
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\AppData\Local\Anwendungsdaten
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Anwendungsdaten
2015-03-10 14:37 - 2014-03-18 11:00 - 00000000 ___RD () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-10 14:37 - 2014-03-18 11:00 - 00000000 ___RD () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-10 14:37 - 2014-03-18 10:49 - 00000369 _____ () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-03-10 14:37 - 2014-03-18 10:49 - 00000369 _____ () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-03-10 14:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-10 14:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-02-17 15:19 - 2015-02-17 15:19 - 01614496 _____ (Microsoft Corporation) C:\Windows\system32\FM20.DLL

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-17 15:00 - 2014-08-29 20:24 - 00000000 ____D () C:\ProgramData\Temp
2015-03-17 15:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru
2015-03-17 14:58 - 2013-08-22 14:25 - 00524288 ___SH () C:\Windows\system32\config\BBI
2015-03-17 14:07 - 2013-08-22 15:44 - 00483008 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-17 13:59 - 2013-08-22 14:25 - 00000199 _____ () C:\Windows\win.ini
2015-03-17 13:45 - 2014-08-29 20:24 - 00000000 ____D () C:\ProgramData\Package Cache
2015-03-17 12:03 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-17 11:49 - 2014-05-22 00:54 - 00001132 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-17 11:24 - 2014-05-22 00:54 - 00001128 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-17 11:18 - 2014-05-06 05:41 - 00765582 _____ () C:\Windows\system32\perfh007.dat
2015-03-17 11:18 - 2014-05-06 05:41 - 00159366 _____ () C:\Windows\system32\perfc007.dat
2015-03-17 11:18 - 2014-03-18 10:47 - 01776918 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-17 08:28 - 2014-05-22 00:54 - 00000000 ____D () C:\Program Files (x86)\Google
2015-03-16 22:27 - 2008-12-07 17:20 - 00000000 ____D () C:\Users\Frank\Documents\Schriftverkehr
2015-03-16 22:19 - 2014-08-29 20:41 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-03-16 22:19 - 2014-08-29 20:41 - 00000000 ____D () C:\ProgramData\WildTangent
2015-03-16 22:19 - 2014-08-29 20:41 - 00000000 ____D () C:\Program Files (x86)\WildTangent Games
2015-03-16 17:25 - 2014-05-22 01:03 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-03-16 15:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache
2015-03-16 13:39 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp
2015-03-16 13:31 - 2014-05-06 05:40 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer
2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\winrm
2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\WCN
2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\slmgr
2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\winrm
2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\WCN
2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\slmgr
2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\WinStore
2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\MUI
2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\MUI
2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-16 13:31 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\Sysprep
2015-03-16 13:31 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\servicing
2015-03-16 13:13 - 2014-03-18 10:33 - 00000000 ____D () C:\Program Files\Windows Journal
2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\System
2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-03-16 13:12 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\Printing_Admin_Scripts
2015-03-16 13:12 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\Com
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\SystemResetPlatform
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\migwiz
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\Com
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\IME
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Help
2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\SysWOW64\oobe
2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\oobe
2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\Dism
2015-03-16 12:52 - 2013-08-22 16:36 - 00000000 ___SD () C:\Windows\system32\dsc
2015-03-16 12:03 - 2014-05-22 01:03 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA
2015-03-16 10:14 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\SecureBootUpdates
2015-03-16 10:03 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData
2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\setup
2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\InputMethod
2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\setup
2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS
2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS
2015-03-12 16:38 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-03-12 16:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\MediaViewer
2015-03-12 16:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\FileManager
2015-03-12 16:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Camera
2015-03-12 12:35 - 2014-03-18 10:33 - 00000000 ____D () C:\Windows\ShellNew
2015-03-12 12:34 - 2014-05-06 05:23 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2015-03-12 08:40 - 2014-08-29 20:10 - 00000000 ____D () C:\Program Files (x86)\TOSHIBA
2015-03-11 13:50 - 2014-05-22 00:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-03-11 12:10 - 2014-05-23 01:33 - 00000000 ____D () C:\Windows\Panther
2015-03-10 17:17 - 2014-08-29 20:30 - 00000000 ____D () C:\ProgramData\McAfee
2015-03-10 17:07 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\spool
2015-03-10 16:59 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\NDF
2015-03-10 15:13 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2015-03-10 15:09 - 2013-08-22 16:36 - 00000000 ___HD () C:\Windows\ELAMBKUP
2015-03-10 14:57 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\restore
2015-03-10 14:45 - 2014-05-22 00:54 - 00000000 ____D () C:\ProgramData\TOSHIBA
2015-03-10 14:44 - 2014-05-22 00:54 - 00004104 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-03-10 14:44 - 2014-05-22 00:54 - 00003868 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-03-10 14:39 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\sysprep
2015-03-06 09:11 - 2012-09-27 07:12 - 00000000 ____D () C:\Users\Frank\Documents\Tippspiel

==================== Files in the root of some directories =======

2015-03-17 11:54 - 2015-03-17 12:21 - 0008108 _____ () C:\Users\Frank\AppData\Roaming\msconfig.ini
2015-03-17 10:29 - 2015-03-17 10:29 - 0000840 _____ () C:\Users\Frank\AppData\Local\recently-used.xbel
2014-08-29 20:06 - 2014-08-29 20:06 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Files to move or delete:
====================
C:\Users\Frank\AppData\Roaming\msconfig.ini


Some content of TEMP:
====================
C:\Users\Frank\AppData\Local\Temp\PresentationCore.dll
C:\Users\Frank\AppData\Local\Temp\PresentationFramework.dll
C:\Users\Frank\AppData\Local\Temp\ReachFramework.dll
C:\Users\Frank\AppData\Local\Temp\UIAutomationProvider.dll
C:\Users\Frank\AppData\Local\Temp\UIAutomationTypes.dll
C:\Users\Frank\AppData\Local\Temp\WindowsBase.dll
C:\Users\Frank\AppData\Local\Temp\WindowsFormsIntegration.dll
C:\Users\Frank\AppData\Local\Temp\xmlUpdater.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-05-22 08:48

==================== End Of Log ============================
         
Additional.txt

Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-03-2015
Ran by Frank at 2015-03-17 13:13:53
Running from C:\Users\Frank\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

ACDSee 18 (HKLM\...\{6D0F6DF4-553E-43CD-AA95-69AB3644A8FF}) (Version: 18.1.0.233 - ACD Systems International Inc.)
Adblock Plus für IE (32-Bit- und 64-Bit) (HKLM\...\{E407C8D7-09C6-4056-BFAD-68C5FD8340F0}) (Version: 1.3 - Eyeo GmbH)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Amazon 1Button App (HKLM-x32\...\{0A7D6F3C-F2AB-48ED-BE23-99791BFF87D6}) (Version: 1.0.0.4 - Amazon)
Amazon Music (HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Amazon Amazon Music) (Version: 3.8.1.754 - Amazon Services LLC)
Atheros Driver Installation Program (HKLM-x32\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 10.0 - Atheros)
Bluetooth Stack for Windows by Toshiba (HKLM\...\{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}) (Version: v9.10.32(T) - TOSHIBA CORPORATION)
CATraxx (HKLM-x32\...\CATraxx_is1) (Version:  - FNProgramvare)
CCleaner (HKLM\...\CCleaner) (Version: 5.03 - Piriform)
Classic Shell (HKLM\...\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}) (Version: 4.1.0 - IvoSoft)
CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.3817.05 - CyberLink Corp.)
DTS Sound (HKLM-x32\...\{9B17BBEC-CF31-4C23-949E-E65A14365CE1}) (Version: 1.01.6100 - DTS, Inc.)
EPSON SX430 Series Printer Uninstall (HKLM\...\EPSON SX430 Series) (Version:  - SEIKO EPSON Corporation)
Evernote (HKLM-x32\...\Evernote) (Version: 1.0.0 - Evernote Launcher by Toshiba Europe GmbH)
Exact Audio Copy 1.0beta4 (HKLM-x32\...\Exact Audio Copy) (Version: 1.0beta4 - Andre Wiethoff)
FileZilla Client 3.10.2 (HKLM-x32\...\FileZilla Client) (Version: 3.10.2 - Tim Kosse)
Freeplane (HKLM\...\{D3941722-C4DD-4509-88C4-0E87F675A859}_is1) (Version: 1.3.15 - Open source)
FRITZ!Box USB-Fernanschluss (HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\2db37667170956ee) (Version: 2.3.2.0 - AVM Berlin)
GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 41.0.2272.89 - Google Inc.)
Google Drive (HKLM-x32\...\{6C36881B-0E51-4231-9D02-BF2149664D34}) (Version: 1.20.8672.3137 - Google, Inc.)
Google Update Helper (x32 Version: 1.3.21.115 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3408 - Intel Corporation)
Intel(R) Trusted Execution Engine (HKLM\...\{176E2755-0A17-42C6-88E2-192AB2131278}) (Version: 1.0.0.1064 - Intel Corporation)
Java 8 Update 40 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation)
M-DVD.Org V2 - "Ver. 2.6 Update" (HKLM-x32\...\{D831211C-EE0F-43E3-9F8C-E4832B34C18A}_is1) (Version: 2.6 - SynApp GmbH)
Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-0081-0407-0000-0000000FF1CE}) (Version: 14.0.6123.5001 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Outlook Hotmail Connector 64-Bit (HKLM\...\{95140000-0081-0407-1000-0000000FF1CE}) (Version: 14.0.6123.5001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (HKLM-x32\...\{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}) (Version: 9.0.30411 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{d07b0db5-8dad-40e1-be90-88026298a46b}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{2749c485-3a8b-4533-92ff-7cf6e8221cff}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Mozilla Firefox 36.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 36.0.1 (x86 de)) (Version: 36.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 36.0.1 - Mozilla)
Mp3tag v2.68 (HKLM-x32\...\Mp3tag) (Version: v2.68 - Florian Heidenreich)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.7.5 - Notepad++ Team)
Outlook Backup Assistant 7 (Vollversion) (HKLM-x32\...\812A5AC8-50DA-43D8-B36E-30CDD7FCCAA1_is1) (Version: 7 - Priotecs IT GmbH)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.318 - Qualcomm Atheros)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.29075 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.24.1218.2013 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7195 - Realtek Semiconductor Corp.)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{91140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version:  - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version:  - Microsoft) Hidden
SpeedCommander 13 (HKLM-x32\...\SpeedCommander 13) (Version: 13 - SpeedProject)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 18.1.3.0 - Synaptics Incorporated)
TOSHIBA Desktop Assist (HKLM\...\{C4CDCEF0-0A7A-4425-887C-33E39533D758}) (Version: 1.03.04.6401 - Toshiba Corporation)
TOSHIBA Display Utility (HKLM\...\{F64E9295-E1B3-4EEA-86D3-AF44A0087B06}) (Version: 1.1.16.0 - Toshiba Corporation)
TOSHIBA eco Utility (HKLM\...\{94D2A899-0C34-4420-880E-AE337E635AB0}) (Version: 2.4.2.6403 - Toshiba Corporation)
TOSHIBA Flash Cards Support Utility (HKLM-x32\...\InstallShield_{620BBA5E-F848-4D56-8BDA-584E44584C5E}) (Version: 1.51.81.2C - TOSHIBA CORPORATION)
TOSHIBA Function Key (HKLM\...\{1844CFE2-EBA3-490A-8A5E-9BFC646342FD}) (Version: 1.1.5.6402 - Toshiba Corporation)
TOSHIBA Manuals (HKLM-x32\...\{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}) (Version: 10.19 - TOSHIBA)
TOSHIBA Password Utility (HKLM-x32\...\InstallShield_{59358FD4-252B-4B38-AB81-955C491A494F}) (Version: 2.0.0.15C - Toshiba Corporation)
TOSHIBA PC Health Monitor (HKLM\...\{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}) (Version: 3.01.02.6400 - Toshiba Corporation)
TOSHIBA Recovery Media Creator (HKLM-x32\...\{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}) (Version: 3.2.00.56006005 - Toshiba Corporation)
TOSHIBA Service Station (HKLM\...\{BFE4C813-4DD4-4B1C-97F4-76A459055C8D}) (Version: 2.6.13 - Toshiba Corporation)
TOSHIBA Start Screen Option (HKLM\...\{06B71035-F19F-4F76-9875-FFCCD4FC3F83}) (Version: 1.00.01.6402 - Toshiba Corporation)
TOSHIBA System Driver (HKLM-x32\...\{1E6A96A1-2BAB-43EF-8087-30437593C66C}) (Version: 1.00.0033 - Toshiba Corporation)
TOSHIBA System Settings (HKLM-x32\...\{4D57ED72-6B01-40BD-9CA9-012B8FC09CEB}) (Version: 2.0.1.32003 - Toshiba Corporation)
Toshiba TEMPRO (HKLM-x32\...\{F76F5214-83A8-4030-80C9-1EF57391D72A}) (Version: 4.6.0 - Toshiba Europe GmbH)
Trojan Remover 6.9.1 (HKLM-x32\...\Trojan Remover_is1) (Version: 6.9.1 - Simply Super Software)
UseNeXT by Tangysoft (HKLM-x32\...\UseNeXT by Tangysoft_is1) (Version:  - Tangysoft Ltd.)
Utility Common Driver (x32 Version: 1.0.53.3 - Compal) Hidden
Virtual CD v10 (HKLM-x32\...\{10C51313-A308-4B40-90E3-B368D5882660}) (Version: 10.60.1 - H+H Software GmbH)
VLC media player (HKLM\...\VLC media player) (Version: 2.2.0 - VideoLAN)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-2734555180-3142773653-1428810083-1001_Classes\CLSID\{6295A54D-BD2A-4CF7-A288-62B0D91F7879}\InprocServer32 -> C:\Program Files (x86)\Outlook Backup Assistant\AddIn\adxloader64.dll ()
CustomCLSID: HKU\S-1-5-21-2734555180-3142773653-1428810083-1001_Classes\CLSID\{743035C6-FA33-39DF-A741-34A81649705C}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2734555180-3142773653-1428810083-1001_Classes\CLSID\{E3DF3DC0-3869-3CF6-9638-ACE5BFCF8341}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2734555180-3142773653-1428810083-1001_Classes\CLSID\{E444D266-68C3-4748-91FC-49A65C606776}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)

==================== Restore Points  =========================

10-03-2015 14:57:48 Installed Classic Shell
11-03-2015 16:46:06 Windows Live Essentials
11-03-2015 16:47:10 WLSetup
16-03-2015 08:36:14 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {10A37F08-4ACD-47E1-AAB4-6ECDE6DDDE8A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-22] (Google Inc.)
Task: {3A27F9E7-77F0-4184-8E7B-CCFD1B2C88D1} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2014-02-24] (Realtek Semiconductor)
Task: {43352A69-ABB4-49E4-B323-06E9B4979264} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-02-26] (Microsoft Corporation)
Task: {6DA94A62-4F7C-4FB7-9BF2-42B375784CAD} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2014-02-21] (Synaptics Incorporated)
Task: {6F0A175B-3676-4389-BF3D-5514BA8C12A4} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-02-19] (Piriform Ltd)
Task: {D83A5125-65E9-42DC-AB7A-2A866B79BB99} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-03-11] (Adobe Systems Incorporated)
Task: {DE1970DF-A5F2-4726-AD72-BBBE95B17888} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {E3C240C6-BD34-41EC-8558-90FD37A3F51F} - System32\Tasks\Toshiba\CommonNotifier => C:\Program Files (x86)\Toshiba TEMPRO\Toshiba.Tempro.UI.CommonNotifier.exe [2014-08-05] (Toshiba Europe GmbH)
Task: {FD0C7C89-E963-41B3-A6DE-3D6B2644A94D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-05-22] (Google Inc.)
Task: {FF8DB2A8-F654-4289-AC66-FF4EE24064C5} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) ==============
         
Fehlermeldung GMER

Code:
ATTFilter
[Window Title]
Gmer-19357.exe

[Main Instruction]
Gmer-19357.exe funktioniert nicht mehr

[Content]
Das Programm wird aufgrund eines Problems nicht richtig ausgeführt. Das Programm wird geschlossen und Sie werden benachrichtigt, wenn eine Lösung verfügbar ist.

[Programm schließen]
         
__________________


Alt 17.03.2015, 16:50   #3
schrauber
/// the machine
/// TB-Ausbilder
 

Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden - Standard

Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden



hi,

Downloade dir bitte Malwarebytes Anti-Rootkit Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
  • Starte bitte die mbar.exe.
  • Folge den Anweisungen auf deinem Bildschirm gemäß Anleitung zu Malwarebytes Anti-Rootkit
  • Aktualisiere unbedingt die Datenbank und erlaube dem Tool, dein System zu scannen.
  • Klicke auf den CleanUp Button und erlaube den Neustart.
  • Während dem Neustart wird MBAR die gefundenen Objekte entfernen, also bleib geduldig.
  • Nach dem Neustart starte die mbar.exe erneut.
  • Sollte nochmal was gefunden werden, wiederhole den CleanUp Prozess.
Das Tool wird im erstellten Ordner eine Logfile ( mbar-log-<Jahr-Monat-Tag>.txt ) erzeugen. Bitte poste diese hier.

Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers

Downloade dir bitte TDSSKiller TDSSKiller.exe und speichere diese Datei auf dem Desktop
  • Starte die TDSSKiller.exe - Einstellen wie in der Anleitung zu TDSSKiller beschrieben.
  • Drücke Start Scan
  • Sollten infizierte Objekte gefunden werden, wähle keinesfalls Cure. Wähle Skip und klicke auf Continue.
    TDSSKiller wird eine Logfile auf deinem Systemlaufwerk speichern (Meistens C:\)
    Als Beispiel: C:\TDSSKiller.<Version_Datum_Uhrzeit>log.txt
Poste den Inhalt bitte in jedem Fall hier in deinen Thread.
__________________
__________________

Alt 17.03.2015, 18:53   #4
Dorfkicker
 
Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden - Standard

Log-Datei von Malwarebytes Anti-Rootkit



Hallo Schrauber, hier die erste Log-Datei:

Code:
ATTFilter
Malwarebytes Anti-Rootkit BETA 1.09.1.1004
www.malwarebytes.org

Database version:
  main:    v2015.03.17.05
  rootkit: v2015.02.25.01

Windows 8.1 x64 NTFS
Internet Explorer 11.0.9600.17690
Frank :: UHURA2 [administrator]

17.03.2015 17:11:01
mbar-log-2015-03-17 (17-11-01).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled: 
Objects scanned: 351713
Time elapsed: 31 minute(s), 34 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 64
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avcenter.exe (Security.Hijack) -> Delete on reboot. [d5c4cf77028816200859e59605ff46ba]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avconfig.exe (Security.Hijack) -> Delete on reboot. [57428cbab5d52214d49086f518ecdc24]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgcsrvx.exe (Security.Hijack) -> Delete on reboot. [b4e5b2941179d3630b6bea91e71d04fc]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgnt.exe (Security.Hijack) -> Delete on reboot. [1584e165890171c5651ad0ab3ec6af51]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgrsx.exe (Security.Hijack) -> Delete on reboot. [d1c8af978ffb02346a170378a2623ec2]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avguard.exe (Security.Hijack) -> Delete on reboot. [8d0ca2a48efc14222367a6d59d67718f]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgui.exe (Security.Hijack) -> Delete on reboot. [6b2e60e63c4efd399fec7dfee420a55b]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgwdsvc.exe (Security.Hijack) -> Delete on reboot. [9801073f3951d95d474a0f6c2dd74eb2]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avscan.exe (Security.Hijack) -> Delete on reboot. [e8b1ab9b246674c2c1fa4d2e50b4738d]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\blindman.exe (Security.Hijack) -> Delete on reboot. [7b1eb393bcce0234f7ceaa3204ff619f]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\ccuac.exe (Security.Hijack) -> Delete on reboot. [8c0dc185abdfc17502dca27fc73eae52]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\ComboFix.exe (Security.Hijack) -> Delete on reboot. [683162e4563478bee77fdba1bc48d22e]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\hijackthis.exe (Security.Hijack) -> Delete on reboot. [f1a856f04743d56193c5b9c4966e718f]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\keyscrambler.exe (Security.Hijack) -> Delete on reboot. [0297a0a676145ed8439aab762fd6e719]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbam.exe (Security.Hijack) -> Delete on reboot. [3c5ddb6b6a2089ade053a0de41c3eb15]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbamgui.exe (Security.Hijack) -> Delete on reboot. [0198da6c3159ea4c9cf04ddb20e43ec2]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbampt.exe (Security.Hijack) -> Delete on reboot. [8d0ca2a48a0036000f3d200bdc298878]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbamscheduler.exe (Security.Hijack) -> Delete on reboot. [732674d2f19958de202ffa05e71cd927]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbamservice.exe (Security.Hijack) -> Delete on reboot. [1c7d1135206aca6cd95bd4aad62ec040]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\MpCmdRun.exe (Security.Hijack) -> Delete on reboot. [a5f450f695f537ffd39d562853b19070]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\MSASCui.exe (Security.Hijack) -> Delete on reboot. [d6c3cf77d5b5fd39325095e924e07888]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\MsMpEng.exe (Security.Hijack) -> Delete on reboot. [eaaff74fee9c0d29395c87f7659f4cb4]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\msseces.exe (Security.Hijack) -> Delete on reboot. [6f2a1b2b14762a0c257629551aea35cb]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\rstrui.exe (Security.Hijack) -> Delete on reboot. [c0d982c40684cc6a8897ee92d13335cb]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SDFiles.exe (Security.Hijack) -> Delete on reboot. [d7c2b294b2d84beb903822c9e61d6997]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SDMain.exe (Security.Hijack) -> Delete on reboot. [4c4d0c3a5832241253766b80867dbb45]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SDWinSec.exe (Security.Hijack) -> Delete on reboot. [70293214820852e4f9d1a8434bb844bc]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\spybotsd.exe (Security.Hijack) -> Delete on reboot. [c4d548fe5b2fa294a441d32cc242956b]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\wireshark.exe (Security.Hijack) -> Delete on reboot. [821776d0abdf96a06e7125fc5baaad53]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\zlclient.exe (Security.Hijack) -> Delete on reboot. [ebaea6a0f298ff37d11f621f44c0dc24]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVASTSVC.EXE (Security.Hijack) -> Delete on reboot. [b3e6d3734c3e6dc960fda9d2a361a15f]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVP.EXE (Security.Hijack) -> Delete on reboot. [9efb2a1c97f389ad604d1764a4608d73]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avcenter.exe (Security.Hijack) -> Delete on reboot. [c0d9cf778307f73f95cc9ddeda2a51af]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avconfig.exe (Security.Hijack) -> Delete on reboot. [4950014513774fe7471d3d3e25df6997]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgcsrvx.exe (Security.Hijack) -> Delete on reboot. [2e6bed594a4096a00b6bb5c69d677e82]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgnt.exe (Security.Hijack) -> Delete on reboot. [5c3d3214d2b878be6718d3a8e51fb54b]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgrsx.exe (Security.Hijack) -> Delete on reboot. [21780640553584b23e43f289e22213ed]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avguard.exe (Security.Hijack) -> Delete on reboot. [a0f92c1a87030333bfcbef8c34d07f81]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgui.exe (Security.Hijack) -> Delete on reboot. [e5b43214d8b26dc9ddae710aed1701ff]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avgwdsvc.exe (Security.Hijack) -> Delete on reboot. [920797affd8d58de0e835d1e9173dc24]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\avscan.exe (Security.Hijack) -> Delete on reboot. [0693e85e157543f3a91285f67292966a]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\blindman.exe (Security.Hijack) -> Delete on reboot. [2c6d7ec8bfcb0e2811b47d5fe41f9967]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\ccuac.exe (Security.Hijack) -> Delete on reboot. [3564eb5b1a7086b017c756cb0ef748b8]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\ComboFix.exe (Security.Hijack) -> Delete on reboot. [1d7c4bfbee9c44f2acba1963f014a858]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\hijackthis.exe (Security.Hijack) -> Delete on reboot. [e0b931156723c3730e4afc81808430d0]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\keyscrambler.exe (Security.Hijack) -> Delete on reboot. [4c4ddf67fd8d092d5f7e20018a7b38c8]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbam.exe (Security.Hijack) -> Delete on reboot. [3168d0762f5bd36368cbe5990afab14f]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbamgui.exe (Security.Hijack) -> Delete on reboot. [66333b0b0b7f35014c406dbbdb29a25e]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbampt.exe (Security.Hijack) -> Delete on reboot. [42572a1c3852033359f32ffc3fc6ee12]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbamscheduler.exe (Security.Hijack) -> Delete on reboot. [f0a9cb7b8cfe0a2c1e314db2ff0448b8]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\mbamservice.exe (Security.Hijack) -> Delete on reboot. [f3a6c97d95f5191d161e423c2dd72ed2]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\MpCmdRun.exe (Security.Hijack) -> Delete on reboot. [207993b3c5c562d44729601ec440bb45]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\MSASCui.exe (Security.Hijack) -> Delete on reboot. [ebae0a3c98f2ef473b47c6b8947018e8]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\MsMpEng.exe (Security.Hijack) -> Delete on reboot. [c6d38fb7a4e61b1ba3f22559e420f60a]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\msseces.exe (Security.Hijack) -> Delete on reboot. [c2d765e15e2c21154d4eef8f2fd5ed13]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\rstrui.exe (Security.Hijack) -> Delete on reboot. [b2e7083eff8bac8a041bf18f10f4fa06]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SDFiles.exe (Security.Hijack) -> Delete on reboot. [e4b59aaca6e4b77f547437b4867ddf21]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SDMain.exe (Security.Hijack) -> Delete on reboot. [85142e188307c175d0f915d627dc738d]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\SDWinSec.exe (Security.Hijack) -> Delete on reboot. [3069ac9a23671a1c24a66d7e6f9442be]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\spybotsd.exe (Security.Hijack) -> Delete on reboot. [2d6c96b04644f145489dca35eb195ba5]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\wireshark.exe (Security.Hijack) -> Delete on reboot. [dfba6adc88020234ecf3b170d431e818]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\zlclient.exe (Security.Hijack) -> Delete on reboot. [cccdae98f199f442bf31b9c83dc7926e]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVASTSVC.EXE (Security.Hijack) -> Delete on reboot. [d1c881c50d7d55e14f0e94e7e91b47b9]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVP.EXE (Security.Hijack) -> Delete on reboot. [247576d03b4f7abc1796c8b3e420c43c]

Registry Values Detected: 16
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVASTSVC.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [b3e6d3734c3e6dc960fda9d2a361a15f]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVASTUI.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [0a8f6ed88505ce68035c2457f50f6e92]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVGIDSAGENT.EXE|Debugger (Hijack.Security) -> Data: nqij.exe -> Delete on reboot. [8b0e81c5d5b58caa23f2b544bc476f91]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVP.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [9efb2a1c97f389ad604d1764a4608d73]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\BDAGENT.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [dcbd20267c0ea98d1bc87ffc59aba45c]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\EGUI.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [5b3ed6701476b87e16ae700c47bde31d]
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\INSTUP.EXE|Debugger (Hijack.Security) -> Data: nqij.exe -> Delete on reboot. [60397ec8741658dee2340eeb22e138c8]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVASTSVC.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [d1c881c50d7d55e14f0e94e7e91b47b9]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVASTUI.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [fd9c92b48dfd86b0e47b5c1fe91bf60a]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVGIDSAGENT.EXE|Debugger (Hijack.Security) -> Data: nqij.exe -> Delete on reboot. [bbde4bfb6822a98d92832bcee81b1ce4]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\AVP.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [247576d03b4f7abc1796c8b3e420c43c]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\BDAGENT.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [9affec5a06847abc5b88e893ae5637c9]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\EGUI.EXE|Debugger (Security.Hijack) -> Data: nqij.exe -> Delete on reboot. [f9a093b30e7c3303efd5ec906c98ef11]
HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\INSTUP.EXE|Debugger (Hijack.Security) -> Data: nqij.exe -> Delete on reboot. [f0a9f94d5e2c4aec37df64953ac9629e]
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\IME|WindowsUpdate (Trojan.Agent) -> Data: "C:\Windows\SysWOW64\Application Services\appsvc.exe" -> Delete on reboot. [61386dd96426d85eac1a7468d42f11ef]
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\SIDEBAR|WindowsUpdate (Trojan.Agent) -> Data: "C:\Windows\SysWOW64\Application Services\appsvc.exe" -> Delete on reboot. [b5e415318505bd79dcec914b679ca35d]

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 1
C:\Users\Frank\AppData\Roaming\msconfig.ini (Trojan.Agent) -> Delete on reboot. [2e6b77cfadddd363a89218d8bf456e92]

Physical Sectors Detected: 0
(No malicious items detected)

(end)
         
Beim zweiten Durchlauf gab es dieses Ergebnis:

Code:
ATTFilter
Malwarebytes Anti-Rootkit BETA 1.09.1.1004
www.malwarebytes.org

Database version:
  main:    v2015.03.17.05
  rootkit: v2015.02.25.01

Windows 8.1 x64 NTFS
Internet Explorer 11.0.9600.17690
Frank :: UHURA2 [administrator]

17.03.2015 17:52:44
mbar-log-2015-03-17 (17-52-44).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled: 
Objects scanned: 351693
Time elapsed: 32 minute(s), 31 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

Physical Sectors Detected: 0
(No malicious items detected)

(end)
         
Ich lasse jetzt den TDSSKiller laufen... Schon mal großen Dank!!

Alt 17.03.2015, 19:00   #5
Dorfkicker
 
Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden - Standard

Log-Datei TDSSkiller



Hallo Schrauber, wenn ich geahnt hätte, wie schnell der durch war...,

hier bitteschön:

Code:
ATTFilter
18:55:06.0266 0x0e98  TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04
18:55:06.0266 0x0e98  UEFI system
18:55:10.0750 0x0e98  ============================================================
18:55:10.0750 0x0e98  Current date / time: 2015/03/17 18:55:10.0750
18:55:10.0750 0x0e98  SystemInfo:
18:55:10.0750 0x0e98  
18:55:10.0750 0x0e98  OS Version: 6.3.9600 ServicePack: 0.0
18:55:10.0750 0x0e98  Product type: Workstation
18:55:10.0750 0x0e98  ComputerName: UHURA2
18:55:10.0750 0x0e98  UserName: Frank
18:55:10.0750 0x0e98  Windows directory: C:\Windows
18:55:10.0750 0x0e98  System windows directory: C:\Windows
18:55:10.0750 0x0e98  Running under WOW64
18:55:10.0750 0x0e98  Processor architecture: Intel x64
18:55:10.0750 0x0e98  Number of processors: 2
18:55:10.0750 0x0e98  Page size: 0x1000
18:55:10.0750 0x0e98  Boot type: Normal boot
18:55:10.0750 0x0e98  ============================================================
18:55:11.0375 0x0e98  KLMD registered as C:\Windows\system32\drivers\15516060.sys
18:55:12.0422 0x0e98  System UUID: {88236693-3643-6197-F76B-4C2FC963BD8E}
18:55:14.0563 0x0e98  Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
18:55:14.0563 0x0e98  ============================================================
18:55:14.0563 0x0e98  \Device\Harddisk0\DR0:
18:55:14.0563 0x0e98  GPT partitions:
18:55:14.0563 0x0e98  \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {E7A7970D-EC3F-11E3-963A-201A06D7B10A}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0x200000
18:55:14.0563 0x0e98  \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {E7A79713-EC3F-11E3-963A-201A06D7B10A}, Name: Basic data partition, StartLBA 0x200800, BlocksNum 0x32000
18:55:14.0563 0x0e98  \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {E7A79715-EC3F-11E3-963A-201A06D7B10A}, Name: Basic data partition, StartLBA 0x232800, BlocksNum 0x40000
18:55:14.0563 0x0e98  \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {E7A7971D-EC3F-11E3-963A-201A06D7B10A}, Name: Basic data partition, StartLBA 0x272800, BlocksNum 0x38C97800
18:55:14.0563 0x0e98  \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {9FD6E8FE-2FBF-11E4-9FB7-F8A963F22B4A}, Name: Basic data partition, StartLBA 0x38F0A000, BlocksNum 0x147BB05
18:55:14.0563 0x0e98  MBR partitions:
18:55:14.0563 0x0e98  ============================================================
18:55:14.0594 0x0e98  C: <-> \Device\Harddisk0\DR0\Partition4
18:55:14.0594 0x0e98  ============================================================
18:55:14.0594 0x0e98  Initialize success
18:55:14.0594 0x0e98  ============================================================
18:56:15.0124 0x17a0  ============================================================
18:56:15.0124 0x17a0  Scan started
18:56:15.0124 0x17a0  Mode: Manual; SigCheck; TDLFS; 
18:56:15.0124 0x17a0  ============================================================
18:56:15.0124 0x17a0  KSN ping started
18:56:17.0562 0x17a0  KSN ping finished: true
18:56:19.0593 0x17a0  ================ Scan system memory ========================
18:56:19.0593 0x17a0  System memory - ok
18:56:19.0593 0x17a0  ================ Scan services =============================
18:56:19.0953 0x17a0  [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci        C:\Windows\System32\drivers\1394ohci.sys
18:56:20.0062 0x17a0  1394ohci - ok
18:56:20.0093 0x17a0  [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware           C:\Windows\system32\drivers\3ware.sys
18:56:20.0109 0x17a0  3ware - ok
18:56:20.0187 0x17a0  [ 9539F7917B4B6D92C90F0FAA6B86C605, B4C284E8EECC2E7025053A3320EFDC9F47BCA9828853AD2A805DB826CA4AC27E ] ACPI            C:\Windows\system32\drivers\ACPI.sys
18:56:20.0234 0x17a0  ACPI - ok
18:56:20.0265 0x17a0  [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex          C:\Windows\system32\Drivers\acpiex.sys
18:56:20.0281 0x17a0  acpiex - ok
18:56:20.0296 0x17a0  [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr        C:\Windows\System32\drivers\acpipagr.sys
18:56:20.0343 0x17a0  acpipagr - ok
18:56:20.0359 0x17a0  [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi         C:\Windows\System32\drivers\acpipmi.sys
18:56:20.0406 0x17a0  AcpiPmi - ok
18:56:20.0421 0x17a0  [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime        C:\Windows\System32\drivers\acpitime.sys
18:56:20.0453 0x17a0  acpitime - ok
18:56:20.0562 0x17a0  [ FC5B75CA6A1DA31EDD4F8D53F5540B98, CDC445F2790ADFC4C5568C40D4DA8BB95CD71991665B38AEC3D84571C99C3520 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
18:56:20.0609 0x17a0  AdobeARMservice - ok
18:56:20.0781 0x17a0  [ 080255CDCB878813B481B8C348D47D8E, 75808821FBC732D0504795B8F85852E4C01D3B412989A1E597E1295CFF7B7A45 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
18:56:20.0812 0x17a0  AdobeFlashPlayerUpdateSvc - ok
18:56:20.0874 0x17a0  [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX         C:\Windows\system32\drivers\ADP80XX.SYS
18:56:20.0921 0x17a0  ADP80XX - ok
18:56:20.0953 0x17a0  [ 0F17D49BE041B7EFF1D33BF1414E7AC6, F8B536B60903814DF88DAF535753288537EF0993E42AA4E734EDA8D68B24C7AB ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
18:56:20.0984 0x17a0  AeLookupSvc - ok
18:56:21.0062 0x17a0  [ 374E27295F0A9DCAA8FC96370F9BEEA5, 51C394E0C2322D7D093941A1B8766171B5D1F47DF2FE0834209492891EA7D999 ] AFD             C:\Windows\system32\drivers\afd.sys
18:56:21.0171 0x17a0  AFD - ok
18:56:21.0218 0x17a0  [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440          C:\Windows\system32\drivers\agp440.sys
18:56:21.0281 0x17a0  agp440 - ok
18:56:21.0312 0x17a0  [ F0CB6DB513CAC393D04A0FCE0A59E1BF, E6EE159D0E6B1F666946B1FE421874044E89BB2EB60A521BAA111A1229FA7B2D ] ahcache         C:\Windows\system32\DRIVERS\ahcache.sys
18:56:21.0390 0x17a0  ahcache - ok
18:56:21.0437 0x17a0  [ A91D8E1E433EFB32551BCE69037E1CE7, 41DFDD5B56918D19D09DFB3E4B07460AA85647A8647ABBBB906158D8D6653290 ] ALG             C:\Windows\System32\alg.exe
18:56:21.0499 0x17a0  ALG - ok
18:56:21.0515 0x17a0  [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8           C:\Windows\System32\drivers\amdk8.sys
18:56:21.0546 0x17a0  AmdK8 - ok
18:56:21.0578 0x17a0  [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM          C:\Windows\System32\drivers\amdppm.sys
18:56:21.0624 0x17a0  AmdPPM - ok
18:56:21.0624 0x17a0  [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
18:56:21.0656 0x17a0  amdsata - ok
18:56:21.0687 0x17a0  [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
18:56:21.0703 0x17a0  amdsbs - ok
18:56:21.0718 0x17a0  [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
18:56:21.0734 0x17a0  amdxata - ok
18:56:21.0749 0x17a0  [ 04951A9A937CBE28A2D3FEEA360B6D1F, D8AAF000BE4FE4B203DC2EB2A64F780A542E5238CE3F9952FD03277379B11529 ] AppID           C:\Windows\system32\drivers\appid.sys
18:56:21.0843 0x17a0  AppID - ok
18:56:21.0874 0x17a0  [ C0DC3F58214A227980AEB091CFD2F973, 0C3E8453C9F65ADA3E74C38C0E3AC3E0CBFD807B827097046265B38839E151E3 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
18:56:21.0984 0x17a0  AppIDSvc - ok
18:56:22.0031 0x17a0  [ 034ED41F13D9C1845C1E081F05B640DB, E4E17BA0B22C464DE60A6BF68D4D035D1B838DE4F0361029DED1AE00503E135C ] Appinfo         C:\Windows\System32\appinfo.dll
18:56:22.0109 0x17a0  Appinfo - ok
18:56:22.0140 0x17a0  [ CB12C47647D8BDAFAA94C0856B14128B, 5590C98095357C92563EF94800107D3611AA6ECA1A70BE463C03B279E618A6C4 ] AppReadiness    C:\Windows\system32\AppReadiness.dll
18:56:22.0203 0x17a0  AppReadiness - ok
18:56:22.0297 0x17a0  [ F7529BD3FFAC9C33D15F6DE3B7353B03, 8EF0A84C9687A246B60939A326E498121039E9CC617A7ABBA933EDD327F3467E ] AppXSvc         C:\Windows\system32\appxdeploymentserver.dll
18:56:22.0390 0x17a0  AppXSvc - ok
18:56:22.0422 0x17a0  [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas          C:\Windows\system32\drivers\arcsas.sys
18:56:22.0437 0x17a0  arcsas - ok
18:56:22.0453 0x17a0  [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi           C:\Windows\system32\drivers\atapi.sys
18:56:22.0468 0x17a0  atapi - ok
18:56:22.0515 0x17a0  [ BCE510EB5CFB8814CF1EADE941E853EC, B354524414557225355BD8EEF81324BE3B354EF2F4103D3C5E1EB43651264917 ] AtherosSvc      C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
18:56:22.0578 0x17a0  AtherosSvc - detected UnsignedFile.Multi.Generic ( 1 )
18:56:25.0031 0x17a0  Detect skipped due to KSN trusted
18:56:25.0031 0x17a0  AtherosSvc - ok
18:56:25.0343 0x17a0  [ 506CDD8280C18029753B8AB0E9F42432, 06BA160C0465D116AB07DDFC81D6B087F05E776F0365577CB59567CBC61971FC ] athr            C:\Windows\system32\DRIVERS\athwbx.sys
18:56:25.0609 0x17a0  athr - ok
18:56:25.0672 0x17a0  [ 8779FDAE68BC948B0FE152E758CC8DA7, 13070C2073F8E7546B48AE9CF54067B9BB75DFCD98F2987B90FFAD20D40D54CF ] AudioEndpointBuilder C:\Windows\System32\AudioEndpointBuilder.dll
18:56:25.0734 0x17a0  AudioEndpointBuilder - ok
18:56:25.0812 0x17a0  [ 61EA45A645854FE81D8A924E2D93DFFE, 34F79532297F609CA93C380B68BB8B7B0F027F9C8F4FB8E02A9A43EA3D155F1B ] Audiosrv        C:\Windows\System32\Audiosrv.dll
18:56:25.0890 0x17a0  Audiosrv - ok
18:56:25.0922 0x17a0  [ 6A300AD0E23A155B2C3A7FAB0D4AABD1, AD283CC530482C0C155727C3234BFA4773C8C80B4C9912448196F83407C3CFD4 ] avmaura         C:\Windows\System32\drivers\avmaura.sys
18:56:26.0015 0x17a0  avmaura - ok
18:56:26.0062 0x17a0  [ 96E8CAF20FC4B6C31CAD7816A801EB78, E4870DB8FFBDCFEE98449338D0BDBF2DD0B5FEC75514E41C11A882BE6EB16833 ] AxInstSV        C:\Windows\System32\AxInstSV.dll
18:56:26.0140 0x17a0  AxInstSV - ok
18:56:26.0203 0x17a0  [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
18:56:26.0250 0x17a0  b06bdrv - ok
18:56:26.0281 0x17a0  [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay    C:\Windows\System32\drivers\BasicDisplay.sys
18:56:26.0328 0x17a0  BasicDisplay - ok
18:56:26.0343 0x17a0  [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender     C:\Windows\System32\drivers\BasicRender.sys
18:56:26.0390 0x17a0  BasicRender - ok
18:56:26.0422 0x17a0  [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2          C:\Windows\System32\drivers\bcmfn2.sys
18:56:26.0437 0x17a0  bcmfn2 - ok
18:56:26.0484 0x17a0  [ E07C80468D0C599BFF01D9D4EC7AEDC3, F675F455924DEC3FF69AD816DFEB6E74C804AEC3D3BFF7515953DB9D79C9B2D0 ] BDESVC          C:\Windows\System32\bdesvc.dll
18:56:26.0562 0x17a0  BDESVC - ok
18:56:26.0594 0x17a0  [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep            C:\Windows\system32\drivers\Beep.sys
18:56:26.0656 0x17a0  Beep - ok
18:56:26.0766 0x17a0  [ 20FB137ADDE1255F15F265A7BD9579BE, 87B4D5C91EFEAD987AAC3491A4360F82824C46AFF958B6F4CAED7C12224EF159 ] BFE             C:\Windows\System32\bfe.dll
18:56:26.0828 0x17a0  BFE - ok
18:56:26.0969 0x17a0  [ 15225081966C785A9192782401643FD4, E2BA0C8D044556FDD9DD7A25F7F71553DE7A2924E78F9284413C2AC46F0BF4EB ] BITS            C:\Windows\System32\qmgr.dll
18:56:27.0047 0x17a0  BITS - ok
18:56:27.0063 0x17a0  [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
18:56:27.0094 0x17a0  bowser - ok
18:56:27.0125 0x17a0  [ E325BCD68EC0CF2E2EDD0AB7CC17C698, 4DEDEF91F6BD1CC8DBE118AC28CA6BD874449A053B9CDE9FFEB1C7B98501D938 ] BrokerInfrastructure C:\Windows\System32\bisrv.dll
18:56:27.0203 0x17a0  BrokerInfrastructure - ok
18:56:27.0235 0x17a0  [ 041A999E4FF9A7CDBE67357751881FB8, 356C52637EA715D6FA2B65BD311C9BF1635A582023434902EC2DE4A2448961F8 ] Browser         C:\Windows\System32\browser.dll
18:56:27.0313 0x17a0  Browser - ok
18:56:27.0375 0x17a0  [ 8434237E1EC39E85D8ACE6FA694A5733, CE4261DC6AE5393327DC43D97F35FC9AE86665F89D17CC5708AA3D387B4FFFA5 ] BtFilter        C:\Windows\system32\DRIVERS\btfilter.sys
18:56:27.0406 0x17a0  BtFilter - ok
18:56:27.0453 0x17a0  [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg      C:\Windows\System32\drivers\BthAvrcpTg.sys
18:56:27.0516 0x17a0  BthAvrcpTg - ok
18:56:27.0563 0x17a0  [ 1104A31260CCF4318C884E0AE6C513BF, A8F83B558944DEF0F84414A11DC3CB90C3A92377B46760EC0A9B8BC22FB0D5C7 ] BthEnum         C:\Windows\System32\drivers\BthEnum.sys
18:56:27.0656 0x17a0  BthEnum - ok
18:56:27.0672 0x17a0  [ 746B9F94214915AECDE4B7FEA5FF9664, EA2877D49DB4B7B9CE61653D63E8776DFF1CBCCAB12C14DB1D20DA44B8F06357 ] BthHFEnum       C:\Windows\System32\drivers\bthhfenum.sys
18:56:27.0735 0x17a0  BthHFEnum - ok
18:56:27.0766 0x17a0  [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid        C:\Windows\System32\drivers\BthHFHid.sys
18:56:27.0844 0x17a0  bthhfhid - ok
18:56:27.0891 0x17a0  [ D30C67473A2E229662D21F27EAA9AAA5, D009C4836B0DFE963D8E3DEEDE611068838F2BBCAB146E6D70692FAB838E11F1 ] BthLEEnum       C:\Windows\system32\DRIVERS\BthLEEnum.sys
18:56:27.0985 0x17a0  BthLEEnum - ok
18:56:28.0000 0x17a0  [ 66B791F6B11DC4303DD18A224A501542, 502AE4D6FFC6B0FCED081B0E0F61F699F96F20DFEE737B53828F5DEE3BD0FCB1 ] BTHMODEM        C:\Windows\System32\drivers\bthmodem.sys
18:56:28.0047 0x17a0  BTHMODEM - ok
18:56:28.0094 0x17a0  [ 25BB93167DEF270188072603F92A1EF5, CE4637CE4B63420E218F53CAF89A8C85D036B879B80456FEF3C7C395590E26BB ] BthPan          C:\Windows\System32\drivers\bthpan.sys
18:56:28.0203 0x17a0  BthPan - ok
18:56:28.0328 0x17a0  [ C37F4930795B771400C63C3C87E7A6C2, 0D0F54184B2DAA45F646E4F69B85C4411E8DFA88EB4763BB0F386055A420F217 ] BTHPORT         C:\Windows\System32\Drivers\BTHport.sys
18:56:28.0406 0x17a0  BTHPORT - ok
18:56:28.0438 0x17a0  [ E5E48FEED73D463175EAB1542495191C, 0A8182F5BA7B694AB1DD3680F1194E4A568FE40DBA4BFDFF2EA09BAD045FFB29 ] bthserv         C:\Windows\system32\bthserv.dll
18:56:28.0500 0x17a0  bthserv - ok
18:56:28.0531 0x17a0  [ 08EA90955AED2D959EE67DF6EDF0E2B6, 0A70AA67E5DD24C473C66A570C0FEBA9D398A0F0AD8386FE05D01C4D16346968 ] BTHUSB          C:\Windows\System32\Drivers\BTHUSB.sys
18:56:28.0594 0x17a0  BTHUSB - ok
18:56:28.0610 0x17a0  [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
18:56:28.0672 0x17a0  cdfs - ok
18:56:28.0688 0x17a0  [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom           C:\Windows\System32\drivers\cdrom.sys
18:56:28.0735 0x17a0  cdrom - ok
18:56:28.0766 0x17a0  [ 11F35C8E745ADF8BF595E3EC2B390972, 754ACDF6226A142D753C136D7C0A2461705B05A0C2251287ABC06D89D78F81A8 ] CeKbFilter      C:\Windows\system32\DRIVERS\CeKbFilter.sys
18:56:28.0781 0x17a0  CeKbFilter - ok
18:56:28.0813 0x17a0  [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] CertPropSvc     C:\Windows\System32\certprop.dll
18:56:28.0860 0x17a0  CertPropSvc - ok
18:56:28.0875 0x17a0  [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass        C:\Windows\System32\drivers\circlass.sys
18:56:28.0891 0x17a0  circlass - ok
18:56:28.0938 0x17a0  [ 179A41249055D5F039F1B6703F3B6D2B, 886CF715D9E85DB5C9B991EBCB9B12E27AA0EEE52528E222C80CA5B5B0A7AF52 ] CLFS            C:\Windows\system32\drivers\CLFS.sys
18:56:28.0969 0x17a0  CLFS - ok
18:56:29.0016 0x17a0  [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt          C:\Windows\System32\drivers\CmBatt.sys
18:56:29.0047 0x17a0  CmBatt - ok
18:56:29.0109 0x17a0  [ 3930E508DDA46C1FF68FD963F350AA0A, BF63F9C7AB30E2A8199D65EDD6DCBB797C93A4A0B972373643FBE1C38BCFA697 ] CNG             C:\Windows\system32\Drivers\cng.sys
18:56:29.0156 0x17a0  CNG - ok
18:56:29.0172 0x17a0  [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus    C:\Windows\System32\drivers\CompositeBus.sys
18:56:29.0203 0x17a0  CompositeBus - ok
18:56:29.0219 0x17a0  COMSysApp - ok
18:56:29.0234 0x17a0  [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv          C:\Windows\system32\drivers\condrv.sys
18:56:29.0313 0x17a0  condrv - ok
18:56:29.0453 0x17a0  [ B37EB99764D332FBE5BB50779F9170CE, 97D551D518CB419542A09EBB71DB400412445904FDA8B7F612BC77C8E7597D48 ] cphs            C:\Windows\SysWow64\IntelCpHeciSvc.exe
18:56:29.0500 0x17a0  cphs - ok
18:56:29.0547 0x17a0  [ 0EFE4B5884A8032617826A4D76F80969, 083D296CC623C83D36A97AEE343ADF819B17E490F931DBE4D161BD1E8C289E02 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
18:56:29.0578 0x17a0  CryptSvc - ok
18:56:29.0610 0x17a0  [ 315BA4BC19316D72B2E037534E048B93, 69613635DB23E6A935673B1025C2010ED3E195473D25368CF74234C4C36910BE ] dam             C:\Windows\system32\drivers\dam.sys
18:56:29.0641 0x17a0  dam - ok
18:56:29.0703 0x17a0  [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] DcomLaunch      C:\Windows\system32\rpcss.dll
18:56:29.0781 0x17a0  DcomLaunch - ok
18:56:29.0875 0x17a0  [ D249C3A58A4FCF755EF4C94F7047E015, 68C044CE2DB93FB502F85F6E081EA164F6E6DCBA6B3EE2A5CBDA122065E522F8 ] defragsvc       C:\Windows\System32\defragsvc.dll
18:56:29.0953 0x17a0  defragsvc - ok
18:56:30.0047 0x17a0  [ 8F387C2C99EE09C6E2AC316205F86A17, EC9E8AE72A21992AA118964E17090BA4503EB051273AD18185C95172F57328CE ] DeviceAssociationService C:\Windows\system32\das.dll
18:56:30.0110 0x17a0  DeviceAssociationService - ok
18:56:30.0172 0x17a0  [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] DeviceInstall   C:\Windows\system32\umpnpmgr.dll
18:56:30.0250 0x17a0  DeviceInstall - ok
18:56:30.0297 0x17a0  [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] Dfsc            C:\Windows\system32\Drivers\dfsc.sys
18:56:30.0391 0x17a0  Dfsc - ok
18:56:30.0453 0x17a0  [ 05DE04005CE0D84D0E6AD21CAEB369C6, E6704A2A685BCFD560796D7C328F8E53DF0793DBDA590598A492D9070D109298 ] Dhcp            C:\Windows\system32\dhcpcore.dll
18:56:30.0532 0x17a0  Dhcp - ok
18:56:30.0578 0x17a0  [ 4D40C9B33F738797CF50E77CB7C53E85, 7BA341342A47DEB15B51971C97A5237ACD8BDAD9033F63DF0000892BE43F8E13 ] disk            C:\Windows\system32\drivers\disk.sys
18:56:30.0625 0x17a0  disk - ok
18:56:30.0641 0x17a0  [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc           C:\Windows\System32\drivers\dmvsc.sys
18:56:30.0703 0x17a0  dmvsc - ok
18:56:30.0782 0x17a0  [ FE7656474448BE6A6C68E5C9BEB7CA94, 8B9F04CAA29A6EEFCA3D1E7BAFE340D5CCA8AF665474E69B1DF7E2A518B83A89 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
18:56:30.0844 0x17a0  Dnscache - ok
18:56:30.0891 0x17a0  [ 50288EA079BB520C2B8C8A154202D518, 8916A9180CA009D124FFDFB4CCF5FDFEF7FA2FD37CBCD49FAD4C68E051B4734D ] dot3svc         C:\Windows\System32\dot3svc.dll
18:56:30.0938 0x17a0  dot3svc - ok
18:56:30.0953 0x17a0  [ 281BEE07BA97E3E98D12A822D923D0D8, 6EB482B2D4D6048D145C3738B2B6FA27A90B5EA53E9167447820F9981B004E63 ] DPS             C:\Windows\system32\dps.dll
18:56:31.0031 0x17a0  DPS - ok
18:56:31.0047 0x17a0  [ DDC11A202207C0400CBE07315B8FDE5E, 3ED0CA3A714582D92001BA3BFF78BE082F4DC8021298D5A2632F3B2B0A1C09DC ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
18:56:31.0063 0x17a0  drmkaud - ok
18:56:31.0094 0x17a0  [ 5B074F14F5DD6418F46EE4CA2DEB7EA8, B8223D73C3DE123759101F7D5D45C60BD12B221F09D349575A1044CE3F43CBC5 ] DsmSvc          C:\Windows\System32\DeviceSetupManager.dll
18:56:31.0141 0x17a0  DsmSvc - ok
18:56:31.0203 0x17a0  [ B2A2CAF9E5682AD6BC0B4926C3B78B73, 7A9BB9A49041CE4D8AAF00504A58B1FB1F733561667E5FAB32703415899DBB9F ] dts_apo_service C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe
18:56:31.0250 0x17a0  dts_apo_service - ok
18:56:31.0438 0x17a0  [ 313DCE665B57000B18CB26C6B6A10DFE, 6C332D4AD13A316C192321AB7E7597E66AF8E1688101FFD851E06C52128DBA52 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
18:56:31.0516 0x17a0  DXGKrnl - ok
18:56:31.0578 0x17a0  [ 6073537F250B45E1CB2A02E97F0FE1B2, 653F3F2F2019168EDF225944A88AFDBF8393B62AA076BD19980691778F3DB67D ] Eaphost         C:\Windows\System32\eapsvc.dll
18:56:31.0625 0x17a0  Eaphost - ok
18:56:31.0797 0x17a0  [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv           C:\Windows\system32\drivers\evbda.sys
18:56:31.0953 0x17a0  ebdrv - ok
18:56:32.0032 0x17a0  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] EFS             C:\Windows\System32\lsass.exe
18:56:32.0094 0x17a0  EFS - ok
18:56:32.0141 0x17a0  [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass     C:\Windows\system32\drivers\EhStorClass.sys
18:56:32.0172 0x17a0  EhStorClass - ok
18:56:32.0204 0x17a0  [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv    C:\Windows\system32\drivers\EhStorTcgDrv.sys
18:56:32.0219 0x17a0  EhStorTcgDrv - ok
18:56:32.0235 0x17a0  [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev          C:\Windows\System32\drivers\errdev.sys
18:56:32.0266 0x17a0  ErrDev - ok
18:56:32.0344 0x17a0  [ 030CE75B7D8F75FAA7BA1EC6FD0EB5A3, 5264734F0572FAEDCCB008221C9982CCB7922C4FFC358605424EA413CDCDAE99 ] EventSystem     C:\Windows\system32\es.dll
18:56:32.0375 0x17a0  EventSystem - ok
18:56:32.0407 0x17a0  [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat           C:\Windows\system32\drivers\exfat.sys
18:56:32.0453 0x17a0  exfat - ok
18:56:32.0485 0x17a0  [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat         C:\Windows\system32\drivers\fastfat.sys
18:56:32.0532 0x17a0  fastfat - ok
18:56:32.0594 0x17a0  [ 2BC8532ABF2B3756B78FA1DA54147DDE, DF65EE2AB0255A2CF3221085A6BE7C37E3DB6BFEED3BCADCDD69BB1049F6DCB1 ] Fax             C:\Windows\system32\fxssvc.exe
18:56:32.0657 0x17a0  Fax - ok
18:56:32.0688 0x17a0  [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc             C:\Windows\System32\drivers\fdc.sys
18:56:32.0719 0x17a0  fdc - ok
18:56:32.0735 0x17a0  [ DC1A78BCCCB7EE53D6FD3BD615A8E222, EE16B6853185AAE779D7135035983938009901658F76A8856AAC12EBA15BB34E ] fdPHost         C:\Windows\system32\fdPHost.dll
18:56:32.0813 0x17a0  fdPHost - ok
18:56:32.0844 0x17a0  [ E5AD448F2DC84B1CF387FA7F2A3D1936, BBB29C79A085C503F5EFFB5144596D5DEC48A4EB34A049A4E7B38B27F6D92E0A ] FDResPub        C:\Windows\system32\fdrespub.dll
18:56:32.0891 0x17a0  FDResPub - ok
18:56:32.0907 0x17a0  [ 0046E0BD031213D37123876B0D0FA61C, A4FE17D56F0BAFB70D0D421ED9D1B6E50AF8ADAA4B59328A41AEC5B4C068A3CB ] fhsvc           C:\Windows\system32\fhsvc.dll
18:56:32.0969 0x17a0  fhsvc - ok
18:56:32.0985 0x17a0  [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
18:56:33.0000 0x17a0  FileInfo - ok
18:56:33.0016 0x17a0  [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
18:56:33.0063 0x17a0  Filetrace - ok
18:56:33.0079 0x17a0  [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk        C:\Windows\System32\drivers\flpydisk.sys
18:56:33.0110 0x17a0  flpydisk - ok
18:56:33.0157 0x17a0  [ 6592D192E2823C043EDBC010E7774053, C025A0EC5517DC3BD5D6656DC0F0F19021FB3D2EE90EC6194E1BD74E638EBBDC ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
18:56:33.0188 0x17a0  FltMgr - ok
18:56:33.0297 0x17a0  [ 3FA6DC6B29717E32E211C1FD821F2C75, E467F3775427C93CC2B87327B0A45669631A5FC460C558F6796BA26002A8BBFC ] FontCache       C:\Windows\system32\FntCache.dll
18:56:33.0391 0x17a0  FontCache - ok
18:56:33.0485 0x17a0  [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
18:56:33.0547 0x17a0  FontCache3.0.0.0 - ok
18:56:33.0563 0x17a0  [ 35005534E600E993A90B036E4E599F2B, DA56FA3776FBD3D50276CB7410E0CB6F137DD8FCA84C0F3FEF8B1FEA5F6CA592 ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
18:56:33.0579 0x17a0  FsDepends - ok
18:56:33.0594 0x17a0  [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
18:56:33.0610 0x17a0  Fs_Rec - ok
18:56:33.0672 0x17a0  [ F152D55E497E12256290C43B31C7D0CE, FFC54B14CCFBC1548948C07FB3866E40A11D0C05AC352BD000E71CEF053F6A6E ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
18:56:33.0719 0x17a0  fvevol - ok
18:56:33.0751 0x17a0  [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM           C:\Windows\System32\drivers\fxppm.sys
18:56:33.0782 0x17a0  FxPPM - ok
18:56:33.0797 0x17a0  [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
18:56:33.0813 0x17a0  gagp30kx - ok
18:56:33.0844 0x17a0  [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter      C:\Windows\System32\drivers\vmgencounter.sys
18:56:33.0860 0x17a0  gencounter - ok
18:56:33.0938 0x17a0  [ 73FC2954829A49FC8EB178B000D10120, 26BA58C9AF9C8A7AEBF222F491F786DAA0626BE44D34F170FEA3623D92828E63 ] GENERICDRV      C:\Program Files (x86)\UEFI WinFlash\amifldrv64.sys
18:56:33.0969 0x17a0  GENERICDRV - ok
18:56:34.0016 0x17a0  [ 8DF1254093B5C354CE725EB6B9B0DE19, DE6C5661CC076DA44B8A5D044FDB7280EDCF38D322A98C14FDC82E25586B3014 ] GPIOClx0101     C:\Windows\system32\Drivers\msgpioclx.sys
18:56:34.0063 0x17a0  GPIOClx0101 - ok
18:56:34.0188 0x17a0  [ 69DB09F0263C637DA8568D404842466A, D042194266978AAD31E04DAF7018CD50754077212DC74A4D8AFF6BFEE80CDD20 ] gpsvc           C:\Windows\System32\gpsvc.dll
18:56:34.0282 0x17a0  gpsvc - ok
18:56:34.0344 0x17a0  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
18:56:34.0360 0x17a0  gupdate - ok
18:56:34.0375 0x17a0  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
18:56:34.0391 0x17a0  gupdatem - ok
18:56:34.0438 0x17a0  [ 56F69F7C25FB67C970997D7066DBC593, 83E03A82237DCC5BCB3E722ACECACEF3510CAA619F33E0D7C4D902A482E90418 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
18:56:34.0485 0x17a0  HdAudAddService - ok
18:56:34.0516 0x17a0  [ D4B7ED39C7900384D9E5C1283F1E7926, F93F98858067B40F1C071EAD0F8E85442A78B95342BC692AF4D726540634923F ] HDAudBus        C:\Windows\System32\drivers\HDAudBus.sys
18:56:34.0579 0x17a0  HDAudBus - ok
18:56:34.0641 0x17a0  [ 62FB29642745DD290910BFD79537FCE0, 56206F936958082B3A2AD93E4E5C7EDA9518A6F12670C6F26EC7A35D0D5305DF ] HH10Help.sys    C:\Windows\system32\drivers\HH10Help.sys
18:56:34.0672 0x17a0  HH10Help.sys - ok
18:56:34.0704 0x17a0  [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt         C:\Windows\System32\drivers\HidBatt.sys
18:56:34.0751 0x17a0  HidBatt - ok
18:56:34.0782 0x17a0  [ 42F88B57CAE42FC10059C887B3FCFCEA, 9363AA2B8E839A6935A7C6A36C491938DF78024886DCCE6D29CB18E1D6A6D806 ] HidBth          C:\Windows\System32\drivers\hidbth.sys
18:56:34.0829 0x17a0  HidBth - ok
18:56:34.0860 0x17a0  [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c          C:\Windows\System32\drivers\hidi2c.sys
18:56:34.0891 0x17a0  hidi2c - ok
18:56:34.0907 0x17a0  [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr           C:\Windows\System32\drivers\hidir.sys
18:56:34.0922 0x17a0  HidIr - ok
18:56:34.0954 0x17a0  [ 449A20A674AA3FAA7F0DD4E33EE2DC20, 28B9BDA306456E8640C355718DE3477537B0FAF8C37F633C709129AAB64D9873 ] hidserv         C:\Windows\system32\hidserv.dll
18:56:34.0985 0x17a0  hidserv - ok
18:56:35.0032 0x17a0  [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] HidUsb          C:\Windows\System32\drivers\hidusb.sys
18:56:35.0079 0x17a0  HidUsb - ok
18:56:35.0126 0x17a0  [ 7BF3ADCBD021D4F4A84CF40EB49C71B5, 5758A51FD2EBE67E6DBE3A298D714D351910F9E01C428D0C1359457C9242B298 ] hkmsvc          C:\Windows\system32\kmsvc.dll
18:56:35.0235 0x17a0  hkmsvc - ok
18:56:35.0266 0x17a0  [ 6CD9C3819BE8C0A3DACC82AE5D3C4F18, 46BF4A968E506DE17CA401401D716B444CDC10A5C60EB081890DD4B886AEDF5F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
18:56:35.0344 0x17a0  HomeGroupListener - ok
18:56:35.0391 0x17a0  [ 1A4DA1D6287B99033D144B436C23B656, D4D1EEB372E61512EA36A33F095E68C225B8E6C72CC57ED8BD00533F88012F40 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
18:56:35.0438 0x17a0  HomeGroupProvider - ok
18:56:35.0469 0x17a0  [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
18:56:35.0485 0x17a0  HpSAMD - ok
18:56:35.0532 0x17a0  [ 9DDCA7F18983C5410DEFF79F819DF93C, CE97B4440377BFC5CA81BB600C3BD1DD9FB3951CA1EB70735F5E2050EBB74223 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
18:56:35.0594 0x17a0  HTTP - ok
18:56:35.0610 0x17a0  [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
18:56:35.0641 0x17a0  hwpolicy - ok
18:56:35.0657 0x17a0  [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd        C:\Windows\System32\drivers\hyperkbd.sys
18:56:35.0704 0x17a0  hyperkbd - ok
18:56:35.0719 0x17a0  [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo      C:\Windows\system32\DRIVERS\HyperVideo.sys
18:56:35.0735 0x17a0  HyperVideo - ok
18:56:35.0751 0x17a0  [ 84CFC5EFA97D0C965EDE1D56F116A541, 0155EA62BF07D99D98D1C9B6559C8E3301B016A20D03DF1EF64B2FAB8C37403B ] i8042prt        C:\Windows\System32\drivers\i8042prt.sys
18:56:35.0782 0x17a0  i8042prt - ok
18:56:35.0813 0x17a0  [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO    C:\Windows\System32\drivers\iaLPSSi_GPIO.sys
18:56:35.0829 0x17a0  iaLPSSi_GPIO - ok
18:56:35.0829 0x17a0  [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C     C:\Windows\System32\drivers\iaLPSSi_I2C.sys
18:56:35.0844 0x17a0  iaLPSSi_I2C - ok
18:56:35.0907 0x17a0  [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV        C:\Windows\system32\drivers\iaStorAV.sys
18:56:35.0938 0x17a0  iaStorAV - ok
18:56:35.0985 0x17a0  [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
18:56:36.0016 0x17a0  iaStorV - ok
18:56:36.0094 0x17a0  [ 83FF82FE209E7997067B375DAD6CF23D, E312DD068E51DBF96A8232D7D1C9F158652FDA23649655F1102928B320795091 ] ICCS            C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
18:56:36.0141 0x17a0  ICCS - ok
18:56:36.0157 0x17a0  IEEtwCollectorService - ok
18:56:36.0391 0x17a0  [ E786FA74AA145ECB7FA3467A362B1AF5, 4A84AA3595ADC586EB03526750735219B16629C9372B4A606F352424656AE6D3 ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
18:56:36.0704 0x17a0  igfx - ok
18:56:36.0829 0x17a0  [ DEA76F90F9777E3427D70E380222B23B, B917BA423896A12E45623E3D494CA03317A6FC612CA433C62C897524DC3E756B ] IKEEXT          C:\Windows\System32\ikeext.dll
18:56:36.0922 0x17a0  IKEEXT - ok
18:56:36.0954 0x17a0  [ F0F581A2299CB2BAB1DF2597BCDDB80F, EE485AF3049C87666BC6D6BFFC8A0EB4B95831D9061EB81848ECEE29C4232BF4 ] intaud_WaveExtensible C:\Windows\system32\drivers\intelaud.sys
18:56:36.0969 0x17a0  intaud_WaveExtensible - ok
18:56:37.0172 0x17a0  [ 01262E2BE97708F54666E700482027DE, 7643FCFB6EBFABDD7D1A914C40FADE97DDC633C5D75BE2CADBAC61675564E5CD ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
18:56:37.0313 0x17a0  IntcAzAudAddService - ok
18:56:37.0360 0x17a0  [ EC80E6B9E27DC3E22ED5B2E0E75A39C0, 8EEC89F88AE79DA256BB651983397773F6B25139006C8A7C8F77960F47774CF5 ] IntcDAud        C:\Windows\system32\DRIVERS\IntcDAud.sys
18:56:37.0391 0x17a0  IntcDAud - ok
18:56:37.0579 0x17a0  [ 768DD5CB66952BC4A3BD474757AEE34F, 5A1F91FC8028D84FD83591D60CB7E3B24425C3B0FFF5A9BB0F7CE2E17AAB92D4 ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
18:56:37.0610 0x17a0  Intel(R) Capability Licensing Service Interface - detected UnsignedFile.Multi.Generic ( 1 )
18:56:40.0095 0x17a0  Detect skipped due to KSN trusted
18:56:40.0095 0x17a0  Intel(R) Capability Licensing Service Interface - ok
18:56:40.0219 0x17a0  [ 7C9ED65324CF268ACBA8024257F782D8, 1DC43DBA3612E26454D7786DEB0538B44A736B67EC99642B4CC574D8A03E0DC7 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe
18:56:40.0266 0x17a0  Intel(R) Capability Licensing Service TCP IP Interface - ok
18:56:40.0298 0x17a0  [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide        C:\Windows\system32\drivers\intelide.sys
18:56:40.0329 0x17a0  intelide - ok
18:56:40.0360 0x17a0  [ A770340FC02B999EF0DE6C2A6BC8437C, 214567BE706B21BEA7EC13AF6B10FBFF658000511DBBA79BAA28D1D4EFD029A7 ] intelpep        C:\Windows\system32\drivers\intelpep.sys
18:56:40.0391 0x17a0  intelpep - ok
18:56:40.0407 0x17a0  [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm        C:\Windows\System32\drivers\intelppm.sys
18:56:40.0438 0x17a0  intelppm - ok
18:56:40.0454 0x17a0  [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
18:56:40.0470 0x17a0  IpFilterDriver - ok
18:56:40.0532 0x17a0  [ ACFEE9487693C2BD573DFCA71D98E17C, A347FD476147CD3568EEE6993B46AFC05A66A4269094CA51572D0FD013FCB535 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
18:56:40.0595 0x17a0  iphlpsvc - ok
18:56:40.0636 0x17a0  [ 9C096BF5E10CA8BFA56F32522A89FAF1, 6C1151160799338DA351C7237AB049926C6C15F24F5E154BBF5929B4A96C0B8D ] IPMIDRV         C:\Windows\System32\drivers\IPMIDrv.sys
18:56:40.0687 0x17a0  IPMIDRV - ok
18:56:40.0734 0x17a0  [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
18:56:40.0796 0x17a0  IPNAT - ok
18:56:40.0812 0x17a0  [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM          C:\Windows\system32\drivers\irenum.sys
18:56:40.0859 0x17a0  IRENUM - ok
18:56:40.0874 0x17a0  [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp          C:\Windows\system32\drivers\isapnp.sys
18:56:40.0890 0x17a0  isapnp - ok
18:56:40.0921 0x17a0  [ D90AB68D0FAC9F357F663670FDBB511E, A82AAA5DF1B38EFBDCF834535A0C520D1BB2D7A4A906C18CFDD22BCF16BDB97D ] iScsiPrt        C:\Windows\System32\drivers\msiscsi.sys
18:56:40.0953 0x17a0  iScsiPrt - ok
18:56:40.0968 0x17a0  [ C2BC9AC9C6514230A481BDCA6A24BEFD, 84E41675D11EF2EEECED23C8469503C8D12810A2C6B6743D7AA322EB6DF7E68D ] iwdbus          C:\Windows\System32\drivers\iwdbus.sys
18:56:40.0984 0x17a0  iwdbus - ok
18:56:41.0015 0x17a0  [ 8BE92376799B6B44D543E8D07CDCF885, 425B8BB1BAF62F735B3CB5A002E6055879F02E7207E55942BFD37F1784F5F368 ] kbdclass        C:\Windows\System32\drivers\kbdclass.sys
18:56:41.0031 0x17a0  kbdclass - ok
18:56:41.0046 0x17a0  [ FB6E47E569D4872ABEB506BE03A45FBA, 5C4056CADA8F67587A119D9AE2A0EFAB30387CF6298F4019FF68AC92E2F6F54B ] kbdhid          C:\Windows\System32\drivers\kbdhid.sys
18:56:41.0078 0x17a0  kbdhid - ok
18:56:41.0093 0x17a0  [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic           C:\Windows\system32\DRIVERS\kdnic.sys
18:56:41.0124 0x17a0  kdnic - ok
18:56:41.0140 0x17a0  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] KeyIso          C:\Windows\system32\lsass.exe
18:56:41.0171 0x17a0  KeyIso - ok
18:56:41.0187 0x17a0  [ ADDECBCC777665BD113BED437E602AB0, B6283475A1219CE44E9F683DD3BEB8C42DA0943297E5C4699B22176AD8A6A7ED ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
18:56:41.0218 0x17a0  KSecDD - ok
18:56:41.0249 0x17a0  [ 15C8C65CEA018C02EA0F648448C491C5, DF909704D22D891BE439B2E3D8386EA659444F91DC92AABFF9766446AEE5EBC0 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
18:56:41.0281 0x17a0  KSecPkg - ok
18:56:41.0296 0x17a0  [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
18:56:41.0312 0x17a0  ksthunk - ok
18:56:41.0390 0x17a0  [ 32B1A8351160F307A8C66BCB0F94A9C2, 52F1DEC2BBD4D5DDBB85ED20B99D96BBA7EB83304D76F183A11FDAFDA364E873 ] KtmRm           C:\Windows\system32\msdtckrm.dll
18:56:41.0437 0x17a0  KtmRm - ok
18:56:41.0484 0x17a0  [ 793EACA6BAE9F481C2059BCB3743EB4A, 2624905C6B6A1227BD1CAC7D4FE55A5F6543E1278DAB31EC553748472D180D1D ] LanmanServer    C:\Windows\system32\srvsvc.dll
18:56:41.0546 0x17a0  LanmanServer - ok
18:56:41.0593 0x17a0  [ D0D9C2ECA4D03A8F06DCD91236B90C98, E2D1144DC8040EA5FEB0602A20BA4CB920B4BC86AD5AD05FC0DF7D74DC95DC66 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
18:56:41.0656 0x17a0  LanmanWorkstation - ok
18:56:41.0687 0x17a0  [ 626D19F1771E1AE72208AE9A8F3082F7, 78FDB64545ED2EAE9F51C08120E21D2C3285208F6846BD8BBA08CAA839E7A0C4 ] lfsvc           C:\Windows\System32\GeofenceMonitorService.dll
18:56:41.0749 0x17a0  lfsvc - ok
18:56:41.0765 0x17a0  [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
18:56:41.0796 0x17a0  lltdio - ok
18:56:41.0843 0x17a0  [ 00E070FC0C673311AFD4B068D1242780, 50B0E0E625361145332C849709498FF444E46578DCAD2536E6D0289E0125580F ] lltdsvc         C:\Windows\System32\lltdsvc.dll
18:56:41.0874 0x17a0  lltdsvc - ok
18:56:41.0890 0x17a0  [ D113FAD71A5E67AA94B32A0F8828D265, 08DDB4BBDB570C59926DBF5E27FCF46DCDF8B8212BB9251E97837E0504516FB3 ] lmhosts         C:\Windows\System32\lmhsvc.dll
18:56:41.0937 0x17a0  lmhosts - ok
18:56:41.0968 0x17a0  [ 36077028C32E25E69645CCA02F55E1DE, 34E23BC6441B46638F9C80331FCCFEF360D520D9B4B4077BE4C1DE7B9BD3EA50 ] LPCFilter       C:\Windows\system32\drivers\LPCFilter.sys
18:56:41.0968 0x17a0  LPCFilter - ok
18:56:42.0015 0x17a0  [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
18:56:42.0046 0x17a0  LSI_SAS - ok
18:56:42.0062 0x17a0  [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
18:56:42.0077 0x17a0  LSI_SAS2 - ok
18:56:42.0093 0x17a0  [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3        C:\Windows\system32\drivers\lsi_sas3.sys
18:56:42.0109 0x17a0  LSI_SAS3 - ok
18:56:42.0124 0x17a0  [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS         C:\Windows\system32\drivers\lsi_sss.sys
18:56:42.0140 0x17a0  LSI_SSS - ok
18:56:42.0218 0x17a0  [ 8EBB271E4588D835784A3FF7E80076A8, A508BE95F6F5063A76F4C8726D9425BB1F00DE803EFE73A0BE145DD9AB82FF0A ] LSM             C:\Windows\System32\lsm.dll
18:56:42.0312 0x17a0  LSM - ok
18:56:42.0343 0x17a0  [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv           C:\Windows\system32\drivers\luafv.sys
18:56:42.0390 0x17a0  luafv - ok
18:56:42.0406 0x17a0  [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas         C:\Windows\system32\drivers\megasas.sys
18:56:42.0437 0x17a0  megasas - ok
18:56:42.0593 0x17a0  [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr          C:\Windows\system32\drivers\megasr.sys
18:56:42.0640 0x17a0  megasr - ok
18:56:42.0718 0x17a0  Microsoft SharePoint Workspace Audit Service - ok
18:56:42.0765 0x17a0  [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] MMCSS           C:\Windows\system32\mmcss.dll
18:56:42.0812 0x17a0  MMCSS - ok
18:56:42.0828 0x17a0  [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem           C:\Windows\system32\drivers\modem.sys
18:56:42.0859 0x17a0  Modem - ok
18:56:42.0874 0x17a0  [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] monitor         C:\Windows\System32\drivers\monitor.sys
18:56:42.0921 0x17a0  monitor - ok
18:56:42.0953 0x17a0  [ CEAC6D40FE887CE8406C2393CF97DE06, 34E76908B802764FF0D7AB3AF89BE77BD35B44787983343FAD89891891C0A045 ] mouclass        C:\Windows\System32\drivers\mouclass.sys
18:56:42.0968 0x17a0  mouclass - ok
18:56:42.0999 0x17a0  [ 02D98BF804084E9A0D69D1C69B02CCA9, EC5BC5D87043DFFD035FD4DD27B3D94E03119063519E4151BCC3522B613E2D7F ] mouhid          C:\Windows\System32\drivers\mouhid.sys
18:56:43.0031 0x17a0  mouhid - ok
18:56:43.0062 0x17a0  [ 515549560D481138E6E21AF7C6998E56, C7E4B38D8CCAF15B9BDA63C8C8209F6193AD220DA02E1264F1B687AACD8F409F ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
18:56:43.0077 0x17a0  mountmgr - ok
18:56:43.0156 0x17a0  [ 81E8AF6407EC3F41908FE37F054353EA, 756C7656ED68AEAE4225E952ED1CED0717264D3378DB8DF0B2D70B6EBC67C62F ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
18:56:43.0203 0x17a0  MozillaMaintenance - ok
18:56:43.0218 0x17a0  [ F170510BE94CF45E3C6274578F6204B2, 344C3DDE1D622607CA2ABECB2C47CB0166D2D258BD94A7960C45A5ADBB640566 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
18:56:43.0249 0x17a0  mpsdrv - ok
18:56:43.0374 0x17a0  [ D186C5844393252147BE934F3871DB7A, 30160F8268B9F46E82C5CB536867E0CF280DC98074A481595072E3320200E343 ] MpsSvc          C:\Windows\system32\mpssvc.dll
18:56:43.0453 0x17a0  MpsSvc - ok
18:56:43.0500 0x17a0  [ DB32958F0E704EFBF7F15161A569E39F, 8A26448B954F8A16EE9BA72EF47F6C549A75B30BD13FEB5A29EB099A74D8F678 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
18:56:43.0562 0x17a0  MRxDAV - ok
18:56:43.0656 0x17a0  [ 7A1A3F213CDB3363D179D5014272025D, 6756F5B7D9FBF6839DB1FF4E94EA45B5499D7DF925E75581C96FBBA4BE131542 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
18:56:43.0734 0x17a0  mrxsmb - ok
18:56:43.0796 0x17a0  [ 3E28B99198B514DFEB152EACF913025E, 6C1D8353DCD5F811F39C0C3CB5DF3D2457F0D17EE80FB06196AA169E3D19E9B2 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
18:56:43.0953 0x17a0  mrxsmb10 - ok
18:56:44.0031 0x17a0  [ C910E5D18958914A66F0E45689D0B40A, AD7C91DD8A60A511E580DD56BACC97F85075A539E7C5D95040A8F870A621DAF4 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
18:56:44.0093 0x17a0  mrxsmb20 - ok
18:56:44.0140 0x17a0  [ E0927EFA25D473367C3341B9F5969779, B77A162BD3334557623674373D8EC2BE7CC0B359DF06304E467ABFFEE0530271 ] MsBridge        C:\Windows\system32\DRIVERS\bridge.sys
18:56:44.0249 0x17a0  MsBridge - ok
18:56:44.0296 0x17a0  [ A082C17D14D0790E27D064EA4B138AE1, 9A565ED885782D9D5135C8399C11C356DBF9EBF3B8EB4B4504BD2604AD0B45E6 ] MSDTC           C:\Windows\System32\msdtc.exe
18:56:44.0359 0x17a0  MSDTC - ok
18:56:44.0406 0x17a0  [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs            C:\Windows\system32\drivers\Msfs.sys
18:56:44.0437 0x17a0  Msfs - ok
18:56:44.0453 0x17a0  [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32     C:\Windows\System32\drivers\msgpiowin32.sys
18:56:44.0468 0x17a0  msgpiowin32 - ok
18:56:44.0499 0x17a0  [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
18:56:44.0515 0x17a0  mshidkmdf - ok
18:56:44.0531 0x17a0  [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf       C:\Windows\System32\drivers\mshidumdf.sys
18:56:44.0562 0x17a0  mshidumdf - ok
18:56:44.0578 0x17a0  [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
18:56:44.0609 0x17a0  msisadrv - ok
18:56:44.0656 0x17a0  [ 810F8A0A0680662BB0CE44D0E2CEF90C, 5631B07911B7EF378CB1583A480A3C5715E59A5488B33A528F4D7A2F849B9113 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
18:56:44.0687 0x17a0  MSiSCSI - ok
18:56:44.0703 0x17a0  msiserver - ok
18:56:44.0703 0x17a0  [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
18:56:44.0734 0x17a0  MSKSSRV - ok
18:56:44.0749 0x17a0  [ 375E44168F2DFB91A68B8A3F619C5A7C, AC243E02E9A39D0B4DE9571F196941700EE6EB5E94F5B0BA8994FB551E73A7A8 ] MsLldp          C:\Windows\system32\DRIVERS\mslldp.sys
18:56:44.0796 0x17a0  MsLldp - ok
18:56:44.0796 0x17a0  [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
18:56:44.0828 0x17a0  MSPCLOCK - ok
18:56:44.0843 0x17a0  [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
18:56:44.0859 0x17a0  MSPQM - ok
18:56:44.0890 0x17a0  [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
18:56:44.0937 0x17a0  MsRPC - ok
18:56:44.0937 0x17a0  [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios        C:\Windows\System32\drivers\mssmbios.sys
18:56:44.0953 0x17a0  mssmbios - ok
18:56:44.0968 0x17a0  [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
18:56:44.0984 0x17a0  MSTEE - ok
18:56:44.0999 0x17a0  [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig        C:\Windows\System32\drivers\MTConfig.sys
18:56:45.0031 0x17a0  MTConfig - ok
18:56:45.0078 0x17a0  [ 619CA29326B82372621DB2C0964D8365, 4091F08E266DB45A6E33A4A8B1CE9FA78BB294B3111526AA9E3868620F30AFDF ] Mup             C:\Windows\system32\Drivers\mup.sys
18:56:45.0109 0x17a0  Mup - ok
18:56:45.0140 0x17a0  [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis          C:\Windows\system32\drivers\mvumis.sys
18:56:45.0156 0x17a0  mvumis - ok
18:56:45.0203 0x17a0  [ 41A45D2A75494EABF2806EA051E00376, EB2497561C8E33A4297C044604C717FF854C7F046882A9E4A400AE7679BF5467 ] napagent        C:\Windows\system32\qagentRT.dll
18:56:45.0249 0x17a0  napagent - ok
18:56:45.0296 0x17a0  [ 26ACA481FAFEC59FE311D719E3027BBA, 16A24CCA95A38BDFE970580159F6ACAA13FF1B74CF2290B1B020D909F90D3347 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
18:56:45.0343 0x17a0  NativeWifiP - ok
18:56:45.0374 0x17a0  [ 71E3C0100AA19D11373CCEB2F51A6008, 58FBF35F5FE19BEABE483C11E9996BE93D76721C8C34465350FA98B465CA3672 ] NcaSvc          C:\Windows\System32\ncasvc.dll
18:56:45.0406 0x17a0  NcaSvc - ok
18:56:45.0421 0x17a0  [ 51DF09CAB2CAC64FEE3E371D9028ED01, 9B81604D0D0359AF8F54FED6DA7116FFD2F40407895028EAD99FF1D7CFDC2D14 ] NcbService      C:\Windows\System32\ncbservice.dll
18:56:45.0484 0x17a0  NcbService - ok
18:56:45.0500 0x17a0  [ 2586C4C167499210DCBF3ECFD8CCE210, D8129FEDE9918BF4FB0057CC58700D4E08457060E810B9CC25CA0F598506ADB8 ] NcdAutoSetup    C:\Windows\System32\NcdAutoSetup.dll
18:56:45.0562 0x17a0  NcdAutoSetup - ok
18:56:45.0640 0x17a0  [ 6D3A2565E01B3E4B0F1BEDB0D4B00B3F, 95F2608E17CA3E25BD7958D1A49F7030EC8088BC1DF12422F1DAC5BA99113E34 ] NDIS            C:\Windows\system32\drivers\ndis.sys
18:56:45.0703 0x17a0  NDIS - ok
18:56:45.0718 0x17a0  [ C6BB12BC35D1637CA17AE16D3A4725EB, 01C1D9FA738886A195166F88207EEB6715A1DE0608978ED6C5DC738AF5C02513 ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
18:56:45.0796 0x17a0  NdisCap - ok
18:56:45.0828 0x17a0  [ B1AA3B19A2E596A59224F893E01A5A75, E08696CA5E087E51AC3E64D4FB8490EEADD612DDF30C9A94DD1BD1BA124B71B7 ] NdisImPlatform  C:\Windows\system32\DRIVERS\NdisImPlatform.sys
18:56:45.0875 0x17a0  NdisImPlatform - ok
18:56:45.0906 0x17a0  [ 9423421E735BD5394351E0C47C76BB92, 763E5D06F896C0EF8AD52515464F28BA85DB7A1560E451857AC9AA68FAFCBC66 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
18:56:45.0953 0x17a0  NdisTapi - ok
18:56:45.0968 0x17a0  [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
18:56:46.0015 0x17a0  Ndisuio - ok
18:56:46.0031 0x17a0  [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus  C:\Windows\System32\drivers\NdisVirtualBus.sys
18:56:46.0062 0x17a0  NdisVirtualBus - ok
18:56:46.0078 0x17a0  [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
18:56:46.0124 0x17a0  NdisWan - ok
18:56:46.0140 0x17a0  [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWanLegacy   C:\Windows\system32\DRIVERS\ndiswan.sys
18:56:46.0171 0x17a0  NdisWanLegacy - ok
18:56:46.0171 0x17a0  [ A5BD69A8812FA79D1A487691DD3FB244, 67B5EDE101943E0E8B8041DB2353D20C8B9F2D253E77964761CFE8F136C0BBC7 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
18:56:46.0203 0x17a0  NDProxy - ok
18:56:46.0234 0x17a0  [ 5A072F0B90C29C5233D78BE33EF5ED78, B32ED76A674B1FC743361FB7BBD4C915A78B14132AB056AADD445D5995AD4F32 ] Ndu             C:\Windows\system32\drivers\Ndu.sys
18:56:46.0265 0x17a0  Ndu - ok
18:56:46.0281 0x17a0  [ A83D67D347A684F10B7D3019C8A6380C, 2B86832967981C8C786BF24C1CF8E13E01745ACE3333CF5C821DD93D623B96E4 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
18:56:46.0328 0x17a0  NetBIOS - ok
18:56:46.0375 0x17a0  [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
18:56:46.0421 0x17a0  NetBT - ok
18:56:46.0437 0x17a0  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] Netlogon        C:\Windows\system32\lsass.exe
18:56:46.0453 0x17a0  Netlogon - ok
18:56:46.0531 0x17a0  [ B7AD851A21FEBA3BA214972627614207, 29605320CCC3DAAD062CAECF0009DACBC2F6D28ED4E8AF7CE76132129F5572A0 ] Netman          C:\Windows\System32\netman.dll
18:56:46.0593 0x17a0  Netman - ok
18:56:46.0640 0x17a0  [ F0F0A372C2EF6358399C4936F91B6131, CE596C71EB4D1A5E104D3148F2D0D8789882C59FD198DCF33CCAC7A08B50E4EE ] netprofm        C:\Windows\System32\netprofmsvc.dll
18:56:46.0687 0x17a0  netprofm - ok
18:56:46.0781 0x17a0  [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:56:46.0843 0x17a0  NetTcpPortSharing - ok
18:56:46.0875 0x17a0  [ 70414DB660BFBB7BD58FCE8EA4364E1B, 6DFB3897CD55E22BA1EDF0AE672F4D7A6A1F512F8A0A26AF106765E6B1CF65AC ] netvsc          C:\Windows\system32\DRIVERS\netvsc63.sys
18:56:46.0906 0x17a0  netvsc - ok
18:56:46.0953 0x17a0  [ E94EB2A95D7D016E119C4D6868788831, 3E4A925D23262FBA0A6432DD635FBE94B0CEF76BD9BB323254B66977497FEE2A ] NlaSvc          C:\Windows\System32\nlasvc.dll
18:56:47.0031 0x17a0  NlaSvc - ok
18:56:47.0078 0x17a0  [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
18:56:47.0156 0x17a0  Npfs - ok
18:56:47.0172 0x17a0  [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig       C:\Windows\System32\drivers\npsvctrig.sys
18:56:47.0218 0x17a0  npsvctrig - ok
18:56:47.0250 0x17a0  [ 6E2271ED0C3E95B8E29F3752B91B9E84, 44026AD9757EA82967D7F7578455802FAD7FE0057EAC088E0AE207C15F594B86 ] nsi             C:\Windows\system32\nsisvc.dll
18:56:47.0312 0x17a0  nsi - ok
18:56:47.0328 0x17a0  [ E490B459978CB87779E84C761D22B827, 1E5CA38626E41618E4CA16DD0C70EB2FA86E986F0CF21A749BDE2A17015DEEC6 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
18:56:47.0375 0x17a0  nsiproxy - ok
18:56:47.0468 0x17a0  [ 038C77D577900EE39410662478BB0D50, A33AAFD5750245C17A47EC71F3C6EAD2E0925CAD34C65AB3E6CEE44756C668E6 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
18:56:47.0562 0x17a0  Ntfs - ok
18:56:47.0609 0x17a0  [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null            C:\Windows\system32\drivers\Null.sys
18:56:47.0656 0x17a0  Null - ok
18:56:47.0687 0x17a0  [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
18:56:47.0718 0x17a0  nvraid - ok
18:56:47.0734 0x17a0  [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
18:56:47.0765 0x17a0  nvstor - ok
18:56:47.0765 0x17a0  [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
18:56:47.0797 0x17a0  nv_agp - ok
18:56:47.0906 0x17a0  [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
18:56:47.0953 0x17a0  ose - ok
18:56:48.0000 0x17a0  [ 4965B005492CBA7719E82B71E3245495, 52AD72C05FACC1E0E416A1FA25F34FDD3CB274FAB973BEAAE911A2FACA42B650 ] ose64           C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
18:56:48.0047 0x17a0  ose64 - ok
18:56:48.0390 0x17a0  [ 61BFFB5F57AD12F83AB64B7181829B34, 1DD0DD35E4158F95765EE6639F217DF03A0A19E624E020DBA609268C08A13846 ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
18:56:48.0578 0x17a0  osppsvc - ok
18:56:48.0640 0x17a0  [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
18:56:48.0734 0x17a0  p2pimsvc - ok
18:56:48.0812 0x17a0  [ 2A57A937BC5B1B2D6AFE6A8C5925F50B, 00D84EFED5A7129AAD86945940030474795905C32D65CBD5B1A3EBADCED8F873 ] p2psvc          C:\Windows\system32\p2psvc.dll
18:56:48.0875 0x17a0  p2psvc - ok
18:56:48.0922 0x17a0  [ 764B1121867B2D9B31C491668AC72B2B, 32C04B6FCE1DDD09697B81473A23BDCED8BEEFBCD0D2D58DDC9A11A33C756967 ] Parport         C:\Windows\System32\drivers\parport.sys
18:56:48.0953 0x17a0  Parport - ok
18:56:48.0984 0x17a0  [ EF0C1749C9A8CEE9A457473D433CC00F, A5FDAB5AD47471640D697C6CFBA6C67730878ABBA47D394EAA47C9733EDCE1F3 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
18:56:49.0000 0x17a0  partmgr - ok
18:56:49.0047 0x17a0  [ 9A5309EF92F39346CFD5A4C2C3D1BFAD, 5908E0C9562F9CB24784491BD9AE7983A33A6BDF81AFA0A08045518A0C9BB2B1 ] PcaSvc          C:\Windows\System32\pcasvc.dll
18:56:49.0094 0x17a0  PcaSvc - ok
18:56:49.0140 0x17a0  [ 91ED124E261EA8FAA1C0FFDF2A71B0C4, 20E41A38067395D03184938983A9BE459717A1941352972DBC28D83D542319EC ] pci             C:\Windows\system32\drivers\pci.sys
18:56:49.0172 0x17a0  pci - ok
18:56:49.0187 0x17a0  [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide          C:\Windows\system32\drivers\pciide.sys
18:56:49.0203 0x17a0  pciide - ok
18:56:49.0218 0x17a0  [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
18:56:49.0250 0x17a0  pcmcia - ok
18:56:49.0265 0x17a0  [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw             C:\Windows\system32\drivers\pcw.sys
18:56:49.0281 0x17a0  pcw - ok
18:56:49.0297 0x17a0  [ 24A8DFC07E4BAF29AEA26E383D4CC886, 1B903FE52CD816662D37A8113930B4B7019B6996D49F1982D8F42933A3525A67 ] pdc             C:\Windows\system32\drivers\pdc.sys
18:56:49.0312 0x17a0  pdc - ok
18:56:49.0359 0x17a0  [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
18:56:49.0422 0x17a0  PEAUTH - ok
18:56:49.0515 0x17a0  [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost        C:\Windows\SysWow64\perfhost.exe
18:56:49.0578 0x17a0  PerfHost - ok
18:56:49.0672 0x17a0  [ 928061178CD9856CA6B67FFFCE6BA766, 71DE3C7CA7F83EAAA550CD8A68FB67DE042B0AE51BFACB1ECB8852D502E11F50 ] pla             C:\Windows\system32\pla.dll
18:56:49.0765 0x17a0  pla - ok
18:56:49.0797 0x17a0  [ BC6849C62DB407573C6AD8CB1A4D2628, 5BDE0D60F85E4C27CEAD1B301155B54D841FB773BD5BB8AC5DDAEE31F8E94627 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
18:56:49.0844 0x17a0  PlugPlay - ok
18:56:49.0875 0x17a0  [ 045EB4F260606A03BE340D09DEAF3BA4, 6F34B8D414F7F69F4388F2F8A86E0F3AD179E423126990AF3E1EC4DCCB8E7693 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
18:56:50.0031 0x17a0  PNRPAutoReg - ok
18:56:50.0172 0x17a0  [ E287F157F7A0011D93179C64EF8ADCF2, C16FB92C7B18D634BB1344238D35B3111494C243FBD5853F05376F5051480D83 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
18:56:50.0219 0x17a0  PNRPsvc - ok
18:56:50.0265 0x17a0  [ C16097D77A232A288D65F299E2E01105, 5CE4B44B06FD26569C0F92FF1D3991D0128D8444AE7BC9EBEF5A33811D721BE8 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
18:56:50.0297 0x17a0  PolicyAgent - ok
18:56:50.0328 0x17a0  [ 00E08B30E7F7C13ECE2CDF4F46A77311, 1807C0A64C1794E572C86730816C01DCF4D8F773ADE9CAEA3AC0658F7BD71A4E ] Power           C:\Windows\system32\umpo.dll
18:56:50.0359 0x17a0  Power - ok
18:56:50.0578 0x17a0  [ 3C96A45CA3403A276B0F045C448EC27B, C0011DB8C5A85817CAF815CC0095EE2C1CDD5964DCD8EAF4C35A2495D6A873CC ] PrintNotify     C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
18:56:50.0718 0x17a0  PrintNotify - ok
18:56:50.0765 0x17a0  [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor       C:\Windows\System32\drivers\processr.sys
18:56:50.0812 0x17a0  Processor - ok
18:56:50.0844 0x17a0  [ 19424364D8C03B990C4281BE53963FD0, 958FC8436E6B754858E20BC48B0D4B269991E8CA94C15C2761BF04ED52591907 ] ProfSvc         C:\Windows\system32\profsvc.dll
18:56:50.0890 0x17a0  ProfSvc - ok
18:56:50.0906 0x17a0  [ 8528BB05E4D4E25945F78B00B2555FB7, FF8E0D4580F93CD348080967F52FE6C2C68B56DAEACAE2EAEF04E19412A953AE ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
18:56:50.0953 0x17a0  Psched - ok
18:56:51.0000 0x17a0  [ AF90BB44C99D6820BE52C9BBAA523283, 9772D9CC1666959EC8EE4ED740A5179473CE4F38762109F1123DD68010D20EA1 ] QWAVE           C:\Windows\system32\qwave.dll
18:56:51.0047 0x17a0  QWAVE - ok
18:56:51.0062 0x17a0  [ 3FB466684609A4329858CF2EBD62E0FD, CFC8FBAB1436948F9D34CE6A2D6DE2F86F3E93E50B86851CED979C8CCE609798 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
18:56:51.0093 0x17a0  QWAVEdrv - ok
18:56:51.0125 0x17a0  [ 2C56F0EE27E4EF70CA4B4983D3638905, AFFDD686886CE982424B644D9168D61C6F86A5244FF97BC644DF75B321E415E5 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
18:56:51.0156 0x17a0  RasAcd - ok
18:56:51.0172 0x17a0  [ 5F061AC45266841A2860C1858ED863B8, 9E0D52BAC8A50225C32D0397C35350601B996443E2481C808CC59D3B0763FEF0 ] RasAuto         C:\Windows\System32\rasauto.dll
18:56:51.0234 0x17a0  RasAuto - ok
18:56:51.0312 0x17a0  [ 5C7B86EE33505E36026AFAAB62DA6364, 903BB1A355AC746BF09C2A7C87B068168648DB79DEF39AB1DC710B6A7A5F6556 ] RasMan          C:\Windows\System32\rasmans.dll
18:56:51.0375 0x17a0  RasMan - ok
18:56:51.0390 0x17a0  [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
18:56:51.0422 0x17a0  RasPppoe - ok
18:56:51.0468 0x17a0  [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
18:56:51.0531 0x17a0  rdbss - ok
18:56:51.0562 0x17a0  [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus          C:\Windows\System32\drivers\rdpbus.sys
18:56:51.0641 0x17a0  rdpbus - ok
18:56:51.0687 0x17a0  [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
18:56:51.0734 0x17a0  RDPDR - ok
18:56:51.0781 0x17a0  [ BC8A79C625568DDB7DCA49D0C2741A64, AB0A7ED9EC2282EC0356D27EA4F70515943E41C2112428B787636B8BEC278933 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
18:56:51.0844 0x17a0  RdpVideoMiniport - ok
18:56:51.0875 0x17a0  [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
18:56:51.0906 0x17a0  rdyboost - ok
18:56:51.0969 0x17a0  [ E515A287C8FAE901EB8FB42F168E14F2, 9AE8D608587713FD18BB728BADD402C86FFF06A67359B22ED9431705522BC310 ] ReFS            C:\Windows\system32\drivers\ReFS.sys
18:56:52.0031 0x17a0  ReFS - ok
18:56:52.0062 0x17a0  [ BFFB40FBE6D2C3469F8D06EE5E4934AB, 5B6763F973A740DCD53CEA75156926457BED8B075965033C484877DDA8B97F39 ] RemoteAccess    C:\Windows\System32\mprdim.dll
18:56:52.0125 0x17a0  RemoteAccess - ok
18:56:52.0156 0x17a0  [ 4DCCABE03D06955ED61BABBD8EF9F30F, 531CD60315AAF283B73E0F6CF77D4DE093B809E73C44D2AC43B7247500B3485E ] RemoteRegistry  C:\Windows\system32\regsvc.dll
18:56:52.0219 0x17a0  RemoteRegistry - ok
18:56:52.0250 0x17a0  [ DC66AE45816614D2999DCD3834DCCC4E, 1C26225135E851DDD1307F52401DD7055B26B3F3B8FDD693B21042C2896E235A ] RFCOMM          C:\Windows\System32\drivers\rfcomm.sys
18:56:52.0297 0x17a0  RFCOMM - ok
18:56:52.0328 0x17a0  [ D894CBD7DA753C881EE8D5E33B583225, DA4472A85F10A3DF8CE969F731E67FE7C75EE6095908AB8AC2C44851DC5A3F8B ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
18:56:52.0375 0x17a0  RpcEptMapper - ok
18:56:52.0391 0x17a0  [ 5CAE8F47B31D5CFC322B5B898C19E0FE, FDB5F0B6EA36403E031D9147AB0519011FAAD3AC8190DE5B1F17FB5472D79D47 ] RpcLocator      C:\Windows\system32\locator.exe
18:56:52.0453 0x17a0  RpcLocator - ok
18:56:52.0500 0x17a0  [ 81979817943D830BF24571B7C1B28A1A, 9584D8F1FB3E6CF17BD465670B208C723A8E8B06775A3DA44F75D7710404EEA6 ] RpcSs           C:\Windows\system32\rpcss.dll
18:56:52.0547 0x17a0  RpcSs - ok
18:56:52.0594 0x17a0  [ 6A940599A059C6C9D6E54D7A3EF356B8, 3C3B7706197CD4A43369C639BB8F4A101EC0B159ABADA91373824B06615D4411 ] RSP2STOR        C:\Windows\system32\DRIVERS\RtsP2Stor.sys
18:56:52.0609 0x17a0  RSP2STOR - ok
18:56:52.0656 0x17a0  [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
18:56:52.0703 0x17a0  rspndr - ok
18:56:52.0766 0x17a0  [ 7CC0D898D00675F14BA0C4BF056C1CF4, E9203DD2A201AEF206C1A4177FD564DDFC8E7468DC268BD99389626A2C6593D3 ] RTL8168         C:\Windows\system32\DRIVERS\Rt630x64.sys
18:56:52.0812 0x17a0  RTL8168 - ok
18:56:52.0812 0x17a0  [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap           C:\Windows\System32\drivers\vms3cap.sys
18:56:52.0844 0x17a0  s3cap - ok
18:56:52.0875 0x17a0  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] SamSs           C:\Windows\system32\lsass.exe
18:56:52.0890 0x17a0  SamSs - ok
18:56:52.0922 0x17a0  [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
18:56:52.0937 0x17a0  sbp2port - ok
18:56:52.0969 0x17a0  [ 47C497FA4DDEA908633CAA60CEBE6805, 4DF5742D4C99D3F7B6A5671AEDB1E5E47D3399D36B28BA19C105FA604D8D5A1C ] SCardSvr        C:\Windows\System32\SCardSvr.dll
18:56:53.0000 0x17a0  SCardSvr - ok
18:56:53.0031 0x17a0  [ E76C4E98302AE39CC6FA5D20FC8B5438, B6B6B59CF427515087689285797F4A5763103440EBE5D87A61FA74F80F895BD0 ] ScDeviceEnum    C:\Windows\System32\ScDeviceEnum.dll
18:56:53.0062 0x17a0  ScDeviceEnum - ok
18:56:53.0094 0x17a0  [ ABD0237B15DBD2B4695F4B7D734A58F7, D6831921F0CD3E03CBF1CA3ED5824EE0C75127842D12D4E897E74EC72B0792EB ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
18:56:53.0125 0x17a0  scfilter - ok
18:56:53.0219 0x17a0  [ D3AE5DB16EAF913860EC28654CE00E6B, AD76B6044F7247C6E86F6DCB7CFD6B25BCA2B9F09A97A419F043A999E66726A2 ] Schedule        C:\Windows\system32\schedsvc.dll
18:56:53.0344 0x17a0  Schedule - ok
18:56:53.0391 0x17a0  [ AB285CE3431FF3D2ACE669245874C1C7, 6AF4C3E86EFA51F7FB6F8492CB2CCB807C7775EAE0508B87F07134FDAC679BD7 ] SCPolicySvc     C:\Windows\System32\certprop.dll
18:56:53.0453 0x17a0  SCPolicySvc - ok
18:56:53.0484 0x17a0  [ 7B7C482CF48E6EE33664340D1A78E6FE, CE5077C4B0372F4F9F02B0B37AE58C0DAEFCA9D242065731A23F072506430575 ] sdbus           C:\Windows\System32\drivers\sdbus.sys
18:56:53.0516 0x17a0  sdbus - ok
18:56:53.0531 0x17a0  [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor          C:\Windows\System32\drivers\sdstor.sys
18:56:53.0547 0x17a0  sdstor - ok
18:56:53.0562 0x17a0  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
18:56:53.0594 0x17a0  secdrv - ok
18:56:53.0625 0x17a0  [ C49009F897BA4F2F4F31043663AA1485, 48C8BE1E3A4F150662AD012AF4E0357ABA792AD1147AB90EFF6CB2630E2501B6 ] seclogon        C:\Windows\system32\seclogon.dll
18:56:53.0781 0x17a0  seclogon - ok
18:56:53.0797 0x17a0  [ A88882E64BDC1D8E8D6E727B71CCCC53, 12D2235F54D0CEEED8AA268C17CDE44020269F4FEFC70CE957DBBF99AF7F553D ] SENS            C:\Windows\System32\sens.dll
18:56:53.0844 0x17a0  SENS - ok
18:56:53.0875 0x17a0  [ E66A7C8CE7ED22DED6DF1CA479FB4790, ADEB076F131E7A8C3AD96022B09BB33EB9AB26C9C831503B8C6960AA763B8975 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
18:56:53.0922 0x17a0  SensrSvc - ok
18:56:53.0953 0x17a0  [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx           C:\Windows\system32\drivers\SerCx.sys
18:56:53.0969 0x17a0  SerCx - ok
18:56:53.0984 0x17a0  [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2          C:\Windows\system32\drivers\SerCx2.sys
18:56:54.0015 0x17a0  SerCx2 - ok
18:56:54.0015 0x17a0  [ 3CD600C089C1251BEEB4CD4CD5164F9E, D9F81951B4454B24E821E33ACA53A851A61F3135E8EC6FBE6761A1A3E1CDCBE2 ] Serenum         C:\Windows\System32\drivers\serenum.sys
18:56:54.0031 0x17a0  Serenum - ok
18:56:54.0047 0x17a0  [ D864381BC9C725FAB01D94C060660166, 132FED95222BBE3B0B25B3F1F0EFC5903D04564BD047BA4D2042AD51E3FDA724 ] Serial          C:\Windows\System32\drivers\serial.sys
18:56:54.0078 0x17a0  Serial - ok
18:56:54.0094 0x17a0  [ 0BD2B65DCE756FDE95A2E5CCCBF7705D, F13FAFEC8FCF3E796196562717C433CE359A74A3E5876AB070647C717AF74028 ] sermouse        C:\Windows\System32\drivers\sermouse.sys
18:56:54.0109 0x17a0  sermouse - ok
18:56:54.0203 0x17a0  [ D5C3776CBD8BC307DCCA3FD4CE667A37, 98E4253B770C25914C91A6148E2EA15ED0EF37ADCB042A47252DBA135972BF74 ] SessionEnv      C:\Windows\system32\sessenv.dll
18:56:54.0297 0x17a0  SessionEnv - ok
18:56:54.0328 0x17a0  [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy         C:\Windows\System32\drivers\sfloppy.sys
18:56:54.0375 0x17a0  sfloppy - ok
18:56:54.0438 0x17a0  [ F4414F57DF2CECB8FC969AA43A6B0D50, AD09A6E1294721507DD6BE82B91F2EEB0FF0151B9BC14A75840CD657DBFDECEC ] SharedAccess    C:\Windows\System32\ipnathlp.dll
18:56:54.0531 0x17a0  SharedAccess - ok
18:56:54.0578 0x17a0  [ 0D190D8B4B20446BE6299AC734DFADF1, 6551095971F99820BBFC5FED8FAB9591A3F8ABFA0F027887F3B71B79325FF6D9 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
18:56:54.0641 0x17a0  ShellHWDetection - ok
18:56:54.0672 0x17a0  [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
18:56:54.0703 0x17a0  SiSRaid2 - ok
18:56:54.0703 0x17a0  [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
18:56:54.0734 0x17a0  SiSRaid4 - ok
18:56:54.0750 0x17a0  [ D885207A4A218EC4773E6F7D214FDEA3, EA64958C2058DCDB8858E0EDA0626BD89B90A973130FE2B8886CF28072BF19D9 ] SmbDrvI         C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys
18:56:54.0766 0x17a0  SmbDrvI - ok
18:56:54.0812 0x17a0  [ 587ACA15210D1B01FBF272E07A08F91A, 1F3C13C218C5EA329C6E33E4AE7CFE88DAD59DA40F59FDE09D733AFD2E489000 ] smphost         C:\Windows\System32\smphost.dll
18:56:54.0891 0x17a0  smphost - ok
18:56:54.0938 0x17a0  [ 49EEB92DE930B8566EF615D600781DB4, 0B7C929D24FAFC34F95BB4AA77DCBA29DDD8F1977EB42713B64228677D1FBFD3 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
18:56:54.0984 0x17a0  SNMPTRAP - ok
18:56:55.0031 0x17a0  [ 240C5C3793206725AA05665851E8C214, 96ADFB85EB1623EB00C251C1C6A1F441A1795F0EBFD10B17DD1CA58E3AE8A90D ] spaceport       C:\Windows\system32\drivers\spaceport.sys
18:56:55.0062 0x17a0  spaceport - ok
18:56:55.0094 0x17a0  [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx           C:\Windows\system32\drivers\SpbCx.sys
18:56:55.0125 0x17a0  SpbCx - ok
18:56:55.0187 0x17a0  [ 42FEA9E0BA9761D9E65A4F167D91515B, 9A34CE83F3ACD50608671BDABE5E475F8E0C8335D3B8B7B3D7E84B2A319FA29F ] Spooler         C:\Windows\System32\spoolsv.exe
18:56:55.0266 0x17a0  Spooler - ok
18:56:55.0578 0x17a0  [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] sppsvc          C:\Windows\system32\sppsvc.exe
18:56:55.0875 0x17a0  sppsvc - ok
18:56:55.0953 0x17a0  [ 6416E79A58A8FCC33A447A4DDDD3BF04, 839E3107ACCD520C309BD6C8324DF7A8EB724EAD442AB1F1CACB0D83F84BE488 ] srv             C:\Windows\system32\DRIVERS\srv.sys
18:56:56.0016 0x17a0  srv - ok
18:56:56.0094 0x17a0  [ 5BED3AB69797C8786EF70AEA8C33748B, 0474EE6C43D437CBA9848BCF25D1341B122D7E9F371A0FF3C62C83D14B2CB095 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
18:56:56.0141 0x17a0  srv2 - ok
18:56:56.0172 0x17a0  [ D047CD668E6277FD80F0C613946F034C, BD0209E7FD89F9295D4DE48C9652DF2A2990277C16AFA473B96704B1CBD2F338 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
18:56:56.0219 0x17a0  srvnet - ok
18:56:56.0250 0x17a0  [ BB9ED3EDD8E85008215A7250D325A72E, D3404E31B7706B25CDEA7CB4260C343B5F090E8CCB9A5FA203B0F94A9112F1B3 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
18:56:56.0297 0x17a0  SSDPSRV - ok
18:56:56.0328 0x17a0  [ 3911418AFDE10EA6823B7799E4815524, A73517C4C1271E666B2B3A747756070098E923742B41572AA16573170440AA07 ] SstpSvc         C:\Windows\system32\sstpsvc.dll
18:56:56.0406 0x17a0  SstpSvc - ok
18:56:56.0438 0x17a0  [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor        C:\Windows\system32\drivers\stexstor.sys
18:56:56.0484 0x17a0  stexstor - ok
18:56:56.0562 0x17a0  [ D638904FE86A5FE542A1BA13A9D68E5C, 89A956F932316BC50DD99B54BAF4E2809DCAA084DBB04CB84D11E5470BEAF251 ] stisvc          C:\Windows\System32\wiaservc.dll
18:56:56.0625 0x17a0  stisvc - ok
18:56:56.0672 0x17a0  [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci        C:\Windows\system32\drivers\storahci.sys
18:56:56.0703 0x17a0  storahci - ok
18:56:56.0719 0x17a0  [ 7A08CEE1535F5A448215634C5EA74E50, 41529CDC08A3956F8FE9D5759B147E2E56E3305149EA415EB200249F7CD32094 ] storflt         C:\Windows\system32\DRIVERS\vmstorfl.sys
18:56:56.0734 0x17a0  storflt - ok
18:56:56.0750 0x17a0  [ 6B06E2D11E604BE2B1A406C4CB3B90DE, 2DDEA1568A85AD64FCE5D10D348304FCD9BE6E96C2313353EF70A2933306D188 ] stornvme        C:\Windows\system32\drivers\stornvme.sys
18:56:56.0781 0x17a0  stornvme - ok
18:56:56.0781 0x17a0  [ 3118058E3D07021A55324A943C6D722B, 0B255DF1977DADD2B9766EEEA814B464F0ABFA34D6439F3C453083850C121F16 ] StorSvc         C:\Windows\system32\storsvc.dll
18:56:56.0828 0x17a0  StorSvc - ok
18:56:56.0828 0x17a0  [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc         C:\Windows\system32\drivers\storvsc.sys
18:56:56.0844 0x17a0  storvsc - ok
18:56:56.0859 0x17a0  [ D8E1AE075AB3E8AD56F69C44AA978596, CAFF5116DE7F0EEFFEBE38724BCEE7D11B44153AD35EE43E314C56D5E210758A ] svsvc           C:\Windows\system32\svsvc.dll
18:56:56.0906 0x17a0  svsvc - ok
18:56:56.0922 0x17a0  [ 84E0F5D41C138C5CC975137A2A98F6D3, 1E36CED05E4F4365C2AB020CAF920E3959995D7F89F3FABD7B2FB05985F85F38 ] swenum          C:\Windows\System32\drivers\swenum.sys
18:56:56.0953 0x17a0  swenum - ok
18:56:57.0000 0x17a0  [ 850EBB87584484DC16F917E7B6F4A304, C253D1DFFCDFB018432063602FB01DBCBDDD6E03458E5C366AABD4670F114B0C ] swprv           C:\Windows\System32\swprv.dll
18:56:57.0063 0x17a0  swprv - ok
18:56:57.0148 0x17a0  [ AC2AFB0CADC5AB87E6ACC4E1A7F774DD, 706A8CD9CA9225E486F5138DF3B67630067EE257C9E5FFEBA9DE35A11B8C8913 ] SynTP           C:\Windows\system32\DRIVERS\SynTP.sys
18:56:57.0195 0x17a0  SynTP - ok
18:56:57.0305 0x17a0  [ 3DA26652B12E9AB43FD04976AC6DFD33, DEFE220D86197949E97342FE3487CD6A07DD2FFAF6D17A7C65419C2C1B9D1AB5 ] SysMain         C:\Windows\system32\sysmain.dll
18:56:57.0398 0x17a0  SysMain - ok
18:56:57.0461 0x17a0  [ FD4EA8E9232ADD51DC31C295DDEF2768, 3EA40D7376AB5AA5DA2BCF4745C79F7BF819363466967ECC3CD15ADECBFD7244 ] SystemEventsBroker C:\Windows\System32\SystemEventsBrokerServer.dll
18:56:57.0539 0x17a0  SystemEventsBroker - ok
18:56:57.0586 0x17a0  [ BA6DD39266A5E15515C8C14DA2DA3E5C, 5BC917BA4E7281A67CC6CEF2F4D1972DF04DECBEFB6DED0B08FFBD06E15D4B4F ] TabletInputService C:\Windows\System32\TabSvc.dll
18:56:57.0617 0x17a0  TabletInputService - ok
18:56:57.0649 0x17a0  [ B517410F157693043DACA21B19B258A6, 2224EECEB575CEA811036C43BB5B0A408DE5F59BC97235AB948968E4C3E438F2 ] TapiSrv         C:\Windows\System32\tapisrv.dll
18:56:57.0680 0x17a0  TapiSrv - ok
18:56:57.0852 0x17a0  [ CCB3A2BB60FE5073F2DEA63FE83CF8FE, 02982136236DD595D8974E6645A008D663B4DD3BC3824721E4DE4377B97887C7 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
18:56:57.0977 0x17a0  Tcpip - ok
18:56:58.0070 0x17a0  [ CCB3A2BB60FE5073F2DEA63FE83CF8FE, 02982136236DD595D8974E6645A008D663B4DD3BC3824721E4DE4377B97887C7 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
18:56:58.0195 0x17a0  TCPIP6 - ok
18:56:58.0227 0x17a0  [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
18:56:58.0273 0x17a0  tcpipreg - ok
18:56:58.0320 0x17a0  [ FFF28F9F6823EB1756C60F1649560BBF, 208DFF8BF0329D0D4761C7E31527AEED7FF5F3C36C5005953D01477F35408D5C ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
18:56:58.0414 0x17a0  tdx - ok
18:56:58.0508 0x17a0  [ 436183C39AB66B1A7AD0FA6B76DA00A9, 8A012B30110959D3CF6A9204B069517B959596FEEA5F8C5A028DFEBD1F7087B4 ] TemproMonitoringService C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
18:56:58.0539 0x17a0  TemproMonitoringService - ok
18:56:58.0570 0x17a0  [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt        C:\Windows\System32\drivers\terminpt.sys
18:56:58.0602 0x17a0  terminpt - ok
18:56:58.0696 0x17a0  [ 3D748E5558FD9A9F03182CB2330698DC, 70B2069AB7912EB49AB3ABD18D4B42CB94AC99CA6DE3F63F4888B8EAAC78AAA2 ] TermService     C:\Windows\System32\termsrv.dll
18:56:58.0774 0x17a0  TermService - ok
18:56:58.0805 0x17a0  [ 05FBE1F7C13E87AF7A414CDF288B1F62, 24079E1A6B2E33A1A8E76A77F73473B93DD6B379E44C982CE50D6CEED9747838 ] Themes          C:\Windows\system32\themeservice.dll
18:56:58.0867 0x17a0  Themes - ok
18:56:58.0899 0x17a0  [ 98F91C69689FB0493E8CC34A45B8FA0B, 17385AB817F74F70848E1C71503DA726A4D417D16A5DCE7593BAD112150F6922 ] Thotkey         C:\Windows\System32\drivers\Thotkey.sys
18:56:58.0930 0x17a0  Thotkey - ok
18:56:58.0977 0x17a0  [ FD788C2D96EA91469A3C1D13E80D7473, 7B14D4BFDE18CECC19FBFFAA5AFF5FD78BFB7FCDA6613990740A8A7DD9873D26 ] THREADORDER     C:\Windows\system32\mmcss.dll
18:56:59.0039 0x17a0  THREADORDER - ok
18:56:59.0086 0x17a0  [ 347A3E49CE18402305B8119A6EC7CFEB, 6768B20EE577880B0353FE84B980D4A18D323929A63FAE41F7A55123BBFC8DBA ] TimeBroker      C:\Windows\System32\TimeBrokerServer.dll
18:56:59.0148 0x17a0  TimeBroker - ok
18:56:59.0242 0x17a0  [ 18688C5B1ED56FAF6310D07709F81EC0, 4631774A2274E9D4340D67AED026622BD3B74696F4F62E6A1EFBD6DA2267E36E ] TMachInfo       C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
18:56:59.0273 0x17a0  TMachInfo - ok
18:56:59.0430 0x17a0  [ AEAAB8C7EDD5981CA422617C6B612EEC, 543A15DF7011A5BC70AB6AFFC901F663E7121B7DEA90CEC308BFA54866F81625 ] TOSHIBA Bluetooth Service C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
18:56:59.0477 0x17a0  TOSHIBA Bluetooth Service - ok
18:56:59.0586 0x17a0  [ CF7AC931C378178EB8F6220FA662ABF6, DAE865A27EC027AC0FFD7031F9EED5404C274FC2DCECE8ED8727688761D4DD23 ] TOSHIBA eco Utility Service C:\Program Files\TOSHIBA\Teco\TecoService.exe
18:56:59.0633 0x17a0  TOSHIBA eco Utility Service - ok
18:56:59.0680 0x17a0  [ E4C35827E0830E5ECBA77F4DC6ABF37F, 8270B34A361EE6EC054B2D1C482B0BDF7EC8949D82B6E8E0D5F44CECF9296D71 ] tosrfbd         C:\Windows\system32\DRIVERS\tosrfbd.sys
18:56:59.0711 0x17a0  tosrfbd - ok
18:56:59.0727 0x17a0  Tosrfcom - ok
18:56:59.0758 0x17a0  [ 8E5E4DAB54D20CA50D9B7B45F9D46F10, EF20D91E7AB0A8B4DF25D11CFEF10431A28DEF1384FD53A161E8C81DC5A536F6 ] tosrfec         C:\Windows\System32\drivers\tosrfec.sys
18:56:59.0774 0x17a0  tosrfec - ok
18:56:59.0789 0x17a0  [ 3D0D685F520CE2ED0B4D15AFE38362F8, AE133CEAF1477832551DB4520C9D39A188A7B387F5955D6CBB674C77288F1A91 ] Tosrfhid        C:\Windows\system32\DRIVERS\Tosrfhid.sys
18:56:59.0805 0x17a0  Tosrfhid - ok
18:56:59.0852 0x17a0  [ F121F588D901563BBCE1D828679F1432, 2A294A9A5ED7CD55909149FFA6043A6F7056285CBD4D3BFD0EA6023B9E1EB9EF ] Tosrfusb        C:\Windows\system32\DRIVERS\tosrfusb.sys
18:56:59.0867 0x17a0  Tosrfusb - ok
18:56:59.0977 0x17a0  [ ADC56716CAF55E3ABDF549E9425004F8, FDA93F583AAB6FA6E8447B169BDA6E6E8547959133BD95933228C137B69129B7 ] TPCHSrv         C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
18:57:00.0008 0x17a0  TPCHSrv - ok
18:57:00.0039 0x17a0  [ 82F909359600D3603FE852DB7F135626, 2EB2BB9D81AC9A2E432B2628E296B7B21F1C82EAE8009300EEF1B8596A9F418D ] TPM             C:\Windows\system32\drivers\tpm.sys
18:57:00.0055 0x17a0  TPM - ok
18:57:00.0102 0x17a0  [ C97E14BB6A196B0554D6EB67D8818175, C00588C94988F10507F84584DFA4C0A43B8648AD1AD35E9BAE14CDD21FCF7B90 ] TrkWks          C:\Windows\System32\trkwks.dll
18:57:00.0149 0x17a0  TrkWks - ok
18:57:00.0211 0x17a0  [ 887CC44830D3F367CAD17A0CA7CCA5C8, D4022A76433A11FD66D0F41A1EB4D6893BC5B22317E7E9E021739109EB493B44 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
18:57:00.0258 0x17a0  TrustedInstaller - ok
18:57:00.0321 0x17a0  [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
18:57:00.0399 0x17a0  TsUsbFlt - ok
18:57:00.0414 0x17a0  [ E0088068DCE2EE82897027DDB8E05254, FA9C201D3C885DAD2ABE6A23343EDCC83CFB342EFF9E3005FA50B1D88B21D203 ] TsUsbGD         C:\Windows\System32\drivers\TsUsbGD.sys
18:57:00.0461 0x17a0  TsUsbGD - ok
18:57:00.0492 0x17a0  [ C8E0E78B5D284C2FF59BDFFDAF997242, BA1576C491A1246EF9866762426D110F4570F9DB42A68C174943C7D5020FE3E2 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
18:57:00.0539 0x17a0  tunnel - ok
18:57:00.0570 0x17a0  [ 54BDBF3D4DED58DA78B702471C68D4CA, D12F9F09FFE7D38A5EE6BF79DB74D775A9861C3C87E06D7C23259E47247B1782 ] TVALZ           C:\Windows\system32\drivers\TVALZ_O.SYS
18:57:00.0586 0x17a0  TVALZ - ok
18:57:00.0617 0x17a0  [ 7B05B5B492E6E248C2B38CD04B4D3A96, 1E18025DDB5EDEBD30F2FAC8D121F55D768B71DA42D919E1A0E98E2E31AA73C8 ] TVALZFL         C:\Windows\system32\Drivers\TVALZFL.sys
18:57:00.0649 0x17a0  TVALZFL - ok
18:57:00.0695 0x17a0  [ E624283C1A2F9BB4688A002914CC00A7, B6908C1FFDD6BCFFC5C2FC0C429FC3E237E340F891F80CFD737BE41E5EF7E328 ] TXEIx64         C:\Windows\System32\drivers\TXEIx64.sys
18:57:00.0711 0x17a0  TXEIx64 - ok
18:57:00.0758 0x17a0  [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
18:57:00.0789 0x17a0  uagp35 - ok
18:57:00.0805 0x17a0  [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor        C:\Windows\System32\drivers\uaspstor.sys
18:57:00.0836 0x17a0  UASPStor - ok
18:57:00.0852 0x17a0  [ B034A41891A36457B994307DFA772293, CA5E6500764A9777AE0E15B2AFB6F05982C90F01374E3F6DDC6DF3852282C66B ] UCX01000        C:\Windows\System32\drivers\ucx01000.sys
18:57:00.0883 0x17a0  UCX01000 - ok
18:57:00.0914 0x17a0  [ 1EC649F112896FAE33250F0B97AC5D0B, 0C0A1C2C7615DEB298AD3073340FD1BF91FEBE611F133E3B48D994A6EAA8369F ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
18:57:00.0945 0x17a0  udfs - ok
18:57:00.0961 0x17a0  [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI            C:\Windows\System32\drivers\UEFI.sys
18:57:00.0992 0x17a0  UEFI - ok
18:57:01.0024 0x17a0  [ 320878AFECDBBD61BBE98624A6CAAC08, 15C090EA32A24D976B5FCB1373B1281DCC2295C075299C814345D694AEB47CB9 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
18:57:01.0055 0x17a0  UI0Detect - ok
18:57:01.0070 0x17a0  [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
18:57:01.0086 0x17a0  uliagpkx - ok
18:57:01.0117 0x17a0  [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus           C:\Windows\System32\drivers\umbus.sys
18:57:01.0149 0x17a0  umbus - ok
18:57:01.0180 0x17a0  [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass          C:\Windows\System32\drivers\umpass.sys
18:57:01.0211 0x17a0  UmPass - ok
18:57:01.0242 0x17a0  [ E3DDF7D43E05784FAA5E042605EEE528, 8E20E880FAB09AF4FF5C438BF9EAE9970D46C05167870110869B744E498FD761 ] UmRdpService    C:\Windows\System32\umrdp.dll
18:57:01.0305 0x17a0  UmRdpService - ok
18:57:01.0352 0x17a0  [ 4A2FFDAC45F317E17DF642C7160EB633, F1AB762912FAA5F469F322407DA37C91556086C42D1643AD27516C12A84F74D0 ] upnphost        C:\Windows\System32\upnphost.dll
18:57:01.0399 0x17a0  upnphost - ok
18:57:01.0430 0x17a0  [ FF78D053A05E5A394F4E3C1816CC65A8, 5DAE02414271231F5FDBB751AFEB99874779B467947020815D4AE54432D4269D ] usbccgp         C:\Windows\System32\drivers\usbccgp.sys
18:57:01.0461 0x17a0  usbccgp - ok
18:57:01.0492 0x17a0  [ B3D6457D841A0CAEF4C52D88621715F2, CBDD76A8A28379B107B1FB530757B477B8AB74CD01F9F3CEDC7B1BA0C6E5A990 ] usbcir          C:\Windows\System32\drivers\usbcir.sys
18:57:01.0524 0x17a0  usbcir - ok
18:57:01.0571 0x17a0  [ 48BA326A3DBA5B5BEB5F2777F4618696, B9EC8155F11A3A7644BD9DC8910681B46AE44AE3BF53F052DF50E9C5555E3229 ] usbehci         C:\Windows\System32\drivers\usbehci.sys
18:57:01.0617 0x17a0  usbehci - ok
18:57:01.0664 0x17a0  [ FEF0BC107812B36849741C3211BA6B60, B3EF738BE1E6B6027F29C9713CD3F367EA067D2BE46580AFBC0FB58046EF6BBD ] usbhub          C:\Windows\System32\drivers\usbhub.sys
18:57:01.0711 0x17a0  usbhub - ok
18:57:01.0789 0x17a0  [ 65392F3F3F65E4C6CC82A0F4F8A0B051, C11B662A28D95820717DFFC6B76DBB755E4876009A2342E5E3992DE32D6BFF61 ] USBHUB3         C:\Windows\System32\drivers\UsbHub3.sys
18:57:01.0821 0x17a0  USBHUB3 - ok
18:57:01.0867 0x17a0  [ 3019097FB6C985EF24C058090FF3BDBD, 24AC518D34E338D94BF3D5B3F72E53F8A1369BAA7F32FEA3EDBCF928C4FF1D17 ] usbohci         C:\Windows\System32\drivers\usbohci.sys
18:57:01.0914 0x17a0  usbohci - ok
18:57:01.0930 0x17a0  [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint        C:\Windows\System32\drivers\usbprint.sys
18:57:02.0008 0x17a0  usbprint - ok
18:57:02.0055 0x17a0  [ 66732C13628BDB1AB0D6FD46027327C2, B582C0F348D8F79419CA5A58F10CA151E06D7CA3BE162344CADA46D9D7FED97C ] USBSTOR         C:\Windows\System32\drivers\USBSTOR.SYS
18:57:02.0102 0x17a0  USBSTOR - ok
18:57:02.0133 0x17a0  [ 064260B3A5868AC894A4943543BC7AB7, D3534E98B34C4AC9A430D7E0AB301A0E5E1511E3117C2FEA392636B0DE2C38E2 ] usbuhci         C:\Windows\System32\drivers\usbuhci.sys
18:57:02.0180 0x17a0  usbuhci - ok
18:57:02.0227 0x17a0  [ 18F744E8CCEB2670040EBAF7AD77B8C6, C5E2DF4EA0D946B4DA67DE29FA9D0F079DED35EC59B98E532C4C2D5F8E86DA0A ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
18:57:02.0274 0x17a0  usbvideo - ok
18:57:02.0305 0x17a0  [ 48430B0313FC1CFE3D2400553F1A93CD, 92994DE6B131E904AFF2C9C4FBB4E6B0D58525A1539763327373DA18C9F08193 ] USBXHCI         C:\Windows\System32\drivers\USBXHCI.SYS
18:57:02.0336 0x17a0  USBXHCI - ok
18:57:02.0352 0x17a0  [ F6F209DDB94959BA104FC8FC87C53759, 8E862D41F4332EABF64BD034E2C0E3CC8109C7990CB4112C2B2880E8E6EDF2D3 ] VaultSvc        C:\Windows\system32\lsass.exe
18:57:02.0367 0x17a0  VaultSvc - ok
18:57:02.0555 0x17a0  [ DBDEF06F1EA1E942BB141F0C2BE9992A, FFD74B73E122A568077F2BF5157FD2ADC37F9C8DDB1F0850BA2271C96A232B35 ] VC10SecS        C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe
18:57:02.0586 0x17a0  VC10SecS - ok
18:57:02.0633 0x17a0  [ F0FAF3FB9B138F8CAFB65ECFFE9F4AB6, E0869E4E9271B484209BB44E6E17D99BE6CEA08A983132C0D69FA373202B14D7 ] vcd10bus        C:\Windows\System32\drivers\vcd10bus.sys
18:57:02.0664 0x17a0  vcd10bus - ok
18:57:02.0664 0x17a0  Suspicious service (NoAccess): vdrv1000
18:57:02.0758 0x17a0  [ B61BDFD94D4C7B37BF4C898B32BA6396, 4D4DAAFCFDCA6495FE50D77988067023262AE0448148E899AC1C8FAA20A18437 ] vdrv1000        C:\Windows\System32\drivers\vdrv1000.sys
18:57:02.0774 0x17a0  vdrv1000 - detected LockedService.Multi.Generic ( 1 )
18:57:05.0211 0x17a0  Detect skipped due to KSN trusted
18:57:05.0211 0x17a0  vdrv1000 - ok
18:57:05.0258 0x17a0  [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
18:57:05.0305 0x17a0  vdrvroot - ok
18:57:05.0399 0x17a0  [ E3EF58D4123B5AA29C8E19825AF84A5E, FB1046722BC643E955DBC3B1459DBF2A6D575EBA2BCF7B20A0FA51E3993835E2 ] vds             C:\Windows\System32\vds.exe
18:57:05.0477 0x17a0  vds - ok
18:57:05.0508 0x17a0  [ A026EDEAA5EECAE0B08E2748B616D4BD, 2525A54DC7F49DDFBB999C22BF3FAB6D9E9F70C0806E58D81E90AC59F9F46089 ] VerifierExt     C:\Windows\system32\drivers\VerifierExt.sys
18:57:05.0540 0x17a0  VerifierExt - ok
18:57:05.0571 0x17a0  [ 52E483A3701A5A61A75A06993720347D, 689E812755E485DF6960D1E049740FBAFB812467D23B673DCAA40C03FEBB544F ] vhdmp           C:\Windows\System32\drivers\vhdmp.sys
18:57:05.0618 0x17a0  vhdmp - ok
18:57:05.0633 0x17a0  [ 06D38968028E9AB19DE9B618C7B6D199, 62022297A47F440D1C82CA0B0E57C0C8E9D5033D83DD3B40492B218DF65EBF68 ] viaide          C:\Windows\system32\drivers\viaide.sys
18:57:05.0649 0x17a0  viaide - ok
18:57:05.0649 0x17a0  [ C6305BDFC4F7CE51F72BB072C03D4ACE, 73E62869CA3104F48CC3B0C45E69CE9BF4F8D7D06E29C2F049B9347ABB50554D ] vmbus           C:\Windows\system32\drivers\vmbus.sys
18:57:05.0680 0x17a0  vmbus - ok
18:57:05.0680 0x17a0  [ DA40BEA0A863CE768C940CA9723BF81F, 567C0C3F422325635808B0CF76E05D3B6187F96845C33F85F92F98C9FE53A5B8 ] VMBusHID        C:\Windows\System32\drivers\VMBusHID.sys
18:57:05.0711 0x17a0  VMBusHID - ok
18:57:05.0805 0x17a0  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicguestinterface C:\Windows\System32\ICSvc.dll
18:57:05.0868 0x17a0  vmicguestinterface - ok
18:57:05.0883 0x17a0  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicheartbeat   C:\Windows\System32\ICSvc.dll
18:57:05.0930 0x17a0  vmicheartbeat - ok
18:57:05.0946 0x17a0  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmickvpexchange C:\Windows\System32\ICSvc.dll
18:57:05.0993 0x17a0  vmickvpexchange - ok
18:57:06.0024 0x17a0  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicrdv         C:\Windows\System32\ICSvc.dll
18:57:06.0055 0x17a0  vmicrdv - ok
18:57:06.0086 0x17a0  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicshutdown    C:\Windows\System32\ICSvc.dll
18:57:06.0118 0x17a0  vmicshutdown - ok
18:57:06.0149 0x17a0  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmictimesync    C:\Windows\System32\ICSvc.dll
18:57:06.0180 0x17a0  vmictimesync - ok
18:57:06.0211 0x17a0  [ 9067880BBB1C18703DBFF27D731D7ECA, 0044246249F4B945D72BBC0FEF9BF3C31E62F57CBF77615A95213B36A29F0C71 ] vmicvss         C:\Windows\System32\ICSvc.dll
18:57:06.0243 0x17a0  vmicvss - ok
18:57:06.0274 0x17a0  [ 55D7D963DE85162F1C49721E502F9744, 5AD34D6DB707EF3E5242BD8CA67B21D6258EE7E7FC477D5227BD15500AE7F45F ] volmgr          C:\Windows\system32\drivers\volmgr.sys
18:57:06.0289 0x17a0  volmgr - ok
18:57:06.0336 0x17a0  [ CCB9E901F7254BF96D28EB1B0E5329B7, F0E3CA4EFA544CDAEF4092284CF3EC7DF07F806A770285E281816457AD8813F5 ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
18:57:06.0368 0x17a0  volmgrx - ok
18:57:06.0415 0x17a0  [ 64CA2B4A49A8EAF495E435623ECCE7DB, 81151F295A54DE2B8B88C7F48C86BF58CDFF96F98493509C06D6F41484594386 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
18:57:06.0461 0x17a0  volsnap - ok
18:57:06.0477 0x17a0  [ 01355C98B5C3ED1EC446743CDA848FCE, B9FCF558C20E05DD0F53FFB70BBEF873EA57801E13A16701E636128D625C4B67 ] vpci            C:\Windows\System32\drivers\vpci.sys
18:57:06.0493 0x17a0  vpci - ok
18:57:06.0508 0x17a0  [ 4539F45F9F4C9757A86A56C949421E07, DEC362314B2C66414F39354AFE79C02B18BF4EEF90787FB58307F6EB62237E2C ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
18:57:06.0539 0x17a0  vsmraid - ok
18:57:06.0618 0x17a0  [ E369C59F2C0852DDD090C07E0DDE0051, 4FAC94458EAAEED4F84A86FBAB8FBB332D0AF85BD528E63C0C058A2DA8E3011D ] VSS             C:\Windows\system32\vssvc.exe
18:57:06.0696 0x17a0  VSS - ok
18:57:06.0758 0x17a0  [ 0849B7260F26FE05EA56DED0672E2F4B, 7EAC0E7988F45CB4133A15932955B7B03CE715C967A3BAC9999D81543EBCAEC5 ] VSTXRAID        C:\Windows\system32\drivers\vstxraid.sys
18:57:06.0789 0x17a0  VSTXRAID - ok
18:57:06.0805 0x17a0  [ BE970C369E43B509C1EDA2B8FA7CECB0, 18951F2AA842A0795AA79A4E164EE925A35E6270EBE4C4CDB19D0A891830E383 ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
18:57:06.0883 0x17a0  vwifibus - ok
18:57:06.0915 0x17a0  [ 35BF5C5F5E3C9902C98978C7640574DA, C61E50B04000DCEC72365723F0C0725C2E005529DAF2777A59E624C14DA29E55 ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
18:57:06.0977 0x17a0  vwififlt - ok
18:57:07.0008 0x17a0  [ 65ED7B9CFEA893DF7748D5FF692690DE, 73AB9D8BB928B3247BDFC7BB47AD7FCA763B375DC250C251DB4E0573531040E8 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
18:57:07.0024 0x17a0  vwifimp - ok
18:57:07.0086 0x17a0  [ 7599E582CA3A6AAA95A18FFE1172D339, A0410778FBBC4302EA91CF24B944427410B4706535F1192504D4F34C3ED4503E ] W32Time         C:\Windows\system32\w32time.dll
18:57:07.0133 0x17a0  W32Time - ok
18:57:07.0149 0x17a0  [ 0910AB9ED404C1434E2D0376C2AD5D8B, 62585CA5F1375BDA440D28D5DF1ADDC9DE3DDFA196D49BBFF3456A5A09EE1C6B ] WacomPen        C:\Windows\System32\drivers\wacompen.sys
18:57:07.0180 0x17a0  WacomPen - ok
18:57:07.0321 0x17a0  [ 61692DB39AD3DF2F29392D68EAA7BB93, 854D4B9C7DD1676968598ED973500650ECEC02C420E44C0B3957C24F073AA5FB ] wbengine        C:\Windows\system32\wbengine.exe
18:57:07.0430 0x17a0  wbengine - ok
18:57:07.0477 0x17a0  [ 3BC1D1D56637A32CD91C8AE08E2484AA, 9EE1BD3FB0D289E25F3DDD0D8F67DC1C701A6B1D5418FADF348D0E642B1DEBEB ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
18:57:07.0555 0x17a0  WbioSrvc - ok
18:57:07.0587 0x17a0  [ A07CFC4B593D15B6BF06813C3B5B33BF, B57BD918E2AFF9943B51A24B95E0C4D3482B4DF73C0E2421E8CC67C2BC7A4C70 ] Wcmsvc          C:\Windows\System32\wcmsvc.dll
18:57:07.0633 0x17a0  Wcmsvc - ok
18:57:07.0712 0x17a0  [ D2726823DF7E19F213F4805A9D6D145F, A7F582C99918D204264D3B374F70D75984BDA5805203041E3DECB8153D16E102 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
18:57:07.0758 0x17a0  wcncsvc - ok
18:57:07.0774 0x17a0  [ 846C02A8B48CBD921A3D6AB521AA0DC4, B07573A774A6C65D24E5718DC25DF378270EB5B40221CA5A53B21D47838381D3 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
18:57:07.0821 0x17a0  WcsPlugInService - ok
18:57:07.0868 0x17a0  [ 1751F6B031ADAC34724511057D2E455D, BCBC77DE02718868302F7469E8FBB8F2E7E0F8A5D3E46A5B4D48713E829FBAF6 ] WdBoot          C:\Windows\system32\drivers\WdBoot.sys
18:57:07.0883 0x17a0  WdBoot - ok
18:57:07.0946 0x17a0  [ CB6C63FF8342B467E2EF76E98D5B934D, BE017CE91E3BAB293DE6ECF143797CCE3F33CC63024437472B4E38C6961AD884 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
18:57:07.0993 0x17a0  Wdf01000 - ok
18:57:08.0024 0x17a0  [ D296D0F0DB2CD1504F90405603664493, 9531034AE2E027B5C7366713AA9003085501800B35F971D1CE7FFB8E5DAE3825 ] WdFilter        C:\Windows\system32\drivers\WdFilter.sys
18:57:08.0055 0x17a0  WdFilter - ok
18:57:08.0087 0x17a0  [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiServiceHost  C:\Windows\system32\wdi.dll
18:57:08.0149 0x17a0  WdiServiceHost - ok
18:57:08.0149 0x17a0  [ 40C67D1A4891120874767F6E6604D6C5, 4D9DD658566DE711ADF4D6C33FCB31DA351EE050E3ED188664D04526CCAAEEF5 ] WdiSystemHost   C:\Windows\system32\wdi.dll
18:57:08.0180 0x17a0  WdiSystemHost - ok
18:57:08.0227 0x17a0  [ 9F4DF0043965808973023A9B51A11136, 3A799125CBC5C214D9FBB91C348B39563B1FDB7403B520270752E9A177464723 ] WdNisDrv        C:\Windows\system32\Drivers\WdNisDrv.sys
18:57:08.0258 0x17a0  WdNisDrv - ok
18:57:08.0290 0x17a0  WdNisSvc - ok
18:57:08.0337 0x17a0  [ 91B18D7A1702ED589E67C6C81052B955, 5D1DA8B86106A28E50BBCCB36527CC130D41201F5BE1D3DC5F1D6F7ECCF807BA ] WebClient       C:\Windows\System32\webclnt.dll
18:57:08.0383 0x17a0  WebClient - ok
18:57:08.0446 0x17a0  [ 3274312F263882B51B964329FAF49734, 99A020377ACF0762BE5ECD2D68EB5E1497B9D59963247E725F7F96FB5DF41FAD ] Wecsvc          C:\Windows\system32\wecsvc.dll
18:57:08.0493 0x17a0  Wecsvc - ok
18:57:08.0508 0x17a0  [ 7CDD84E0023A0C5C230B06A7965EC65E, 6EC7DC18C76D66CF9A893C3DD20F9BE3ADD76546F9A9BA42CE4F24854709F9D9 ] WEPHOSTSVC      C:\Windows\system32\wephostsvc.dll
18:57:08.0540 0x17a0  WEPHOSTSVC - ok
18:57:08.0571 0x17a0  [ 959534ACF085C137D2D094384EF89C45, D029F440789FE170A1C46217C6DE6D78DC0188A5CF33FCCC17FA65D3BC80C2B7 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
18:57:08.0602 0x17a0  wercplsupport - ok
18:57:08.0633 0x17a0  [ 82BCCF5FBE47AC9E8CBA2020994DFB3F, EA96C6BD98A701B465D0780EC10BDA92E45FE636D60C1385813AA3B456D8B931 ] WerSvc          C:\Windows\System32\WerSvc.dll
18:57:08.0665 0x17a0  WerSvc - ok
18:57:08.0696 0x17a0  [ BFBE1C5F57FE7A885673A1962D5532B7, F0BD05B257108699FE6AB32EF11F927C31932F27062A705B3FEFA4F5B4C0D8C3 ] WFPLWFS         C:\Windows\system32\DRIVERS\wfplwfs.sys
18:57:08.0727 0x17a0  WFPLWFS - ok
18:57:08.0758 0x17a0  [ E06AFE2F94BA7CFA2FE4FD2A449E60E2, 99A81E16366E9E77905D873B0246E4C11B383FE1E99E0E1D9A07FAD4E52EA9E4 ] WiaRpc          C:\Windows\System32\wiarpc.dll
18:57:08.0790 0x17a0  WiaRpc - ok
18:57:08.0821 0x17a0  [ 867BCC69ED9C31C501465EB0E8BA9DFA, 678B7FF4D4E8624514301956CDA7FB451159BBFC83FF2E4E5E7DADAE3C7AB2EC ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
18:57:08.0868 0x17a0  WIMMount - ok
18:57:08.0868 0x17a0  WinDefend - ok
18:57:08.0930 0x17a0  [ DD079EC8F44DCA3A176B345C6ADEFB66, 6CD9371B83EA23D2181891FAE1DB285BC111A78C35F374E57666ED09860C91A9 ] WinHttpAutoProxySvc C:\Windows\system32\winhttp.dll
18:57:08.0977 0x17a0  WinHttpAutoProxySvc - ok
18:57:09.0071 0x17a0  [ 9DB490F3E823C5C3C070644B96CB9D59, 81937D0B331E43C7C61514E60B3AD51370C5201F7B4D12F8534840D91EDC32DD ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
18:57:09.0133 0x17a0  Winmgmt - ok
18:57:09.0274 0x17a0  [ 9CE162EB9057CF079736F4DD00FC0D6C, 412C34557866D2A3B3CDAFA5A03B87C01AACF75E349802E511098B20137028D9 ] WinRM           C:\Windows\system32\WsmSvc.dll
18:57:09.0415 0x17a0  WinRM - ok
18:57:09.0524 0x17a0  [ 3F5EF31C6AA204B099EE76497DF80A26, CBE648A4E7E1D98A3D8C72582C1CB3C2FD2329EAA24EE4DCAD271AAA6F4D82CE ] WlanSvc         C:\Windows\System32\wlansvc.dll
18:57:09.0602 0x17a0  WlanSvc - ok
18:57:09.0727 0x17a0  [ 5F56C0DE776C7AE43AF749845BFAA1EF, 837993C5853B7E682C7FB8401B7F5D951FFD15E5659EBB1B01DC3F5719ACEE19 ] wlidsvc         C:\Windows\system32\wlidsvc.dll
18:57:09.0805 0x17a0  wlidsvc - ok
18:57:09.0821 0x17a0  [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] WmiAcpi         C:\Windows\System32\drivers\wmiacpi.sys
18:57:09.0852 0x17a0  WmiAcpi - ok
18:57:09.0899 0x17a0  [ 7AFAC828F52D62F304A911EC32F42EEE, 4EDCF4149069413A166169F2E23F7505F47B39B7EC319E1EF6D2C46CD140AA24 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
18:57:10.0055 0x17a0  wmiApSrv - ok
18:57:10.0087 0x17a0  WMPNetworkSvc - ok
18:57:10.0149 0x17a0  [ 7FC5667DF73D4B04AA457CC3A4180E09, CB7B014945DCA16B6D120DBE0E5876C4C867A4ACD3C3536AEADC14B908613D4E ] Wof             C:\Windows\system32\drivers\Wof.sys
18:57:10.0196 0x17a0  Wof - ok
18:57:10.0352 0x17a0  [ 61BF52E9FFAB27A0B6D621BE26088373, 81291D52C381360E69D51E7DEB05CFAC651A7E9EF781CA23062C0583D0C94708 ] workfolderssvc  C:\Windows\system32\workfolderssvc.dll
18:57:10.0446 0x17a0  workfolderssvc - ok
18:57:10.0477 0x17a0  [ 182561A14F2E93E81E66FE3700D17A5A, FB9A06058A8BCCEDCDC5BF8899D9B2FBA5752C262C5FC6D2B8338884F3303D12 ] wpcfltr         C:\Windows\system32\DRIVERS\wpcfltr.sys
18:57:10.0509 0x17a0  wpcfltr - ok
18:57:10.0555 0x17a0  [ 4E6A0F60DA7EF050D3D26417CD4D24E9, E6B3BFB007B641D41F8532ED086F92CB3D86E210023DBFAA9AD8152A9FD33CCA ] WPCSvc          C:\Windows\System32\wpcsvc.dll
18:57:10.0602 0x17a0  WPCSvc - ok
18:57:10.0634 0x17a0  [ 618A19EB31ECA7B7F2AA0207BAF598A5, CB18CF9B781EAB3D775F8201F294A7135E058D6C963D2CC759DCA14D95EED538 ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
18:57:10.0712 0x17a0  WPDBusEnum - ok
18:57:10.0741 0x17a0  [ 9F2904B55F6CECCD1A8D986B5CE2609A, E19ED4DD3CEF3A22C058FC324824604FB3FC98A029C94E6C2A3389F938D680B6 ] WpdUpFltr       C:\Windows\system32\drivers\WpdUpFltr.sys
18:57:10.0749 0x17a0  WpdUpFltr - ok
18:57:10.0780 0x17a0  [ AE072B0339D0A18E455DC21666CAD572, AB1DAEA25E2C7AD610818D4B4783F6D4190D85EBB3963BBAD410E8CEA7899EDB ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
18:57:10.0827 0x17a0  ws2ifsl - ok
18:57:10.0858 0x17a0  [ 9654DE19551093CD73874281E1573C94, 5E3513EC0CB180D90904BE8970AB64A4434279E8C467AE2CF693254E47B1D11E ] wscsvc          C:\Windows\System32\wscsvc.dll
18:57:10.0905 0x17a0  wscsvc - ok
18:57:10.0936 0x17a0  [ F586F3F1BF962FE9AE4316E0D896B22F, 8D0AD48D79294567123D943D0F5B6D5A32D7A82B129A24DC821D3095AFAA100B ] WSDPrintDevice  C:\Windows\System32\drivers\WSDPrint.sys
18:57:10.0999 0x17a0  WSDPrintDevice - ok
18:57:11.0030 0x17a0  [ D38297814FB6E33655342D869996E617, 3701892EEF87D1BF0E73322B90678802B6EA4AFA9CBF6111F39611C79DBA96C7 ] WSDScan         C:\Windows\System32\drivers\WSDScan.sys
18:57:11.0061 0x17a0  WSDScan - ok
18:57:11.0077 0x17a0  WSearch - ok
18:57:11.0295 0x17a0  [ 95B6670E6933E1DEE19686C55BE709A0, 4B9EB8F1712B7959A71F6DA445D29BD09B25EEFC6B30D736EFE30163D79B233E ] WSService       C:\Windows\System32\WSService.dll
18:57:11.0467 0x17a0  WSService - ok
18:57:11.0624 0x17a0  [ D24002EB2F4A8A04897703067E81CC5D, 03806198D26DD7BA3E27EFE0911B49E5B48CAD8A05EC4F56AF45CF1E3FAD6916 ] wuauserv        C:\Windows\system32\wuaueng.dll
18:57:11.0780 0x17a0  wuauserv - ok
18:57:11.0827 0x17a0  [ D537815E450A149752C15868392AD1F3, 8788CE493349299DB36E409C8CC3C6EA08301FA492C95D9D556E00BC13A05F13 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
18:57:11.0858 0x17a0  WudfPf - ok
18:57:11.0889 0x17a0  [ 7CCBBCEE408A5DBE3FE47297DB5A6CFC, FB44B65B37B1C1A12C618E16BEF195EF861A87179B9216E43024C671C3AE052C ] WUDFRd          C:\Windows\System32\drivers\WUDFRd.sys
18:57:11.0905 0x17a0  WUDFRd - ok
18:57:11.0921 0x17a0  [ 7CCBBCEE408A5DBE3FE47297DB5A6CFC, FB44B65B37B1C1A12C618E16BEF195EF861A87179B9216E43024C671C3AE052C ] WUDFSensorLP    C:\Windows\system32\DRIVERS\WUDFRd.sys
18:57:11.0952 0x17a0  WUDFSensorLP - ok
18:57:11.0968 0x17a0  [ 9CDC2059A23E3C9B57696178508777E7, B680A2E2EDA5C8C6A547E7D9B2F2F8E6407C3EA0A01B82A4B88D48A27913A597 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
18:57:11.0999 0x17a0  wudfsvc - ok
18:57:12.0030 0x17a0  [ 7CCBBCEE408A5DBE3FE47297DB5A6CFC, FB44B65B37B1C1A12C618E16BEF195EF861A87179B9216E43024C671C3AE052C ] WUDFWpdFs       C:\Windows\system32\DRIVERS\WUDFRd.sys
18:57:12.0061 0x17a0  WUDFWpdFs - ok
18:57:12.0139 0x17a0  [ 2FA9794CA36147756F3FDFD6CA29B46F, 4B86DC38C2411C281686E9A4E64DA6FB2992E39391371F78E012D6D8BB85123F ] WwanSvc         C:\Windows\System32\wwansvc.dll
18:57:12.0202 0x17a0  WwanSvc - ok
18:57:12.0233 0x17a0  ================ Scan global ===============================
18:57:12.0280 0x17a0  [ C89780A6F58D113C28A96D85D1261DC5, 185114F33A60916C7904E4A0F278CA43258454343E614F01F0DAFA98BAC981B1 ] C:\Windows\system32\basesrv.dll
18:57:12.0342 0x17a0  [ 00DD4D2ACC2E72155A8AAA82018BEC0D, 9D7CA68B4A81240477FCC85A3CC11EF986093F9D6228A6C5AC608EDAD664068C ] C:\Windows\system32\winsrv.dll
18:57:12.0389 0x17a0  [ 9C1833ABD62876856836C5AE55C7CE86, 0A21E2C8B2FF3B0438C86DA7151A548F9C6F5C62CD402CBBEDB435994C8508F1 ] C:\Windows\system32\sxssrv.dll
18:57:12.0499 0x17a0  [ 067CB90C277DB4A737D5DEABA3055972, C681BF013170F2D92A3FC4D783FC3F200CDC0C8173373B7ECC27FCF32A03CCBD ] C:\Windows\system32\services.exe
18:57:12.0514 0x17a0  [ Global ] - ok
18:57:12.0530 0x17a0  ================ Scan MBR ==================================
18:57:12.0546 0x17a0  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
18:57:12.0608 0x17a0  \Device\Harddisk0\DR0 - ok
18:57:12.0608 0x17a0  ================ Scan VBR ==================================
18:57:12.0639 0x17a0  [ FACBB26C7B6E835C33813A1AEFEBA85B ] \Device\Harddisk0\DR0\Partition1
18:57:12.0655 0x17a0  \Device\Harddisk0\DR0\Partition1 - ok
18:57:12.0671 0x17a0  [ 2EE33C9BAF06932B8EA8D5283259D11D ] \Device\Harddisk0\DR0\Partition2
18:57:12.0686 0x17a0  \Device\Harddisk0\DR0\Partition2 - ok
18:57:12.0702 0x17a0  [ B9E5C41EFBE3D3BAACF61B4D6A6D2C68 ] \Device\Harddisk0\DR0\Partition3
18:57:12.0733 0x17a0  \Device\Harddisk0\DR0\Partition3 - ok
18:57:12.0764 0x17a0  [ 327B9ACFAFA86657BFCA88A3EFA1F993 ] \Device\Harddisk0\DR0\Partition4
18:57:12.0780 0x17a0  \Device\Harddisk0\DR0\Partition4 - ok
18:57:12.0811 0x17a0  [ 0D51288DEA1B4F8E09D58903C87B44D4 ] \Device\Harddisk0\DR0\Partition5
18:57:12.0811 0x17a0  \Device\Harddisk0\DR0\Partition5 - ok
18:57:12.0811 0x17a0  ================ Scan generic autorun ======================
18:57:12.0858 0x17a0  [ 1FAA54E9FFEA6FD3E0CEAD951CDDFEF6, 222E10CAB93C02CFDB7B4208C053B8CA3683C6978BE964F9E801D6645B9B2182 ] C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
18:57:12.0874 0x17a0  KeNotify - ok
18:57:12.0967 0x17a0  [ 18DBA177BD009B91D1884C9DB62BB039, 74777A7B69BB2886920B6F1A1039A90FCA8DC2DAA1D6F985ED7F49A35C2E0D42 ] c:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TosSmartViewLauncher.exe
18:57:12.0999 0x17a0  TSVU - ok
18:57:13.0155 0x17a0  [ 2DD00D79FD519E367D3DE1737D1DB776, DDF5D346D9D52000E80CF0612E6FA8B5189ED5AC6A71028F4643317647EB9BE5 ] C:\Program Files (x86)\ACD Systems\ACDSee\18.0\acdIDInTouch2.exe
18:57:13.0202 0x17a0  ACSW18DE - ok
18:57:13.0233 0x17a0  [ C8AEBDDAAD605E68DBCCD41CD58FC841, 97243EB73BD358D23E74AEEA8998A45B2DF23637282E892D39FDA0EFCB2EFB69 ] C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe
18:57:13.0249 0x17a0  ITSecMng - ok
18:57:13.0374 0x17a0  [ 0BE7DE2418D3DE2176DDE68D0851D36C, 488C4C56819D9B588E34DD9079173E3CEB9511F9971B3E99DC179E41A405E753 ] C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe
18:57:13.0405 0x17a0  VC10Player - ok
18:57:13.0515 0x17a0  [ ED70821F65B120FDBD76FCFF746FE219, D038CC5198099B2FE02F2789E6817E96E210E27CF6C0E8FF39E6746B31653DDE ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
18:57:13.0546 0x17a0  SunJavaUpdateSched - ok
18:57:13.0702 0x17a0  [ 34560253EF56416ED5F9192AA258407E, 1915FED010A852C65A4BF809D9DC8E8C96ECCABFC6707F1EBA946630F4E56CAF ] C:\Program Files (x86)\Trojan Remover\Trjscan.exe
18:57:13.0780 0x17a0  TrojanScanner - ok
18:57:13.0905 0x17a0  [ 40F7401928355A1515199676A5D00CDC, 4F16DE77F0BD7D1F9F61AE5712B3FD7BD53D19DCCEF88925E10180EF040A8E0B ] C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\AVMAutoStart.exe
18:57:13.0936 0x17a0  AVMUSBFernanschluss - detected UnsignedFile.Multi.Generic ( 1 )
18:57:16.0530 0x17a0  AVMUSBFernanschluss ( UnsignedFile.Multi.Generic ) - warning
18:57:16.0530 0x17a0  Force sending object to P2P due to detect: C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\AVMAutoStart.exe
18:57:19.0093 0x17a0  Object send P2P result: true
18:57:21.0905 0x17a0  [ 845799C9874B68BEAE3B64059653C7E3, 2E0B9DD46569A6449989E2D7C60B88B46352A178019B4BD840C166674E798CFD ] C:\Program Files\CCleaner\CCleaner64.exe
18:57:22.0155 0x17a0  CCleaner Monitoring - ok
18:57:22.0280 0x17a0  [ 454FEB8B9B995B519667608B30B904BE, 71F3BE4345E6F2770511A356DA4DA105FBED97CDC54237AF353D1F63A262B65C ] C:\Program Files (x86)\ACD Systems\ACDSee\18.0\ACDSeeCommander18.exe
18:57:22.0358 0x17a0  ACDSeeCommander18 - ok
18:57:23.0093 0x17a0  [ B7275CEE6103BAD919BE61DFEE7D2895, D97619370A4EF70FEF462417479E0F492C765B3F7CC0E5B67DB0C8DFB52E5967 ] C:\Users\Frank\AppData\Local\Amazon Music\Amazon Music Helper.exe
18:57:23.0296 0x17a0  Amazon Music - ok
18:57:23.0343 0x17a0  GoogleDriveSync - ok
18:57:23.0359 0x17a0  Waiting for KSN requests completion. In queue: 3
18:57:24.0374 0x17a0  Waiting for KSN requests completion. In queue: 3
18:57:25.0390 0x17a0  Waiting for KSN requests completion. In queue: 3
18:57:26.0421 0x17a0  AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.7.205.0 ), 0x61100 ( enabled : updated )
18:57:26.0437 0x17a0  Win FW state via NFP2: enabled
18:57:28.0827 0x17a0  ============================================================
18:57:28.0827 0x17a0  Scan finished
18:57:28.0827 0x17a0  ============================================================
18:57:28.0859 0x17b4  Detected object count: 1
18:57:28.0859 0x17b4  Actual detected object count: 1
18:58:47.0584 0x17b4  AVMUSBFernanschluss ( UnsignedFile.Multi.Generic ) - skipped by user
18:58:47.0584 0x17b4  AVMUSBFernanschluss ( UnsignedFile.Multi.Generic ) - User select action: Skip
         


Alt 18.03.2015, 09:25   #6
schrauber
/// the machine
/// TB-Ausbilder
 

Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden - Standard

Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden



Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.


Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.
__________________
--> Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden

Alt 18.03.2015, 11:14   #7
Dorfkicker
 
Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden - Standard

Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden



Guten Morgen Schrauber,

hier die aktuellen Logs:

mbam.txt

Code:
ATTFilter
 Malwarebytes Anti-Malware 
www.malwarebytes.org

Scan Date: 18.03.2015
Scan Time: 10:07:49
Logfile: mbam.txt
Administrator: Yes

Version: 2.00.4.1028
Malware Database: v2015.03.18.02
Rootkit Database: v2015.02.25.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled

OS: Windows 8.1
CPU: x64
File System: NTFS
User: Frank

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 343121
Time Elapsed: 28 min, 44 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)
         
AdwCleaner.txt

Code:
ATTFilter
# AdwCleaner v4.112 - Bericht erstellt 18/03/2015 um 10:43:15
# Aktualisiert 09/03/2015 von Xplode
# Datenbank : 2015-03-15.1 [Server]
# Betriebssystem : Windows 8.1 Connected  (x64)
# Benutzername : Frank - UHURA2
# Gestarted von : C:\Users\Frank\Desktop\AdwCleaner_4.112.exe
# Option : Löschen

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****


***** [ Geplante Tasks ] *****


***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{26B19FA4-E8A1-4A1B-A163-1A1E46F830DD}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}

***** [ Internetbrowser ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Mozilla Firefox v36.0.1 (x86 de)


-\\ Google Chrome v41.0.2272.89

[C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://de.ask.com/web?q={searchTerms}

*************************

AdwCleaner[R0].txt - [1161 Bytes] - [18/03/2015 10:40:25]
AdwCleaner[S0].txt - [1083 Bytes] - [18/03/2015 10:43:15]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1142  Bytes] ##########
         
JRT.txt

Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.5 (03.17.2015:1)
OS: Windows 8.1 Connected x64
Ran by Frank on 18.03.2015 at 10:49:54,99
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 18.03.2015 at 10:57:44,48
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         
Eine frische FRST-log folgt gleich!

FRST.txt (Teil 1)

Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Frank (administrator) on UHURA2 on 18-03-2015 10:59:06
Running from C:\Users\Frank\Desktop
Loaded Profiles: Frank (Available profiles: Frank)
Platform: Windows 8.1 Connected (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
() C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
(H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Toshiba Corporation) C:\Program Files\TOSHIBA\Teco\TecoService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Teco\TecoResident.exe
(AVM Berlin) C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe
() C:\Program Files (x86)\ACD Systems\ACDSee\18.0\ACDSeeCommander18.exe
() C:\Users\Frank\AppData\Local\Amazon Music\Amazon Music Helper.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
(TOSHIBA) C:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TDUSrv64.exe
(ACD Systems) C:\Program Files (x86)\ACD Systems\ACDSee\18.0\acdIDInTouch2.exe
(H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\vc10tray.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [] => [X]
HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2556768 2013-10-09] (TOSHIBA Corporation)
HKLM\...\Run: [TecoResident] => C:\Program Files\TOSHIBA\Teco\TecoResident.exe [179288 2014-01-05] (TOSHIBA Corporation)
HKLM\...\Run: [TSSSrv] => C:\Program Files (x86)\TOSHIBA\System Setting\TSSSrv.exe [296008 2013-10-22] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [354144 2013-08-13] (TOSHIBA Corporation)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-20] (IvoSoft)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [KeNotify] => C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [34160 2013-08-06] (TOSHIBA CORPORATION)
HKLM-x32\...\Run: [TSVU] => c:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TosSmartViewLauncher.exe [516512 2013-07-23] (TOSHIBA)
HKLM-x32\...\Run: [ACSW18DE] => C:\Program Files (x86)\ACD Systems\ACDSee\18.0\acdIDInTouch2.exe [1470224 2014-09-17] (ACD Systems)
HKLM-x32\...\Run: [ITSecMng] => C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [80840 2011-04-01] (TOSHIBA CORPORATION)
HKLM-x32\...\Run: [VC10Player] => C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe [416696 2012-10-25] (H+H Software GmbH)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation)
HKLM-x32\...\Run: [TrojanScanner] => C:\Program Files (x86)\Trojan Remover\Trjscan.exe [1791856 2014-10-16] (Simply Super Software)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [AVMUSBFernanschluss] => C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\AVMAutoStart.exe [139264 2015-03-10] (AVM Berlin)
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7416088 2015-02-19] (Piriform Ltd)
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [ACDSeeCommander18] => C:\Program Files (x86)\ACD Systems\ACDSee\18.0\ACDSeeCommander18.exe [1973256 2014-12-17] ()
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [Amazon Music] => C:\Users\Frank\AppData\Local\Amazon Music\Amazon Music Helper.exe [5886272 2015-03-02] ()
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [26232152 2015-02-19] (Google)
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x00000000
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Winlogon: [Shell] C:\Windows\explorer.exe [2501368 2015-01-28] (Microsoft Corporation) <==== ATTENTION 
HKU\S-1-5-18\...\Run: [EPSONE8BE74 (Epson Stylus SX430)] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHAE.EXE [232448 2011-01-20] (SEIKO EPSON CORPORATION)
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.de/
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://toshiba13.msn.com/?pc=TEJB
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://toshiba.eu/symbaloo_c
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2734555180-3142773653-1428810083-1001 -> {898DEB29-90E7-4FED-ADAC-FCDAB1A2CEFC} URL = 
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20] (IvoSoft)
BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2014-12-16] (Adblock Plus)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-17] (Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-17] (Oracle Corporation)
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20] (IvoSoft)
BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2014-12-16] (Adblock Plus)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.10

FireFox:
========
FF ProfilePath: C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll [2015-03-11] ()
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-03-11] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-17] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-17] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-10] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-10] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Extension: Avira Browser Safety - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\abs@avira.com [2015-03-17]
FF Extension: mediaplayerconnectivity - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{84b24861-62f6-364b-eba5-2e5e2061d7e6} [2015-03-11]
FF Extension: Add to Amazon Wish List Button - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\amznUWL2@amazon.com.xpi [2015-03-11]
FF Extension: NoScript - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2015-03-11]
FF Extension: Video DownloadHelper - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2015-03-16]
FF Extension: Adblock Plus - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-03-10]

Chrome: 
=======
CHR HomePage: Default -> hxxp://go.microsoft.com/fwlink/?LinkId=69157
CHR Profile: C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-17]
CHR Extension: (Google Docs) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-17]
CHR Extension: (Google Drive) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-17]
CHR Extension: (YouTube) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-17]
CHR Extension: (Adblock Plus) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-03-17]
CHR Extension: (Google Search) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-17]
CHR Extension: (Avira SafeSearch) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\eglgfnfolcgijipffhlhbbnefdcbjbml [2015-03-17]
CHR Extension: (Google Sheets) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-17]
CHR Extension: (Sticky Password Autofill Engine) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggepjhbdgijjkbelnggboeoehacbphed [2015-03-17]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-17]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-03-17]
CHR Extension: (Google Wallet) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-17]
CHR Extension: (Gmail) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-17]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

Locked "vdrv1000" service was unlocked successfully. <===== ATTENTION

R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [319104 2014-03-19] (Windows (R) Win 7 DDK provider) [File not signed]
R2 dts_apo_service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [21840 2014-03-03] ()
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-02] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-02] (Intel(R) Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [116088 2014-08-05] (Toshiba Europe GmbH)
R2 VC10SecS; C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe [147312 2014-12-15] (H+H Software GmbH)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3888640 2014-02-14] (Qualcomm Atheros Communications, Inc.)
R3 avmaura; C:\Windows\System32\drivers\avmaura.sys [116480 2015-03-10] (AVM Berlin)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
S3 GENERICDRV; C:\Program Files (x86)\UEFI WinFlash\amifldrv64.sys [15640 2012-07-27] ()
S3 HH10Help.sys; C:\Windows\system32\drivers\HH10Help.sys [24088 2009-07-09] (H+H Software GmbH)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2015-03-18] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2014-11-21] (Malwarebytes Corporation)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [291544 2014-01-03] (Realtek Semiconductor Corp.)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31472 2014-02-21] (Synaptics Incorporated)
R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [33168 2013-10-10] (Windows (R) Win 7 DDK provider)
S3 Tosrfcom; No ImagePath
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation)
R1 vdrv1000; C:\Windows\System32\drivers\vdrv1000.sys [226080 2012-12-06] (H+H Software GmbH)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-18 10:57 - 2015-03-18 10:57 - 00000624 _____ () C:\Users\Frank\Desktop\JRT.txt
2015-03-18 10:48 - 2015-03-18 10:48 - 01388672 _____ (Thisisu) C:\Users\Frank\Downloads\JRT.exe
2015-03-18 10:48 - 2015-03-18 10:48 - 01388672 _____ (Thisisu) C:\Users\Frank\Desktop\JRT.exe
2015-03-18 10:46 - 2015-03-18 10:46 - 00001222 _____ () C:\Users\Frank\Desktop\AdwCleaner[S0].txt
2015-03-18 10:39 - 2015-03-18 10:43 - 00000000 ____D () C:\AdwCleaner
2015-03-18 10:38 - 2015-03-18 10:38 - 02171392 _____ () C:\Users\Frank\Downloads\AdwCleaner_4.112.exe
2015-03-18 10:38 - 2015-03-18 10:38 - 02171392 _____ () C:\Users\Frank\Desktop\AdwCleaner_4.112.exe
2015-03-18 10:37 - 2015-03-18 10:37 - 00001042 _____ () C:\Users\Frank\Desktop\mbam.txt
2015-03-18 10:04 - 2015-03-18 10:05 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (3).exe
2015-03-17 18:54 - 2015-03-17 18:55 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Frank\Downloads\tdsskiller.exe
2015-03-17 17:10 - 2015-03-18 10:44 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-17 17:10 - 2015-03-18 10:02 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-03-17 17:09 - 2015-03-17 18:26 - 00000000 ____D () C:\Users\Frank\Desktop\mbar
2015-03-17 17:08 - 2015-03-17 17:08 - 16502728 _____ (Malwarebytes Corp.) C:\Users\Frank\Downloads\mbar-1.09.1.1004.exe
2015-03-17 17:08 - 2015-03-17 17:08 - 16502728 _____ (Malwarebytes Corp.) C:\Users\Frank\Desktop\mbar-1.09.1.1004.exe
2015-03-17 15:53 - 2015-03-17 15:53 - 00000291 _____ () C:\Users\Frank\Desktop\gmer.txt
2015-03-17 15:52 - 2015-03-17 15:52 - 00000000 _____ () C:\Users\Frank\Desktop\Neues Textdokument.txt
2015-03-17 15:50 - 2015-03-17 15:50 - 00380416 _____ () C:\Users\Frank\Downloads\Gmer-19357.exe
2015-03-17 15:48 - 2015-03-17 15:48 - 00000472 _____ () C:\Users\Frank\Downloads\defogger_disable.log
2015-03-17 15:48 - 2015-03-17 15:48 - 00000000 _____ () C:\Users\Frank\defogger_reenable
2015-03-17 15:47 - 2015-03-17 15:47 - 00050477 _____ () C:\Users\Frank\Downloads\Defogger.exe
2015-03-17 15:23 - 2015-03-17 15:24 - 00029764 _____ () C:\Users\Frank\Downloads\Addition.txt
2015-03-17 15:21 - 2015-03-17 15:24 - 00142748 _____ () C:\Users\Frank\Downloads\FRST.txt
2015-03-17 15:20 - 2015-03-17 15:21 - 02095616 _____ (Farbar) C:\Users\Frank\Downloads\FRST64.exe
2015-03-17 15:13 - 2015-03-17 15:13 - 00000022 _____ () C:\Users\Frank\Downloads\apppath.torun
2015-03-17 15:02 - 2015-03-17 15:02 - 00022528 _____ (Microsoft) C:\Users\Frank\Downloads\RunAsSystem.exe
2015-03-17 14:52 - 2015-03-18 10:06 - 00001084 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2015-03-17 14:52 - 2015-03-18 10:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2015-03-17 14:52 - 2015-03-18 10:06 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2015-03-17 14:52 - 2015-03-17 14:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (2).exe
2015-03-17 14:52 - 2015-03-17 14:52 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-03-17 14:52 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-03-17 14:52 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-03-17 14:52 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-03-17 14:51 - 2015-03-17 14:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (1).exe
2015-03-17 14:51 - 2015-03-17 14:52 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028.exe
2015-03-17 13:56 - 2015-03-17 13:56 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2015-03-17 13:41 - 2015-03-17 13:41 - 00000000 ____D () C:\OETemp
2015-03-17 13:23 - 2015-03-17 14:06 - 00000000 ____D () C:\Program Files (x86)\Avira
2015-03-17 13:22 - 2015-03-17 13:22 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\Frank\Downloads\avira_de_av_5946238192__ws.exe
2015-03-17 13:17 - 2015-03-17 13:18 - 00000000 ____D () C:\ProgramData\Kaspersky Lab Setup Files
2015-03-17 13:16 - 2015-03-17 13:16 - 00416576 _____ (Kaspersky Lab) C:\Users\Frank\Downloads\de-de.setup.exe
2015-03-17 13:15 - 2015-03-17 13:15 - 141468920 _____ (Microsoft Corporation) C:\Users\Frank\Downloads\msert.exe
2015-03-17 13:13 - 2015-03-17 13:14 - 00013513 _____ () C:\Users\Frank\Desktop\Addition.txt
2015-03-17 13:10 - 2015-03-18 10:59 - 00019019 _____ () C:\Users\Frank\Desktop\FRST.txt
2015-03-17 13:10 - 2015-03-18 10:59 - 00000000 ____D () C:\FRST
2015-03-17 12:30 - 2015-03-17 12:28 - 02095616 _____ (Farbar) C:\Users\Frank\Desktop\FRST64.exe
2015-03-17 12:20 - 2015-03-17 12:20 - 00001121 _____ () C:\Users\Public\Desktop\Trojan Remover.lnk
2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\Users\Frank\Documents\Simply Super Software
2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Simply Super Software
2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trojan Remover
2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\ProgramData\Licenses
2015-03-17 12:19 - 2015-03-17 12:20 - 00000000 ____D () C:\Program Files (x86)\Trojan Remover
2015-03-17 12:19 - 2015-03-17 12:19 - 00000000 ____D () C:\ProgramData\Simply Super Software
2015-03-17 12:18 - 2015-03-17 12:19 - 31390952 _____ (Simply Super Software ) C:\Users\Frank\Downloads\trjsetup691.exe
2015-03-17 12:04 - 2015-03-17 12:04 - 00000000 __SHD () C:\ProgramData\Application Services
2015-03-17 11:54 - 2015-03-17 12:21 - 00000000 __SHD () C:\Windows\SysWOW64\Application Services
2015-03-17 11:24 - 2015-03-18 10:44 - 00001160 _____ () C:\Windows\setupact.log
2015-03-17 11:24 - 2015-03-17 11:24 - 00000000 _____ () C:\Windows\setuperr.log
2015-03-17 11:23 - 2015-03-18 10:02 - 00143660 _____ () C:\Windows\PFRO.log
2015-03-17 11:09 - 2015-03-17 11:10 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Mp3tag
2015-03-17 10:48 - 2015-03-17 10:48 - 00650657 _____ () C:\Users\Frank\Downloads\lame3.99.5.zip
2015-03-17 10:41 - 2015-03-17 15:51 - 00000000 ____D () C:\Users\Frank\AppData\Local\CrashDumps
2015-03-17 10:40 - 2015-03-17 10:49 - 00000000 ____D () C:\Program Files (x86)\Exact Audio Copy
2015-03-17 10:40 - 2015-03-17 10:40 - 00001052 _____ () C:\Users\Public\Desktop\Exact Audio Copy.lnk
2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\EAC
2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\AccurateRip
2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Exact Audio Copy
2015-03-17 10:38 - 2015-03-17 10:39 - 00000000 ____D () C:\ProgramData\Oracle
2015-03-17 10:38 - 2015-03-17 10:38 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\ProgramData\Sun
2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\Program Files (x86)\Java
2015-03-17 10:37 - 2015-03-17 10:37 - 00561064 _____ (Oracle Corporation) C:\Users\Frank\Downloads\jxpiinstall.exe
2015-03-17 10:36 - 2015-03-17 10:39 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Freeplane
2015-03-17 10:36 - 2015-03-17 10:36 - 00000842 _____ () C:\Users\Public\Desktop\Freeplane.lnk
2015-03-17 10:36 - 2015-03-17 10:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freeplane
2015-03-17 10:36 - 2015-03-17 10:36 - 00000000 ____D () C:\Program Files\Freeplane
2015-03-17 10:29 - 2015-03-17 10:29 - 00000840 _____ () C:\Users\Frank\AppData\Local\recently-used.xbel
2015-03-17 10:29 - 2015-03-17 10:29 - 00000000 ____D () C:\Users\Frank\AppData\Local\gtk-2.0
2015-03-17 10:29 - 2015-03-17 10:29 - 00000000 ____D () C:\Users\Frank\.thumbnails
2015-03-17 10:22 - 2015-03-17 10:35 - 00000000 ____D () C:\Users\Frank\.gimp-2.8
2015-03-17 10:22 - 2015-03-17 10:22 - 04620717 _____ () C:\Users\Frank\Downloads\eac-1.0beta4.exe
2015-03-17 10:22 - 2015-03-17 10:22 - 00000000 ____D () C:\Users\Frank\AppData\Local\gegl-0.2
2015-03-17 10:14 - 2015-03-17 10:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\FileZilla
2015-03-17 10:14 - 2015-03-17 10:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2015-03-17 10:14 - 2015-03-17 10:14 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client
2015-03-17 10:13 - 2015-03-17 10:26 - 00000916 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk
2015-03-17 10:12 - 2015-03-17 10:13 - 00000000 ____D () C:\Program Files\GIMP 2
2015-03-17 10:11 - 2015-03-17 16:25 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Notepad++
2015-03-17 10:11 - 2015-03-17 10:12 - 00000000 ____D () C:\Program Files (x86)\Notepad++
2015-03-17 10:11 - 2015-03-17 10:11 - 00001035 _____ () C:\Users\Frank\Desktop\Notepad++.lnk
2015-03-17 10:11 - 2015-03-17 10:11 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2015-03-17 10:11 - 2015-03-17 10:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
2015-03-17 10:06 - 2015-03-17 10:06 - 06208736 _____ (Tim Kosse) C:\Users\Frank\Downloads\filezilla_3.10.2_win32-setup.exe
2015-03-17 10:05 - 2015-03-17 10:05 - 08271739 _____ () C:\Users\Frank\Downloads\npp.6.7.5.installer.exe
2015-03-17 10:00 - 2015-03-17 10:00 - 91931728 _____ (The GIMP Team ) C:\Users\Frank\Downloads\gimp-2.8.14-setup-1.exe
2015-03-17 09:58 - 2015-03-17 09:58 - 24430312 _____ (Open source ) C:\Users\Frank\Downloads\freeplane-setup-1.3.15.exe
2015-03-17 08:41 - 2015-03-18 10:46 - 00000000 ___RD () C:\Users\Frank\Google Drive
2015-03-17 08:28 - 2015-03-17 08:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-03-17 08:27 - 2015-03-17 08:27 - 00880208 _____ (Google Inc.) C:\Users\Frank\Downloads\ChromeSetup.exe
2015-03-17 08:13 - 2015-03-17 08:13 - 00000000 ____D () C:\Program Files\Adblock Plus for IE
2015-03-17 08:12 - 2015-03-17 08:12 - 05915456 _____ ( ) C:\Users\Frank\Downloads\adblockplusie-1.3.exe
2015-03-16 22:19 - 2015-03-17 19:19 - 01447352 _____ () C:\Windows\WindowsUpdate.log
2015-03-16 22:16 - 2015-03-16 22:19 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\WildTangent
2015-03-16 22:16 - 2015-03-16 22:16 - 00000000 ____D () C:\ProgramData\BlueStacks
2015-03-16 21:16 - 2015-03-16 21:16 - 15094704 _____ (Lamantine Software ) C:\Users\Frank\Downloads\stpass_free_606434.exe
2015-03-16 21:16 - 2015-03-16 21:16 - 15094696 _____ (Lamantine Software ) C:\Users\Frank\Downloads\stpass_trial_606434.exe
2015-03-16 19:46 - 2015-03-16 20:09 - 00121344 ___SH () C:\Users\Frank\Downloads\Thumbs.db
2015-03-16 17:26 - 2015-03-16 17:46 - 00000000 ___SD () C:\Users\Public\Virtual CDs
2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ___SD () C:\Users\Public\Virtual CD v10
2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ___SD () C:\Users\Frank\AppData\Roaming\Virtual CD v10
2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual CD v10
2015-03-16 17:26 - 2012-12-06 11:09 - 00226080 ____N (H+H Software GmbH) C:\Windows\system32\Drivers\vdrv1000.sys
2015-03-16 17:26 - 2009-07-09 11:24 - 00024088 _____ (H+H Software GmbH) C:\Windows\system32\Drivers\HH10Help.sys
2015-03-16 17:25 - 2015-03-16 17:26 - 00000000 ____D () C:\Program Files (x86)\Virtual CD v10
2015-03-16 17:24 - 2015-03-16 17:24 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\InstallShield
2015-03-16 17:24 - 2008-06-17 09:22 - 00040464 _____ (H+H Software GmbH) C:\Windows\system32\Drivers\vcd10bus.sys
2015-03-16 16:43 - 2000-10-29 15:33 - 00141312 _____ (Info-ZIP) C:\Windows\SysWOW64\Zip32.dll
2015-03-16 16:30 - 2015-03-16 17:01 - 00000000 ____D () C:\Users\Frank\Documents\TC Seth
2015-03-16 15:13 - 2015-03-16 16:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\M-DVD.Org V2
2015-03-16 15:13 - 2007-09-24 10:04 - 00675840 _____ () C:\Windows\SysWOW64\AudioGenie2.ocx
2015-03-16 15:13 - 2006-03-09 12:34 - 02945024 _____ (hxxp://mediainfo.sourceforge.net) C:\Windows\SysWOW64\MediaInfo.dll
2015-03-16 15:13 - 2004-05-27 00:32 - 00102400 _____ (Info-ZIP) C:\Windows\SysWOW64\unzip32.dll
2015-03-16 15:12 - 2015-03-16 16:43 - 00000000 ____D () C:\Program Files (x86)\M-DVD.Org V2
2015-03-16 15:12 - 2015-03-16 15:12 - 00000000 ____D () C:\ProgramData\M-DVD.Org V2
2015-03-16 15:12 - 2009-12-04 11:56 - 00061440 ____H (SynApp GmbH) C:\Windows\SysWOW64\ErrExplorer.dll
2015-03-16 15:12 - 2006-10-06 09:20 - 02899968 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11.dll
2015-03-16 15:12 - 2006-10-04 16:01 - 00351232 _____ (combit GmbH) C:\Windows\SysWOW64\cmpr11.dll
2015-03-16 15:12 - 2006-09-26 15:51 - 01399296 _____ (combit GmbH) C:\Windows\SysWOW64\cmct11.dll
2015-03-16 15:12 - 2006-09-26 15:39 - 01378304 _____ (combit GmbH) C:\Windows\SysWOW64\cmls11.dll
2015-03-16 15:12 - 2006-09-26 15:39 - 00893952 _____ (combit GmbH) C:\Windows\SysWOW64\cmbr11.dll
2015-03-16 15:12 - 2006-09-26 15:38 - 00739328 _____ (combit GmbH) C:\Windows\SysWOW64\cmdw11.dll
2015-03-16 15:12 - 2006-09-26 15:36 - 00337920 _____ (combit GmbH) C:\Windows\SysWOW64\cmut11.dll
2015-03-16 15:12 - 2006-09-13 10:29 - 00688640 _____ (combit GmbH) C:\Windows\SysWOW64\cmmx01.dll
2015-03-16 15:12 - 2006-07-19 07:00 - 00349184 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11pw.llx
2015-03-16 15:12 - 2006-06-22 08:50 - 00165584 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11o.ocx
2015-03-16 15:12 - 2005-09-13 13:29 - 00414720 _____ (combit GmbH) C:\Windows\SysWOW64\cmll1100.lng
2015-03-16 15:12 - 2005-08-08 16:10 - 00425984 _____ () C:\Windows\SysWOW64\cmmx0100.lng
2015-03-16 15:12 - 2005-07-12 09:41 - 00684032 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11xl.dll
2015-03-16 15:12 - 2005-06-23 15:17 - 01161492 _____ () C:\Windows\SysWOW64\cmLL1100.chm
2015-03-16 12:57 - 2015-03-17 12:10 - 00000000 ____D () C:\Program Files (x86)\Sticky Password
2015-03-16 12:04 - 2015-03-16 12:04 - 00000000 ____D () C:\ProgramData\ToshibaEurope
2015-03-16 12:04 - 2015-03-16 12:04 - 00000000 ____D () C:\ProgramData\TOSHIBA Tempro
2015-03-16 12:03 - 2015-03-16 12:03 - 00000000 ____D () C:\Windows\System32\Tasks\Toshiba
2015-03-16 12:03 - 2015-03-16 12:03 - 00000000 ____D () C:\Program Files (x86)\Toshiba TEMPRO
2015-03-16 11:55 - 2015-03-16 11:55 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieBrowserModeList
2015-03-16 11:54 - 2015-03-16 11:54 - 00000000 ____D () C:\ProgramData\IsolatedStorage
2015-03-16 08:57 - 2014-07-24 16:03 - 02141920 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2015-03-16 08:57 - 2014-07-24 14:36 - 02145472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2015-03-16 08:57 - 2014-07-24 10:44 - 16874496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2015-03-16 08:57 - 2014-07-24 10:16 - 12730880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2015-03-16 08:57 - 2014-07-24 09:53 - 01261056 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2015-03-16 08:57 - 2014-07-24 09:32 - 01532416 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2015-03-16 08:57 - 2014-07-24 08:28 - 01600000 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2015-03-16 08:57 - 2014-06-14 07:03 - 02389504 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-03-16 08:57 - 2014-06-14 06:46 - 02071552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-03-16 08:56 - 2014-07-24 16:28 - 00419648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-03-16 08:56 - 2014-07-24 16:28 - 00412992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2015-03-16 08:56 - 2014-07-24 16:28 - 00280384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2015-03-16 08:56 - 2014-07-24 16:28 - 00143680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2015-03-16 08:56 - 2014-07-24 16:25 - 00054752 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-03-16 08:56 - 2014-07-24 16:23 - 01519488 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2015-03-16 08:56 - 2014-07-24 16:23 - 00125472 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2015-03-16 08:56 - 2014-07-24 16:20 - 00263400 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2015-03-16 08:56 - 2014-07-24 16:16 - 02574208 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2015-03-16 08:56 - 2014-07-24 16:16 - 00211216 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe
2015-03-16 08:56 - 2014-07-24 16:07 - 02009920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-03-16 08:56 - 2014-07-24 16:05 - 01660048 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-03-16 08:56 - 2014-07-24 16:05 - 01519560 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-03-16 08:56 - 2014-07-24 16:05 - 01488008 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-03-16 08:56 - 2014-07-24 16:05 - 01356840 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-03-16 08:56 - 2014-07-24 16:03 - 00882136 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-03-16 08:56 - 2014-07-24 16:03 - 00360480 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2015-03-16 08:56 - 2014-07-24 16:03 - 00233888 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-03-16 08:56 - 2014-07-24 16:03 - 00205512 _____ (Microsoft Corporation) C:\Windows\system32\mftranscode.dll
2015-03-16 08:56 - 2014-07-24 14:50 - 00098048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2015-03-16 08:56 - 2014-07-24 14:48 - 02410976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2015-03-16 08:56 - 2014-07-24 14:48 - 00180208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe
2015-03-16 08:56 - 2014-07-24 14:36 - 00707536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-03-16 08:56 - 2014-07-24 14:36 - 00355800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2015-03-16 08:56 - 2014-07-24 14:36 - 00180720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mftranscode.dll
2015-03-16 08:56 - 2014-07-24 12:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDRUM.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2015-03-16 08:56 - 2014-07-24 12:46 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys
2015-03-16 08:56 - 2014-07-24 12:45 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2015-03-16 08:56 - 2014-07-24 12:44 - 00674816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2015-03-16 08:56 - 2014-07-24 12:43 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2015-03-16 08:56 - 2014-07-24 12:42 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2015-03-16 08:56 - 2014-07-24 12:42 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys
2015-03-16 08:56 - 2014-07-24 12:41 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthpan.sys
2015-03-16 08:56 - 2014-07-24 12:33 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-03-16 08:56 - 2014-07-24 12:33 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-03-16 08:56 - 2014-07-24 12:06 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\iasnap.dll
2015-03-16 08:56 - 2014-07-24 12:05 - 00287232 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll
2015-03-16 08:56 - 2014-07-24 12:05 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-03-16 08:56 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2015-03-16 08:56 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2015-03-16 08:56 - 2014-07-24 11:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRUM.DLL
2015-03-16 08:56 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2015-03-16 08:56 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2015-03-16 08:56 - 2014-07-24 11:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2015-03-16 08:56 - 2014-07-24 11:49 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersGPExt.dll
2015-03-16 08:56 - 2014-07-24 11:33 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-03-16 08:56 - 2014-07-24 11:32 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl
2015-03-16 08:56 - 2014-07-24 11:20 - 02050560 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2015-03-16 08:56 - 2014-07-24 11:18 - 01089024 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll
2015-03-16 08:56 - 2014-07-24 11:12 - 00878592 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2015-03-16 08:56 - 2014-07-24 11:10 - 01844224 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2015-03-16 08:56 - 2014-07-24 11:10 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2015-03-16 08:56 - 2014-07-24 11:10 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-03-16 08:56 - 2014-07-24 11:10 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasnap.dll
2015-03-16 08:56 - 2014-07-24 11:05 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2015-03-16 08:56 - 2014-07-24 10:52 - 00621056 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2015-03-16 08:56 - 2014-07-24 10:42 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl
2015-03-16 08:56 - 2014-07-24 10:40 - 00557056 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs.dll
2015-03-16 08:56 - 2014-07-24 10:39 - 00770048 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2015-03-16 08:56 - 2014-07-24 10:33 - 01741824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll
2015-03-16 08:56 - 2014-07-24 10:32 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpedit.dll
2015-03-16 08:56 - 2014-07-24 10:27 - 00779264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2015-03-16 08:56 - 2014-07-24 10:25 - 00832512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll
2015-03-16 08:56 - 2014-07-24 10:24 - 01817088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll
2015-03-16 08:56 - 2014-07-24 10:21 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2015-03-16 08:56 - 2014-07-24 10:18 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll
2015-03-16 08:56 - 2014-07-24 10:12 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll
2015-03-16 08:56 - 2014-07-24 10:11 - 00356864 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-03-16 08:56 - 2014-07-24 10:11 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll
2015-03-16 08:56 - 2014-07-24 10:10 - 00540672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2015-03-16 08:56 - 2014-07-24 10:04 - 00492032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll
2015-03-16 08:56 - 2014-07-24 10:04 - 00183808 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe
2015-03-16 08:56 - 2014-07-24 10:03 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2015-03-16 08:56 - 2014-07-24 09:58 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll
2015-03-16 08:56 - 2014-07-24 09:53 - 00449536 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll
2015-03-16 08:56 - 2014-07-24 09:49 - 01361408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2015-03-16 08:56 - 2014-07-24 09:49 - 01287680 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2015-03-16 08:56 - 2014-07-24 09:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2015-03-16 08:56 - 2014-07-24 09:48 - 00659968 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2015-03-16 08:56 - 2014-07-24 09:47 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2015-03-16 08:56 - 2014-07-24 09:43 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll
2015-03-16 08:56 - 2014-07-24 09:39 - 02397184 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll
2015-03-16 08:56 - 2014-07-24 09:38 - 00371200 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2015-03-16 08:56 - 2014-07-24 09:30 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
2015-03-16 08:56 - 2014-07-24 09:29 - 00439296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2015-03-16 08:56 - 2014-07-24 09:28 - 00595456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll
2015-03-16 08:56 - 2014-07-24 09:23 - 01404416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll
2015-03-16 08:56 - 2014-07-24 09:22 - 00487936 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2015-03-16 08:56 - 2014-07-24 09:21 - 01231872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2015-03-16 08:56 - 2014-07-24 09:21 - 00302080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll
2015-03-16 08:56 - 2014-07-24 09:19 - 00388608 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2015-03-16 08:56 - 2014-07-24 09:18 - 01144320 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll
2015-03-16 08:56 - 2014-07-24 09:18 - 00795136 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2015-03-16 08:56 - 2014-07-24 09:16 - 00505344 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll
2015-03-16 08:56 - 2014-07-24 09:16 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll
2015-03-16 08:56 - 2014-07-24 09:15 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-03-16 08:56 - 2014-07-24 09:15 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll
2015-03-16 08:56 - 2014-07-24 09:15 - 00432128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2015-03-16 08:56 - 2014-07-24 09:13 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2015-03-16 08:56 - 2014-07-24 09:10 - 00889344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2015-03-16 08:56 - 2014-07-24 09:10 - 00371712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2015-03-16 08:56 - 2014-07-24 09:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2015-03-16 08:56 - 2014-07-24 09:07 - 01705472 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-03-16 08:56 - 2014-07-24 09:05 - 00448000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll
2015-03-16 08:56 - 2014-07-24 09:04 - 00667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-03-16 08:56 - 2014-07-24 09:02 - 03465216 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-03-16 08:56 - 2014-07-24 09:01 - 01992192 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2015-03-16 08:56 - 2014-07-24 08:58 - 00432640 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2015-03-16 08:56 - 2014-07-24 08:58 - 00288768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll
2015-03-16 08:56 - 2014-07-24 08:54 - 01290752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2015-03-16 08:56 - 2014-07-24 08:50 - 01182208 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll
2015-03-16 08:56 - 2014-07-24 08:47 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2015-03-16 08:56 - 2014-07-24 08:44 - 01057792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.dll
2015-03-16 08:56 - 2014-07-24 08:41 - 00459264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2015-03-16 08:56 - 2014-07-12 06:55 - 00268288 _____ (Microsoft Corporation) C:\Windows\system32\wisp.dll
2015-03-16 08:56 - 2014-07-12 05:58 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wisp.dll
2015-03-16 08:56 - 2014-07-04 13:59 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2015-03-16 08:56 - 2014-07-04 11:29 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSip.dll
2015-03-16 08:56 - 2014-07-04 11:20 - 01656832 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2015-03-16 08:56 - 2014-07-04 11:06 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxSip.dll
2015-03-16 08:56 - 2014-07-04 11:00 - 01351168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2015-03-16 08:56 - 2014-07-04 10:30 - 00544768 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2015-03-16 08:56 - 2014-07-04 10:27 - 00474112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2015-03-16 08:56 - 2014-06-27 07:22 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2015-03-16 08:56 - 2014-06-26 01:32 - 01029632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2015-03-16 08:56 - 2014-06-26 01:29 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll
2015-03-16 08:56 - 2014-06-20 00:37 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-03-16 08:56 - 2014-06-19 03:13 - 00310080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2015-03-16 08:56 - 2014-06-07 13:46 - 00216368 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll
2015-03-16 08:56 - 2014-06-07 11:20 - 00189016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll
2015-03-16 08:56 - 2014-06-05 11:18 - 01018368 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll
2015-03-16 08:56 - 2014-06-05 10:42 - 00889856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll
2015-03-16 08:56 - 2014-05-31 06:00 - 01463808 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2015-03-16 08:56 - 2014-05-31 05:18 - 01319936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2015-03-16 08:56 - 2014-05-29 07:23 - 00427008 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2015-03-16 08:56 - 2014-05-29 06:25 - 00313856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2015-03-16 08:56 - 2014-05-26 08:26 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll
2015-03-16 08:56 - 2014-05-10 11:12 - 00387896 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2015-03-16 08:56 - 2014-05-10 09:46 - 00335680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2015-03-16 08:56 - 2014-05-06 05:41 - 00486744 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2015-03-16 08:56 - 2014-05-06 01:55 - 00391000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll
2015-03-16 08:56 - 2014-03-25 03:27 - 00160600 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll
2015-03-16 08:56 - 2014-03-25 03:27 - 00123920 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll
2015-03-16 08:56 - 2014-03-25 02:20 - 00128568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll
2015-03-16 08:56 - 2014-03-25 02:20 - 00127544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmmbase.dll
2015-03-16 08:55 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTT102.DLL
2015-03-16 08:55 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTT102.DLL
2015-03-16 08:55 - 2014-07-24 10:14 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2015-03-16 08:55 - 2014-07-24 09:36 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll
2015-03-16 08:55 - 2014-07-24 09:18 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-03-16 08:55 - 2014-07-24 09:06 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-03-16 08:55 - 2014-07-24 09:00 - 02100736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll
2015-03-16 08:48 - 2014-07-30 02:56 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll
2015-03-16 08:48 - 2014-07-29 06:22 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\tcpmon.dll
2015-03-16 08:41 - 2014-08-15 01:36 - 00146752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys
2015-03-16 08:40 - 2015-03-16 08:40 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2015-03-16 08:40 - 2015-03-16 08:40 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2015-03-16 08:34 - 2015-01-27 05:22 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2015-03-16 08:34 - 2015-01-27 03:11 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2015-03-16 08:34 - 2014-10-29 04:56 - 00027456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2015-03-16 08:34 - 2014-10-29 03:37 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll
2015-03-12 17:13 - 2014-04-14 04:29 - 01018880 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2015-03-12 16:48 - 2015-03-04 22:24 - 00792032 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-03-12 16:48 - 2015-03-04 22:24 - 00178144 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-03-12 16:28 - 2015-03-12 16:35 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-12 16:28 - 2015-02-26 21:14 - 122905848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-03-12 16:23 - 2014-03-20 00:36 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll
2015-03-12 16:23 - 2014-03-08 07:40 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2015-03-12 16:23 - 2014-03-04 08:00 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll
2015-03-12 16:23 - 2014-03-04 07:32 - 00356864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll
2015-03-12 16:22 - 2014-03-20 05:19 - 01291200 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-03-12 16:22 - 2014-03-20 04:41 - 00376152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2015-03-12 16:22 - 2014-03-20 01:53 - 00950784 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2015-03-12 16:22 - 2014-03-20 01:48 - 00201216 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll
2015-03-12 16:22 - 2014-03-20 00:55 - 01036288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-03-12 16:22 - 2014-03-20 00:39 - 00800256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2015-03-12 16:22 - 2014-03-19 06:50 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe
2015-03-12 16:22 - 2014-03-19 06:20 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe
2015-03-12 16:22 - 2014-03-13 13:35 - 00157016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys
2015-03-12 16:22 - 2014-03-08 21:38 - 01542768 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-03-12 16:22 - 2014-03-08 16:29 - 00356848 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2015-03-12 16:22 - 2014-03-08 12:34 - 01095488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-03-12 16:22 - 2014-03-08 10:02 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll
2015-03-12 16:22 - 2014-03-08 09:33 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll
2015-03-12 16:22 - 2014-03-08 09:25 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\SetNetworkLocation.dll
2015-03-12 16:22 - 2014-03-08 09:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxproxy.dll
2015-03-12 16:22 - 2014-03-08 08:47 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll
2015-03-12 16:22 - 2014-03-08 08:04 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2015-03-12 16:22 - 2014-03-08 07:48 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2015-03-12 16:22 - 2014-03-08 07:31 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2015-03-12 16:22 - 2014-03-08 07:30 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2015-03-12 16:22 - 2014-03-08 06:41 - 01306624 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2015-03-12 16:22 - 2014-03-08 06:11 - 00924160 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2015-03-12 16:22 - 2014-03-06 15:34 - 02331000 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-03-12 16:22 - 2014-03-06 15:34 - 00113648 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2015-03-12 16:22 - 2014-03-06 12:19 - 00094016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll
2015-03-12 16:22 - 2014-03-06 11:46 - 01679128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-03-12 16:22 - 2014-03-06 10:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2015-03-12 16:22 - 2014-03-06 10:24 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2015-03-12 16:22 - 2014-03-06 10:22 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2015-03-12 16:22 - 2014-03-06 10:19 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-03-12 16:22 - 2014-03-06 10:19 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2015-03-12 16:22 - 2014-03-06 10:19 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2015-03-12 16:22 - 2014-03-06 10:08 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll
2015-03-12 16:22 - 2014-03-06 09:41 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\DevPropMgr.dll
2015-03-12 16:22 - 2014-03-06 09:38 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-03-12 16:22 - 2014-03-06 09:14 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\WSDScDrv.dll
2015-03-12 16:22 - 2014-03-06 09:10 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\l2gpstore.dll
2015-03-12 16:22 - 2014-03-06 09:00 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
2015-03-12 16:22 - 2014-03-06 08:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-03-12 16:22 - 2014-03-06 08:16 - 00171008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll
2015-03-12 16:22 - 2014-03-06 08:02 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2015-03-12 16:22 - 2014-03-06 07:29 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2015-03-12 16:22 - 2014-03-06 07:24 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll
2015-03-12 16:22 - 2014-03-06 07:23 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll
2015-03-12 16:22 - 2014-03-06 07:21 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2015-03-12 16:22 - 2014-03-06 07:06 - 00386560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll
2015-03-12 16:22 - 2014-03-06 07:04 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2015-03-12 16:22 - 2014-03-06 07:01 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll
2015-03-12 16:22 - 2014-03-06 06:51 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll
2015-03-12 16:22 - 2014-03-06 06:47 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2015-03-12 16:22 - 2014-03-06 06:42 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll
2015-03-12 16:22 - 2014-03-04 08:16 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2015-03-12 16:22 - 2014-03-04 08:13 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2015-03-12 16:22 - 2014-03-04 08:08 - 00299008 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2015-03-12 16:22 - 2014-03-04 07:56 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll
2015-03-12 16:22 - 2014-03-04 07:42 - 00494592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2015-03-12 16:22 - 2014-03-04 07:39 - 00254976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll
2015-03-12 16:22 - 2014-03-04 07:15 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll
2015-03-12 16:22 - 2014-03-04 07:05 - 00402432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll
2015-03-12 16:22 - 2014-03-04 07:03 - 00669696 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2015-03-12 16:22 - 2014-03-04 07:03 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll
2015-03-12 16:22 - 2014-03-04 06:54 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll
2015-03-12 16:22 - 2014-03-04 06:52 - 00605184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll
2015-03-12 16:22 - 2013-12-24 00:28 - 00262656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll
2015-03-12 16:22 - 2013-12-24 00:26 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll
2015-03-12 16:09 - 2014-12-09 04:45 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-03-12 16:09 - 2014-12-09 02:56 - 00538624 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-03-12 16:09 - 2014-09-27 08:13 - 00104336 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll
2015-03-12 16:09 - 2014-09-27 06:24 - 00088800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll
2015-03-12 16:09 - 2014-09-27 04:30 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2015-03-12 16:09 - 2014-06-20 02:48 - 01273184 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-03-12 16:09 - 2014-06-20 00:52 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-03-12 16:05 - 2015-01-23 08:17 - 00723072 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2015-03-12 16:05 - 2015-01-23 06:02 - 00560392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2015-03-12 16:05 - 2015-01-15 23:43 - 00563504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-03-12 16:05 - 2015-01-15 23:43 - 00177984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-03-12 16:05 - 2015-01-14 05:22 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-03-12 16:05 - 2015-01-14 04:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-03-12 16:05 - 2014-10-29 03:51 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-03-12 16:05 - 2014-10-29 03:50 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-03-12 16:05 - 2014-10-29 03:06 - 00736768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-03-12 16:05 - 2014-10-29 03:06 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-03-12 16:05 - 2014-10-29 02:31 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-03-12 16:05 - 2014-06-13 02:15 - 00517528 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-03-12 16:05 - 2014-06-13 02:14 - 01557848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-03-12 16:05 - 2014-06-13 01:10 - 00406400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-03-12 16:05 - 2014-03-06 13:53 - 02141912 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-03-12 16:05 - 2014-03-06 13:51 - 00379224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-03-12 16:05 - 2014-03-06 13:39 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2015-03-12 16:05 - 2014-03-06 12:13 - 01779800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2015-03-12 16:04 - 2015-03-06 03:53 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-12 16:04 - 2015-03-06 03:33 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-03-12 16:04 - 2015-02-26 00:26 - 04178944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-12 16:04 - 2015-02-20 04:03 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-12 16:04 - 2015-02-20 03:58 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-12 16:04 - 2015-02-20 03:20 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-03-12 16:04 - 2015-02-20 03:15 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-03-12 16:04 - 2015-01-31 00:42 - 03097600 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-03-12 16:04 - 2015-01-31 00:29 - 02484224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-03-12 16:04 - 2015-01-29 02:58 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll
2015-03-12 16:04 - 2015-01-29 02:29 - 00290816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\photowiz.dll
2015-03-12 16:04 - 2014-12-09 02:50 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-03-12 16:04 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll
2015-03-12 16:04 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll
2015-03-12 16:04 - 2014-10-29 03:49 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-03-12 16:04 - 2014-10-29 03:44 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-03-12 16:04 - 2014-10-29 03:44 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-03-12 16:04 - 2014-10-29 03:04 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-03-12 16:04 - 2014-10-29 03:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-03-12 16:04 - 2014-10-29 03:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-03-12 16:04 - 2014-08-07 03:12 - 01336624 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-03-12 16:04 - 2014-08-02 04:56 - 01064448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-03-12 16:04 - 2014-05-30 04:03 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-03-12 16:03 - 2015-02-07 00:09 - 00396419 _____ () C:\Windows\system32\ApnDatabase.xml
2015-03-12 16:03 - 2015-02-04 00:58 - 00264000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2015-03-12 16:03 - 2015-02-04 00:58 - 00114496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys
2015-03-12 16:03 - 2015-02-04 00:58 - 00044024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2015-03-12 16:03 - 2015-02-03 00:53 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll
2015-03-12 16:03 - 2015-02-03 00:53 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll
2015-03-12 16:03 - 2015-01-27 04:44 - 00933888 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe
2015-03-12 16:03 - 2015-01-24 02:51 - 00816128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe
2015-03-12 16:03 - 2014-12-19 09:57 - 00788680 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-03-12 16:03 - 2014-12-19 09:25 - 00602776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-03-12 16:03 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\SysWOW64\locale.nls
2015-03-12 16:03 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\system32\locale.nls
2015-03-12 16:03 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-03-12 16:03 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-03-12 16:03 - 2014-10-29 02:27 - 01200128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2015-03-12 16:03 - 2014-10-29 02:27 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll
2015-03-12 16:03 - 2014-10-29 02:04 - 00868352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2015-03-12 16:03 - 2014-10-29 02:04 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll
2015-03-12 16:03 - 2014-10-13 03:33 - 00116032 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-03-12 16:03 - 2014-10-11 01:58 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-03-12 16:03 - 2014-10-11 01:53 - 03607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-03-12 16:03 - 2014-10-08 08:30 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-03-12 16:03 - 2014-10-08 08:09 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-03-12 16:03 - 2014-10-08 07:27 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-03-12 16:03 - 2014-08-23 06:18 - 02149376 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-03-12 16:03 - 2014-08-23 06:03 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-03-12 16:03 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2015-03-12 16:03 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-03-12 16:03 - 2014-03-13 08:42 - 00308224 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe
2015-03-12 16:03 - 2014-03-13 07:51 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe
2015-03-12 16:02 - 2014-05-03 06:36 - 00997888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2015-03-12 16:02 - 2014-05-03 06:19 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll
2015-03-12 16:02 - 2014-05-03 06:08 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll
2015-03-12 16:02 - 2014-05-03 06:07 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll
2015-03-12 16:02 - 2014-05-03 05:46 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncobjapi.dll
2015-03-12 16:02 - 2014-05-03 05:37 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll
2015-03-12 16:02 - 2014-05-03 05:37 - 00207360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll
2015-03-12 16:02 - 2014-05-03 00:26 - 00050745 _____ () C:\Windows\system32\srms.dat
2015-03-12 16:02 - 2014-04-30 07:43 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys
2015-03-12 16:02 - 2014-04-30 07:41 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-03-12 16:02 - 2014-04-30 07:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys
2015-03-12 16:02 - 2014-04-30 07:41 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys
2015-03-12 16:02 - 2014-04-30 06:45 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe
2015-03-12 16:02 - 2014-04-30 05:48 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe
2015-03-12 16:02 - 2014-04-30 05:24 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2015-03-12 16:02 - 2014-04-30 05:23 - 00353280 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2015-03-12 16:02 - 2014-04-30 05:23 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2015-03-12 16:02 - 2014-04-30 05:23 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll
2015-03-12 16:02 - 2014-04-30 05:14 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2015-03-12 16:02 - 2014-04-30 04:59 - 01063424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2015-03-12 16:02 - 2014-04-30 04:46 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll
2015-03-12 16:02 - 2014-04-30 04:46 - 00229888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2015-03-12 16:02 - 2014-04-30 04:46 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2015-03-12 16:02 - 2014-04-30 04:45 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll
2015-03-12 16:02 - 2014-04-30 04:42 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2015-03-12 16:02 - 2014-04-28 23:40 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2015-03-12 16:02 - 2014-04-26 17:39 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll
2015-03-12 16:02 - 2014-04-14 10:37 - 02125344 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2015-03-12 16:02 - 2014-04-14 09:08 - 01797896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2015-03-12 16:02 - 2014-04-14 06:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll
2015-03-12 16:02 - 2014-03-08 21:40 - 00136024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2015-03-12 16:02 - 2014-03-08 07:41 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2015-03-12 16:02 - 2014-03-08 07:25 - 00264192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2015-03-12 16:02 - 2014-03-08 07:04 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2015-03-12 16:02 - 2014-03-08 06:58 - 00567296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2015-03-12 16:01 - 2014-08-23 07:10 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
2015-03-12 16:01 - 2014-08-23 06:32 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2015-03-12 16:01 - 2014-08-23 05:33 - 00796672 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2015-03-12 16:01 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2015-03-12 16:01 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2015-03-12 16:01 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll
2015-03-12 16:01 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-03-12 16:01 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2015-03-12 16:01 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-03-12 16:00 - 2014-10-23 06:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2015-03-12 16:00 - 2014-10-23 06:05 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2015-03-12 16:00 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2015-03-12 16:00 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-03-12 16:00 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-03-12 16:00 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2015-03-12 16:00 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll
2015-03-12 16:00 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\httpprxm.dll
2015-03-12 16:00 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\ProximityService.dll
2015-03-12 16:00 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2015-03-12 16:00 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2015-03-12 16:00 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\adhsvc.dll
2015-03-12 16:00 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2015-03-12 16:00 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\pcsvDevice.dll
2015-03-12 16:00 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2015-03-12 16:00 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll
2015-03-12 16:00 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll
2015-03-12 16:00 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2015-03-12 16:00 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2015-03-12 16:00 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe
2015-03-12 16:00 - 2014-07-24 16:28 - 00468288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2015-03-12 16:00 - 2014-07-24 12:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys
2015-03-12 16:00 - 2014-07-24 11:09 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2015-03-12 16:00 - 2014-07-24 10:27 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2015-03-12 15:57 - 2014-04-08 23:46 - 00086688 _____ (Microsoft Corporation) C:\Windows\system32\mrt_map.dll
2015-03-12 15:57 - 2014-04-08 23:46 - 00028320 _____ (Microsoft Corporation) C:\Windows\system32\mrt100.dll
2015-03-12 15:57 - 2014-04-08 19:54 - 00080032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt_map.dll
2015-03-12 15:57 - 2014-04-08 19:54 - 00026784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt100.dll
2015-03-12 15:56 - 2014-08-02 01:18 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2015-03-12 15:55 - 2015-02-06 02:28 - 02257408 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-03-12 15:55 - 2015-02-06 02:08 - 01943040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-03-12 15:55 - 2015-01-29 02:11 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-12 15:55 - 2015-01-29 02:04 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-03-12 15:55 - 2015-01-29 02:04 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2015-03-12 15:55 - 2015-01-29 02:00 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-12 15:55 - 2015-01-29 01:55 - 00971776 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2015-03-12 15:55 - 2015-01-29 01:50 - 00811008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2015-03-12 15:55 - 2015-01-28 03:24 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\StorageContextHandler.dll
2015-03-12 15:55 - 2015-01-28 02:47 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorageContextHandler.dll
2015-03-12 15:55 - 2014-12-19 07:26 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-03-12 15:55 - 2014-12-12 01:51 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2015-03-12 15:55 - 2014-10-29 03:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\printui.exe
2015-03-12 15:55 - 2014-10-29 03:34 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll
2015-03-12 15:55 - 2014-10-29 03:34 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WSCollect.exe
2015-03-12 15:55 - 2014-10-29 03:34 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe
2015-03-12 15:55 - 2014-10-29 03:04 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll
2015-03-12 15:55 - 2014-10-29 02:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.exe
2015-03-12 15:55 - 2014-10-29 02:52 - 00289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compstui.dll
2015-03-12 15:55 - 2014-10-29 02:51 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2015-03-12 15:55 - 2014-10-29 02:45 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\prnntfy.dll
2015-03-12 15:55 - 2014-10-29 02:28 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll
2015-03-12 15:55 - 2014-10-29 02:20 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2015-03-12 15:55 - 2014-10-29 02:15 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnntfy.dll
2015-03-12 15:55 - 2014-10-29 02:13 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2015-03-12 15:55 - 2014-10-29 01:55 - 00223744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2015-03-12 15:55 - 2014-10-29 01:55 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll
2015-03-12 15:55 - 2014-10-29 01:44 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll
2015-03-12 15:55 - 2014-10-29 01:41 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll
2015-03-12 15:55 - 2014-10-29 01:35 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll
2015-03-12 15:55 - 2014-10-13 03:43 - 00238912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2015-03-12 15:55 - 2014-10-13 03:43 - 00153920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2015-03-12 15:55 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2015-03-12 15:55 - 2014-10-13 03:43 - 00039744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2015-03-12 15:55 - 2014-09-04 01:12 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2015-03-12 15:55 - 2014-09-04 01:01 - 00514048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2015-03-12 15:55 - 2014-07-10 05:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\lockscreencn.dll
2015-03-12 15:54 - 2014-12-12 03:04 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-03-12 15:54 - 2014-07-15 19:16 - 03048880 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2015-03-12 15:54 - 2014-07-15 09:29 - 03118080 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2015-03-12 15:54 - 2014-07-15 09:22 - 02861056 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll
2015-03-12 15:54 - 2014-07-15 09:03 - 02344448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2015-03-12 15:53 - 2014-04-11 04:06 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-03-12 15:53 - 2014-04-11 04:05 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-03-12 15:53 - 2014-04-11 04:02 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-03-12 15:53 - 2014-04-11 04:01 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-03-12 15:53 - 2014-04-11 03:57 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
2015-03-12 15:52 - 2015-02-05 21:24 - 01113920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-03-12 15:52 - 2015-02-03 01:03 - 03551744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2015-03-12 15:52 - 2015-02-03 01:02 - 04298240 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2015-03-12 15:52 - 2015-01-30 04:01 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys
2015-03-12 15:52 - 2015-01-30 04:00 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rfcomm.sys
         

Alt 18.03.2015, 11:17   #8
Dorfkicker
 
Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden - Standard

Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden



FRST.txt (Teil 2)

Code:
ATTFilter
2015-03-12 15:52 - 2015-01-30 03:03 - 01488896 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2015-03-12 15:52 - 2015-01-30 03:03 - 01464832 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2015-03-12 15:52 - 2015-01-30 02:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll
2015-03-12 15:52 - 2015-01-30 02:42 - 01204224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll
2015-03-12 15:52 - 2015-01-30 02:29 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atlthunk.dll
2015-03-12 15:52 - 2015-01-19 19:42 - 01487976 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2015-03-12 15:52 - 2014-10-29 03:46 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2015-03-12 15:52 - 2014-10-29 03:46 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2015-03-12 15:52 - 2014-10-29 03:45 - 01198080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2015-03-12 15:52 - 2014-10-29 03:03 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\fsquirt.exe
2015-03-12 15:52 - 2014-10-29 02:28 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\atlthunk.dll
2015-03-12 15:51 - 2014-04-09 12:53 - 00337240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2015-03-12 15:51 - 2014-04-06 17:20 - 01403856 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2015-03-12 15:51 - 2014-04-06 17:20 - 01379064 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2015-03-12 15:51 - 2014-04-06 17:20 - 00765408 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2015-03-12 15:51 - 2014-04-06 17:20 - 00491744 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2015-03-12 15:51 - 2014-04-06 16:16 - 01209616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2015-03-12 15:51 - 2014-04-06 16:16 - 00669856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2015-03-12 15:51 - 2014-04-06 13:33 - 00335872 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe
2015-03-12 15:51 - 2014-04-06 11:05 - 01222656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2015-03-12 15:51 - 2014-04-06 10:59 - 00982016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
2015-03-12 15:51 - 2014-03-28 16:58 - 00407016 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-03-12 15:51 - 2014-03-18 06:00 - 07173120 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2015-03-12 15:51 - 2014-03-18 05:52 - 05104640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2015-03-12 15:51 - 2014-03-17 06:09 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-03-12 15:51 - 2014-03-17 05:11 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2015-03-12 15:51 - 2014-03-14 07:26 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\GeofenceMonitorService.dll
2015-03-12 15:51 - 2014-03-14 07:10 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GeofenceMonitorService.dll
2015-03-12 15:50 - 2014-04-18 15:57 - 00032600 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll
2015-03-12 15:50 - 2014-04-18 10:44 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\energyprov.dll
2015-03-12 15:50 - 2014-04-14 10:20 - 00324888 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll
2015-03-12 15:50 - 2014-04-14 09:01 - 00285144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll
2015-03-12 15:50 - 2014-04-11 05:51 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2015-03-12 15:50 - 2014-04-11 05:23 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll
2015-03-12 15:50 - 2014-04-09 07:39 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2015-03-12 15:50 - 2014-04-09 06:44 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2015-03-12 15:50 - 2014-04-09 04:33 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
2015-03-12 15:50 - 2014-04-08 03:01 - 00589656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2015-03-12 15:50 - 2014-04-06 17:34 - 00372568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2015-03-12 15:50 - 2014-04-06 17:34 - 00275800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2015-03-12 15:50 - 2014-04-06 17:30 - 00201920 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll
2015-03-12 15:50 - 2014-04-06 17:24 - 00360792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2015-03-12 15:50 - 2014-04-06 17:20 - 00609448 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-03-12 15:50 - 2014-04-06 17:20 - 00028408 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-03-12 15:50 - 2014-04-06 16:22 - 00178184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVideoDSP.dll
2015-03-12 15:50 - 2014-04-06 16:16 - 00518544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-03-12 15:50 - 2014-04-06 16:16 - 00387896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2015-03-12 15:50 - 2014-04-06 13:58 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-03-12 15:50 - 2014-04-06 13:51 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-03-12 15:50 - 2014-04-06 13:24 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-03-12 15:50 - 2014-04-06 13:06 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-03-12 15:50 - 2014-04-06 12:26 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll
2015-03-12 15:50 - 2014-04-03 09:12 - 00307304 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-03-12 15:50 - 2014-04-03 09:12 - 00130144 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll
2015-03-12 15:50 - 2014-04-03 05:03 - 00230808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-03-12 15:50 - 2014-04-03 05:03 - 00111528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll
2015-03-12 15:50 - 2014-04-03 03:23 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tlscsp.dll
2015-03-12 15:50 - 2014-04-03 03:22 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll
2015-03-12 15:50 - 2014-03-27 06:36 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2015-03-12 15:50 - 2014-03-27 05:48 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2015-03-12 15:50 - 2014-03-27 04:15 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll
2015-03-12 15:50 - 2014-03-27 04:10 - 01436160 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2015-03-12 15:50 - 2014-03-19 09:15 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2015-03-12 15:50 - 2014-03-19 08:24 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-03-12 15:50 - 2014-03-19 08:17 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll
2015-03-12 15:50 - 2014-03-06 10:19 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2015-03-12 15:50 - 2014-03-06 09:20 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll
2015-03-12 15:50 - 2014-01-27 19:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-03-12 15:48 - 2015-01-29 01:59 - 02773504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-03-12 15:48 - 2015-01-29 01:49 - 02459136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-03-12 15:48 - 2014-05-19 07:31 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\drvcfg.exe
2015-03-12 15:48 - 2014-05-19 07:21 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe
2015-03-12 15:48 - 2014-05-19 06:23 - 00098816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe
2015-03-12 15:48 - 2014-04-30 05:43 - 01975296 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-03-12 15:48 - 2014-04-30 05:26 - 01345536 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-03-12 15:48 - 2014-04-30 04:47 - 01509888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-03-12 15:11 - 2015-01-31 00:20 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-03-12 15:11 - 2014-06-02 03:10 - 00423768 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2015-03-12 15:11 - 2014-05-31 11:07 - 00440664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2015-03-12 15:11 - 2014-05-31 11:07 - 00089944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2015-03-12 15:11 - 2014-05-31 11:07 - 00027480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2015-03-12 15:11 - 2014-05-31 07:30 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2015-03-12 15:11 - 2014-05-31 07:27 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2015-03-12 15:11 - 2014-05-31 07:26 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2015-03-12 15:11 - 2014-05-31 05:01 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2015-03-12 15:11 - 2014-05-31 05:01 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2015-03-12 15:11 - 2014-05-31 05:01 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2015-03-12 15:11 - 2014-05-27 10:56 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\DaOtpCredentialProvider.dll
2015-03-12 15:11 - 2014-05-27 10:53 - 00270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DaOtpCredentialProvider.dll
2015-03-12 15:08 - 2015-01-28 16:41 - 07472960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-12 15:08 - 2015-01-28 16:41 - 01733440 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-03-12 15:08 - 2015-01-28 16:41 - 01498360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-03-12 15:08 - 2014-12-06 04:17 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-03-12 15:08 - 2014-12-06 02:41 - 00391680 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-03-12 15:08 - 2014-10-29 03:02 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-03-12 15:08 - 2014-10-29 03:02 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-03-12 15:08 - 2014-10-29 02:57 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-03-12 15:08 - 2014-10-29 02:24 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2015-03-12 15:08 - 2014-10-29 02:15 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-03-12 15:08 - 2014-10-29 02:15 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-03-12 15:08 - 2014-10-29 02:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-03-12 15:08 - 2014-10-29 02:13 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-03-12 15:08 - 2014-10-29 02:13 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-03-12 15:08 - 2014-10-29 02:01 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-03-12 13:31 - 2015-03-16 09:57 - 00000632 _____ () C:\Users\Frank\Documents\fehler.txt
2015-03-12 13:04 - 2015-03-17 11:22 - 00000000 ____D () C:\Users\Frank\Documents\Outlook-Dateien
2015-03-12 12:58 - 2015-02-21 02:16 - 25021440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-12 12:58 - 2015-02-21 01:41 - 12827648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-03-12 12:58 - 2015-02-21 01:27 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-03-12 12:58 - 2015-02-21 01:27 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-03-12 12:58 - 2015-02-21 01:25 - 19720192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-03-12 12:58 - 2015-02-21 00:58 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-12 12:58 - 2015-02-21 00:32 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-03-12 12:58 - 2015-02-20 03:49 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-12 12:58 - 2015-02-20 03:48 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-12 12:58 - 2015-02-20 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-03-12 12:58 - 2015-02-20 03:35 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-03-12 12:58 - 2015-02-20 03:34 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-03-12 12:58 - 2015-02-20 03:32 - 06035456 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-12 12:58 - 2015-02-20 03:09 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-03-12 12:58 - 2015-02-20 03:07 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-03-12 12:58 - 2015-02-20 03:06 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-03-12 12:58 - 2015-02-20 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-12 12:58 - 2015-02-20 03:03 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-03-12 12:58 - 2015-02-20 02:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-03-12 12:58 - 2015-02-20 02:56 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-03-12 12:58 - 2015-02-20 02:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-03-12 12:58 - 2015-02-20 02:49 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-12 12:58 - 2015-02-20 02:49 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-03-12 12:58 - 2015-02-20 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-12 12:58 - 2015-02-20 02:43 - 14398976 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-12 12:58 - 2015-02-20 02:30 - 04300288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-03-12 12:58 - 2015-02-20 02:30 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-03-12 12:58 - 2015-02-20 02:29 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-03-12 12:58 - 2015-02-20 02:28 - 02358784 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-12 12:58 - 2015-02-20 02:26 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-03-12 12:58 - 2015-02-20 02:24 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-03-12 12:58 - 2015-02-20 02:24 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-03-12 12:58 - 2015-02-20 02:16 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-12 12:58 - 2015-02-20 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-03-12 12:58 - 2015-02-20 02:01 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-03-12 12:58 - 2015-02-20 01:57 - 01311232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-03-12 12:58 - 2015-02-20 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-03-12 12:58 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-03-12 12:58 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-03-12 12:58 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-03-12 12:58 - 2015-01-12 02:23 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-03-12 12:58 - 2014-11-22 03:49 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-03-12 12:58 - 2014-11-22 03:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-03-12 12:58 - 2014-11-10 00:19 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-03-12 12:58 - 2014-11-10 00:19 - 00806400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-03-12 12:58 - 2014-11-10 00:18 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2015-03-12 12:58 - 2014-11-10 00:18 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2015-03-12 12:58 - 2014-10-31 06:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2015-03-12 12:58 - 2014-10-31 06:12 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-03-12 12:58 - 2014-10-31 06:10 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2015-03-12 12:58 - 2014-10-31 06:09 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2015-03-12 12:58 - 2014-10-31 06:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-03-12 12:58 - 2014-10-31 06:06 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-03-12 12:58 - 2014-10-31 06:06 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-03-12 12:58 - 2014-10-31 06:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-03-12 12:58 - 2014-10-31 05:57 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-03-12 12:58 - 2014-10-31 05:56 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-03-12 12:58 - 2014-10-31 05:54 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2015-03-12 12:58 - 2014-10-31 05:53 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-03-12 12:58 - 2014-10-31 05:52 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll
2015-03-12 12:58 - 2014-10-31 05:51 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-03-12 12:58 - 2014-10-31 05:51 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-03-12 12:58 - 2014-10-31 05:40 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-03-12 12:58 - 2014-10-31 05:30 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-03-12 12:58 - 2014-10-31 05:29 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2015-03-12 12:58 - 2014-10-31 05:29 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-03-12 12:58 - 2014-10-31 05:28 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2015-03-12 12:58 - 2014-10-31 05:25 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-03-12 12:58 - 2014-10-31 05:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-03-12 12:58 - 2014-10-31 05:19 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-03-12 12:58 - 2014-10-31 04:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2015-03-12 12:58 - 2014-10-31 04:28 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2015-03-12 12:58 - 2014-10-31 04:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2015-03-12 12:58 - 2014-10-31 04:27 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2015-03-12 12:58 - 2014-10-31 04:26 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2015-03-12 12:58 - 2014-10-31 04:25 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2015-03-12 12:58 - 2014-10-31 04:24 - 00235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2015-03-12 12:58 - 2014-10-31 04:24 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-03-12 12:58 - 2014-10-31 04:23 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-03-12 12:58 - 2014-10-31 04:16 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-03-12 12:58 - 2014-10-31 04:15 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-03-12 12:58 - 2014-10-31 04:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2015-03-12 12:58 - 2014-10-31 04:13 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-03-12 12:58 - 2014-10-31 04:13 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll
2015-03-12 12:58 - 2014-10-31 04:12 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-03-12 12:58 - 2014-10-31 04:11 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-03-12 12:58 - 2014-10-31 04:03 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2015-03-12 12:58 - 2014-10-31 03:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-03-12 12:58 - 2014-10-31 03:56 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2015-03-12 12:58 - 2014-10-31 03:56 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2015-03-12 12:58 - 2014-10-31 03:56 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-03-12 12:58 - 2014-10-31 03:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-03-12 12:58 - 2014-10-31 03:53 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2015-03-12 12:58 - 2014-10-31 03:48 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2015-03-12 12:58 - 2014-10-31 03:26 - 01042944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-03-12 12:58 - 2014-10-31 03:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2015-03-12 12:58 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-03-12 12:58 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-03-12 12:58 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-03-12 12:57 - 2015-02-12 18:40 - 22291584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-12 12:57 - 2015-02-12 18:34 - 19731824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-03-12 12:57 - 2015-01-29 19:45 - 01763352 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-12 12:57 - 2015-01-29 19:34 - 01488040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-03-12 12:57 - 2015-01-28 02:31 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-12 12:57 - 2015-01-28 02:11 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-03-12 12:57 - 2014-09-10 07:25 - 00474432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2015-03-12 12:57 - 2014-09-08 04:07 - 02497344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-03-12 12:57 - 2014-09-08 04:07 - 00428864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2015-03-12 12:57 - 2014-09-04 04:05 - 00836176 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2015-03-12 12:57 - 2014-09-04 03:22 - 00670384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2015-03-12 12:57 - 2014-09-04 01:10 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll
2015-03-12 12:57 - 2014-08-31 01:17 - 00148800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2015-03-12 12:57 - 2014-08-30 23:05 - 00615424 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll
2015-03-12 12:57 - 2014-08-30 22:58 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll
2015-03-12 12:57 - 2014-08-30 22:04 - 00941568 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2015-03-12 12:57 - 2014-08-30 21:53 - 00239104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSAPI.dll
2015-03-12 12:57 - 2014-08-30 21:17 - 00799744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2015-03-12 12:57 - 2014-08-28 01:21 - 02480128 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2015-03-12 12:57 - 2014-08-28 01:06 - 02030592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2015-03-12 12:57 - 2014-08-23 06:14 - 13424128 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2015-03-12 12:57 - 2014-08-23 06:04 - 11820544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2015-03-12 12:57 - 2014-08-23 05:50 - 02714112 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2015-03-12 12:57 - 2014-08-02 01:51 - 00545792 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll
2015-03-12 12:57 - 2014-08-02 01:35 - 00485376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll
2015-03-12 12:57 - 2014-05-13 08:01 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\BulkOperationHost.exe
2015-03-12 12:57 - 2014-03-06 07:27 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2015-03-12 12:56 - 2015-02-08 00:57 - 01090048 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2015-03-12 12:56 - 2015-02-08 00:49 - 00791040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2015-03-12 12:56 - 2015-01-30 03:02 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2015-03-12 12:56 - 2015-01-30 02:40 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2015-03-12 12:56 - 2015-01-30 02:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2015-03-12 12:56 - 2015-01-30 02:24 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2015-03-12 12:56 - 2015-01-30 02:24 - 00250880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2015-03-12 12:56 - 2015-01-30 02:16 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2015-03-12 12:56 - 2015-01-30 02:08 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll
2015-03-12 12:56 - 2015-01-30 02:06 - 00278016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll
2015-03-12 12:56 - 2015-01-28 00:47 - 02501368 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2015-03-12 12:56 - 2015-01-28 00:41 - 02207488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2015-03-12 12:56 - 2014-12-11 06:36 - 00046456 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentServer.exe
2015-03-12 12:56 - 2014-12-08 20:42 - 00535640 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-03-12 12:56 - 2014-12-08 20:42 - 00531616 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-03-12 12:56 - 2014-12-08 20:42 - 00448792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2015-03-12 12:56 - 2014-12-08 20:42 - 00413248 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2015-03-12 12:56 - 2014-12-08 20:42 - 00372408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2015-03-12 12:56 - 2014-12-08 20:42 - 00108944 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-03-12 12:56 - 2014-12-08 20:42 - 00038264 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2015-03-12 12:56 - 2014-12-08 20:42 - 00033584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2015-03-12 12:56 - 2014-12-06 02:35 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-03-12 12:56 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-03-12 12:56 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-03-12 12:56 - 2014-10-29 05:00 - 00465320 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2015-03-12 12:56 - 2014-10-29 05:00 - 00139984 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2015-03-12 12:56 - 2014-10-29 04:52 - 00500016 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-03-12 12:56 - 2014-10-29 04:52 - 00482872 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-03-12 12:56 - 2014-10-29 04:52 - 00394120 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-03-12 12:56 - 2014-10-29 04:52 - 00272248 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-03-12 12:56 - 2014-10-29 04:12 - 00413136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2015-03-12 12:56 - 2014-10-29 04:12 - 00136296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2015-03-12 12:56 - 2014-10-29 04:07 - 00424544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-03-12 12:56 - 2014-10-29 04:07 - 00370424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-03-12 12:56 - 2014-10-29 04:07 - 00344536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-03-12 12:56 - 2014-10-29 03:44 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2015-03-12 12:56 - 2014-10-29 02:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
2015-03-12 12:56 - 2014-10-29 02:19 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll
2015-03-12 12:56 - 2014-10-29 02:02 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-03-12 12:56 - 2014-10-29 01:59 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappprxy.dll
2015-03-12 12:56 - 2014-07-12 05:17 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2015-03-12 12:56 - 2014-06-06 14:04 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2015-03-12 12:56 - 2014-06-06 13:18 - 00488960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2015-03-12 12:56 - 2014-05-01 14:31 - 00055328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys
2015-03-12 12:56 - 2014-05-01 06:24 - 02834944 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2015-03-12 12:55 - 2014-07-24 04:20 - 00875688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll
2015-03-12 12:55 - 2014-07-24 04:20 - 00869544 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll
2015-03-12 12:54 - 2014-05-31 11:06 - 00555736 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2015-03-12 12:54 - 2014-05-31 03:37 - 01054208 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2015-03-12 12:54 - 2014-05-31 03:35 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2015-03-12 12:54 - 2014-04-11 09:25 - 00419928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2015-03-12 12:49 - 2015-01-21 06:54 - 01384712 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-12 12:49 - 2015-01-21 06:15 - 01123848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2015-03-12 12:34 - 2015-03-12 12:34 - 00000000 ____D () C:\Program Files\Microsoft Synchronization Services
2015-03-12 12:33 - 2015-03-12 12:33 - 00000000 ____D () C:\Program Files\Microsoft Sync Framework
2015-03-12 12:33 - 2015-03-12 12:33 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2015-03-12 12:29 - 2015-03-12 12:29 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2015-03-12 11:52 - 2015-03-12 11:52 - 00000000 ____D () C:\MATS
2015-03-12 09:55 - 2015-03-12 09:55 - 282920160 _____ () C:\Users\Frank\Documents\registry.reg
2015-03-12 09:54 - 2015-03-12 09:54 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2015-03-12 08:41 - 2015-03-12 14:12 - 00000000 ____D () C:\Program Files (x86)\UEFI WinFlash
2015-03-12 08:36 - 2015-03-12 08:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\WinBatch
2015-03-11 22:27 - 2015-03-11 22:27 - 00000000 ____D () C:\Users\Frank\AppData\Local\Macromedia
2015-03-11 22:22 - 2015-03-17 11:28 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-03-11 22:22 - 2015-03-11 22:22 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-03-11 22:18 - 2015-03-17 11:12 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\vlc
2015-03-11 22:18 - 2015-03-11 22:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2015-03-11 22:18 - 2015-03-11 22:18 - 00000000 ____D () C:\Program Files\VideoLAN
2015-03-11 22:15 - 2015-03-11 22:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mp3tag
2015-03-11 22:14 - 2015-03-11 22:15 - 00000000 ____D () C:\Program Files (x86)\Mp3tag
2015-03-11 22:10 - 2015-03-11 22:10 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2015-03-11 19:18 - 2015-03-11 19:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
2015-03-11 19:18 - 2015-03-11 19:18 - 00000000 ____D () C:\ProgramData\EPSON
2015-03-11 19:18 - 2015-03-11 19:18 - 00000000 ____D () C:\Program Files\Common Files\EPSON
2015-03-11 19:18 - 2009-09-30 18:01 - 00088064 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_IBCBHAE.DLL
2015-03-11 19:18 - 2008-11-11 18:00 - 00118784 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_ILMHAE.DLL
2015-03-11 19:18 - 2007-04-09 16:06 - 00010752 _____ (SEIKO EPSON CORP.) C:\Windows\system32\E_GCINST.DLL
2015-03-11 18:49 - 2015-03-16 17:23 - 00000000 ____D () C:\Users\Frank\Desktop\Multimedia
2015-03-11 18:49 - 2015-03-11 18:49 - 00000000 ____D () C:\Users\Frank\Desktop\Grafik & Fotos
2015-03-11 18:48 - 2015-03-16 22:22 - 00000000 ___RD () C:\Users\Frank\Desktop\System & Tools
2015-03-11 18:48 - 2015-03-11 18:48 - 00000000 ____D () C:\Users\Frank\Desktop\Download
2015-03-11 17:50 - 2006-09-12 20:00 - 00234496 _____ (CANON INC.) C:\Windows\system32\CNMLM86.DLL
2015-03-11 17:49 - 2014-03-27 15:35 - 00011294 _____ () C:\Users\Frank\Documents\Mappe2.xlsx
2015-03-11 17:49 - 2013-12-18 18:37 - 00013746 _____ () C:\Users\Frank\Documents\Weihnachtsgeschenke.xlsx
2015-03-11 17:49 - 2013-12-17 14:19 - 00103270 _____ () C:\Users\Frank\Documents\Kreditrechner-Excel.xlsx
2015-03-11 17:49 - 2013-12-17 14:16 - 00057344 _____ () C:\Users\Frank\Documents\Immobilien_Finanzierung.xls
2015-03-11 17:49 - 2013-12-17 14:10 - 00013049 _____ () C:\Users\Frank\Documents\Zinsberechnung.xlsx
2015-03-11 17:49 - 2013-12-13 10:29 - 00976384 _____ () C:\Users\Frank\Documents\Adventkalender.pps
2015-03-11 17:49 - 2013-10-14 18:08 - 02457631 _____ () C:\Users\Frank\Documents\icons.zip
2015-03-11 17:49 - 2012-12-29 16:29 - 00027136 _____ () C:\Users\Frank\Documents\Schallplatten.xls
2015-03-11 17:49 - 2012-12-28 18:15 - 00011254 _____ () C:\Users\Frank\Documents\ninco-schienen.xlsx
2015-03-11 17:49 - 2012-09-24 14:20 - 00072704 _____ () C:\Users\Frank\Documents\Tippformular Saison 2012-2013.xls
2015-03-11 17:49 - 2012-07-08 11:10 - 00010989 _____ () C:\Users\Frank\Documents\Auslagen Marcel.xlsx
2015-03-11 17:49 - 2012-03-17 10:09 - 00097792 _____ () C:\Users\Frank\Documents\ordner_auslesen_hyperlink2007.xls
2015-03-11 17:49 - 2012-02-04 11:45 - 00031232 _____ () C:\Users\Frank\Documents\Steam-Umsätze.xls
2015-03-11 17:49 - 2011-12-05 19:06 - 00011039 _____ () C:\Users\Frank\Documents\Renncenter_Urkunde.xlsx
2015-03-11 17:49 - 2011-11-22 07:32 - 00001303 _____ () C:\Users\Frank\Documents\UseNeXT - Verknüpfung.lnk
2015-03-11 17:49 - 2011-11-06 13:30 - 00012454 _____ () C:\Users\Frank\Documents\Abrechnung Marcel.xlsx
2015-03-11 17:49 - 2011-11-03 19:11 - 00001903 _____ () C:\Users\Frank\Documents\SV Henstedt-Ulzburg - Verknüpfung.lnk
2015-03-11 17:49 - 2011-08-24 09:42 - 00036864 _____ () C:\Users\Frank\Documents\Telefonliste_SVHU_D5_August2011.xls
2015-03-11 17:49 - 2011-07-27 18:51 - 00027648 _____ () C:\Users\Frank\Documents\Pierre.xls
2015-03-11 17:49 - 2011-04-19 13:26 - 00009640 _____ () C:\Users\Frank\Documents\verbrauch.xlsx
2015-03-11 17:49 - 2011-03-16 07:30 - 00199680 _____ () C:\Users\Frank\Documents\MS Visio & MS Project.cld
2015-03-11 17:49 - 2011-03-15 10:56 - 00033792 _____ () C:\Users\Frank\Documents\WG HUP-Kaufbestätigung - 564674586.msg
2015-03-11 17:49 - 2010-10-25 17:54 - 00044100 _____ () C:\Users\Frank\Documents\PC-Software.htm
2015-03-11 17:49 - 2010-10-25 17:53 - 00024576 _____ () C:\Users\Frank\Documents\PC-Software.xls
2015-03-11 17:49 - 2009-09-22 08:11 - 00000324 _____ () C:\Users\Frank\Documents\Outlook-Backup.obp
2015-03-11 17:49 - 2009-08-17 16:30 - 00008792 _____ () C:\Users\Frank\Documents\Java Printing.mdi
2015-03-11 17:49 - 2009-06-22 13:41 - 00071742 _____ () C:\Users\Frank\Documents\Re Spielerliste.htm
2015-03-11 17:49 - 2009-01-28 18:24 - 00011587 _____ () C:\Users\Frank\Documents\TSSTcorpCDDVDW_SN-S082H_SB01.html
2015-03-11 17:49 - 2008-12-07 10:26 - 00296960 _____ () C:\Users\Frank\Documents\Weihnachtsgruß.ppt
2015-03-11 17:49 - 2008-10-28 16:21 - 00013824 _____ () C:\Users\Frank\Documents\Body Mass Index.xls
2015-03-11 17:49 - 2008-09-20 10:36 - 00024064 _____ () C:\Users\Frank\Documents\VideoCDs und VHS.xls
2015-03-11 17:30 - 2015-03-11 17:30 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-03-11 17:29 - 2015-03-11 19:35 - 00000000 ____D () C:\ProgramData\Adobe
2015-03-11 17:29 - 2015-03-11 17:29 - 00000000 ____D () C:\Program Files (x86)\Adobe
2015-03-11 17:28 - 2015-03-11 22:22 - 00000000 ____D () C:\Users\Frank\AppData\Local\Adobe
2015-03-11 17:21 - 2015-03-17 11:54 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\UseNeXT
2015-03-11 17:21 - 2015-03-17 11:50 - 00000000 ____D () C:\Users\Frank\Documents\UseNeXT
2015-03-11 17:20 - 2015-03-11 17:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UseNeXT
2015-03-11 17:20 - 2015-03-11 17:20 - 00000000 ____D () C:\Program Files (x86)\UseNeXT
2015-03-11 17:15 - 2015-03-11 17:16 - 00000000 ____D () C:\Users\Frank\AppData\Local\ACD Systems
2015-03-11 17:15 - 2015-03-11 17:15 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\ACD Systems
2015-03-11 17:14 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2015-03-11 17:14 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ACD Systems
2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\ProgramData\ACD Systems
2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\Program Files\Common Files\ACD Systems
2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\Program Files (x86)\ACD Systems
2015-03-11 17:12 - 2015-03-11 17:12 - 00000000 ____D () C:\Users\Frank\AppData\Local\Downloaded Installations
2015-03-11 17:01 - 2015-03-11 17:01 - 00000000 ____D () C:\Program Files (x86)\MSECache
2015-03-11 16:46 - 2015-03-11 16:46 - 00000000 ____D () C:\Users\Frank\AppData\Local\Windows Live
2015-03-11 13:03 - 2015-03-12 12:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2015-03-11 13:03 - 2015-03-12 12:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-03-11 13:01 - 2015-03-11 13:01 - 00000000 ____D () C:\Program Files (x86)\Microsoft Synchronization Services
2015-03-11 13:00 - 2015-03-11 13:00 - 00000000 ____D () C:\Windows\PCHEALTH
2015-03-11 13:00 - 2015-03-11 13:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft Sync Framework
2015-03-11 13:00 - 2015-03-11 13:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2015-03-11 12:56 - 2015-03-11 12:56 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8
2015-03-11 12:55 - 2015-03-12 12:33 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-03-11 12:55 - 2015-03-11 12:55 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2015-03-11 12:54 - 2015-03-11 13:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-03-11 12:54 - 2015-03-11 12:54 - 00000000 __RHD () C:\MSOCache
2015-03-11 09:47 - 2015-03-16 10:56 - 00000000 ____D () C:\Users\Frank\Documents\Backups
2015-03-11 09:45 - 2015-03-11 09:45 - 00000000 ____D () C:\Dokumente und Einstellungen
2015-03-11 09:36 - 2015-03-17 12:01 - 00000000 ___SD () C:\Users\Frank\Documents\Sticky Passwords
2015-03-11 09:15 - 2015-03-11 09:15 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2015-03-11 09:15 - 2015-03-11 09:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-03-11 09:15 - 2015-03-11 09:15 - 00000000 ____D () C:\Program Files\CCleaner
2015-03-11 09:06 - 2015-03-11 09:07 - 00000000 ____D () C:\Users\Public\Documents\CATraxx
2015-03-11 09:06 - 2015-03-11 09:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CATraxx
2015-03-11 09:06 - 2015-03-11 09:06 - 00000000 ____D () C:\Program Files (x86)\CATraxx
2015-03-11 09:06 - 2012-01-20 17:57 - 01163264 _____ (Chilkat Software, Inc.) C:\Windows\SysWOW64\ChilkatRsa.dll
2015-03-11 09:00 - 2015-03-12 12:22 - 00000000 ____D () C:\Users\Frank\Documents\_Outlook-Dateien
2015-03-11 08:59 - 2015-03-12 13:01 - 00000000 ____D () C:\Program Files (x86)\Outlook Backup Assistant
2015-03-11 08:59 - 2015-03-11 08:59 - 00000000 ____D () C:\Users\Frank\Documents\Add-in Express
2015-03-10 18:53 - 2015-03-10 18:53 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-03-10 18:48 - 2015-03-17 13:59 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-10 18:48 - 2015-03-11 14:00 - 00000000 ____D () C:\Users\Frank\AppData\Local\Microsoft Help
2015-03-10 17:23 - 2015-03-17 15:34 - 00000000 ____D () C:\Program Files (x86)\SpeedProject
2015-03-10 16:14 - 2015-03-10 16:14 - 00000000 ___HD () C:\ProgramData\CanonBJ
2015-03-10 16:14 - 2015-03-10 16:14 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2015-03-10 16:12 - 2015-03-16 12:07 - 00000000 ____D () C:\Users\Frank\AppData\Local\Deployment
2015-03-10 16:12 - 2015-03-10 16:12 - 00116480 _____ (AVM Berlin) C:\Windows\system32\Drivers\avmaura.sys
2015-03-10 16:12 - 2015-03-10 16:12 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FRITZ!Box
2015-03-10 16:12 - 2015-03-10 16:12 - 00000000 ____D () C:\Users\Frank\AppData\Local\Apps\2.0
2015-03-10 15:40 - 2015-03-10 15:40 - 00001186 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Mozilla
2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Users\Frank\AppData\Local\Mozilla
2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\ProgramData\Mozilla
2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-03-10 15:12 - 2015-03-03 14:17 - 00295552 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-03-10 15:06 - 2015-03-10 15:06 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieUserList
2015-03-10 15:06 - 2015-03-10 15:06 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieSiteList
2015-03-10 15:01 - 2015-03-17 19:18 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\ClassicShell
2015-03-10 15:01 - 2015-03-10 15:01 - 00000000 ____D () C:\ProgramData\ClassicShell
2015-03-10 14:58 - 2015-03-10 14:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell
2015-03-10 14:58 - 2015-03-10 14:58 - 00000000 ____D () C:\Program Files\Classic Shell
2015-03-10 14:57 - 2015-03-17 08:28 - 00000000 ____D () C:\Users\Frank\AppData\Local\Google
2015-03-10 14:54 - 2015-03-17 08:00 - 00003922 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{378DF711-DD0C-4AD7-98F3-CA1D88A8AD0B}
2015-03-10 14:49 - 2015-03-10 14:49 - 00000000 ____D () C:\Users\Default\AppData\Local\Google
2015-03-10 14:49 - 2015-03-10 14:49 - 00000000 ____D () C:\Users\Default User\AppData\Local\Google
2015-03-10 14:47 - 2015-03-18 10:45 - 00000000 ___DO () C:\Users\Frank\OneDrive
2015-03-10 14:46 - 2015-03-17 11:57 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2734555180-3142773653-1428810083-1001
2015-03-10 14:41 - 2015-03-10 17:24 - 00000000 ____D () C:\Users\Frank\AppData\Local\TOSHIBA
2015-03-10 14:40 - 2015-03-10 14:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Macromedia
2015-03-10 14:39 - 2015-03-16 13:58 - 00000000 ____D () C:\Users\Frank\AppData\Local\VirtualStore
2015-03-10 14:39 - 2015-03-11 17:47 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Adobe
2015-03-10 14:39 - 2015-03-10 14:43 - 00000000 ____D () C:\Users\Frank\AppData\Local\Packages
2015-03-10 14:39 - 2015-03-10 14:39 - 00001465 _____ () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-03-10 14:37 - 2015-03-17 15:48 - 00000000 ____D () C:\Users\Frank
2015-03-10 14:37 - 2015-03-10 14:37 - 00000020 ___SH () C:\Users\Frank\ntuser.ini
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Vorlagen
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Startmenü
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Netzwerkumgebung
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Lokale Einstellungen
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Eigene Dateien
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Druckumgebung
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Documents\Eigene Musik
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Documents\Eigene Bilder
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\AppData\Local\Verlauf
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\AppData\Local\Anwendungsdaten
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Anwendungsdaten
2015-03-10 14:37 - 2014-03-18 11:00 - 00000000 ___RD () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-10 14:37 - 2014-03-18 11:00 - 00000000 ___RD () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-10 14:37 - 2014-03-18 10:49 - 00000369 _____ () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-03-10 14:37 - 2014-03-18 10:49 - 00000369 _____ () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-03-10 14:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-10 14:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-02-17 15:19 - 2015-02-17 15:19 - 01614496 _____ (Microsoft Corporation) C:\Windows\system32\FM20.DLL

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-18 10:43 - 2013-08-22 14:25 - 00524288 ___SH () C:\Windows\system32\config\BBI
2015-03-17 19:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru
2015-03-17 15:00 - 2014-08-29 20:24 - 00000000 ____D () C:\ProgramData\Temp
2015-03-17 14:07 - 2013-08-22 15:44 - 00483008 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-17 13:59 - 2013-08-22 14:25 - 00000199 _____ () C:\Windows\win.ini
2015-03-17 13:45 - 2014-08-29 20:24 - 00000000 ____D () C:\ProgramData\Package Cache
2015-03-17 12:03 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-17 11:49 - 2014-05-22 00:54 - 00001132 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-17 11:24 - 2014-05-22 00:54 - 00001128 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-17 11:18 - 2014-05-06 05:41 - 00765582 _____ () C:\Windows\system32\perfh007.dat
2015-03-17 11:18 - 2014-05-06 05:41 - 00159366 _____ () C:\Windows\system32\perfc007.dat
2015-03-17 11:18 - 2014-03-18 10:47 - 01776918 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-17 08:28 - 2014-05-22 00:54 - 00000000 ____D () C:\Program Files (x86)\Google
2015-03-16 22:27 - 2008-12-07 17:20 - 00000000 ____D () C:\Users\Frank\Documents\Schriftverkehr
2015-03-16 22:19 - 2014-08-29 20:41 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-03-16 22:19 - 2014-08-29 20:41 - 00000000 ____D () C:\ProgramData\WildTangent
2015-03-16 22:19 - 2014-08-29 20:41 - 00000000 ____D () C:\Program Files (x86)\WildTangent Games
2015-03-16 17:25 - 2014-05-22 01:03 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-03-16 15:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache
2015-03-16 13:39 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp
2015-03-16 13:31 - 2014-05-06 05:40 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer
2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\winrm
2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\WCN
2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\slmgr
2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\winrm
2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\WCN
2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\slmgr
2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\WinStore
2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\MUI
2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\MUI
2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-16 13:31 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\Sysprep
2015-03-16 13:31 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\servicing
2015-03-16 13:13 - 2014-03-18 10:33 - 00000000 ____D () C:\Program Files\Windows Journal
2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\System
2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-03-16 13:12 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\Printing_Admin_Scripts
2015-03-16 13:12 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\Com
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\SystemResetPlatform
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\migwiz
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\Com
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\IME
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Help
2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\SysWOW64\oobe
2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\oobe
2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\Dism
2015-03-16 12:52 - 2013-08-22 16:36 - 00000000 ___SD () C:\Windows\system32\dsc
2015-03-16 12:03 - 2014-05-22 01:03 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA
2015-03-16 10:14 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\SecureBootUpdates
2015-03-16 10:03 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData
2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\setup
2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\InputMethod
2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\setup
2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS
2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS
2015-03-12 16:38 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-03-12 16:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\MediaViewer
2015-03-12 16:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\FileManager
2015-03-12 16:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Camera
2015-03-12 12:35 - 2014-03-18 10:33 - 00000000 ____D () C:\Windows\ShellNew
2015-03-12 12:34 - 2014-05-06 05:23 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2015-03-12 08:40 - 2014-08-29 20:10 - 00000000 ____D () C:\Program Files (x86)\TOSHIBA
2015-03-11 13:50 - 2014-05-22 00:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-03-11 12:10 - 2014-05-23 01:33 - 00000000 ____D () C:\Windows\Panther
2015-03-10 17:17 - 2014-08-29 20:30 - 00000000 ____D () C:\ProgramData\McAfee
2015-03-10 17:07 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\spool
2015-03-10 16:59 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\NDF
2015-03-10 15:13 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2015-03-10 15:09 - 2013-08-22 16:36 - 00000000 ___HD () C:\Windows\ELAMBKUP
2015-03-10 14:57 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\restore
2015-03-10 14:45 - 2014-05-22 00:54 - 00000000 ____D () C:\ProgramData\TOSHIBA
2015-03-10 14:44 - 2014-05-22 00:54 - 00004104 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-03-10 14:44 - 2014-05-22 00:54 - 00003868 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-03-10 14:39 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\sysprep
2015-03-06 09:11 - 2012-09-27 07:12 - 00000000 ____D () C:\Users\Frank\Documents\Tippspiel

==================== Files in the root of some directories =======

2015-03-17 10:29 - 2015-03-17 10:29 - 0000840 _____ () C:\Users\Frank\AppData\Local\recently-used.xbel
2014-08-29 20:06 - 2014-08-29 20:06 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some content of TEMP:
====================
C:\Users\Frank\AppData\Local\Temp\PresentationCore.dll
C:\Users\Frank\AppData\Local\Temp\PresentationFramework.dll
C:\Users\Frank\AppData\Local\Temp\Quarantine.exe
C:\Users\Frank\AppData\Local\Temp\ReachFramework.dll
C:\Users\Frank\AppData\Local\Temp\sqlite3.dll
C:\Users\Frank\AppData\Local\Temp\UIAutomationProvider.dll
C:\Users\Frank\AppData\Local\Temp\UIAutomationTypes.dll
C:\Users\Frank\AppData\Local\Temp\WindowsBase.dll
C:\Users\Frank\AppData\Local\Temp\WindowsFormsIntegration.dll
C:\Users\Frank\AppData\Local\Temp\xmlUpdater.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-05-22 08:48

==================== End Of Log ============================
         
Ich hoffe das ist so alles okay? Ganz kurzer Hinweis zu Malwarebytes Anti-Malware: unter dem Link liegt nicht die in der Beschreibung beschriebene Version...

Gruß
Frank Selle

Alt 18.03.2015, 17:22   #9
schrauber
/// the machine
/// TB-Ausbilder
 

Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden - Standard

Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden



Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:
ATTFilter
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Winlogon: [Shell] C:\Windows\explorer.exe [2501368 2015-01-28] (Microsoft Corporation) <==== ATTENTION 
Emptytemp:
         

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.






ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset


Downloade Dir bitte SecurityCheck und:

  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS-Box.
  • Wenn der Scan beendet wurde sollte sich ein Textdokument (checkup.txt) öffnen.
Poste den Inhalt bitte hier.

und ein frisches FRST log bitte. Noch Probleme?
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 18.03.2015, 19:54   #10
Dorfkicker
 
Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden - Standard

Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden



und hier die fixlog.txt:

Code:
ATTFilter
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-03-2015
Ran by Frank at 2015-03-18 17:31:08 Run:1
Running from C:\Users\Frank\Desktop
Loaded Profiles: Frank (Available profiles: Frank)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Winlogon: [Shell] C:\Windows\explorer.exe [2501368 2015-01-28] (Microsoft Corporation) <==== ATTENTION 
Emptytemp:
         
*****************

HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell => value deleted successfully.
EmptyTemp: => Removed 475.3 MB temporary data.


The system needed a reboot. 

==== End of Fixlog 17:31:32 ====
         
Ich starte jetzt den Online Scan

Hallo Schrauber,

mit dem Online-Scan hat es etwas gedauert, hier das Ergebnis:

Code:
ATTFilter
ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7623
# api_version=3.0.2
# EOSSerial=159c421baa72574887e6e2c13e4aa576
# engine=22968
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2015-03-18 06:40:58
# local_time=2015-03-18 07:40:58 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1031
# osver=6.2.9200 NT 
# compatibility_mode_1=''
# compatibility_mode=5893 16776573 100 94 22222 4185190 0 0
# scanned=236696
# found=2
# cleaned=0
# scan_time=7218
sh=94D47A4F72A1D05EECF5A808B13FC72891C6C016 ft=1 fh=39c0f4beca1f3c20 vn="Variante von MSIL/Injector.EAD Trojaner" ac=I fn="C:\Windows\System32\Application Services\appsvc.exe.vir"
sh=94D47A4F72A1D05EECF5A808B13FC72891C6C016 ft=1 fh=39c0f4beca1f3c20 vn="Variante von MSIL/Injector.EAD Trojaner" ac=I fn="C:\Windows\SysWOW64\Application Services\appsvc.exe.vir"
         
Da hatten sich doch noch zwei versteckt!

Und hier die chekup.txt:

Code:
ATTFilter
 Results of screen317's Security Check version 0.99.97  
   x64 (UAC is enabled)  
 Internet Explorer 11  
``````````````Antivirus/Firewall Check:`````````````` 
Windows Defender   
 WMI entry may not exist for antivirus; attempting automatic update. 
`````````Anti-malware/Other Utilities Check:````````` 
 Trojan Remover 6.9.1   
 Java 8 Update 40  
 Java version 32-bit out of Date! 
  Java 64-bit 8 Update 31  
 Adobe Flash Player 	16.0.0.305  
 Adobe Reader XI  
 Mozilla Firefox (36.0.1) 
 Google Chrome (41.0.2272.89) 
````````Process Check: objlist.exe by Laurent````````  
 Windows Defender MSMpEng.exe 
 Malwarebytes Anti-Malware mbamservice.exe  
 Malwarebytes Anti-Malware mbam.exe  
 Malwarebytes Anti-Malware mbamscheduler.exe   
`````````````````System Health check````````````````` 
 Total Fragmentation on Drive C:  % 
````````````````````End of Log``````````````````````
         
Und hier die ganz frisch FRST-txt (Teil 1)

Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Frank (administrator) on UHURA2 on 18-03-2015 19:50:31
Running from C:\Users\Frank\Desktop
Loaded Profiles: Frank (Available profiles: Frank)
Platform: Windows 8.1 Connected (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
() C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
(H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Toshiba Corporation) C:\Program Files\TOSHIBA\Teco\TecoService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Teco\TecoResident.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files (x86)\ACD Systems\ACDSee\18.0\ACDSeeCommander18.exe
() C:\Users\Frank\AppData\Local\Amazon Music\Amazon Music Helper.exe
(AVM Berlin) C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
(TOSHIBA) C:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TDUSrv64.exe
(ACD Systems) C:\Program Files (x86)\ACD Systems\ACDSee\18.0\acdIDInTouch2.exe
(H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\vc10tray.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Don HO don.h@free.fr) C:\Program Files (x86)\Notepad++\notepad++.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [] => [X]
HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2556768 2013-10-09] (TOSHIBA Corporation)
HKLM\...\Run: [TecoResident] => C:\Program Files\TOSHIBA\Teco\TecoResident.exe [179288 2014-01-05] (TOSHIBA Corporation)
HKLM\...\Run: [TSSSrv] => C:\Program Files (x86)\TOSHIBA\System Setting\TSSSrv.exe [296008 2013-10-22] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [354144 2013-08-13] (TOSHIBA Corporation)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-20] (IvoSoft)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [KeNotify] => C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [34160 2013-08-06] (TOSHIBA CORPORATION)
HKLM-x32\...\Run: [TSVU] => c:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TosSmartViewLauncher.exe [516512 2013-07-23] (TOSHIBA)
HKLM-x32\...\Run: [ACSW18DE] => C:\Program Files (x86)\ACD Systems\ACDSee\18.0\acdIDInTouch2.exe [1470224 2014-09-17] (ACD Systems)
HKLM-x32\...\Run: [ITSecMng] => C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [80840 2011-04-01] (TOSHIBA CORPORATION)
HKLM-x32\...\Run: [VC10Player] => C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe [416696 2012-10-25] (H+H Software GmbH)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation)
HKLM-x32\...\Run: [TrojanScanner] => C:\Program Files (x86)\Trojan Remover\Trjscan.exe [1791856 2014-10-16] (Simply Super Software)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [AVMUSBFernanschluss] => C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\AVMAutoStart.exe [139264 2015-03-10] (AVM Berlin)
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7416088 2015-02-19] (Piriform Ltd)
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [ACDSeeCommander18] => C:\Program Files (x86)\ACD Systems\ACDSee\18.0\ACDSeeCommander18.exe [1973256 2014-12-17] ()
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [Amazon Music] => C:\Users\Frank\AppData\Local\Amazon Music\Amazon Music Helper.exe [5886272 2015-03-02] ()
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [26232152 2015-02-19] (Google)
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x00000000
HKU\S-1-5-18\...\Run: [EPSONE8BE74 (Epson Stylus SX430)] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHAE.EXE [232448 2011-01-20] (SEIKO EPSON CORPORATION)
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.de/
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://toshiba13.msn.com/?pc=TEJB
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://toshiba.eu/symbaloo_c
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2734555180-3142773653-1428810083-1001 -> {898DEB29-90E7-4FED-ADAC-FCDAB1A2CEFC} URL = 
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20] (IvoSoft)
BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2014-12-16] (Adblock Plus)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-17] (Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-17] (Oracle Corporation)
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20] (IvoSoft)
BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2014-12-16] (Adblock Plus)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.10

FireFox:
========
FF ProfilePath: C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll [2015-03-11] ()
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-03-11] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-17] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-17] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-10] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-10] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Extension: Avira Browser Safety - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\abs@avira.com [2015-03-17]
FF Extension: mediaplayerconnectivity - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{84b24861-62f6-364b-eba5-2e5e2061d7e6} [2015-03-11]
FF Extension: Add to Amazon Wish List Button - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\amznUWL2@amazon.com.xpi [2015-03-11]
FF Extension: NoScript - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2015-03-11]
FF Extension: Video DownloadHelper - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2015-03-16]
FF Extension: Adblock Plus - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-03-10]

Chrome: 
=======
CHR HomePage: Default -> hxxp://go.microsoft.com/fwlink/?LinkId=69157
CHR Profile: C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-17]
CHR Extension: (Google Docs) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-17]
CHR Extension: (Google Drive) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-17]
CHR Extension: (YouTube) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-17]
CHR Extension: (Adblock Plus) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-03-17]
CHR Extension: (Google Search) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-17]
CHR Extension: (Avira SafeSearch) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\eglgfnfolcgijipffhlhbbnefdcbjbml [2015-03-17]
CHR Extension: (Google Sheets) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-17]
CHR Extension: (Sticky Password Autofill Engine) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggepjhbdgijjkbelnggboeoehacbphed [2015-03-17]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-17]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-03-17]
CHR Extension: (Google Wallet) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-17]
CHR Extension: (Gmail) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-17]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

Locked "vdrv1000" service was unlocked successfully. <===== ATTENTION

R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [319104 2014-03-19] (Windows (R) Win 7 DDK provider) [File not signed]
R2 dts_apo_service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [21840 2014-03-03] ()
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-02] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-02] (Intel(R) Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [116088 2014-08-05] (Toshiba Europe GmbH)
R2 VC10SecS; C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe [147312 2014-12-15] (H+H Software GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3888640 2014-02-14] (Qualcomm Atheros Communications, Inc.)
R3 avmaura; C:\Windows\System32\drivers\avmaura.sys [116480 2015-03-10] (AVM Berlin)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
S3 GENERICDRV; C:\Program Files (x86)\UEFI WinFlash\amifldrv64.sys [15640 2012-07-27] ()
S3 HH10Help.sys; C:\Windows\system32\drivers\HH10Help.sys [24088 2009-07-09] (H+H Software GmbH)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2015-03-18] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2014-11-21] (Malwarebytes Corporation)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [291544 2014-01-03] (Realtek Semiconductor Corp.)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31472 2014-02-21] (Synaptics Incorporated)
R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [33168 2013-10-10] (Windows (R) Win 7 DDK provider)
S3 Tosrfcom; No ImagePath
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation)
R1 vdrv1000; C:\Windows\System32\drivers\vdrv1000.sys [226080 2012-12-06] (H+H Software GmbH)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-18 19:48 - 2015-03-18 19:47 - 00852604 _____ () C:\Users\Frank\Desktop\SecurityCheck.exe
2015-03-18 19:47 - 2015-03-18 19:47 - 00852604 _____ () C:\Users\Frank\Downloads\SecurityCheck.exe
2015-03-18 17:37 - 2015-03-18 17:37 - 02347384 _____ (ESET) C:\Users\Frank\Downloads\esetsmartinstaller_deu.exe
2015-03-18 11:01 - 2015-03-18 11:01 - 00143219 _____ () C:\Users\Frank\Desktop\FRST_neu.txt
2015-03-18 10:57 - 2015-03-18 10:57 - 00000624 _____ () C:\Users\Frank\Desktop\JRT.txt
2015-03-18 10:48 - 2015-03-18 10:48 - 01388672 _____ (Thisisu) C:\Users\Frank\Downloads\JRT.exe
2015-03-18 10:48 - 2015-03-18 10:48 - 01388672 _____ (Thisisu) C:\Users\Frank\Desktop\JRT.exe
2015-03-18 10:46 - 2015-03-18 10:46 - 00001222 _____ () C:\Users\Frank\Desktop\AdwCleaner[S0].txt
2015-03-18 10:39 - 2015-03-18 10:43 - 00000000 ____D () C:\AdwCleaner
2015-03-18 10:38 - 2015-03-18 10:38 - 02171392 _____ () C:\Users\Frank\Downloads\AdwCleaner_4.112.exe
2015-03-18 10:38 - 2015-03-18 10:38 - 02171392 _____ () C:\Users\Frank\Desktop\AdwCleaner_4.112.exe
2015-03-18 10:37 - 2015-03-18 10:37 - 00001042 _____ () C:\Users\Frank\Desktop\mbam.txt
2015-03-18 10:04 - 2015-03-18 10:05 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (3).exe
2015-03-17 18:54 - 2015-03-17 18:55 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Frank\Downloads\tdsskiller.exe
2015-03-17 17:10 - 2015-03-18 19:12 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-17 17:10 - 2015-03-18 10:02 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-03-17 17:09 - 2015-03-17 18:26 - 00000000 ____D () C:\Users\Frank\Desktop\mbar
2015-03-17 17:08 - 2015-03-17 17:08 - 16502728 _____ (Malwarebytes Corp.) C:\Users\Frank\Downloads\mbar-1.09.1.1004.exe
2015-03-17 17:08 - 2015-03-17 17:08 - 16502728 _____ (Malwarebytes Corp.) C:\Users\Frank\Desktop\mbar-1.09.1.1004.exe
2015-03-17 15:53 - 2015-03-17 15:53 - 00000291 _____ () C:\Users\Frank\Desktop\gmer.txt
2015-03-17 15:52 - 2015-03-17 15:52 - 00000000 _____ () C:\Users\Frank\Desktop\Neues Textdokument.txt
2015-03-17 15:50 - 2015-03-17 15:50 - 00380416 _____ () C:\Users\Frank\Downloads\Gmer-19357.exe
2015-03-17 15:48 - 2015-03-17 15:48 - 00000472 _____ () C:\Users\Frank\Downloads\defogger_disable.log
2015-03-17 15:48 - 2015-03-17 15:48 - 00000000 _____ () C:\Users\Frank\defogger_reenable
2015-03-17 15:47 - 2015-03-17 15:47 - 00050477 _____ () C:\Users\Frank\Downloads\Defogger.exe
2015-03-17 15:23 - 2015-03-17 15:24 - 00029764 _____ () C:\Users\Frank\Downloads\Addition.txt
2015-03-17 15:21 - 2015-03-17 15:24 - 00142748 _____ () C:\Users\Frank\Downloads\FRST.txt
2015-03-17 15:20 - 2015-03-17 15:21 - 02095616 _____ (Farbar) C:\Users\Frank\Downloads\FRST64.exe
2015-03-17 15:13 - 2015-03-17 15:13 - 00000022 _____ () C:\Users\Frank\Downloads\apppath.torun
2015-03-17 15:02 - 2015-03-17 15:02 - 00022528 _____ (Microsoft) C:\Users\Frank\Downloads\RunAsSystem.exe
2015-03-17 14:52 - 2015-03-18 10:06 - 00001084 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2015-03-17 14:52 - 2015-03-18 10:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2015-03-17 14:52 - 2015-03-18 10:06 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2015-03-17 14:52 - 2015-03-17 14:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (2).exe
2015-03-17 14:52 - 2015-03-17 14:52 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-03-17 14:52 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-03-17 14:52 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-03-17 14:52 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-03-17 14:51 - 2015-03-17 14:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (1).exe
2015-03-17 14:51 - 2015-03-17 14:52 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028.exe
2015-03-17 13:56 - 2015-03-17 13:56 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2015-03-17 13:41 - 2015-03-17 13:41 - 00000000 ____D () C:\OETemp
2015-03-17 13:23 - 2015-03-17 14:06 - 00000000 ____D () C:\Program Files (x86)\Avira
2015-03-17 13:22 - 2015-03-17 13:22 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\Frank\Downloads\avira_de_av_5946238192__ws.exe
2015-03-17 13:17 - 2015-03-17 13:18 - 00000000 ____D () C:\ProgramData\Kaspersky Lab Setup Files
2015-03-17 13:16 - 2015-03-17 13:16 - 00416576 _____ (Kaspersky Lab) C:\Users\Frank\Downloads\de-de.setup.exe
2015-03-17 13:15 - 2015-03-17 13:15 - 141468920 _____ (Microsoft Corporation) C:\Users\Frank\Downloads\msert.exe
2015-03-17 13:13 - 2015-03-17 13:14 - 00013513 _____ () C:\Users\Frank\Desktop\Addition.txt
2015-03-17 13:10 - 2015-03-18 19:50 - 00019442 _____ () C:\Users\Frank\Desktop\FRST.txt
2015-03-17 13:10 - 2015-03-18 19:50 - 00000000 ____D () C:\FRST
2015-03-17 12:30 - 2015-03-17 12:28 - 02095616 _____ (Farbar) C:\Users\Frank\Desktop\FRST64.exe
2015-03-17 12:20 - 2015-03-17 12:20 - 00001121 _____ () C:\Users\Public\Desktop\Trojan Remover.lnk
2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\Users\Frank\Documents\Simply Super Software
2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Simply Super Software
2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trojan Remover
2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\ProgramData\Licenses
2015-03-17 12:19 - 2015-03-17 12:20 - 00000000 ____D () C:\Program Files (x86)\Trojan Remover
2015-03-17 12:19 - 2015-03-17 12:19 - 00000000 ____D () C:\ProgramData\Simply Super Software
2015-03-17 12:18 - 2015-03-17 12:19 - 31390952 _____ (Simply Super Software ) C:\Users\Frank\Downloads\trjsetup691.exe
2015-03-17 12:04 - 2015-03-17 12:04 - 00000000 __SHD () C:\ProgramData\Application Services
2015-03-17 11:54 - 2015-03-17 12:21 - 00000000 __SHD () C:\Windows\SysWOW64\Application Services
2015-03-17 11:24 - 2015-03-18 17:32 - 00001276 _____ () C:\Windows\setupact.log
2015-03-17 11:24 - 2015-03-17 11:24 - 00000000 _____ () C:\Windows\setuperr.log
2015-03-17 11:23 - 2015-03-18 10:02 - 00143660 _____ () C:\Windows\PFRO.log
2015-03-17 11:09 - 2015-03-17 11:10 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Mp3tag
2015-03-17 10:48 - 2015-03-17 10:48 - 00650657 _____ () C:\Users\Frank\Downloads\lame3.99.5.zip
2015-03-17 10:41 - 2015-03-17 15:51 - 00000000 ____D () C:\Users\Frank\AppData\Local\CrashDumps
2015-03-17 10:40 - 2015-03-17 10:49 - 00000000 ____D () C:\Program Files (x86)\Exact Audio Copy
2015-03-17 10:40 - 2015-03-17 10:40 - 00001052 _____ () C:\Users\Public\Desktop\Exact Audio Copy.lnk
2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\EAC
2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\AccurateRip
2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Exact Audio Copy
2015-03-17 10:38 - 2015-03-17 10:39 - 00000000 ____D () C:\ProgramData\Oracle
2015-03-17 10:38 - 2015-03-17 10:38 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\ProgramData\Sun
2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\Program Files (x86)\Java
2015-03-17 10:37 - 2015-03-17 10:37 - 00561064 _____ (Oracle Corporation) C:\Users\Frank\Downloads\jxpiinstall.exe
2015-03-17 10:36 - 2015-03-17 10:39 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Freeplane
2015-03-17 10:36 - 2015-03-17 10:36 - 00000842 _____ () C:\Users\Public\Desktop\Freeplane.lnk
2015-03-17 10:36 - 2015-03-17 10:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freeplane
2015-03-17 10:36 - 2015-03-17 10:36 - 00000000 ____D () C:\Program Files\Freeplane
2015-03-17 10:29 - 2015-03-17 10:29 - 00000840 _____ () C:\Users\Frank\AppData\Local\recently-used.xbel
2015-03-17 10:29 - 2015-03-17 10:29 - 00000000 ____D () C:\Users\Frank\AppData\Local\gtk-2.0
2015-03-17 10:29 - 2015-03-17 10:29 - 00000000 ____D () C:\Users\Frank\.thumbnails
2015-03-17 10:22 - 2015-03-17 10:35 - 00000000 ____D () C:\Users\Frank\.gimp-2.8
2015-03-17 10:22 - 2015-03-17 10:22 - 04620717 _____ () C:\Users\Frank\Downloads\eac-1.0beta4.exe
2015-03-17 10:22 - 2015-03-17 10:22 - 00000000 ____D () C:\Users\Frank\AppData\Local\gegl-0.2
2015-03-17 10:14 - 2015-03-17 10:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\FileZilla
2015-03-17 10:14 - 2015-03-17 10:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2015-03-17 10:14 - 2015-03-17 10:14 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client
2015-03-17 10:13 - 2015-03-17 10:26 - 00000916 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk
2015-03-17 10:12 - 2015-03-17 10:13 - 00000000 ____D () C:\Program Files\GIMP 2
2015-03-17 10:11 - 2015-03-17 16:25 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Notepad++
2015-03-17 10:11 - 2015-03-17 10:12 - 00000000 ____D () C:\Program Files (x86)\Notepad++
2015-03-17 10:11 - 2015-03-17 10:11 - 00001035 _____ () C:\Users\Frank\Desktop\Notepad++.lnk
2015-03-17 10:11 - 2015-03-17 10:11 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2015-03-17 10:11 - 2015-03-17 10:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
2015-03-17 10:06 - 2015-03-17 10:06 - 06208736 _____ (Tim Kosse) C:\Users\Frank\Downloads\filezilla_3.10.2_win32-setup.exe
2015-03-17 10:05 - 2015-03-17 10:05 - 08271739 _____ () C:\Users\Frank\Downloads\npp.6.7.5.installer.exe
2015-03-17 10:00 - 2015-03-17 10:00 - 91931728 _____ (The GIMP Team ) C:\Users\Frank\Downloads\gimp-2.8.14-setup-1.exe
2015-03-17 09:58 - 2015-03-17 09:58 - 24430312 _____ (Open source ) C:\Users\Frank\Downloads\freeplane-setup-1.3.15.exe
2015-03-17 08:41 - 2015-03-18 17:34 - 00000000 ___RD () C:\Users\Frank\Google Drive
2015-03-17 08:28 - 2015-03-17 08:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-03-17 08:27 - 2015-03-17 08:27 - 00880208 _____ (Google Inc.) C:\Users\Frank\Downloads\ChromeSetup.exe
2015-03-17 08:13 - 2015-03-17 08:13 - 00000000 ____D () C:\Program Files\Adblock Plus for IE
2015-03-17 08:12 - 2015-03-17 08:12 - 05915456 _____ ( ) C:\Users\Frank\Downloads\adblockplusie-1.3.exe
2015-03-16 22:19 - 2015-03-18 14:06 - 01546988 _____ () C:\Windows\WindowsUpdate.log
2015-03-16 22:16 - 2015-03-16 22:19 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\WildTangent
2015-03-16 22:16 - 2015-03-16 22:16 - 00000000 ____D () C:\ProgramData\BlueStacks
2015-03-16 21:16 - 2015-03-16 21:16 - 15094704 _____ (Lamantine Software ) C:\Users\Frank\Downloads\stpass_free_606434.exe
2015-03-16 21:16 - 2015-03-16 21:16 - 15094696 _____ (Lamantine Software ) C:\Users\Frank\Downloads\stpass_trial_606434.exe
2015-03-16 19:46 - 2015-03-16 20:09 - 00121344 ___SH () C:\Users\Frank\Downloads\Thumbs.db
2015-03-16 17:26 - 2015-03-16 17:46 - 00000000 ___SD () C:\Users\Public\Virtual CDs
2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ___SD () C:\Users\Public\Virtual CD v10
2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ___SD () C:\Users\Frank\AppData\Roaming\Virtual CD v10
2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual CD v10
2015-03-16 17:26 - 2012-12-06 11:09 - 00226080 ____N (H+H Software GmbH) C:\Windows\system32\Drivers\vdrv1000.sys
2015-03-16 17:26 - 2009-07-09 11:24 - 00024088 _____ (H+H Software GmbH) C:\Windows\system32\Drivers\HH10Help.sys
2015-03-16 17:25 - 2015-03-16 17:26 - 00000000 ____D () C:\Program Files (x86)\Virtual CD v10
2015-03-16 17:24 - 2015-03-16 17:24 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\InstallShield
2015-03-16 17:24 - 2008-06-17 09:22 - 00040464 _____ (H+H Software GmbH) C:\Windows\system32\Drivers\vcd10bus.sys
2015-03-16 16:43 - 2000-10-29 15:33 - 00141312 _____ (Info-ZIP) C:\Windows\SysWOW64\Zip32.dll
2015-03-16 16:30 - 2015-03-16 17:01 - 00000000 ____D () C:\Users\Frank\Documents\TC Seth
2015-03-16 15:13 - 2015-03-16 16:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\M-DVD.Org V2
2015-03-16 15:13 - 2007-09-24 10:04 - 00675840 _____ () C:\Windows\SysWOW64\AudioGenie2.ocx
2015-03-16 15:13 - 2006-03-09 12:34 - 02945024 _____ (hxxp://mediainfo.sourceforge.net) C:\Windows\SysWOW64\MediaInfo.dll
2015-03-16 15:13 - 2004-05-27 00:32 - 00102400 _____ (Info-ZIP) C:\Windows\SysWOW64\unzip32.dll
2015-03-16 15:12 - 2015-03-16 16:43 - 00000000 ____D () C:\Program Files (x86)\M-DVD.Org V2
2015-03-16 15:12 - 2015-03-16 15:12 - 00000000 ____D () C:\ProgramData\M-DVD.Org V2
2015-03-16 15:12 - 2009-12-04 11:56 - 00061440 ____H (SynApp GmbH) C:\Windows\SysWOW64\ErrExplorer.dll
2015-03-16 15:12 - 2006-10-06 09:20 - 02899968 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11.dll
2015-03-16 15:12 - 2006-10-04 16:01 - 00351232 _____ (combit GmbH) C:\Windows\SysWOW64\cmpr11.dll
2015-03-16 15:12 - 2006-09-26 15:51 - 01399296 _____ (combit GmbH) C:\Windows\SysWOW64\cmct11.dll
2015-03-16 15:12 - 2006-09-26 15:39 - 01378304 _____ (combit GmbH) C:\Windows\SysWOW64\cmls11.dll
2015-03-16 15:12 - 2006-09-26 15:39 - 00893952 _____ (combit GmbH) C:\Windows\SysWOW64\cmbr11.dll
2015-03-16 15:12 - 2006-09-26 15:38 - 00739328 _____ (combit GmbH) C:\Windows\SysWOW64\cmdw11.dll
2015-03-16 15:12 - 2006-09-26 15:36 - 00337920 _____ (combit GmbH) C:\Windows\SysWOW64\cmut11.dll
2015-03-16 15:12 - 2006-09-13 10:29 - 00688640 _____ (combit GmbH) C:\Windows\SysWOW64\cmmx01.dll
2015-03-16 15:12 - 2006-07-19 07:00 - 00349184 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11pw.llx
2015-03-16 15:12 - 2006-06-22 08:50 - 00165584 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11o.ocx
2015-03-16 15:12 - 2005-09-13 13:29 - 00414720 _____ (combit GmbH) C:\Windows\SysWOW64\cmll1100.lng
2015-03-16 15:12 - 2005-08-08 16:10 - 00425984 _____ () C:\Windows\SysWOW64\cmmx0100.lng
2015-03-16 15:12 - 2005-07-12 09:41 - 00684032 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11xl.dll
2015-03-16 15:12 - 2005-06-23 15:17 - 01161492 _____ () C:\Windows\SysWOW64\cmLL1100.chm
2015-03-16 12:57 - 2015-03-17 12:10 - 00000000 ____D () C:\Program Files (x86)\Sticky Password
2015-03-16 12:04 - 2015-03-16 12:04 - 00000000 ____D () C:\ProgramData\ToshibaEurope
2015-03-16 12:04 - 2015-03-16 12:04 - 00000000 ____D () C:\ProgramData\TOSHIBA Tempro
2015-03-16 12:03 - 2015-03-16 12:03 - 00000000 ____D () C:\Windows\System32\Tasks\Toshiba
2015-03-16 12:03 - 2015-03-16 12:03 - 00000000 ____D () C:\Program Files (x86)\Toshiba TEMPRO
2015-03-16 11:55 - 2015-03-16 11:55 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieBrowserModeList
2015-03-16 11:54 - 2015-03-16 11:54 - 00000000 ____D () C:\ProgramData\IsolatedStorage
2015-03-16 08:57 - 2014-07-24 16:03 - 02141920 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2015-03-16 08:57 - 2014-07-24 14:36 - 02145472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2015-03-16 08:57 - 2014-07-24 10:44 - 16874496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2015-03-16 08:57 - 2014-07-24 10:16 - 12730880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2015-03-16 08:57 - 2014-07-24 09:53 - 01261056 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2015-03-16 08:57 - 2014-07-24 09:32 - 01532416 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2015-03-16 08:57 - 2014-07-24 08:28 - 01600000 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2015-03-16 08:57 - 2014-06-14 07:03 - 02389504 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-03-16 08:57 - 2014-06-14 06:46 - 02071552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-03-16 08:56 - 2014-07-24 16:28 - 00419648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-03-16 08:56 - 2014-07-24 16:28 - 00412992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2015-03-16 08:56 - 2014-07-24 16:28 - 00280384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2015-03-16 08:56 - 2014-07-24 16:28 - 00143680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2015-03-16 08:56 - 2014-07-24 16:25 - 00054752 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-03-16 08:56 - 2014-07-24 16:23 - 01519488 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2015-03-16 08:56 - 2014-07-24 16:23 - 00125472 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2015-03-16 08:56 - 2014-07-24 16:20 - 00263400 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2015-03-16 08:56 - 2014-07-24 16:16 - 02574208 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2015-03-16 08:56 - 2014-07-24 16:16 - 00211216 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe
2015-03-16 08:56 - 2014-07-24 16:07 - 02009920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-03-16 08:56 - 2014-07-24 16:05 - 01660048 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-03-16 08:56 - 2014-07-24 16:05 - 01519560 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-03-16 08:56 - 2014-07-24 16:05 - 01488008 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-03-16 08:56 - 2014-07-24 16:05 - 01356840 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-03-16 08:56 - 2014-07-24 16:03 - 00882136 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-03-16 08:56 - 2014-07-24 16:03 - 00360480 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2015-03-16 08:56 - 2014-07-24 16:03 - 00233888 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-03-16 08:56 - 2014-07-24 16:03 - 00205512 _____ (Microsoft Corporation) C:\Windows\system32\mftranscode.dll
2015-03-16 08:56 - 2014-07-24 14:50 - 00098048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2015-03-16 08:56 - 2014-07-24 14:48 - 02410976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2015-03-16 08:56 - 2014-07-24 14:48 - 00180208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe
2015-03-16 08:56 - 2014-07-24 14:36 - 00707536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-03-16 08:56 - 2014-07-24 14:36 - 00355800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2015-03-16 08:56 - 2014-07-24 14:36 - 00180720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mftranscode.dll
2015-03-16 08:56 - 2014-07-24 12:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDRUM.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2015-03-16 08:56 - 2014-07-24 12:46 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys
2015-03-16 08:56 - 2014-07-24 12:45 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2015-03-16 08:56 - 2014-07-24 12:44 - 00674816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2015-03-16 08:56 - 2014-07-24 12:43 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2015-03-16 08:56 - 2014-07-24 12:42 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2015-03-16 08:56 - 2014-07-24 12:42 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys
2015-03-16 08:56 - 2014-07-24 12:41 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthpan.sys
2015-03-16 08:56 - 2014-07-24 12:33 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-03-16 08:56 - 2014-07-24 12:33 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-03-16 08:56 - 2014-07-24 12:06 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\iasnap.dll
2015-03-16 08:56 - 2014-07-24 12:05 - 00287232 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll
2015-03-16 08:56 - 2014-07-24 12:05 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-03-16 08:56 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2015-03-16 08:56 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2015-03-16 08:56 - 2014-07-24 11:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRUM.DLL
2015-03-16 08:56 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2015-03-16 08:56 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2015-03-16 08:56 - 2014-07-24 11:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2015-03-16 08:56 - 2014-07-24 11:49 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersGPExt.dll
2015-03-16 08:56 - 2014-07-24 11:33 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-03-16 08:56 - 2014-07-24 11:32 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl
2015-03-16 08:56 - 2014-07-24 11:20 - 02050560 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2015-03-16 08:56 - 2014-07-24 11:18 - 01089024 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll
2015-03-16 08:56 - 2014-07-24 11:12 - 00878592 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2015-03-16 08:56 - 2014-07-24 11:10 - 01844224 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2015-03-16 08:56 - 2014-07-24 11:10 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2015-03-16 08:56 - 2014-07-24 11:10 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-03-16 08:56 - 2014-07-24 11:10 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasnap.dll
2015-03-16 08:56 - 2014-07-24 11:05 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2015-03-16 08:56 - 2014-07-24 10:52 - 00621056 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2015-03-16 08:56 - 2014-07-24 10:42 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl
2015-03-16 08:56 - 2014-07-24 10:40 - 00557056 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs.dll
2015-03-16 08:56 - 2014-07-24 10:39 - 00770048 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2015-03-16 08:56 - 2014-07-24 10:33 - 01741824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll
2015-03-16 08:56 - 2014-07-24 10:32 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpedit.dll
2015-03-16 08:56 - 2014-07-24 10:27 - 00779264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2015-03-16 08:56 - 2014-07-24 10:25 - 00832512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll
2015-03-16 08:56 - 2014-07-24 10:24 - 01817088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll
2015-03-16 08:56 - 2014-07-24 10:21 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2015-03-16 08:56 - 2014-07-24 10:18 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll
2015-03-16 08:56 - 2014-07-24 10:12 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll
2015-03-16 08:56 - 2014-07-24 10:11 - 00356864 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-03-16 08:56 - 2014-07-24 10:11 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll
2015-03-16 08:56 - 2014-07-24 10:10 - 00540672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2015-03-16 08:56 - 2014-07-24 10:04 - 00492032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll
2015-03-16 08:56 - 2014-07-24 10:04 - 00183808 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe
2015-03-16 08:56 - 2014-07-24 10:03 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2015-03-16 08:56 - 2014-07-24 09:58 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll
2015-03-16 08:56 - 2014-07-24 09:53 - 00449536 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll
2015-03-16 08:56 - 2014-07-24 09:49 - 01361408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2015-03-16 08:56 - 2014-07-24 09:49 - 01287680 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2015-03-16 08:56 - 2014-07-24 09:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2015-03-16 08:56 - 2014-07-24 09:48 - 00659968 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2015-03-16 08:56 - 2014-07-24 09:47 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2015-03-16 08:56 - 2014-07-24 09:43 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll
2015-03-16 08:56 - 2014-07-24 09:39 - 02397184 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll
2015-03-16 08:56 - 2014-07-24 09:38 - 00371200 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2015-03-16 08:56 - 2014-07-24 09:30 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
2015-03-16 08:56 - 2014-07-24 09:29 - 00439296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2015-03-16 08:56 - 2014-07-24 09:28 - 00595456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll
2015-03-16 08:56 - 2014-07-24 09:23 - 01404416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll
2015-03-16 08:56 - 2014-07-24 09:22 - 00487936 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2015-03-16 08:56 - 2014-07-24 09:21 - 01231872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2015-03-16 08:56 - 2014-07-24 09:21 - 00302080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll
2015-03-16 08:56 - 2014-07-24 09:19 - 00388608 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2015-03-16 08:56 - 2014-07-24 09:18 - 01144320 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll
2015-03-16 08:56 - 2014-07-24 09:18 - 00795136 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2015-03-16 08:56 - 2014-07-24 09:16 - 00505344 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll
2015-03-16 08:56 - 2014-07-24 09:16 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll
2015-03-16 08:56 - 2014-07-24 09:15 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-03-16 08:56 - 2014-07-24 09:15 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll
2015-03-16 08:56 - 2014-07-24 09:15 - 00432128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2015-03-16 08:56 - 2014-07-24 09:13 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2015-03-16 08:56 - 2014-07-24 09:10 - 00889344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2015-03-16 08:56 - 2014-07-24 09:10 - 00371712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2015-03-16 08:56 - 2014-07-24 09:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2015-03-16 08:56 - 2014-07-24 09:07 - 01705472 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-03-16 08:56 - 2014-07-24 09:05 - 00448000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll
2015-03-16 08:56 - 2014-07-24 09:04 - 00667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-03-16 08:56 - 2014-07-24 09:02 - 03465216 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-03-16 08:56 - 2014-07-24 09:01 - 01992192 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2015-03-16 08:56 - 2014-07-24 08:58 - 00432640 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2015-03-16 08:56 - 2014-07-24 08:58 - 00288768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll
2015-03-16 08:56 - 2014-07-24 08:54 - 01290752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2015-03-16 08:56 - 2014-07-24 08:50 - 01182208 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll
2015-03-16 08:56 - 2014-07-24 08:47 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2015-03-16 08:56 - 2014-07-24 08:44 - 01057792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.dll
2015-03-16 08:56 - 2014-07-24 08:41 - 00459264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2015-03-16 08:56 - 2014-07-12 06:55 - 00268288 _____ (Microsoft Corporation) C:\Windows\system32\wisp.dll
2015-03-16 08:56 - 2014-07-12 05:58 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wisp.dll
2015-03-16 08:56 - 2014-07-04 13:59 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2015-03-16 08:56 - 2014-07-04 11:29 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSip.dll
2015-03-16 08:56 - 2014-07-04 11:20 - 01656832 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2015-03-16 08:56 - 2014-07-04 11:06 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxSip.dll
2015-03-16 08:56 - 2014-07-04 11:00 - 01351168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2015-03-16 08:56 - 2014-07-04 10:30 - 00544768 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2015-03-16 08:56 - 2014-07-04 10:27 - 00474112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2015-03-16 08:56 - 2014-06-27 07:22 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2015-03-16 08:56 - 2014-06-26 01:32 - 01029632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2015-03-16 08:56 - 2014-06-26 01:29 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll
2015-03-16 08:56 - 2014-06-20 00:37 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-03-16 08:56 - 2014-06-19 03:13 - 00310080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2015-03-16 08:56 - 2014-06-07 13:46 - 00216368 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll
2015-03-16 08:56 - 2014-06-07 11:20 - 00189016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll
2015-03-16 08:56 - 2014-06-05 11:18 - 01018368 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll
2015-03-16 08:56 - 2014-06-05 10:42 - 00889856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll
2015-03-16 08:56 - 2014-05-31 06:00 - 01463808 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2015-03-16 08:56 - 2014-05-31 05:18 - 01319936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2015-03-16 08:56 - 2014-05-29 07:23 - 00427008 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2015-03-16 08:56 - 2014-05-29 06:25 - 00313856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2015-03-16 08:56 - 2014-05-26 08:26 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll
2015-03-16 08:56 - 2014-05-10 11:12 - 00387896 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2015-03-16 08:56 - 2014-05-10 09:46 - 00335680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2015-03-16 08:56 - 2014-05-06 05:41 - 00486744 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2015-03-16 08:56 - 2014-05-06 01:55 - 00391000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll
2015-03-16 08:56 - 2014-03-25 03:27 - 00160600 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll
2015-03-16 08:56 - 2014-03-25 03:27 - 00123920 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll
2015-03-16 08:56 - 2014-03-25 02:20 - 00128568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll
2015-03-16 08:56 - 2014-03-25 02:20 - 00127544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmmbase.dll
2015-03-16 08:55 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTT102.DLL
2015-03-16 08:55 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTT102.DLL
2015-03-16 08:55 - 2014-07-24 10:14 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2015-03-16 08:55 - 2014-07-24 09:36 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll
2015-03-16 08:55 - 2014-07-24 09:18 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-03-16 08:55 - 2014-07-24 09:06 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-03-16 08:55 - 2014-07-24 09:00 - 02100736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll
2015-03-16 08:48 - 2014-07-30 02:56 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll
2015-03-16 08:48 - 2014-07-29 06:22 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\tcpmon.dll
2015-03-16 08:41 - 2014-08-15 01:36 - 00146752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys
2015-03-16 08:40 - 2015-03-16 08:40 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2015-03-16 08:40 - 2015-03-16 08:40 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2015-03-16 08:34 - 2015-01-27 05:22 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2015-03-16 08:34 - 2015-01-27 03:11 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2015-03-16 08:34 - 2014-10-29 04:56 - 00027456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2015-03-16 08:34 - 2014-10-29 03:37 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll
2015-03-12 17:13 - 2014-04-14 04:29 - 01018880 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2015-03-12 16:48 - 2015-03-04 22:24 - 00792032 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-03-12 16:48 - 2015-03-04 22:24 - 00178144 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-03-12 16:28 - 2015-03-12 16:35 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-12 16:28 - 2015-02-26 21:14 - 122905848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-03-12 16:23 - 2014-03-20 00:36 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll
2015-03-12 16:23 - 2014-03-08 07:40 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2015-03-12 16:23 - 2014-03-04 08:00 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll
2015-03-12 16:23 - 2014-03-04 07:32 - 00356864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll
2015-03-12 16:22 - 2014-03-20 05:19 - 01291200 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-03-12 16:22 - 2014-03-20 04:41 - 00376152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2015-03-12 16:22 - 2014-03-20 01:53 - 00950784 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2015-03-12 16:22 - 2014-03-20 01:48 - 00201216 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll
2015-03-12 16:22 - 2014-03-20 00:55 - 01036288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-03-12 16:22 - 2014-03-20 00:39 - 00800256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2015-03-12 16:22 - 2014-03-19 06:50 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe
2015-03-12 16:22 - 2014-03-19 06:20 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe
2015-03-12 16:22 - 2014-03-13 13:35 - 00157016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys
2015-03-12 16:22 - 2014-03-08 21:38 - 01542768 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-03-12 16:22 - 2014-03-08 16:29 - 00356848 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2015-03-12 16:22 - 2014-03-08 12:34 - 01095488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-03-12 16:22 - 2014-03-08 10:02 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll
2015-03-12 16:22 - 2014-03-08 09:33 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll
2015-03-12 16:22 - 2014-03-08 09:25 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\SetNetworkLocation.dll
2015-03-12 16:22 - 2014-03-08 09:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxproxy.dll
2015-03-12 16:22 - 2014-03-08 08:47 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll
2015-03-12 16:22 - 2014-03-08 08:04 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2015-03-12 16:22 - 2014-03-08 07:48 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2015-03-12 16:22 - 2014-03-08 07:31 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2015-03-12 16:22 - 2014-03-08 07:30 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2015-03-12 16:22 - 2014-03-08 06:41 - 01306624 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2015-03-12 16:22 - 2014-03-08 06:11 - 00924160 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2015-03-12 16:22 - 2014-03-06 15:34 - 02331000 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-03-12 16:22 - 2014-03-06 15:34 - 00113648 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2015-03-12 16:22 - 2014-03-06 12:19 - 00094016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll
2015-03-12 16:22 - 2014-03-06 11:46 - 01679128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-03-12 16:22 - 2014-03-06 10:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2015-03-12 16:22 - 2014-03-06 10:24 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2015-03-12 16:22 - 2014-03-06 10:22 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2015-03-12 16:22 - 2014-03-06 10:19 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-03-12 16:22 - 2014-03-06 10:19 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2015-03-12 16:22 - 2014-03-06 10:19 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2015-03-12 16:22 - 2014-03-06 10:08 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll
2015-03-12 16:22 - 2014-03-06 09:41 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\DevPropMgr.dll
2015-03-12 16:22 - 2014-03-06 09:38 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-03-12 16:22 - 2014-03-06 09:14 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\WSDScDrv.dll
2015-03-12 16:22 - 2014-03-06 09:10 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\l2gpstore.dll
2015-03-12 16:22 - 2014-03-06 09:00 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
2015-03-12 16:22 - 2014-03-06 08:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-03-12 16:22 - 2014-03-06 08:16 - 00171008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll
2015-03-12 16:22 - 2014-03-06 08:02 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2015-03-12 16:22 - 2014-03-06 07:29 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2015-03-12 16:22 - 2014-03-06 07:24 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll
2015-03-12 16:22 - 2014-03-06 07:23 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll
2015-03-12 16:22 - 2014-03-06 07:21 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2015-03-12 16:22 - 2014-03-06 07:06 - 00386560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll
2015-03-12 16:22 - 2014-03-06 07:04 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2015-03-12 16:22 - 2014-03-06 07:01 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll
2015-03-12 16:22 - 2014-03-06 06:51 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll
2015-03-12 16:22 - 2014-03-06 06:47 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2015-03-12 16:22 - 2014-03-06 06:42 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll
2015-03-12 16:22 - 2014-03-04 08:16 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2015-03-12 16:22 - 2014-03-04 08:13 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2015-03-12 16:22 - 2014-03-04 08:08 - 00299008 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2015-03-12 16:22 - 2014-03-04 07:56 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll
2015-03-12 16:22 - 2014-03-04 07:42 - 00494592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2015-03-12 16:22 - 2014-03-04 07:39 - 00254976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll
2015-03-12 16:22 - 2014-03-04 07:15 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll
2015-03-12 16:22 - 2014-03-04 07:05 - 00402432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll
2015-03-12 16:22 - 2014-03-04 07:03 - 00669696 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2015-03-12 16:22 - 2014-03-04 07:03 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll
2015-03-12 16:22 - 2014-03-04 06:54 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll
2015-03-12 16:22 - 2014-03-04 06:52 - 00605184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll
2015-03-12 16:22 - 2013-12-24 00:28 - 00262656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll
2015-03-12 16:22 - 2013-12-24 00:26 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll
2015-03-12 16:09 - 2014-12-09 04:45 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-03-12 16:09 - 2014-12-09 02:56 - 00538624 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-03-12 16:09 - 2014-09-27 08:13 - 00104336 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll
2015-03-12 16:09 - 2014-09-27 06:24 - 00088800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll
2015-03-12 16:09 - 2014-09-27 04:30 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2015-03-12 16:09 - 2014-06-20 02:48 - 01273184 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-03-12 16:09 - 2014-06-20 00:52 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-03-12 16:05 - 2015-01-23 08:17 - 00723072 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2015-03-12 16:05 - 2015-01-23 06:02 - 00560392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2015-03-12 16:05 - 2015-01-15 23:43 - 00563504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-03-12 16:05 - 2015-01-15 23:43 - 00177984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-03-12 16:05 - 2015-01-14 05:22 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-03-12 16:05 - 2015-01-14 04:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-03-12 16:05 - 2014-10-29 03:51 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-03-12 16:05 - 2014-10-29 03:50 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-03-12 16:05 - 2014-10-29 03:06 - 00736768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-03-12 16:05 - 2014-10-29 03:06 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-03-12 16:05 - 2014-10-29 02:31 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-03-12 16:05 - 2014-06-13 02:15 - 00517528 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-03-12 16:05 - 2014-06-13 02:14 - 01557848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-03-12 16:05 - 2014-06-13 01:10 - 00406400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-03-12 16:05 - 2014-03-06 13:53 - 02141912 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-03-12 16:05 - 2014-03-06 13:51 - 00379224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-03-12 16:05 - 2014-03-06 13:39 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2015-03-12 16:05 - 2014-03-06 12:13 - 01779800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2015-03-12 16:04 - 2015-03-06 03:53 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-12 16:04 - 2015-03-06 03:33 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-03-12 16:04 - 2015-02-26 00:26 - 04178944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-12 16:04 - 2015-02-20 04:03 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-12 16:04 - 2015-02-20 03:58 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-12 16:04 - 2015-02-20 03:20 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-03-12 16:04 - 2015-02-20 03:15 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-03-12 16:04 - 2015-01-31 00:42 - 03097600 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-03-12 16:04 - 2015-01-31 00:29 - 02484224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-03-12 16:04 - 2015-01-29 02:58 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll
2015-03-12 16:04 - 2015-01-29 02:29 - 00290816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\photowiz.dll
2015-03-12 16:04 - 2014-12-09 02:50 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-03-12 16:04 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll
2015-03-12 16:04 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll
2015-03-12 16:04 - 2014-10-29 03:49 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-03-12 16:04 - 2014-10-29 03:44 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-03-12 16:04 - 2014-10-29 03:44 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-03-12 16:04 - 2014-10-29 03:04 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-03-12 16:04 - 2014-10-29 03:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-03-12 16:04 - 2014-10-29 03:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-03-12 16:04 - 2014-08-07 03:12 - 01336624 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-03-12 16:04 - 2014-08-02 04:56 - 01064448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-03-12 16:04 - 2014-05-30 04:03 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-03-12 16:03 - 2015-02-07 00:09 - 00396419 _____ () C:\Windows\system32\ApnDatabase.xml
2015-03-12 16:03 - 2015-02-04 00:58 - 00264000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2015-03-12 16:03 - 2015-02-04 00:58 - 00114496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys
2015-03-12 16:03 - 2015-02-04 00:58 - 00044024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2015-03-12 16:03 - 2015-02-03 00:53 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll
2015-03-12 16:03 - 2015-02-03 00:53 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll
2015-03-12 16:03 - 2015-01-27 04:44 - 00933888 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe
2015-03-12 16:03 - 2015-01-24 02:51 - 00816128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe
2015-03-12 16:03 - 2014-12-19 09:57 - 00788680 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-03-12 16:03 - 2014-12-19 09:25 - 00602776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-03-12 16:03 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\SysWOW64\locale.nls
2015-03-12 16:03 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\system32\locale.nls
2015-03-12 16:03 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-03-12 16:03 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-03-12 16:03 - 2014-10-29 02:27 - 01200128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2015-03-12 16:03 - 2014-10-29 02:27 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll
2015-03-12 16:03 - 2014-10-29 02:04 - 00868352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2015-03-12 16:03 - 2014-10-29 02:04 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll
2015-03-12 16:03 - 2014-10-13 03:33 - 00116032 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-03-12 16:03 - 2014-10-11 01:58 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-03-12 16:03 - 2014-10-11 01:53 - 03607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-03-12 16:03 - 2014-10-08 08:30 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-03-12 16:03 - 2014-10-08 08:09 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-03-12 16:03 - 2014-10-08 07:27 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-03-12 16:03 - 2014-08-23 06:18 - 02149376 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-03-12 16:03 - 2014-08-23 06:03 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-03-12 16:03 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2015-03-12 16:03 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-03-12 16:03 - 2014-03-13 08:42 - 00308224 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe
2015-03-12 16:03 - 2014-03-13 07:51 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe
2015-03-12 16:02 - 2014-05-03 06:36 - 00997888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2015-03-12 16:02 - 2014-05-03 06:19 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll
2015-03-12 16:02 - 2014-05-03 06:08 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll
2015-03-12 16:02 - 2014-05-03 06:07 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll
2015-03-12 16:02 - 2014-05-03 05:46 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncobjapi.dll
2015-03-12 16:02 - 2014-05-03 05:37 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll
2015-03-12 16:02 - 2014-05-03 05:37 - 00207360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll
2015-03-12 16:02 - 2014-05-03 00:26 - 00050745 _____ () C:\Windows\system32\srms.dat
2015-03-12 16:02 - 2014-04-30 07:43 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys
2015-03-12 16:02 - 2014-04-30 07:41 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-03-12 16:02 - 2014-04-30 07:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys
2015-03-12 16:02 - 2014-04-30 07:41 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys
2015-03-12 16:02 - 2014-04-30 06:45 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe
2015-03-12 16:02 - 2014-04-30 05:48 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe
2015-03-12 16:02 - 2014-04-30 05:24 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2015-03-12 16:02 - 2014-04-30 05:23 - 00353280 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2015-03-12 16:02 - 2014-04-30 05:23 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2015-03-12 16:02 - 2014-04-30 05:23 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll
2015-03-12 16:02 - 2014-04-30 05:14 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2015-03-12 16:02 - 2014-04-30 04:59 - 01063424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2015-03-12 16:02 - 2014-04-30 04:46 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll
2015-03-12 16:02 - 2014-04-30 04:46 - 00229888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2015-03-12 16:02 - 2014-04-30 04:46 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2015-03-12 16:02 - 2014-04-30 04:45 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll
2015-03-12 16:02 - 2014-04-30 04:42 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2015-03-12 16:02 - 2014-04-28 23:40 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2015-03-12 16:02 - 2014-04-26 17:39 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll
2015-03-12 16:02 - 2014-04-14 10:37 - 02125344 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2015-03-12 16:02 - 2014-04-14 09:08 - 01797896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2015-03-12 16:02 - 2014-04-14 06:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll
2015-03-12 16:02 - 2014-03-08 21:40 - 00136024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2015-03-12 16:02 - 2014-03-08 07:41 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2015-03-12 16:02 - 2014-03-08 07:25 - 00264192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2015-03-12 16:02 - 2014-03-08 07:04 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2015-03-12 16:02 - 2014-03-08 06:58 - 00567296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2015-03-12 16:01 - 2014-08-23 07:10 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
2015-03-12 16:01 - 2014-08-23 06:32 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2015-03-12 16:01 - 2014-08-23 05:33 - 00796672 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2015-03-12 16:01 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2015-03-12 16:01 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2015-03-12 16:01 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll
2015-03-12 16:01 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-03-12 16:01 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2015-03-12 16:01 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-03-12 16:00 - 2014-10-23 06:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2015-03-12 16:00 - 2014-10-23 06:05 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2015-03-12 16:00 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2015-03-12 16:00 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-03-12 16:00 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-03-12 16:00 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2015-03-12 16:00 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll
2015-03-12 16:00 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\httpprxm.dll
2015-03-12 16:00 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\ProximityService.dll
2015-03-12 16:00 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2015-03-12 16:00 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2015-03-12 16:00 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\adhsvc.dll
2015-03-12 16:00 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2015-03-12 16:00 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\pcsvDevice.dll
2015-03-12 16:00 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2015-03-12 16:00 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll
2015-03-12 16:00 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll
2015-03-12 16:00 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2015-03-12 16:00 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2015-03-12 16:00 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe
2015-03-12 16:00 - 2014-07-24 16:28 - 00468288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2015-03-12 16:00 - 2014-07-24 12:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys
2015-03-12 16:00 - 2014-07-24 11:09 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2015-03-12 16:00 - 2014-07-24 10:27 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2015-03-12 15:57 - 2014-04-08 23:46 - 00086688 _____ (Microsoft Corporation) C:\Windows\system32\mrt_map.dll
2015-03-12 15:57 - 2014-04-08 23:46 - 00028320 _____ (Microsoft Corporation) C:\Windows\system32\mrt100.dll
2015-03-12 15:57 - 2014-04-08 19:54 - 00080032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt_map.dll
2015-03-12 15:57 - 2014-04-08 19:54 - 00026784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt100.dll
2015-03-12 15:56 - 2014-08-02 01:18 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2015-03-12 15:55 - 2015-02-06 02:28 - 02257408 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-03-12 15:55 - 2015-02-06 02:08 - 01943040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-03-12 15:55 - 2015-01-29 02:11 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-12 15:55 - 2015-01-29 02:04 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-03-12 15:55 - 2015-01-29 02:04 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2015-03-12 15:55 - 2015-01-29 02:00 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-12 15:55 - 2015-01-29 01:55 - 00971776 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2015-03-12 15:55 - 2015-01-29 01:50 - 00811008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2015-03-12 15:55 - 2015-01-28 03:24 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\StorageContextHandler.dll
2015-03-12 15:55 - 2015-01-28 02:47 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorageContextHandler.dll
2015-03-12 15:55 - 2014-12-19 07:26 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-03-12 15:55 - 2014-12-12 01:51 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2015-03-12 15:55 - 2014-10-29 03:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\printui.exe
2015-03-12 15:55 - 2014-10-29 03:34 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll
2015-03-12 15:55 - 2014-10-29 03:34 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WSCollect.exe
2015-03-12 15:55 - 2014-10-29 03:34 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe
2015-03-12 15:55 - 2014-10-29 03:04 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll
2015-03-12 15:55 - 2014-10-29 02:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.exe
2015-03-12 15:55 - 2014-10-29 02:52 - 00289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compstui.dll
2015-03-12 15:55 - 2014-10-29 02:51 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2015-03-12 15:55 - 2014-10-29 02:45 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\prnntfy.dll
2015-03-12 15:55 - 2014-10-29 02:28 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll
2015-03-12 15:55 - 2014-10-29 02:20 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2015-03-12 15:55 - 2014-10-29 02:15 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnntfy.dll
2015-03-12 15:55 - 2014-10-29 02:13 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2015-03-12 15:55 - 2014-10-29 01:55 - 00223744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2015-03-12 15:55 - 2014-10-29 01:55 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll
2015-03-12 15:55 - 2014-10-29 01:44 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll
2015-03-12 15:55 - 2014-10-29 01:41 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll
2015-03-12 15:55 - 2014-10-29 01:35 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll
2015-03-12 15:55 - 2014-10-13 03:43 - 00238912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2015-03-12 15:55 - 2014-10-13 03:43 - 00153920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2015-03-12 15:55 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2015-03-12 15:55 - 2014-10-13 03:43 - 00039744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2015-03-12 15:55 - 2014-09-04 01:12 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2015-03-12 15:55 - 2014-09-04 01:01 - 00514048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2015-03-12 15:55 - 2014-07-10 05:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\lockscreencn.dll
2015-03-12 15:54 - 2014-12-12 03:04 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-03-12 15:54 - 2014-07-15 19:16 - 03048880 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2015-03-12 15:54 - 2014-07-15 09:29 - 03118080 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2015-03-12 15:54 - 2014-07-15 09:22 - 02861056 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll
2015-03-12 15:54 - 2014-07-15 09:03 - 02344448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2015-03-12 15:53 - 2014-04-11 04:06 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
         

Alt 18.03.2015, 19:55   #11
Dorfkicker
 
Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden - Standard

Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden



Und hier die ganz frische FRST-txt (Teil 1)

Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Frank (administrator) on UHURA2 on 18-03-2015 19:50:31
Running from C:\Users\Frank\Desktop
Loaded Profiles: Frank (Available profiles: Frank)
Platform: Windows 8.1 Connected (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
() C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
(H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Toshiba Corporation) C:\Program Files\TOSHIBA\Teco\TecoService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Teco\TecoResident.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files (x86)\ACD Systems\ACDSee\18.0\ACDSeeCommander18.exe
() C:\Users\Frank\AppData\Local\Amazon Music\Amazon Music Helper.exe
(AVM Berlin) C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
(TOSHIBA) C:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TDUSrv64.exe
(ACD Systems) C:\Program Files (x86)\ACD Systems\ACDSee\18.0\acdIDInTouch2.exe
(H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\vc10tray.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Don HO don.h@free.fr) C:\Program Files (x86)\Notepad++\notepad++.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [] => [X]
HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2556768 2013-10-09] (TOSHIBA Corporation)
HKLM\...\Run: [TecoResident] => C:\Program Files\TOSHIBA\Teco\TecoResident.exe [179288 2014-01-05] (TOSHIBA Corporation)
HKLM\...\Run: [TSSSrv] => C:\Program Files (x86)\TOSHIBA\System Setting\TSSSrv.exe [296008 2013-10-22] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [354144 2013-08-13] (TOSHIBA Corporation)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-20] (IvoSoft)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [KeNotify] => C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe [34160 2013-08-06] (TOSHIBA CORPORATION)
HKLM-x32\...\Run: [TSVU] => c:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TosSmartViewLauncher.exe [516512 2013-07-23] (TOSHIBA)
HKLM-x32\...\Run: [ACSW18DE] => C:\Program Files (x86)\ACD Systems\ACDSee\18.0\acdIDInTouch2.exe [1470224 2014-09-17] (ACD Systems)
HKLM-x32\...\Run: [ITSecMng] => C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [80840 2011-04-01] (TOSHIBA CORPORATION)
HKLM-x32\...\Run: [VC10Player] => C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe [416696 2012-10-25] (H+H Software GmbH)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [335232 2015-03-07] (Oracle Corporation)
HKLM-x32\...\Run: [TrojanScanner] => C:\Program Files (x86)\Trojan Remover\Trjscan.exe [1791856 2014-10-16] (Simply Super Software)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [AVMUSBFernanschluss] => C:\Users\Frank\AppData\Local\Apps\2.0\278VR074.5Y2\MNK9G0ED.QWB\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\AVMAutoStart.exe [139264 2015-03-10] (AVM Berlin)
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7416088 2015-02-19] (Piriform Ltd)
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [ACDSeeCommander18] => C:\Program Files (x86)\ACD Systems\ACDSee\18.0\ACDSeeCommander18.exe [1973256 2014-12-17] ()
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [Amazon Music] => C:\Users\Frank\AppData\Local\Amazon Music\Amazon Music Helper.exe [5886272 2015-03-02] ()
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [26232152 2015-02-19] (Google)
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x00000000
HKU\S-1-5-18\...\Run: [EPSONE8BE74 (Epson Stylus SX430)] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHAE.EXE [232448 2011-01-20] (SEIKO EPSON CORPORATION)
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.de/
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://toshiba13.msn.com/?pc=TEJB
HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://toshiba.eu/symbaloo_c
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2734555180-3142773653-1428810083-1001 -> {898DEB29-90E7-4FED-ADAC-FCDAB1A2CEFC} URL = 
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20] (IvoSoft)
BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2014-12-16] (Adblock Plus)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-17] (Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-17] (Oracle Corporation)
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20] (IvoSoft)
BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2014-12-16] (Adblock Plus)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.10

FireFox:
========
FF ProfilePath: C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll [2015-03-11] ()
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-03-11] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-17] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-17] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-10] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-10] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Extension: Avira Browser Safety - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\abs@avira.com [2015-03-17]
FF Extension: mediaplayerconnectivity - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{84b24861-62f6-364b-eba5-2e5e2061d7e6} [2015-03-11]
FF Extension: Add to Amazon Wish List Button - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\amznUWL2@amazon.com.xpi [2015-03-11]
FF Extension: NoScript - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2015-03-11]
FF Extension: Video DownloadHelper - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2015-03-16]
FF Extension: Adblock Plus - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\gkjsc56c.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-03-10]

Chrome: 
=======
CHR HomePage: Default -> hxxp://go.microsoft.com/fwlink/?LinkId=69157
CHR Profile: C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-17]
CHR Extension: (Google Docs) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-17]
CHR Extension: (Google Drive) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-17]
CHR Extension: (YouTube) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-17]
CHR Extension: (Adblock Plus) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-03-17]
CHR Extension: (Google Search) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-17]
CHR Extension: (Avira SafeSearch) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\eglgfnfolcgijipffhlhbbnefdcbjbml [2015-03-17]
CHR Extension: (Google Sheets) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-17]
CHR Extension: (Sticky Password Autofill Engine) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggepjhbdgijjkbelnggboeoehacbphed [2015-03-17]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-17]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-03-17]
CHR Extension: (Google Wallet) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-17]
CHR Extension: (Gmail) - C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-17]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-2734555180-3142773653-1428810083-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

Locked "vdrv1000" service was unlocked successfully. <===== ATTENTION

R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [319104 2014-03-19] (Windows (R) Win 7 DDK provider) [File not signed]
R2 dts_apo_service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [21840 2014-03-03] ()
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-02] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-02] (Intel(R) Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [116088 2014-08-05] (Toshiba Europe GmbH)
R2 VC10SecS; C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe [147312 2014-12-15] (H+H Software GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3888640 2014-02-14] (Qualcomm Atheros Communications, Inc.)
R3 avmaura; C:\Windows\System32\drivers\avmaura.sys [116480 2015-03-10] (AVM Berlin)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
S3 GENERICDRV; C:\Program Files (x86)\UEFI WinFlash\amifldrv64.sys [15640 2012-07-27] ()
S3 HH10Help.sys; C:\Windows\system32\drivers\HH10Help.sys [24088 2009-07-09] (H+H Software GmbH)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2015-03-18] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2014-11-21] (Malwarebytes Corporation)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [291544 2014-01-03] (Realtek Semiconductor Corp.)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31472 2014-02-21] (Synaptics Incorporated)
R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [33168 2013-10-10] (Windows (R) Win 7 DDK provider)
S3 Tosrfcom; No ImagePath
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation)
R1 vdrv1000; C:\Windows\System32\drivers\vdrv1000.sys [226080 2012-12-06] (H+H Software GmbH)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-18 19:48 - 2015-03-18 19:47 - 00852604 _____ () C:\Users\Frank\Desktop\SecurityCheck.exe
2015-03-18 19:47 - 2015-03-18 19:47 - 00852604 _____ () C:\Users\Frank\Downloads\SecurityCheck.exe
2015-03-18 17:37 - 2015-03-18 17:37 - 02347384 _____ (ESET) C:\Users\Frank\Downloads\esetsmartinstaller_deu.exe
2015-03-18 11:01 - 2015-03-18 11:01 - 00143219 _____ () C:\Users\Frank\Desktop\FRST_neu.txt
2015-03-18 10:57 - 2015-03-18 10:57 - 00000624 _____ () C:\Users\Frank\Desktop\JRT.txt
2015-03-18 10:48 - 2015-03-18 10:48 - 01388672 _____ (Thisisu) C:\Users\Frank\Downloads\JRT.exe
2015-03-18 10:48 - 2015-03-18 10:48 - 01388672 _____ (Thisisu) C:\Users\Frank\Desktop\JRT.exe
2015-03-18 10:46 - 2015-03-18 10:46 - 00001222 _____ () C:\Users\Frank\Desktop\AdwCleaner[S0].txt
2015-03-18 10:39 - 2015-03-18 10:43 - 00000000 ____D () C:\AdwCleaner
2015-03-18 10:38 - 2015-03-18 10:38 - 02171392 _____ () C:\Users\Frank\Downloads\AdwCleaner_4.112.exe
2015-03-18 10:38 - 2015-03-18 10:38 - 02171392 _____ () C:\Users\Frank\Desktop\AdwCleaner_4.112.exe
2015-03-18 10:37 - 2015-03-18 10:37 - 00001042 _____ () C:\Users\Frank\Desktop\mbam.txt
2015-03-18 10:04 - 2015-03-18 10:05 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (3).exe
2015-03-17 18:54 - 2015-03-17 18:55 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Frank\Downloads\tdsskiller.exe
2015-03-17 17:10 - 2015-03-18 19:12 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-17 17:10 - 2015-03-18 10:02 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-03-17 17:09 - 2015-03-17 18:26 - 00000000 ____D () C:\Users\Frank\Desktop\mbar
2015-03-17 17:08 - 2015-03-17 17:08 - 16502728 _____ (Malwarebytes Corp.) C:\Users\Frank\Downloads\mbar-1.09.1.1004.exe
2015-03-17 17:08 - 2015-03-17 17:08 - 16502728 _____ (Malwarebytes Corp.) C:\Users\Frank\Desktop\mbar-1.09.1.1004.exe
2015-03-17 15:53 - 2015-03-17 15:53 - 00000291 _____ () C:\Users\Frank\Desktop\gmer.txt
2015-03-17 15:52 - 2015-03-17 15:52 - 00000000 _____ () C:\Users\Frank\Desktop\Neues Textdokument.txt
2015-03-17 15:50 - 2015-03-17 15:50 - 00380416 _____ () C:\Users\Frank\Downloads\Gmer-19357.exe
2015-03-17 15:48 - 2015-03-17 15:48 - 00000472 _____ () C:\Users\Frank\Downloads\defogger_disable.log
2015-03-17 15:48 - 2015-03-17 15:48 - 00000000 _____ () C:\Users\Frank\defogger_reenable
2015-03-17 15:47 - 2015-03-17 15:47 - 00050477 _____ () C:\Users\Frank\Downloads\Defogger.exe
2015-03-17 15:23 - 2015-03-17 15:24 - 00029764 _____ () C:\Users\Frank\Downloads\Addition.txt
2015-03-17 15:21 - 2015-03-17 15:24 - 00142748 _____ () C:\Users\Frank\Downloads\FRST.txt
2015-03-17 15:20 - 2015-03-17 15:21 - 02095616 _____ (Farbar) C:\Users\Frank\Downloads\FRST64.exe
2015-03-17 15:13 - 2015-03-17 15:13 - 00000022 _____ () C:\Users\Frank\Downloads\apppath.torun
2015-03-17 15:02 - 2015-03-17 15:02 - 00022528 _____ (Microsoft) C:\Users\Frank\Downloads\RunAsSystem.exe
2015-03-17 14:52 - 2015-03-18 10:06 - 00001084 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2015-03-17 14:52 - 2015-03-18 10:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2015-03-17 14:52 - 2015-03-18 10:06 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2015-03-17 14:52 - 2015-03-17 14:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (2).exe
2015-03-17 14:52 - 2015-03-17 14:52 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-03-17 14:52 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-03-17 14:52 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-03-17 14:52 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-03-17 14:51 - 2015-03-17 14:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028 (1).exe
2015-03-17 14:51 - 2015-03-17 14:52 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Frank\Downloads\mbam-setup-2.0.4.1028.exe
2015-03-17 13:56 - 2015-03-17 13:56 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2015-03-17 13:41 - 2015-03-17 13:41 - 00000000 ____D () C:\OETemp
2015-03-17 13:23 - 2015-03-17 14:06 - 00000000 ____D () C:\Program Files (x86)\Avira
2015-03-17 13:22 - 2015-03-17 13:22 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\Frank\Downloads\avira_de_av_5946238192__ws.exe
2015-03-17 13:17 - 2015-03-17 13:18 - 00000000 ____D () C:\ProgramData\Kaspersky Lab Setup Files
2015-03-17 13:16 - 2015-03-17 13:16 - 00416576 _____ (Kaspersky Lab) C:\Users\Frank\Downloads\de-de.setup.exe
2015-03-17 13:15 - 2015-03-17 13:15 - 141468920 _____ (Microsoft Corporation) C:\Users\Frank\Downloads\msert.exe
2015-03-17 13:13 - 2015-03-17 13:14 - 00013513 _____ () C:\Users\Frank\Desktop\Addition.txt
2015-03-17 13:10 - 2015-03-18 19:50 - 00019442 _____ () C:\Users\Frank\Desktop\FRST.txt
2015-03-17 13:10 - 2015-03-18 19:50 - 00000000 ____D () C:\FRST
2015-03-17 12:30 - 2015-03-17 12:28 - 02095616 _____ (Farbar) C:\Users\Frank\Desktop\FRST64.exe
2015-03-17 12:20 - 2015-03-17 12:20 - 00001121 _____ () C:\Users\Public\Desktop\Trojan Remover.lnk
2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\Users\Frank\Documents\Simply Super Software
2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Simply Super Software
2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trojan Remover
2015-03-17 12:20 - 2015-03-17 12:20 - 00000000 ____D () C:\ProgramData\Licenses
2015-03-17 12:19 - 2015-03-17 12:20 - 00000000 ____D () C:\Program Files (x86)\Trojan Remover
2015-03-17 12:19 - 2015-03-17 12:19 - 00000000 ____D () C:\ProgramData\Simply Super Software
2015-03-17 12:18 - 2015-03-17 12:19 - 31390952 _____ (Simply Super Software ) C:\Users\Frank\Downloads\trjsetup691.exe
2015-03-17 12:04 - 2015-03-17 12:04 - 00000000 __SHD () C:\ProgramData\Application Services
2015-03-17 11:54 - 2015-03-17 12:21 - 00000000 __SHD () C:\Windows\SysWOW64\Application Services
2015-03-17 11:24 - 2015-03-18 17:32 - 00001276 _____ () C:\Windows\setupact.log
2015-03-17 11:24 - 2015-03-17 11:24 - 00000000 _____ () C:\Windows\setuperr.log
2015-03-17 11:23 - 2015-03-18 10:02 - 00143660 _____ () C:\Windows\PFRO.log
2015-03-17 11:09 - 2015-03-17 11:10 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Mp3tag
2015-03-17 10:48 - 2015-03-17 10:48 - 00650657 _____ () C:\Users\Frank\Downloads\lame3.99.5.zip
2015-03-17 10:41 - 2015-03-17 15:51 - 00000000 ____D () C:\Users\Frank\AppData\Local\CrashDumps
2015-03-17 10:40 - 2015-03-17 10:49 - 00000000 ____D () C:\Program Files (x86)\Exact Audio Copy
2015-03-17 10:40 - 2015-03-17 10:40 - 00001052 _____ () C:\Users\Public\Desktop\Exact Audio Copy.lnk
2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\EAC
2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\AccurateRip
2015-03-17 10:40 - 2015-03-17 10:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Exact Audio Copy
2015-03-17 10:38 - 2015-03-17 10:39 - 00000000 ____D () C:\ProgramData\Oracle
2015-03-17 10:38 - 2015-03-17 10:38 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\ProgramData\Sun
2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-03-17 10:38 - 2015-03-17 10:38 - 00000000 ____D () C:\Program Files (x86)\Java
2015-03-17 10:37 - 2015-03-17 10:37 - 00561064 _____ (Oracle Corporation) C:\Users\Frank\Downloads\jxpiinstall.exe
2015-03-17 10:36 - 2015-03-17 10:39 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Freeplane
2015-03-17 10:36 - 2015-03-17 10:36 - 00000842 _____ () C:\Users\Public\Desktop\Freeplane.lnk
2015-03-17 10:36 - 2015-03-17 10:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freeplane
2015-03-17 10:36 - 2015-03-17 10:36 - 00000000 ____D () C:\Program Files\Freeplane
2015-03-17 10:29 - 2015-03-17 10:29 - 00000840 _____ () C:\Users\Frank\AppData\Local\recently-used.xbel
2015-03-17 10:29 - 2015-03-17 10:29 - 00000000 ____D () C:\Users\Frank\AppData\Local\gtk-2.0
2015-03-17 10:29 - 2015-03-17 10:29 - 00000000 ____D () C:\Users\Frank\.thumbnails
2015-03-17 10:22 - 2015-03-17 10:35 - 00000000 ____D () C:\Users\Frank\.gimp-2.8
2015-03-17 10:22 - 2015-03-17 10:22 - 04620717 _____ () C:\Users\Frank\Downloads\eac-1.0beta4.exe
2015-03-17 10:22 - 2015-03-17 10:22 - 00000000 ____D () C:\Users\Frank\AppData\Local\gegl-0.2
2015-03-17 10:14 - 2015-03-17 10:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\FileZilla
2015-03-17 10:14 - 2015-03-17 10:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2015-03-17 10:14 - 2015-03-17 10:14 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client
2015-03-17 10:13 - 2015-03-17 10:26 - 00000916 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk
2015-03-17 10:12 - 2015-03-17 10:13 - 00000000 ____D () C:\Program Files\GIMP 2
2015-03-17 10:11 - 2015-03-17 16:25 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Notepad++
2015-03-17 10:11 - 2015-03-17 10:12 - 00000000 ____D () C:\Program Files (x86)\Notepad++
2015-03-17 10:11 - 2015-03-17 10:11 - 00001035 _____ () C:\Users\Frank\Desktop\Notepad++.lnk
2015-03-17 10:11 - 2015-03-17 10:11 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2015-03-17 10:11 - 2015-03-17 10:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
2015-03-17 10:06 - 2015-03-17 10:06 - 06208736 _____ (Tim Kosse) C:\Users\Frank\Downloads\filezilla_3.10.2_win32-setup.exe
2015-03-17 10:05 - 2015-03-17 10:05 - 08271739 _____ () C:\Users\Frank\Downloads\npp.6.7.5.installer.exe
2015-03-17 10:00 - 2015-03-17 10:00 - 91931728 _____ (The GIMP Team ) C:\Users\Frank\Downloads\gimp-2.8.14-setup-1.exe
2015-03-17 09:58 - 2015-03-17 09:58 - 24430312 _____ (Open source ) C:\Users\Frank\Downloads\freeplane-setup-1.3.15.exe
2015-03-17 08:41 - 2015-03-18 17:34 - 00000000 ___RD () C:\Users\Frank\Google Drive
2015-03-17 08:28 - 2015-03-17 08:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-03-17 08:27 - 2015-03-17 08:27 - 00880208 _____ (Google Inc.) C:\Users\Frank\Downloads\ChromeSetup.exe
2015-03-17 08:13 - 2015-03-17 08:13 - 00000000 ____D () C:\Program Files\Adblock Plus for IE
2015-03-17 08:12 - 2015-03-17 08:12 - 05915456 _____ ( ) C:\Users\Frank\Downloads\adblockplusie-1.3.exe
2015-03-16 22:19 - 2015-03-18 14:06 - 01546988 _____ () C:\Windows\WindowsUpdate.log
2015-03-16 22:16 - 2015-03-16 22:19 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\WildTangent
2015-03-16 22:16 - 2015-03-16 22:16 - 00000000 ____D () C:\ProgramData\BlueStacks
2015-03-16 21:16 - 2015-03-16 21:16 - 15094704 _____ (Lamantine Software ) C:\Users\Frank\Downloads\stpass_free_606434.exe
2015-03-16 21:16 - 2015-03-16 21:16 - 15094696 _____ (Lamantine Software ) C:\Users\Frank\Downloads\stpass_trial_606434.exe
2015-03-16 19:46 - 2015-03-16 20:09 - 00121344 ___SH () C:\Users\Frank\Downloads\Thumbs.db
2015-03-16 17:26 - 2015-03-16 17:46 - 00000000 ___SD () C:\Users\Public\Virtual CDs
2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ___SD () C:\Users\Public\Virtual CD v10
2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ___SD () C:\Users\Frank\AppData\Roaming\Virtual CD v10
2015-03-16 17:26 - 2015-03-16 17:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual CD v10
2015-03-16 17:26 - 2012-12-06 11:09 - 00226080 ____N (H+H Software GmbH) C:\Windows\system32\Drivers\vdrv1000.sys
2015-03-16 17:26 - 2009-07-09 11:24 - 00024088 _____ (H+H Software GmbH) C:\Windows\system32\Drivers\HH10Help.sys
2015-03-16 17:25 - 2015-03-16 17:26 - 00000000 ____D () C:\Program Files (x86)\Virtual CD v10
2015-03-16 17:24 - 2015-03-16 17:24 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\InstallShield
2015-03-16 17:24 - 2008-06-17 09:22 - 00040464 _____ (H+H Software GmbH) C:\Windows\system32\Drivers\vcd10bus.sys
2015-03-16 16:43 - 2000-10-29 15:33 - 00141312 _____ (Info-ZIP) C:\Windows\SysWOW64\Zip32.dll
2015-03-16 16:30 - 2015-03-16 17:01 - 00000000 ____D () C:\Users\Frank\Documents\TC Seth
2015-03-16 15:13 - 2015-03-16 16:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\M-DVD.Org V2
2015-03-16 15:13 - 2007-09-24 10:04 - 00675840 _____ () C:\Windows\SysWOW64\AudioGenie2.ocx
2015-03-16 15:13 - 2006-03-09 12:34 - 02945024 _____ (hxxp://mediainfo.sourceforge.net) C:\Windows\SysWOW64\MediaInfo.dll
2015-03-16 15:13 - 2004-05-27 00:32 - 00102400 _____ (Info-ZIP) C:\Windows\SysWOW64\unzip32.dll
2015-03-16 15:12 - 2015-03-16 16:43 - 00000000 ____D () C:\Program Files (x86)\M-DVD.Org V2
2015-03-16 15:12 - 2015-03-16 15:12 - 00000000 ____D () C:\ProgramData\M-DVD.Org V2
2015-03-16 15:12 - 2009-12-04 11:56 - 00061440 ____H (SynApp GmbH) C:\Windows\SysWOW64\ErrExplorer.dll
2015-03-16 15:12 - 2006-10-06 09:20 - 02899968 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11.dll
2015-03-16 15:12 - 2006-10-04 16:01 - 00351232 _____ (combit GmbH) C:\Windows\SysWOW64\cmpr11.dll
2015-03-16 15:12 - 2006-09-26 15:51 - 01399296 _____ (combit GmbH) C:\Windows\SysWOW64\cmct11.dll
2015-03-16 15:12 - 2006-09-26 15:39 - 01378304 _____ (combit GmbH) C:\Windows\SysWOW64\cmls11.dll
2015-03-16 15:12 - 2006-09-26 15:39 - 00893952 _____ (combit GmbH) C:\Windows\SysWOW64\cmbr11.dll
2015-03-16 15:12 - 2006-09-26 15:38 - 00739328 _____ (combit GmbH) C:\Windows\SysWOW64\cmdw11.dll
2015-03-16 15:12 - 2006-09-26 15:36 - 00337920 _____ (combit GmbH) C:\Windows\SysWOW64\cmut11.dll
2015-03-16 15:12 - 2006-09-13 10:29 - 00688640 _____ (combit GmbH) C:\Windows\SysWOW64\cmmx01.dll
2015-03-16 15:12 - 2006-07-19 07:00 - 00349184 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11pw.llx
2015-03-16 15:12 - 2006-06-22 08:50 - 00165584 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11o.ocx
2015-03-16 15:12 - 2005-09-13 13:29 - 00414720 _____ (combit GmbH) C:\Windows\SysWOW64\cmll1100.lng
2015-03-16 15:12 - 2005-08-08 16:10 - 00425984 _____ () C:\Windows\SysWOW64\cmmx0100.lng
2015-03-16 15:12 - 2005-07-12 09:41 - 00684032 _____ (combit GmbH) C:\Windows\SysWOW64\cmll11xl.dll
2015-03-16 15:12 - 2005-06-23 15:17 - 01161492 _____ () C:\Windows\SysWOW64\cmLL1100.chm
2015-03-16 12:57 - 2015-03-17 12:10 - 00000000 ____D () C:\Program Files (x86)\Sticky Password
2015-03-16 12:04 - 2015-03-16 12:04 - 00000000 ____D () C:\ProgramData\ToshibaEurope
2015-03-16 12:04 - 2015-03-16 12:04 - 00000000 ____D () C:\ProgramData\TOSHIBA Tempro
2015-03-16 12:03 - 2015-03-16 12:03 - 00000000 ____D () C:\Windows\System32\Tasks\Toshiba
2015-03-16 12:03 - 2015-03-16 12:03 - 00000000 ____D () C:\Program Files (x86)\Toshiba TEMPRO
2015-03-16 11:55 - 2015-03-16 11:55 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieBrowserModeList
2015-03-16 11:54 - 2015-03-16 11:54 - 00000000 ____D () C:\ProgramData\IsolatedStorage
2015-03-16 08:57 - 2014-07-24 16:03 - 02141920 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2015-03-16 08:57 - 2014-07-24 14:36 - 02145472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2015-03-16 08:57 - 2014-07-24 10:44 - 16874496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2015-03-16 08:57 - 2014-07-24 10:16 - 12730880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2015-03-16 08:57 - 2014-07-24 09:53 - 01261056 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2015-03-16 08:57 - 2014-07-24 09:32 - 01532416 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2015-03-16 08:57 - 2014-07-24 08:28 - 01600000 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2015-03-16 08:57 - 2014-06-14 07:03 - 02389504 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-03-16 08:57 - 2014-06-14 06:46 - 02071552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-03-16 08:56 - 2014-07-24 16:28 - 00419648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-03-16 08:56 - 2014-07-24 16:28 - 00412992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2015-03-16 08:56 - 2014-07-24 16:28 - 00280384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2015-03-16 08:56 - 2014-07-24 16:28 - 00143680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2015-03-16 08:56 - 2014-07-24 16:25 - 00054752 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-03-16 08:56 - 2014-07-24 16:23 - 01519488 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2015-03-16 08:56 - 2014-07-24 16:23 - 00125472 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2015-03-16 08:56 - 2014-07-24 16:20 - 00263400 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2015-03-16 08:56 - 2014-07-24 16:16 - 02574208 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2015-03-16 08:56 - 2014-07-24 16:16 - 00211216 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe
2015-03-16 08:56 - 2014-07-24 16:07 - 02009920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-03-16 08:56 - 2014-07-24 16:05 - 01660048 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-03-16 08:56 - 2014-07-24 16:05 - 01519560 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-03-16 08:56 - 2014-07-24 16:05 - 01488008 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-03-16 08:56 - 2014-07-24 16:05 - 01356840 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-03-16 08:56 - 2014-07-24 16:03 - 00882136 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-03-16 08:56 - 2014-07-24 16:03 - 00360480 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2015-03-16 08:56 - 2014-07-24 16:03 - 00233888 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-03-16 08:56 - 2014-07-24 16:03 - 00205512 _____ (Microsoft Corporation) C:\Windows\system32\mftranscode.dll
2015-03-16 08:56 - 2014-07-24 14:50 - 00098048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2015-03-16 08:56 - 2014-07-24 14:48 - 02410976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2015-03-16 08:56 - 2014-07-24 14:48 - 00180208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe
2015-03-16 08:56 - 2014-07-24 14:36 - 00707536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-03-16 08:56 - 2014-07-24 14:36 - 00355800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2015-03-16 08:56 - 2014-07-24 14:36 - 00180720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mftranscode.dll
2015-03-16 08:56 - 2014-07-24 12:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDRUM.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2015-03-16 08:56 - 2014-07-24 12:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2015-03-16 08:56 - 2014-07-24 12:46 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys
2015-03-16 08:56 - 2014-07-24 12:45 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2015-03-16 08:56 - 2014-07-24 12:44 - 00674816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2015-03-16 08:56 - 2014-07-24 12:43 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2015-03-16 08:56 - 2014-07-24 12:42 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2015-03-16 08:56 - 2014-07-24 12:42 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys
2015-03-16 08:56 - 2014-07-24 12:41 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthpan.sys
2015-03-16 08:56 - 2014-07-24 12:33 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-03-16 08:56 - 2014-07-24 12:33 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-03-16 08:56 - 2014-07-24 12:06 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\iasnap.dll
2015-03-16 08:56 - 2014-07-24 12:05 - 00287232 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll
2015-03-16 08:56 - 2014-07-24 12:05 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-03-16 08:56 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2015-03-16 08:56 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2015-03-16 08:56 - 2014-07-24 11:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRUM.DLL
2015-03-16 08:56 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2015-03-16 08:56 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2015-03-16 08:56 - 2014-07-24 11:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2015-03-16 08:56 - 2014-07-24 11:49 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersGPExt.dll
2015-03-16 08:56 - 2014-07-24 11:33 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-03-16 08:56 - 2014-07-24 11:32 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl
2015-03-16 08:56 - 2014-07-24 11:20 - 02050560 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2015-03-16 08:56 - 2014-07-24 11:18 - 01089024 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll
2015-03-16 08:56 - 2014-07-24 11:12 - 00878592 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2015-03-16 08:56 - 2014-07-24 11:10 - 01844224 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2015-03-16 08:56 - 2014-07-24 11:10 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2015-03-16 08:56 - 2014-07-24 11:10 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-03-16 08:56 - 2014-07-24 11:10 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasnap.dll
2015-03-16 08:56 - 2014-07-24 11:05 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2015-03-16 08:56 - 2014-07-24 10:52 - 00621056 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2015-03-16 08:56 - 2014-07-24 10:42 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl
2015-03-16 08:56 - 2014-07-24 10:40 - 00557056 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs.dll
2015-03-16 08:56 - 2014-07-24 10:39 - 00770048 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2015-03-16 08:56 - 2014-07-24 10:33 - 01741824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll
2015-03-16 08:56 - 2014-07-24 10:32 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpedit.dll
2015-03-16 08:56 - 2014-07-24 10:27 - 00779264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2015-03-16 08:56 - 2014-07-24 10:25 - 00832512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll
2015-03-16 08:56 - 2014-07-24 10:24 - 01817088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll
2015-03-16 08:56 - 2014-07-24 10:21 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2015-03-16 08:56 - 2014-07-24 10:18 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll
2015-03-16 08:56 - 2014-07-24 10:12 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll
2015-03-16 08:56 - 2014-07-24 10:11 - 00356864 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-03-16 08:56 - 2014-07-24 10:11 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll
2015-03-16 08:56 - 2014-07-24 10:10 - 00540672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2015-03-16 08:56 - 2014-07-24 10:04 - 00492032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll
2015-03-16 08:56 - 2014-07-24 10:04 - 00183808 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe
2015-03-16 08:56 - 2014-07-24 10:03 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2015-03-16 08:56 - 2014-07-24 09:58 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll
2015-03-16 08:56 - 2014-07-24 09:53 - 00449536 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll
2015-03-16 08:56 - 2014-07-24 09:49 - 01361408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2015-03-16 08:56 - 2014-07-24 09:49 - 01287680 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2015-03-16 08:56 - 2014-07-24 09:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2015-03-16 08:56 - 2014-07-24 09:48 - 00659968 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2015-03-16 08:56 - 2014-07-24 09:47 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2015-03-16 08:56 - 2014-07-24 09:43 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll
2015-03-16 08:56 - 2014-07-24 09:39 - 02397184 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll
2015-03-16 08:56 - 2014-07-24 09:38 - 00371200 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2015-03-16 08:56 - 2014-07-24 09:30 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
2015-03-16 08:56 - 2014-07-24 09:29 - 00439296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2015-03-16 08:56 - 2014-07-24 09:28 - 00595456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll
2015-03-16 08:56 - 2014-07-24 09:23 - 01404416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll
2015-03-16 08:56 - 2014-07-24 09:22 - 00487936 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2015-03-16 08:56 - 2014-07-24 09:21 - 01231872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2015-03-16 08:56 - 2014-07-24 09:21 - 00302080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll
2015-03-16 08:56 - 2014-07-24 09:19 - 00388608 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2015-03-16 08:56 - 2014-07-24 09:18 - 01144320 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll
2015-03-16 08:56 - 2014-07-24 09:18 - 00795136 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2015-03-16 08:56 - 2014-07-24 09:16 - 00505344 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll
2015-03-16 08:56 - 2014-07-24 09:16 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll
2015-03-16 08:56 - 2014-07-24 09:15 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-03-16 08:56 - 2014-07-24 09:15 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll
2015-03-16 08:56 - 2014-07-24 09:15 - 00432128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2015-03-16 08:56 - 2014-07-24 09:13 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2015-03-16 08:56 - 2014-07-24 09:10 - 00889344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2015-03-16 08:56 - 2014-07-24 09:10 - 00371712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2015-03-16 08:56 - 2014-07-24 09:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2015-03-16 08:56 - 2014-07-24 09:07 - 01705472 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-03-16 08:56 - 2014-07-24 09:05 - 00448000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll
2015-03-16 08:56 - 2014-07-24 09:04 - 00667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-03-16 08:56 - 2014-07-24 09:02 - 03465216 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-03-16 08:56 - 2014-07-24 09:01 - 01992192 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2015-03-16 08:56 - 2014-07-24 08:58 - 00432640 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2015-03-16 08:56 - 2014-07-24 08:58 - 00288768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll
2015-03-16 08:56 - 2014-07-24 08:54 - 01290752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2015-03-16 08:56 - 2014-07-24 08:50 - 01182208 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll
2015-03-16 08:56 - 2014-07-24 08:47 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2015-03-16 08:56 - 2014-07-24 08:44 - 01057792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.dll
2015-03-16 08:56 - 2014-07-24 08:41 - 00459264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2015-03-16 08:56 - 2014-07-12 06:55 - 00268288 _____ (Microsoft Corporation) C:\Windows\system32\wisp.dll
2015-03-16 08:56 - 2014-07-12 05:58 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wisp.dll
2015-03-16 08:56 - 2014-07-04 13:59 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2015-03-16 08:56 - 2014-07-04 11:29 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSip.dll
2015-03-16 08:56 - 2014-07-04 11:20 - 01656832 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2015-03-16 08:56 - 2014-07-04 11:06 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxSip.dll
2015-03-16 08:56 - 2014-07-04 11:00 - 01351168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2015-03-16 08:56 - 2014-07-04 10:30 - 00544768 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2015-03-16 08:56 - 2014-07-04 10:27 - 00474112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2015-03-16 08:56 - 2014-06-27 07:22 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2015-03-16 08:56 - 2014-06-26 01:32 - 01029632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2015-03-16 08:56 - 2014-06-26 01:29 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll
2015-03-16 08:56 - 2014-06-20 00:37 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-03-16 08:56 - 2014-06-19 03:13 - 00310080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2015-03-16 08:56 - 2014-06-07 13:46 - 00216368 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll
2015-03-16 08:56 - 2014-06-07 11:20 - 00189016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll
2015-03-16 08:56 - 2014-06-05 11:18 - 01018368 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll
2015-03-16 08:56 - 2014-06-05 10:42 - 00889856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll
2015-03-16 08:56 - 2014-05-31 06:00 - 01463808 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2015-03-16 08:56 - 2014-05-31 05:18 - 01319936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2015-03-16 08:56 - 2014-05-29 07:23 - 00427008 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2015-03-16 08:56 - 2014-05-29 06:25 - 00313856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2015-03-16 08:56 - 2014-05-26 08:26 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll
2015-03-16 08:56 - 2014-05-10 11:12 - 00387896 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2015-03-16 08:56 - 2014-05-10 09:46 - 00335680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2015-03-16 08:56 - 2014-05-06 05:41 - 00486744 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2015-03-16 08:56 - 2014-05-06 01:55 - 00391000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll
2015-03-16 08:56 - 2014-03-25 03:27 - 00160600 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll
2015-03-16 08:56 - 2014-03-25 03:27 - 00123920 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll
2015-03-16 08:56 - 2014-03-25 02:20 - 00128568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll
2015-03-16 08:56 - 2014-03-25 02:20 - 00127544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmmbase.dll
2015-03-16 08:55 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTT102.DLL
2015-03-16 08:55 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTT102.DLL
2015-03-16 08:55 - 2014-07-24 10:14 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2015-03-16 08:55 - 2014-07-24 09:36 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll
2015-03-16 08:55 - 2014-07-24 09:18 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-03-16 08:55 - 2014-07-24 09:06 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-03-16 08:55 - 2014-07-24 09:00 - 02100736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll
2015-03-16 08:48 - 2014-07-30 02:56 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll
2015-03-16 08:48 - 2014-07-29 06:22 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\tcpmon.dll
2015-03-16 08:41 - 2014-08-15 01:36 - 00146752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys
2015-03-16 08:40 - 2015-03-16 08:40 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2015-03-16 08:40 - 2015-03-16 08:40 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2015-03-16 08:34 - 2015-01-27 05:22 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2015-03-16 08:34 - 2015-01-27 03:11 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2015-03-16 08:34 - 2014-10-29 04:56 - 00027456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2015-03-16 08:34 - 2014-10-29 03:37 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll
2015-03-12 17:13 - 2014-04-14 04:29 - 01018880 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2015-03-12 16:48 - 2015-03-04 22:24 - 00792032 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-03-12 16:48 - 2015-03-04 22:24 - 00178144 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-03-12 16:28 - 2015-03-12 16:35 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-12 16:28 - 2015-02-26 21:14 - 122905848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-03-12 16:23 - 2014-03-20 00:36 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll
2015-03-12 16:23 - 2014-03-08 07:40 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2015-03-12 16:23 - 2014-03-04 08:00 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll
2015-03-12 16:23 - 2014-03-04 07:32 - 00356864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll
2015-03-12 16:22 - 2014-03-20 05:19 - 01291200 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-03-12 16:22 - 2014-03-20 04:41 - 00376152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2015-03-12 16:22 - 2014-03-20 01:53 - 00950784 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2015-03-12 16:22 - 2014-03-20 01:48 - 00201216 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll
2015-03-12 16:22 - 2014-03-20 00:55 - 01036288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-03-12 16:22 - 2014-03-20 00:39 - 00800256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2015-03-12 16:22 - 2014-03-19 06:50 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe
2015-03-12 16:22 - 2014-03-19 06:20 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe
2015-03-12 16:22 - 2014-03-13 13:35 - 00157016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys
2015-03-12 16:22 - 2014-03-08 21:38 - 01542768 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-03-12 16:22 - 2014-03-08 16:29 - 00356848 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2015-03-12 16:22 - 2014-03-08 12:34 - 01095488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-03-12 16:22 - 2014-03-08 10:02 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll
2015-03-12 16:22 - 2014-03-08 09:33 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll
2015-03-12 16:22 - 2014-03-08 09:25 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\SetNetworkLocation.dll
2015-03-12 16:22 - 2014-03-08 09:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxproxy.dll
2015-03-12 16:22 - 2014-03-08 08:47 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll
2015-03-12 16:22 - 2014-03-08 08:04 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2015-03-12 16:22 - 2014-03-08 07:48 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2015-03-12 16:22 - 2014-03-08 07:31 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2015-03-12 16:22 - 2014-03-08 07:30 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2015-03-12 16:22 - 2014-03-08 06:41 - 01306624 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2015-03-12 16:22 - 2014-03-08 06:11 - 00924160 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2015-03-12 16:22 - 2014-03-06 15:34 - 02331000 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-03-12 16:22 - 2014-03-06 15:34 - 00113648 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2015-03-12 16:22 - 2014-03-06 12:19 - 00094016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll
2015-03-12 16:22 - 2014-03-06 11:46 - 01679128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-03-12 16:22 - 2014-03-06 10:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2015-03-12 16:22 - 2014-03-06 10:24 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2015-03-12 16:22 - 2014-03-06 10:22 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2015-03-12 16:22 - 2014-03-06 10:19 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-03-12 16:22 - 2014-03-06 10:19 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2015-03-12 16:22 - 2014-03-06 10:19 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2015-03-12 16:22 - 2014-03-06 10:08 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll
2015-03-12 16:22 - 2014-03-06 09:41 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\DevPropMgr.dll
2015-03-12 16:22 - 2014-03-06 09:38 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-03-12 16:22 - 2014-03-06 09:14 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\WSDScDrv.dll
2015-03-12 16:22 - 2014-03-06 09:10 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\l2gpstore.dll
2015-03-12 16:22 - 2014-03-06 09:00 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
2015-03-12 16:22 - 2014-03-06 08:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-03-12 16:22 - 2014-03-06 08:16 - 00171008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll
2015-03-12 16:22 - 2014-03-06 08:02 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2015-03-12 16:22 - 2014-03-06 07:29 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2015-03-12 16:22 - 2014-03-06 07:24 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll
2015-03-12 16:22 - 2014-03-06 07:23 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll
2015-03-12 16:22 - 2014-03-06 07:21 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2015-03-12 16:22 - 2014-03-06 07:06 - 00386560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll
2015-03-12 16:22 - 2014-03-06 07:04 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2015-03-12 16:22 - 2014-03-06 07:01 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll
2015-03-12 16:22 - 2014-03-06 06:51 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll
2015-03-12 16:22 - 2014-03-06 06:47 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2015-03-12 16:22 - 2014-03-06 06:42 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll
2015-03-12 16:22 - 2014-03-04 08:16 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2015-03-12 16:22 - 2014-03-04 08:13 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2015-03-12 16:22 - 2014-03-04 08:08 - 00299008 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2015-03-12 16:22 - 2014-03-04 07:56 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll
2015-03-12 16:22 - 2014-03-04 07:42 - 00494592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2015-03-12 16:22 - 2014-03-04 07:39 - 00254976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll
2015-03-12 16:22 - 2014-03-04 07:15 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll
2015-03-12 16:22 - 2014-03-04 07:05 - 00402432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll
2015-03-12 16:22 - 2014-03-04 07:03 - 00669696 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2015-03-12 16:22 - 2014-03-04 07:03 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll
2015-03-12 16:22 - 2014-03-04 06:54 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll
2015-03-12 16:22 - 2014-03-04 06:52 - 00605184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll
2015-03-12 16:22 - 2013-12-24 00:28 - 00262656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll
2015-03-12 16:22 - 2013-12-24 00:26 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll
2015-03-12 16:09 - 2014-12-09 04:45 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-03-12 16:09 - 2014-12-09 02:56 - 00538624 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-03-12 16:09 - 2014-09-27 08:13 - 00104336 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll
2015-03-12 16:09 - 2014-09-27 06:24 - 00088800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll
2015-03-12 16:09 - 2014-09-27 04:30 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2015-03-12 16:09 - 2014-06-20 02:48 - 01273184 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-03-12 16:09 - 2014-06-20 00:52 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-03-12 16:05 - 2015-01-23 08:17 - 00723072 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2015-03-12 16:05 - 2015-01-23 06:02 - 00560392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2015-03-12 16:05 - 2015-01-15 23:43 - 00563504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-03-12 16:05 - 2015-01-15 23:43 - 00177984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-03-12 16:05 - 2015-01-14 05:22 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-03-12 16:05 - 2015-01-14 04:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-03-12 16:05 - 2014-10-29 03:51 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-03-12 16:05 - 2014-10-29 03:50 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-03-12 16:05 - 2014-10-29 03:06 - 00736768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-03-12 16:05 - 2014-10-29 03:06 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-03-12 16:05 - 2014-10-29 02:31 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-03-12 16:05 - 2014-06-13 02:15 - 00517528 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-03-12 16:05 - 2014-06-13 02:14 - 01557848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-03-12 16:05 - 2014-06-13 01:10 - 00406400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-03-12 16:05 - 2014-03-06 13:53 - 02141912 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-03-12 16:05 - 2014-03-06 13:51 - 00379224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-03-12 16:05 - 2014-03-06 13:39 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2015-03-12 16:05 - 2014-03-06 12:13 - 01779800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2015-03-12 16:04 - 2015-03-06 03:53 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-12 16:04 - 2015-03-06 03:33 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-03-12 16:04 - 2015-02-26 00:26 - 04178944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-12 16:04 - 2015-02-20 04:03 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-12 16:04 - 2015-02-20 03:58 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-12 16:04 - 2015-02-20 03:20 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-03-12 16:04 - 2015-02-20 03:15 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-03-12 16:04 - 2015-01-31 00:42 - 03097600 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-03-12 16:04 - 2015-01-31 00:29 - 02484224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-03-12 16:04 - 2015-01-29 02:58 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll
2015-03-12 16:04 - 2015-01-29 02:29 - 00290816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\photowiz.dll
2015-03-12 16:04 - 2014-12-09 02:50 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-03-12 16:04 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll
2015-03-12 16:04 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll
2015-03-12 16:04 - 2014-10-29 03:49 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-03-12 16:04 - 2014-10-29 03:44 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-03-12 16:04 - 2014-10-29 03:44 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-03-12 16:04 - 2014-10-29 03:04 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-03-12 16:04 - 2014-10-29 03:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-03-12 16:04 - 2014-10-29 03:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-03-12 16:04 - 2014-08-07 03:12 - 01336624 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-03-12 16:04 - 2014-08-02 04:56 - 01064448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-03-12 16:04 - 2014-05-30 04:03 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-03-12 16:03 - 2015-02-07 00:09 - 00396419 _____ () C:\Windows\system32\ApnDatabase.xml
2015-03-12 16:03 - 2015-02-04 00:58 - 00264000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2015-03-12 16:03 - 2015-02-04 00:58 - 00114496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys
2015-03-12 16:03 - 2015-02-04 00:58 - 00044024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2015-03-12 16:03 - 2015-02-03 00:53 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll
2015-03-12 16:03 - 2015-02-03 00:53 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll
2015-03-12 16:03 - 2015-01-27 04:44 - 00933888 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe
2015-03-12 16:03 - 2015-01-24 02:51 - 00816128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe
2015-03-12 16:03 - 2014-12-19 09:57 - 00788680 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-03-12 16:03 - 2014-12-19 09:25 - 00602776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-03-12 16:03 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\SysWOW64\locale.nls
2015-03-12 16:03 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\system32\locale.nls
2015-03-12 16:03 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-03-12 16:03 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-03-12 16:03 - 2014-10-29 02:27 - 01200128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2015-03-12 16:03 - 2014-10-29 02:27 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll
2015-03-12 16:03 - 2014-10-29 02:04 - 00868352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2015-03-12 16:03 - 2014-10-29 02:04 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll
2015-03-12 16:03 - 2014-10-13 03:33 - 00116032 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-03-12 16:03 - 2014-10-11 01:58 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-03-12 16:03 - 2014-10-11 01:53 - 03607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-03-12 16:03 - 2014-10-08 08:30 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-03-12 16:03 - 2014-10-08 08:09 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-03-12 16:03 - 2014-10-08 07:27 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-03-12 16:03 - 2014-08-23 06:18 - 02149376 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-03-12 16:03 - 2014-08-23 06:03 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-03-12 16:03 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2015-03-12 16:03 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-03-12 16:03 - 2014-03-13 08:42 - 00308224 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe
2015-03-12 16:03 - 2014-03-13 07:51 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe
2015-03-12 16:02 - 2014-05-03 06:36 - 00997888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2015-03-12 16:02 - 2014-05-03 06:19 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll
2015-03-12 16:02 - 2014-05-03 06:08 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll
2015-03-12 16:02 - 2014-05-03 06:07 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll
2015-03-12 16:02 - 2014-05-03 05:46 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncobjapi.dll
2015-03-12 16:02 - 2014-05-03 05:37 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll
2015-03-12 16:02 - 2014-05-03 05:37 - 00207360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll
2015-03-12 16:02 - 2014-05-03 00:26 - 00050745 _____ () C:\Windows\system32\srms.dat
2015-03-12 16:02 - 2014-04-30 07:43 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys
2015-03-12 16:02 - 2014-04-30 07:41 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-03-12 16:02 - 2014-04-30 07:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys
2015-03-12 16:02 - 2014-04-30 07:41 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys
2015-03-12 16:02 - 2014-04-30 06:45 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe
2015-03-12 16:02 - 2014-04-30 05:48 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe
2015-03-12 16:02 - 2014-04-30 05:24 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2015-03-12 16:02 - 2014-04-30 05:23 - 00353280 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2015-03-12 16:02 - 2014-04-30 05:23 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2015-03-12 16:02 - 2014-04-30 05:23 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll
2015-03-12 16:02 - 2014-04-30 05:14 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2015-03-12 16:02 - 2014-04-30 04:59 - 01063424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2015-03-12 16:02 - 2014-04-30 04:46 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll
2015-03-12 16:02 - 2014-04-30 04:46 - 00229888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2015-03-12 16:02 - 2014-04-30 04:46 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2015-03-12 16:02 - 2014-04-30 04:45 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll
2015-03-12 16:02 - 2014-04-30 04:42 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2015-03-12 16:02 - 2014-04-28 23:40 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2015-03-12 16:02 - 2014-04-26 17:39 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll
2015-03-12 16:02 - 2014-04-14 10:37 - 02125344 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2015-03-12 16:02 - 2014-04-14 09:08 - 01797896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2015-03-12 16:02 - 2014-04-14 06:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll
2015-03-12 16:02 - 2014-03-08 21:40 - 00136024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2015-03-12 16:02 - 2014-03-08 07:41 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2015-03-12 16:02 - 2014-03-08 07:25 - 00264192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2015-03-12 16:02 - 2014-03-08 07:04 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2015-03-12 16:02 - 2014-03-08 06:58 - 00567296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2015-03-12 16:01 - 2014-08-23 07:10 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
2015-03-12 16:01 - 2014-08-23 06:32 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2015-03-12 16:01 - 2014-08-23 05:33 - 00796672 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2015-03-12 16:01 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2015-03-12 16:01 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2015-03-12 16:01 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll
2015-03-12 16:01 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-03-12 16:01 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2015-03-12 16:01 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-03-12 16:00 - 2014-10-23 06:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2015-03-12 16:00 - 2014-10-23 06:05 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2015-03-12 16:00 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2015-03-12 16:00 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-03-12 16:00 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-03-12 16:00 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2015-03-12 16:00 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll
2015-03-12 16:00 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\httpprxm.dll
2015-03-12 16:00 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\ProximityService.dll
2015-03-12 16:00 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2015-03-12 16:00 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2015-03-12 16:00 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\adhsvc.dll
2015-03-12 16:00 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2015-03-12 16:00 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\pcsvDevice.dll
2015-03-12 16:00 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2015-03-12 16:00 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll
2015-03-12 16:00 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll
2015-03-12 16:00 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2015-03-12 16:00 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2015-03-12 16:00 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe
2015-03-12 16:00 - 2014-07-24 16:28 - 00468288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2015-03-12 16:00 - 2014-07-24 12:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys
2015-03-12 16:00 - 2014-07-24 11:09 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2015-03-12 16:00 - 2014-07-24 10:27 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2015-03-12 15:57 - 2014-04-08 23:46 - 00086688 _____ (Microsoft Corporation) C:\Windows\system32\mrt_map.dll
2015-03-12 15:57 - 2014-04-08 23:46 - 00028320 _____ (Microsoft Corporation) C:\Windows\system32\mrt100.dll
2015-03-12 15:57 - 2014-04-08 19:54 - 00080032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt_map.dll
2015-03-12 15:57 - 2014-04-08 19:54 - 00026784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt100.dll
2015-03-12 15:56 - 2014-08-02 01:18 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2015-03-12 15:55 - 2015-02-06 02:28 - 02257408 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-03-12 15:55 - 2015-02-06 02:08 - 01943040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-03-12 15:55 - 2015-01-29 02:11 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-12 15:55 - 2015-01-29 02:04 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-03-12 15:55 - 2015-01-29 02:04 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2015-03-12 15:55 - 2015-01-29 02:00 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-12 15:55 - 2015-01-29 01:55 - 00971776 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2015-03-12 15:55 - 2015-01-29 01:50 - 00811008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2015-03-12 15:55 - 2015-01-28 03:24 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\StorageContextHandler.dll
2015-03-12 15:55 - 2015-01-28 02:47 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorageContextHandler.dll
2015-03-12 15:55 - 2014-12-19 07:26 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-03-12 15:55 - 2014-12-12 01:51 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2015-03-12 15:55 - 2014-10-29 03:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\printui.exe
2015-03-12 15:55 - 2014-10-29 03:34 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll
2015-03-12 15:55 - 2014-10-29 03:34 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WSCollect.exe
2015-03-12 15:55 - 2014-10-29 03:34 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe
2015-03-12 15:55 - 2014-10-29 03:04 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll
2015-03-12 15:55 - 2014-10-29 02:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.exe
2015-03-12 15:55 - 2014-10-29 02:52 - 00289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compstui.dll
2015-03-12 15:55 - 2014-10-29 02:51 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2015-03-12 15:55 - 2014-10-29 02:45 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\prnntfy.dll
2015-03-12 15:55 - 2014-10-29 02:28 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll
2015-03-12 15:55 - 2014-10-29 02:20 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2015-03-12 15:55 - 2014-10-29 02:15 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnntfy.dll
2015-03-12 15:55 - 2014-10-29 02:13 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2015-03-12 15:55 - 2014-10-29 01:55 - 00223744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2015-03-12 15:55 - 2014-10-29 01:55 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll
2015-03-12 15:55 - 2014-10-29 01:44 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll
2015-03-12 15:55 - 2014-10-29 01:41 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll
2015-03-12 15:55 - 2014-10-29 01:35 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll
2015-03-12 15:55 - 2014-10-13 03:43 - 00238912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2015-03-12 15:55 - 2014-10-13 03:43 - 00153920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2015-03-12 15:55 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2015-03-12 15:55 - 2014-10-13 03:43 - 00039744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2015-03-12 15:55 - 2014-09-04 01:12 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2015-03-12 15:55 - 2014-09-04 01:01 - 00514048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2015-03-12 15:55 - 2014-07-10 05:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\lockscreencn.dll
2015-03-12 15:54 - 2014-12-12 03:04 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-03-12 15:54 - 2014-07-15 19:16 - 03048880 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2015-03-12 15:54 - 2014-07-15 09:29 - 03118080 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2015-03-12 15:54 - 2014-07-15 09:22 - 02861056 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll
2015-03-12 15:54 - 2014-07-15 09:03 - 02344448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2015-03-12 15:53 - 2014-04-11 04:06 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
         

Alt 18.03.2015, 19:56   #12
Dorfkicker
 
Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden - Standard

Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden



und der zweite Teil:

Code:
ATTFilter
2015-03-12 15:53 - 2014-04-11 04:05 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-03-12 15:53 - 2014-04-11 04:02 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-03-12 15:53 - 2014-04-11 04:01 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-03-12 15:53 - 2014-04-11 03:57 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
2015-03-12 15:52 - 2015-02-05 21:24 - 01113920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-03-12 15:52 - 2015-02-03 01:03 - 03551744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2015-03-12 15:52 - 2015-02-03 01:02 - 04298240 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2015-03-12 15:52 - 2015-01-30 04:01 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys
2015-03-12 15:52 - 2015-01-30 04:00 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rfcomm.sys
2015-03-12 15:52 - 2015-01-30 03:03 - 01488896 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2015-03-12 15:52 - 2015-01-30 03:03 - 01464832 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2015-03-12 15:52 - 2015-01-30 02:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll
2015-03-12 15:52 - 2015-01-30 02:42 - 01204224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll
2015-03-12 15:52 - 2015-01-30 02:29 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atlthunk.dll
2015-03-12 15:52 - 2015-01-19 19:42 - 01487976 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2015-03-12 15:52 - 2014-10-29 03:46 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2015-03-12 15:52 - 2014-10-29 03:46 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2015-03-12 15:52 - 2014-10-29 03:45 - 01198080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2015-03-12 15:52 - 2014-10-29 03:03 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\fsquirt.exe
2015-03-12 15:52 - 2014-10-29 02:28 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\atlthunk.dll
2015-03-12 15:51 - 2014-04-09 12:53 - 00337240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2015-03-12 15:51 - 2014-04-06 17:20 - 01403856 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2015-03-12 15:51 - 2014-04-06 17:20 - 01379064 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2015-03-12 15:51 - 2014-04-06 17:20 - 00765408 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2015-03-12 15:51 - 2014-04-06 17:20 - 00491744 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2015-03-12 15:51 - 2014-04-06 16:16 - 01209616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2015-03-12 15:51 - 2014-04-06 16:16 - 00669856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2015-03-12 15:51 - 2014-04-06 13:33 - 00335872 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe
2015-03-12 15:51 - 2014-04-06 11:05 - 01222656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2015-03-12 15:51 - 2014-04-06 10:59 - 00982016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
2015-03-12 15:51 - 2014-03-28 16:58 - 00407016 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-03-12 15:51 - 2014-03-18 06:00 - 07173120 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2015-03-12 15:51 - 2014-03-18 05:52 - 05104640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2015-03-12 15:51 - 2014-03-17 06:09 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-03-12 15:51 - 2014-03-17 05:11 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2015-03-12 15:51 - 2014-03-14 07:26 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\GeofenceMonitorService.dll
2015-03-12 15:51 - 2014-03-14 07:10 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GeofenceMonitorService.dll
2015-03-12 15:50 - 2014-04-18 15:57 - 00032600 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll
2015-03-12 15:50 - 2014-04-18 10:44 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\energyprov.dll
2015-03-12 15:50 - 2014-04-14 10:20 - 00324888 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll
2015-03-12 15:50 - 2014-04-14 09:01 - 00285144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll
2015-03-12 15:50 - 2014-04-11 05:51 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2015-03-12 15:50 - 2014-04-11 05:23 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll
2015-03-12 15:50 - 2014-04-09 07:39 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2015-03-12 15:50 - 2014-04-09 06:44 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2015-03-12 15:50 - 2014-04-09 04:33 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
2015-03-12 15:50 - 2014-04-08 03:01 - 00589656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2015-03-12 15:50 - 2014-04-06 17:34 - 00372568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2015-03-12 15:50 - 2014-04-06 17:34 - 00275800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2015-03-12 15:50 - 2014-04-06 17:30 - 00201920 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll
2015-03-12 15:50 - 2014-04-06 17:24 - 00360792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2015-03-12 15:50 - 2014-04-06 17:20 - 00609448 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-03-12 15:50 - 2014-04-06 17:20 - 00028408 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-03-12 15:50 - 2014-04-06 16:22 - 00178184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVideoDSP.dll
2015-03-12 15:50 - 2014-04-06 16:16 - 00518544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-03-12 15:50 - 2014-04-06 16:16 - 00387896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2015-03-12 15:50 - 2014-04-06 13:58 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-03-12 15:50 - 2014-04-06 13:51 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-03-12 15:50 - 2014-04-06 13:24 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-03-12 15:50 - 2014-04-06 13:06 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-03-12 15:50 - 2014-04-06 12:26 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll
2015-03-12 15:50 - 2014-04-03 09:12 - 00307304 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-03-12 15:50 - 2014-04-03 09:12 - 00130144 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll
2015-03-12 15:50 - 2014-04-03 05:03 - 00230808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-03-12 15:50 - 2014-04-03 05:03 - 00111528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll
2015-03-12 15:50 - 2014-04-03 03:23 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tlscsp.dll
2015-03-12 15:50 - 2014-04-03 03:22 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll
2015-03-12 15:50 - 2014-03-27 06:36 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2015-03-12 15:50 - 2014-03-27 05:48 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2015-03-12 15:50 - 2014-03-27 04:15 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll
2015-03-12 15:50 - 2014-03-27 04:10 - 01436160 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2015-03-12 15:50 - 2014-03-19 09:15 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2015-03-12 15:50 - 2014-03-19 08:24 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-03-12 15:50 - 2014-03-19 08:17 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll
2015-03-12 15:50 - 2014-03-06 10:19 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2015-03-12 15:50 - 2014-03-06 09:20 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll
2015-03-12 15:50 - 2014-01-27 19:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-03-12 15:48 - 2015-01-29 01:59 - 02773504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-03-12 15:48 - 2015-01-29 01:49 - 02459136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-03-12 15:48 - 2014-05-19 07:31 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\drvcfg.exe
2015-03-12 15:48 - 2014-05-19 07:21 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe
2015-03-12 15:48 - 2014-05-19 06:23 - 00098816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe
2015-03-12 15:48 - 2014-04-30 05:43 - 01975296 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-03-12 15:48 - 2014-04-30 05:26 - 01345536 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-03-12 15:48 - 2014-04-30 04:47 - 01509888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-03-12 15:11 - 2015-01-31 00:20 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-03-12 15:11 - 2014-06-02 03:10 - 00423768 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2015-03-12 15:11 - 2014-05-31 11:07 - 00440664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2015-03-12 15:11 - 2014-05-31 11:07 - 00089944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2015-03-12 15:11 - 2014-05-31 11:07 - 00027480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2015-03-12 15:11 - 2014-05-31 07:30 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2015-03-12 15:11 - 2014-05-31 07:27 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2015-03-12 15:11 - 2014-05-31 07:26 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2015-03-12 15:11 - 2014-05-31 05:01 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2015-03-12 15:11 - 2014-05-31 05:01 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2015-03-12 15:11 - 2014-05-31 05:01 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2015-03-12 15:11 - 2014-05-27 10:56 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\DaOtpCredentialProvider.dll
2015-03-12 15:11 - 2014-05-27 10:53 - 00270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DaOtpCredentialProvider.dll
2015-03-12 15:08 - 2015-01-28 16:41 - 07472960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-12 15:08 - 2015-01-28 16:41 - 01733440 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-03-12 15:08 - 2015-01-28 16:41 - 01498360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-03-12 15:08 - 2014-12-06 04:17 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-03-12 15:08 - 2014-12-06 02:41 - 00391680 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-03-12 15:08 - 2014-10-29 03:02 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-03-12 15:08 - 2014-10-29 03:02 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-03-12 15:08 - 2014-10-29 02:57 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-03-12 15:08 - 2014-10-29 02:24 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2015-03-12 15:08 - 2014-10-29 02:15 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-03-12 15:08 - 2014-10-29 02:15 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-03-12 15:08 - 2014-10-29 02:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-03-12 15:08 - 2014-10-29 02:13 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-03-12 15:08 - 2014-10-29 02:13 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-03-12 15:08 - 2014-10-29 02:01 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-03-12 13:31 - 2015-03-16 09:57 - 00000632 _____ () C:\Users\Frank\Documents\fehler.txt
2015-03-12 13:04 - 2015-03-17 11:22 - 00000000 ____D () C:\Users\Frank\Documents\Outlook-Dateien
2015-03-12 12:58 - 2015-02-21 02:16 - 25021440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-12 12:58 - 2015-02-21 01:41 - 12827648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-03-12 12:58 - 2015-02-21 01:27 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-03-12 12:58 - 2015-02-21 01:27 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-03-12 12:58 - 2015-02-21 01:25 - 19720192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-03-12 12:58 - 2015-02-21 00:58 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-12 12:58 - 2015-02-21 00:32 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-03-12 12:58 - 2015-02-20 03:49 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-12 12:58 - 2015-02-20 03:48 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-12 12:58 - 2015-02-20 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-03-12 12:58 - 2015-02-20 03:35 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-03-12 12:58 - 2015-02-20 03:34 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-03-12 12:58 - 2015-02-20 03:32 - 06035456 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-12 12:58 - 2015-02-20 03:09 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-03-12 12:58 - 2015-02-20 03:07 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-03-12 12:58 - 2015-02-20 03:06 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-03-12 12:58 - 2015-02-20 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-12 12:58 - 2015-02-20 03:03 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-03-12 12:58 - 2015-02-20 02:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-03-12 12:58 - 2015-02-20 02:56 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-03-12 12:58 - 2015-02-20 02:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-03-12 12:58 - 2015-02-20 02:49 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-12 12:58 - 2015-02-20 02:49 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-03-12 12:58 - 2015-02-20 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-12 12:58 - 2015-02-20 02:43 - 14398976 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-12 12:58 - 2015-02-20 02:30 - 04300288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-03-12 12:58 - 2015-02-20 02:30 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-03-12 12:58 - 2015-02-20 02:29 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-03-12 12:58 - 2015-02-20 02:28 - 02358784 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-12 12:58 - 2015-02-20 02:26 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-03-12 12:58 - 2015-02-20 02:24 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-03-12 12:58 - 2015-02-20 02:24 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-03-12 12:58 - 2015-02-20 02:16 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-12 12:58 - 2015-02-20 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-03-12 12:58 - 2015-02-20 02:01 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-03-12 12:58 - 2015-02-20 01:57 - 01311232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-03-12 12:58 - 2015-02-20 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-03-12 12:58 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-03-12 12:58 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-03-12 12:58 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-03-12 12:58 - 2015-01-12 02:23 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-03-12 12:58 - 2014-11-22 03:49 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-03-12 12:58 - 2014-11-22 03:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-03-12 12:58 - 2014-11-10 00:19 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-03-12 12:58 - 2014-11-10 00:19 - 00806400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-03-12 12:58 - 2014-11-10 00:18 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2015-03-12 12:58 - 2014-11-10 00:18 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2015-03-12 12:58 - 2014-10-31 06:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2015-03-12 12:58 - 2014-10-31 06:12 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-03-12 12:58 - 2014-10-31 06:10 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2015-03-12 12:58 - 2014-10-31 06:09 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2015-03-12 12:58 - 2014-10-31 06:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-03-12 12:58 - 2014-10-31 06:06 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-03-12 12:58 - 2014-10-31 06:06 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-03-12 12:58 - 2014-10-31 06:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-03-12 12:58 - 2014-10-31 05:57 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-03-12 12:58 - 2014-10-31 05:56 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-03-12 12:58 - 2014-10-31 05:54 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2015-03-12 12:58 - 2014-10-31 05:53 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-03-12 12:58 - 2014-10-31 05:52 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll
2015-03-12 12:58 - 2014-10-31 05:51 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-03-12 12:58 - 2014-10-31 05:51 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-03-12 12:58 - 2014-10-31 05:40 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-03-12 12:58 - 2014-10-31 05:30 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-03-12 12:58 - 2014-10-31 05:29 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2015-03-12 12:58 - 2014-10-31 05:29 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-03-12 12:58 - 2014-10-31 05:28 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2015-03-12 12:58 - 2014-10-31 05:25 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-03-12 12:58 - 2014-10-31 05:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-03-12 12:58 - 2014-10-31 05:19 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-03-12 12:58 - 2014-10-31 04:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2015-03-12 12:58 - 2014-10-31 04:28 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2015-03-12 12:58 - 2014-10-31 04:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2015-03-12 12:58 - 2014-10-31 04:27 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2015-03-12 12:58 - 2014-10-31 04:26 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2015-03-12 12:58 - 2014-10-31 04:25 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2015-03-12 12:58 - 2014-10-31 04:24 - 00235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2015-03-12 12:58 - 2014-10-31 04:24 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-03-12 12:58 - 2014-10-31 04:23 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-03-12 12:58 - 2014-10-31 04:16 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-03-12 12:58 - 2014-10-31 04:15 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-03-12 12:58 - 2014-10-31 04:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2015-03-12 12:58 - 2014-10-31 04:13 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-03-12 12:58 - 2014-10-31 04:13 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll
2015-03-12 12:58 - 2014-10-31 04:12 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-03-12 12:58 - 2014-10-31 04:11 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-03-12 12:58 - 2014-10-31 04:03 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2015-03-12 12:58 - 2014-10-31 03:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-03-12 12:58 - 2014-10-31 03:56 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2015-03-12 12:58 - 2014-10-31 03:56 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2015-03-12 12:58 - 2014-10-31 03:56 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-03-12 12:58 - 2014-10-31 03:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-03-12 12:58 - 2014-10-31 03:53 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2015-03-12 12:58 - 2014-10-31 03:48 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2015-03-12 12:58 - 2014-10-31 03:26 - 01042944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-03-12 12:58 - 2014-10-31 03:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2015-03-12 12:58 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-03-12 12:58 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-03-12 12:58 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-03-12 12:57 - 2015-02-12 18:40 - 22291584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-12 12:57 - 2015-02-12 18:34 - 19731824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-03-12 12:57 - 2015-01-29 19:45 - 01763352 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-12 12:57 - 2015-01-29 19:34 - 01488040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-03-12 12:57 - 2015-01-28 02:31 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-12 12:57 - 2015-01-28 02:11 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-03-12 12:57 - 2014-09-10 07:25 - 00474432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2015-03-12 12:57 - 2014-09-08 04:07 - 02497344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-03-12 12:57 - 2014-09-08 04:07 - 00428864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2015-03-12 12:57 - 2014-09-04 04:05 - 00836176 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2015-03-12 12:57 - 2014-09-04 03:22 - 00670384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2015-03-12 12:57 - 2014-09-04 01:10 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll
2015-03-12 12:57 - 2014-08-31 01:17 - 00148800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2015-03-12 12:57 - 2014-08-30 23:05 - 00615424 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll
2015-03-12 12:57 - 2014-08-30 22:58 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll
2015-03-12 12:57 - 2014-08-30 22:04 - 00941568 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2015-03-12 12:57 - 2014-08-30 21:53 - 00239104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSAPI.dll
2015-03-12 12:57 - 2014-08-30 21:17 - 00799744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2015-03-12 12:57 - 2014-08-28 01:21 - 02480128 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2015-03-12 12:57 - 2014-08-28 01:06 - 02030592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2015-03-12 12:57 - 2014-08-23 06:14 - 13424128 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2015-03-12 12:57 - 2014-08-23 06:04 - 11820544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2015-03-12 12:57 - 2014-08-23 05:50 - 02714112 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2015-03-12 12:57 - 2014-08-02 01:51 - 00545792 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll
2015-03-12 12:57 - 2014-08-02 01:35 - 00485376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll
2015-03-12 12:57 - 2014-05-13 08:01 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\BulkOperationHost.exe
2015-03-12 12:57 - 2014-03-06 07:27 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2015-03-12 12:56 - 2015-02-08 00:57 - 01090048 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2015-03-12 12:56 - 2015-02-08 00:49 - 00791040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2015-03-12 12:56 - 2015-01-30 03:02 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2015-03-12 12:56 - 2015-01-30 02:40 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2015-03-12 12:56 - 2015-01-30 02:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2015-03-12 12:56 - 2015-01-30 02:24 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2015-03-12 12:56 - 2015-01-30 02:24 - 00250880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2015-03-12 12:56 - 2015-01-30 02:16 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2015-03-12 12:56 - 2015-01-30 02:08 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll
2015-03-12 12:56 - 2015-01-30 02:06 - 00278016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll
2015-03-12 12:56 - 2015-01-28 00:47 - 02501368 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2015-03-12 12:56 - 2015-01-28 00:41 - 02207488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2015-03-12 12:56 - 2014-12-11 06:36 - 00046456 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentServer.exe
2015-03-12 12:56 - 2014-12-08 20:42 - 00535640 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-03-12 12:56 - 2014-12-08 20:42 - 00531616 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-03-12 12:56 - 2014-12-08 20:42 - 00448792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2015-03-12 12:56 - 2014-12-08 20:42 - 00413248 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2015-03-12 12:56 - 2014-12-08 20:42 - 00372408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2015-03-12 12:56 - 2014-12-08 20:42 - 00108944 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-03-12 12:56 - 2014-12-08 20:42 - 00038264 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2015-03-12 12:56 - 2014-12-08 20:42 - 00033584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2015-03-12 12:56 - 2014-12-06 02:35 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-03-12 12:56 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-03-12 12:56 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-03-12 12:56 - 2014-10-29 05:00 - 00465320 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2015-03-12 12:56 - 2014-10-29 05:00 - 00139984 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2015-03-12 12:56 - 2014-10-29 04:52 - 00500016 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-03-12 12:56 - 2014-10-29 04:52 - 00482872 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-03-12 12:56 - 2014-10-29 04:52 - 00394120 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-03-12 12:56 - 2014-10-29 04:52 - 00272248 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-03-12 12:56 - 2014-10-29 04:12 - 00413136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2015-03-12 12:56 - 2014-10-29 04:12 - 00136296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2015-03-12 12:56 - 2014-10-29 04:07 - 00424544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-03-12 12:56 - 2014-10-29 04:07 - 00370424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-03-12 12:56 - 2014-10-29 04:07 - 00344536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-03-12 12:56 - 2014-10-29 03:44 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2015-03-12 12:56 - 2014-10-29 02:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
2015-03-12 12:56 - 2014-10-29 02:19 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll
2015-03-12 12:56 - 2014-10-29 02:02 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-03-12 12:56 - 2014-10-29 01:59 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappprxy.dll
2015-03-12 12:56 - 2014-07-12 05:17 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2015-03-12 12:56 - 2014-06-06 14:04 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2015-03-12 12:56 - 2014-06-06 13:18 - 00488960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2015-03-12 12:56 - 2014-05-01 14:31 - 00055328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys
2015-03-12 12:56 - 2014-05-01 06:24 - 02834944 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2015-03-12 12:55 - 2014-07-24 04:20 - 00875688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll
2015-03-12 12:55 - 2014-07-24 04:20 - 00869544 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll
2015-03-12 12:54 - 2014-05-31 11:06 - 00555736 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2015-03-12 12:54 - 2014-05-31 03:37 - 01054208 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2015-03-12 12:54 - 2014-05-31 03:35 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2015-03-12 12:54 - 2014-04-11 09:25 - 00419928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2015-03-12 12:49 - 2015-01-21 06:54 - 01384712 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-12 12:49 - 2015-01-21 06:15 - 01123848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2015-03-12 12:34 - 2015-03-12 12:34 - 00000000 ____D () C:\Program Files\Microsoft Synchronization Services
2015-03-12 12:33 - 2015-03-12 12:33 - 00000000 ____D () C:\Program Files\Microsoft Sync Framework
2015-03-12 12:33 - 2015-03-12 12:33 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2015-03-12 12:29 - 2015-03-12 12:29 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2015-03-12 11:52 - 2015-03-12 11:52 - 00000000 ____D () C:\MATS
2015-03-12 09:55 - 2015-03-12 09:55 - 282920160 _____ () C:\Users\Frank\Documents\registry.reg
2015-03-12 09:54 - 2015-03-12 09:54 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2015-03-12 08:41 - 2015-03-12 14:12 - 00000000 ____D () C:\Program Files (x86)\UEFI WinFlash
2015-03-12 08:36 - 2015-03-12 08:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\WinBatch
2015-03-11 22:27 - 2015-03-11 22:27 - 00000000 ____D () C:\Users\Frank\AppData\Local\Macromedia
2015-03-11 22:22 - 2015-03-17 11:28 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-03-11 22:22 - 2015-03-11 22:22 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-03-11 22:18 - 2015-03-17 11:12 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\vlc
2015-03-11 22:18 - 2015-03-11 22:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2015-03-11 22:18 - 2015-03-11 22:18 - 00000000 ____D () C:\Program Files\VideoLAN
2015-03-11 22:15 - 2015-03-11 22:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mp3tag
2015-03-11 22:14 - 2015-03-11 22:15 - 00000000 ____D () C:\Program Files (x86)\Mp3tag
2015-03-11 22:10 - 2015-03-11 22:10 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2015-03-11 19:18 - 2015-03-11 19:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
2015-03-11 19:18 - 2015-03-11 19:18 - 00000000 ____D () C:\ProgramData\EPSON
2015-03-11 19:18 - 2015-03-11 19:18 - 00000000 ____D () C:\Program Files\Common Files\EPSON
2015-03-11 19:18 - 2009-09-30 18:01 - 00088064 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_IBCBHAE.DLL
2015-03-11 19:18 - 2008-11-11 18:00 - 00118784 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_ILMHAE.DLL
2015-03-11 19:18 - 2007-04-09 16:06 - 00010752 _____ (SEIKO EPSON CORP.) C:\Windows\system32\E_GCINST.DLL
2015-03-11 18:49 - 2015-03-16 17:23 - 00000000 ____D () C:\Users\Frank\Desktop\Multimedia
2015-03-11 18:49 - 2015-03-11 18:49 - 00000000 ____D () C:\Users\Frank\Desktop\Grafik & Fotos
2015-03-11 18:48 - 2015-03-16 22:22 - 00000000 ___RD () C:\Users\Frank\Desktop\System & Tools
2015-03-11 18:48 - 2015-03-11 18:48 - 00000000 ____D () C:\Users\Frank\Desktop\Download
2015-03-11 17:50 - 2006-09-12 20:00 - 00234496 _____ (CANON INC.) C:\Windows\system32\CNMLM86.DLL
2015-03-11 17:49 - 2014-03-27 15:35 - 00011294 _____ () C:\Users\Frank\Documents\Mappe2.xlsx
2015-03-11 17:49 - 2013-12-18 18:37 - 00013746 _____ () C:\Users\Frank\Documents\Weihnachtsgeschenke.xlsx
2015-03-11 17:49 - 2013-12-17 14:19 - 00103270 _____ () C:\Users\Frank\Documents\Kreditrechner-Excel.xlsx
2015-03-11 17:49 - 2013-12-17 14:16 - 00057344 _____ () C:\Users\Frank\Documents\Immobilien_Finanzierung.xls
2015-03-11 17:49 - 2013-12-17 14:10 - 00013049 _____ () C:\Users\Frank\Documents\Zinsberechnung.xlsx
2015-03-11 17:49 - 2013-12-13 10:29 - 00976384 _____ () C:\Users\Frank\Documents\Adventkalender.pps
2015-03-11 17:49 - 2013-10-14 18:08 - 02457631 _____ () C:\Users\Frank\Documents\icons.zip
2015-03-11 17:49 - 2012-12-29 16:29 - 00027136 _____ () C:\Users\Frank\Documents\Schallplatten.xls
2015-03-11 17:49 - 2012-12-28 18:15 - 00011254 _____ () C:\Users\Frank\Documents\ninco-schienen.xlsx
2015-03-11 17:49 - 2012-09-24 14:20 - 00072704 _____ () C:\Users\Frank\Documents\Tippformular Saison 2012-2013.xls
2015-03-11 17:49 - 2012-07-08 11:10 - 00010989 _____ () C:\Users\Frank\Documents\Auslagen Marcel.xlsx
2015-03-11 17:49 - 2012-03-17 10:09 - 00097792 _____ () C:\Users\Frank\Documents\ordner_auslesen_hyperlink2007.xls
2015-03-11 17:49 - 2012-02-04 11:45 - 00031232 _____ () C:\Users\Frank\Documents\Steam-Umsätze.xls
2015-03-11 17:49 - 2011-12-05 19:06 - 00011039 _____ () C:\Users\Frank\Documents\Renncenter_Urkunde.xlsx
2015-03-11 17:49 - 2011-11-22 07:32 - 00001303 _____ () C:\Users\Frank\Documents\UseNeXT - Verknüpfung.lnk
2015-03-11 17:49 - 2011-11-06 13:30 - 00012454 _____ () C:\Users\Frank\Documents\Abrechnung Marcel.xlsx
2015-03-11 17:49 - 2011-11-03 19:11 - 00001903 _____ () C:\Users\Frank\Documents\SV Henstedt-Ulzburg - Verknüpfung.lnk
2015-03-11 17:49 - 2011-08-24 09:42 - 00036864 _____ () C:\Users\Frank\Documents\Telefonliste_SVHU_D5_August2011.xls
2015-03-11 17:49 - 2011-07-27 18:51 - 00027648 _____ () C:\Users\Frank\Documents\Pierre.xls
2015-03-11 17:49 - 2011-04-19 13:26 - 00009640 _____ () C:\Users\Frank\Documents\verbrauch.xlsx
2015-03-11 17:49 - 2011-03-16 07:30 - 00199680 _____ () C:\Users\Frank\Documents\MS Visio & MS Project.cld
2015-03-11 17:49 - 2011-03-15 10:56 - 00033792 _____ () C:\Users\Frank\Documents\WG HUP-Kaufbestätigung - 564674586.msg
2015-03-11 17:49 - 2010-10-25 17:54 - 00044100 _____ () C:\Users\Frank\Documents\PC-Software.htm
2015-03-11 17:49 - 2010-10-25 17:53 - 00024576 _____ () C:\Users\Frank\Documents\PC-Software.xls
2015-03-11 17:49 - 2009-09-22 08:11 - 00000324 _____ () C:\Users\Frank\Documents\Outlook-Backup.obp
2015-03-11 17:49 - 2009-08-17 16:30 - 00008792 _____ () C:\Users\Frank\Documents\Java Printing.mdi
2015-03-11 17:49 - 2009-06-22 13:41 - 00071742 _____ () C:\Users\Frank\Documents\Re Spielerliste.htm
2015-03-11 17:49 - 2009-01-28 18:24 - 00011587 _____ () C:\Users\Frank\Documents\TSSTcorpCDDVDW_SN-S082H_SB01.html
2015-03-11 17:49 - 2008-12-07 10:26 - 00296960 _____ () C:\Users\Frank\Documents\Weihnachtsgruß.ppt
2015-03-11 17:49 - 2008-10-28 16:21 - 00013824 _____ () C:\Users\Frank\Documents\Body Mass Index.xls
2015-03-11 17:49 - 2008-09-20 10:36 - 00024064 _____ () C:\Users\Frank\Documents\VideoCDs und VHS.xls
2015-03-11 17:30 - 2015-03-11 17:30 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-03-11 17:29 - 2015-03-11 19:35 - 00000000 ____D () C:\ProgramData\Adobe
2015-03-11 17:29 - 2015-03-11 17:29 - 00000000 ____D () C:\Program Files (x86)\Adobe
2015-03-11 17:28 - 2015-03-11 22:22 - 00000000 ____D () C:\Users\Frank\AppData\Local\Adobe
2015-03-11 17:21 - 2015-03-17 11:54 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\UseNeXT
2015-03-11 17:21 - 2015-03-17 11:50 - 00000000 ____D () C:\Users\Frank\Documents\UseNeXT
2015-03-11 17:20 - 2015-03-11 17:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UseNeXT
2015-03-11 17:20 - 2015-03-11 17:20 - 00000000 ____D () C:\Program Files (x86)\UseNeXT
2015-03-11 17:15 - 2015-03-11 17:16 - 00000000 ____D () C:\Users\Frank\AppData\Local\ACD Systems
2015-03-11 17:15 - 2015-03-11 17:15 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\ACD Systems
2015-03-11 17:14 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2015-03-11 17:14 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ACD Systems
2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\ProgramData\ACD Systems
2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\Program Files\Common Files\ACD Systems
2015-03-11 17:13 - 2015-03-11 17:13 - 00000000 ____D () C:\Program Files (x86)\ACD Systems
2015-03-11 17:12 - 2015-03-11 17:12 - 00000000 ____D () C:\Users\Frank\AppData\Local\Downloaded Installations
2015-03-11 17:01 - 2015-03-11 17:01 - 00000000 ____D () C:\Program Files (x86)\MSECache
2015-03-11 16:46 - 2015-03-11 16:46 - 00000000 ____D () C:\Users\Frank\AppData\Local\Windows Live
2015-03-11 13:03 - 2015-03-12 12:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2015-03-11 13:03 - 2015-03-12 12:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-03-11 13:01 - 2015-03-11 13:01 - 00000000 ____D () C:\Program Files (x86)\Microsoft Synchronization Services
2015-03-11 13:00 - 2015-03-11 13:00 - 00000000 ____D () C:\Windows\PCHEALTH
2015-03-11 13:00 - 2015-03-11 13:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft Sync Framework
2015-03-11 13:00 - 2015-03-11 13:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2015-03-11 12:56 - 2015-03-11 12:56 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8
2015-03-11 12:55 - 2015-03-12 12:33 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-03-11 12:55 - 2015-03-11 12:55 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2015-03-11 12:54 - 2015-03-11 13:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-03-11 12:54 - 2015-03-11 12:54 - 00000000 __RHD () C:\MSOCache
2015-03-11 09:47 - 2015-03-16 10:56 - 00000000 ____D () C:\Users\Frank\Documents\Backups
2015-03-11 09:45 - 2015-03-11 09:45 - 00000000 ____D () C:\Dokumente und Einstellungen
2015-03-11 09:36 - 2015-03-17 12:01 - 00000000 ___SD () C:\Users\Frank\Documents\Sticky Passwords
2015-03-11 09:15 - 2015-03-11 09:15 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2015-03-11 09:15 - 2015-03-11 09:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-03-11 09:15 - 2015-03-11 09:15 - 00000000 ____D () C:\Program Files\CCleaner
2015-03-11 09:06 - 2015-03-11 09:07 - 00000000 ____D () C:\Users\Public\Documents\CATraxx
2015-03-11 09:06 - 2015-03-11 09:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CATraxx
2015-03-11 09:06 - 2015-03-11 09:06 - 00000000 ____D () C:\Program Files (x86)\CATraxx
2015-03-11 09:06 - 2012-01-20 17:57 - 01163264 _____ (Chilkat Software, Inc.) C:\Windows\SysWOW64\ChilkatRsa.dll
2015-03-11 09:00 - 2015-03-12 12:22 - 00000000 ____D () C:\Users\Frank\Documents\_Outlook-Dateien
2015-03-11 08:59 - 2015-03-12 13:01 - 00000000 ____D () C:\Program Files (x86)\Outlook Backup Assistant
2015-03-11 08:59 - 2015-03-11 08:59 - 00000000 ____D () C:\Users\Frank\Documents\Add-in Express
2015-03-10 18:53 - 2015-03-10 18:53 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-03-10 18:48 - 2015-03-17 13:59 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-03-10 18:48 - 2015-03-11 14:00 - 00000000 ____D () C:\Users\Frank\AppData\Local\Microsoft Help
2015-03-10 17:23 - 2015-03-17 15:34 - 00000000 ____D () C:\Program Files (x86)\SpeedProject
2015-03-10 16:14 - 2015-03-10 16:14 - 00000000 ___HD () C:\ProgramData\CanonBJ
2015-03-10 16:14 - 2015-03-10 16:14 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2015-03-10 16:12 - 2015-03-16 12:07 - 00000000 ____D () C:\Users\Frank\AppData\Local\Deployment
2015-03-10 16:12 - 2015-03-10 16:12 - 00116480 _____ (AVM Berlin) C:\Windows\system32\Drivers\avmaura.sys
2015-03-10 16:12 - 2015-03-10 16:12 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FRITZ!Box
2015-03-10 16:12 - 2015-03-10 16:12 - 00000000 ____D () C:\Users\Frank\AppData\Local\Apps\2.0
2015-03-10 15:40 - 2015-03-10 15:40 - 00001186 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Mozilla
2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Users\Frank\AppData\Local\Mozilla
2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\ProgramData\Mozilla
2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-03-10 15:40 - 2015-03-10 15:40 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-03-10 15:12 - 2015-03-03 14:17 - 00295552 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-03-10 15:06 - 2015-03-10 15:06 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieUserList
2015-03-10 15:06 - 2015-03-10 15:06 - 00000000 __SHD () C:\Users\Frank\AppData\Local\EmieSiteList
2015-03-10 15:01 - 2015-03-18 19:46 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\ClassicShell
2015-03-10 15:01 - 2015-03-10 15:01 - 00000000 ____D () C:\ProgramData\ClassicShell
2015-03-10 14:58 - 2015-03-10 14:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell
2015-03-10 14:58 - 2015-03-10 14:58 - 00000000 ____D () C:\Program Files\Classic Shell
2015-03-10 14:57 - 2015-03-17 08:28 - 00000000 ____D () C:\Users\Frank\AppData\Local\Google
2015-03-10 14:54 - 2015-03-17 08:00 - 00003922 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{378DF711-DD0C-4AD7-98F3-CA1D88A8AD0B}
2015-03-10 14:49 - 2015-03-10 14:49 - 00000000 ____D () C:\Users\Default\AppData\Local\Google
2015-03-10 14:49 - 2015-03-10 14:49 - 00000000 ____D () C:\Users\Default User\AppData\Local\Google
2015-03-10 14:47 - 2015-03-18 17:33 - 00000000 ___DO () C:\Users\Frank\OneDrive
2015-03-10 14:46 - 2015-03-17 11:57 - 00003598 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2734555180-3142773653-1428810083-1001
2015-03-10 14:41 - 2015-03-10 17:24 - 00000000 ____D () C:\Users\Frank\AppData\Local\TOSHIBA
2015-03-10 14:40 - 2015-03-10 14:40 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Macromedia
2015-03-10 14:39 - 2015-03-16 13:58 - 00000000 ____D () C:\Users\Frank\AppData\Local\VirtualStore
2015-03-10 14:39 - 2015-03-11 17:47 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Adobe
2015-03-10 14:39 - 2015-03-10 14:43 - 00000000 ____D () C:\Users\Frank\AppData\Local\Packages
2015-03-10 14:39 - 2015-03-10 14:39 - 00001465 _____ () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-03-10 14:37 - 2015-03-17 15:48 - 00000000 ____D () C:\Users\Frank
2015-03-10 14:37 - 2015-03-10 14:37 - 00000020 ___SH () C:\Users\Frank\ntuser.ini
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Vorlagen
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Startmenü
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Netzwerkumgebung
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Lokale Einstellungen
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Eigene Dateien
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Druckumgebung
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Documents\Eigene Musik
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Documents\Eigene Bilder
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\AppData\Local\Verlauf
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\AppData\Local\Anwendungsdaten
2015-03-10 14:37 - 2015-03-10 14:37 - 00000000 _SHDL () C:\Users\Frank\Anwendungsdaten
2015-03-10 14:37 - 2014-03-18 11:00 - 00000000 ___RD () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-10 14:37 - 2014-03-18 11:00 - 00000000 ___RD () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-10 14:37 - 2014-03-18 10:49 - 00000369 _____ () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-03-10 14:37 - 2014-03-18 10:49 - 00000369 _____ () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-03-10 14:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-10 14:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-02-17 15:19 - 2015-02-17 15:19 - 01614496 _____ (Microsoft Corporation) C:\Windows\system32\FM20.DLL

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-18 19:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru
2015-03-18 17:31 - 2013-08-22 14:25 - 00524288 ___SH () C:\Windows\system32\config\BBI
2015-03-17 15:00 - 2014-08-29 20:24 - 00000000 ____D () C:\ProgramData\Temp
2015-03-17 14:07 - 2013-08-22 15:44 - 00483008 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-17 13:59 - 2013-08-22 14:25 - 00000199 _____ () C:\Windows\win.ini
2015-03-17 13:45 - 2014-08-29 20:24 - 00000000 ____D () C:\ProgramData\Package Cache
2015-03-17 12:03 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-17 11:49 - 2014-05-22 00:54 - 00001132 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-03-17 11:24 - 2014-05-22 00:54 - 00001128 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-03-17 11:18 - 2014-05-06 05:41 - 00765582 _____ () C:\Windows\system32\perfh007.dat
2015-03-17 11:18 - 2014-05-06 05:41 - 00159366 _____ () C:\Windows\system32\perfc007.dat
2015-03-17 11:18 - 2014-03-18 10:47 - 01776918 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-17 08:28 - 2014-05-22 00:54 - 00000000 ____D () C:\Program Files (x86)\Google
2015-03-16 22:27 - 2008-12-07 17:20 - 00000000 ____D () C:\Users\Frank\Documents\Schriftverkehr
2015-03-16 22:19 - 2014-08-29 20:41 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-03-16 22:19 - 2014-08-29 20:41 - 00000000 ____D () C:\ProgramData\WildTangent
2015-03-16 22:19 - 2014-08-29 20:41 - 00000000 ____D () C:\Program Files (x86)\WildTangent Games
2015-03-16 17:25 - 2014-05-22 01:03 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-03-16 15:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache
2015-03-16 13:39 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp
2015-03-16 13:31 - 2014-05-06 05:40 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer
2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\winrm
2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\WCN
2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\slmgr
2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\winrm
2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\WCN
2015-03-16 13:31 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\slmgr
2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\WinStore
2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\MUI
2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\MUI
2015-03-16 13:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-16 13:31 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\Sysprep
2015-03-16 13:31 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\servicing
2015-03-16 13:13 - 2014-03-18 10:33 - 00000000 ____D () C:\Program Files\Windows Journal
2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\System
2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
2015-03-16 13:13 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-03-16 13:12 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\Printing_Admin_Scripts
2015-03-16 13:12 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\Com
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\SystemResetPlatform
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\migwiz
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\Com
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\IME
2015-03-16 13:12 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Help
2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\SysWOW64\oobe
2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\oobe
2015-03-16 13:12 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\Dism
2015-03-16 12:52 - 2013-08-22 16:36 - 00000000 ___SD () C:\Windows\system32\dsc
2015-03-16 12:03 - 2014-05-22 01:03 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA
2015-03-16 10:14 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\SecureBootUpdates
2015-03-16 10:03 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData
2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\setup
2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\InputMethod
2015-03-16 09:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\setup
2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS
2015-03-14 16:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS
2015-03-12 16:38 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-03-12 16:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\MediaViewer
2015-03-12 16:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\FileManager
2015-03-12 16:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Camera
2015-03-12 12:35 - 2014-03-18 10:33 - 00000000 ____D () C:\Windows\ShellNew
2015-03-12 12:34 - 2014-05-06 05:23 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2015-03-12 08:40 - 2014-08-29 20:10 - 00000000 ____D () C:\Program Files (x86)\TOSHIBA
2015-03-11 13:50 - 2014-05-22 00:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-03-11 12:10 - 2014-05-23 01:33 - 00000000 ____D () C:\Windows\Panther
2015-03-10 17:17 - 2014-08-29 20:30 - 00000000 ____D () C:\ProgramData\McAfee
2015-03-10 17:07 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\spool
2015-03-10 16:59 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\NDF
2015-03-10 15:13 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2015-03-10 15:09 - 2013-08-22 16:36 - 00000000 ___HD () C:\Windows\ELAMBKUP
2015-03-10 14:57 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\restore
2015-03-10 14:45 - 2014-05-22 00:54 - 00000000 ____D () C:\ProgramData\TOSHIBA
2015-03-10 14:44 - 2014-05-22 00:54 - 00004104 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-03-10 14:44 - 2014-05-22 00:54 - 00003868 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-03-10 14:39 - 2014-03-18 10:31 - 00000000 ____D () C:\Windows\SysWOW64\sysprep
2015-03-06 09:11 - 2012-09-27 07:12 - 00000000 ____D () C:\Users\Frank\Documents\Tippspiel

==================== Files in the root of some directories =======

2015-03-17 10:29 - 2015-03-17 10:29 - 0000840 _____ () C:\Users\Frank\AppData\Local\recently-used.xbel
2014-08-29 20:06 - 2014-08-29 20:06 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-05-22 08:48

==================== End Of Log ============================
         

Alt 19.03.2015, 10:14   #13
schrauber
/// the machine
/// TB-Ausbilder
 

Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden - Standard

Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden



Java updaten.

Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:
ATTFilter
C:\Windows\System32\Application Services\appsvc.exe.vir

C:\Windows\SysWOW64\Application Services\appsvc.exe.vir
Emptytemp:
         

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.






Cleanup:
(Die Reihenfolge ist hier entscheidend)

Falls Defogger verwendet wurde: Erneut starten und auf Re-enable klicken.

Falls Combofix verwendet wurde:
Combofix deinstallieren
  • Wichtig: Bitte Antivirus-Programm, evtl. vorhandenes Skript-Blocking und Anti-Malware Programme deaktivieren.
  • Drücke bitte die + R Taste und schreibe Combofix /Uninstall in das Ausführen-Fenster.
  • Klicke auf OK.
    Damit wird Combofix komplett entfernt und der Cache der Systemwiederherstellung geleert.
  • Nun die eben deaktivierten Programme wieder aktivieren.

Alle Logs gepostet? Dann lade Dir bitte DelFix herunter.
  • Schließe alle offenen Programme.
  • Starte die delfix.exe mit einem Doppelklick.
  • Setze vor jede Funktion ein Häkchen.
  • Klicke auf Start.

Hinweis: DelFix entfernt u.a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst.
Starte Deinen Rechner abschließend neu. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein, kannst Du diese bedenkenlos löschen.

Wenn Du möchtest, kannst Du hier sagen, ob Du mit mir und meiner Hilfe zufrieden warst...und/oder das Forum mit einer kleinen Spende unterstützen.


Absicherung:
Beim Betriebsystem Windows die automatischen Updates aktivieren. Auch die sicherheitsrelevante Software sollte immer nur in der aktuellsten Version vorliegen:

Browser
Java
Flash-Player
PDF-Reader

Sicherheitslücken in deren alten Versionen werden dazu ausgenutzt, um beim einfachen Besuch einer manipulierten Website per "Drive-by" Malware zu installieren.
Ich empfehle z.B. die Verwendung von Mozilla Firefox statt des Internet Explorers. Zudem lassen sich mit dem Firefox auch PDF-Dokumente öffnen.

Aktiviere eine Firewall. Die in Windows integrierte genügt im Normalfall völlig.

Verwende ein Antivirusprogramm mit Echtzeitscanner und stets aktueller Signaturendatenbank.
Meine Empfehlung:

Emsisoft

Zusätzlich kannst Du Deinen PC regelmäßig mit Malwarebytes Anti-Malware und ESET scannen.

Optional:
NoScript verhindert das Ausführen von aktiven Inhalten (Java, JavaScript, Flash,...) für sämtliche Websites. Man kann aber nach dem Prinzip einer Whitelist festlegen, auf welchen Seiten Scripts erlaubt werden sollen.
Malwarebytes Anti Exploit: Schützt die Anwendungen des Computers vor der Ausnutzung bekannter Schwachstellen.


Lade Software von einem sauberen Portal wie .
Wähle beim Installieren von Software immer die benutzerdefinierte Option und entferne den Haken bei allen optional angebotenen Toolbars oder sonstigen, fürs Programm, irrelevanten Ergänzungen.
Um Adware wieder los zu werden, empfiehlt sich zunächst die Deinstallation sowie die anschließende Resteentfernung mit Adwcleaner .


Abschließend noch ein paar grundsätzliche Bemerkungen:
Ändere regelmäßig Deine wichtigen Online-Passwörter und erstelle regelmäßig Backups Deiner wichtigen Dateien oder des Systems.
Der Nutzen von Registry-Cleanern, Optimizern usw. zur Performancesteigerung ist umstritten. Ich empfehle deshalb, die Finger von der Registry zu lassen und lieber die windowseigene Datenträgerbereinigung zu verwenden.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 19.03.2015, 10:45   #14
Dorfkicker
 
Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden - Standard

Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden



Guten Morgen Schrauber,

hier die fixlog.txt:
Code:
ATTFilter
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-03-2015
Ran by Frank at 2015-03-19 10:39:48 Run:2
Running from C:\Users\Frank\Desktop
Loaded Profiles: Frank &  (Available profiles: Frank)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
C:\Windows\System32\Application Services\appsvc.exe.vir

C:\Windows\SysWOW64\Application Services\appsvc.exe.vir
Emptytemp:
         
*****************

"C:\Windows\System32\Application Services\appsvc.exe.vir" => File/Directory not found.
C:\Windows\SysWOW64\Application Services\appsvc.exe.vir => Moved successfully.
EmptyTemp: => Removed 74.7 MB temporary data.


The system needed a reboot. 

==== End of Fixlog 10:40:02 ====
         
Beginne jetzt mit dem CleanUp und melde mich dann noch einmal!

Gruß
Frank Selle

Alt 19.03.2015, 20:59   #15
schrauber
/// the machine
/// TB-Ausbilder
 

Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden - Standard

Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden



ok
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Antwort

Themen zu Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden
administrator, antivireprogramme, defender, explorer, hijack.security, homepage, installation, kaspersky, microsoft, msil/injector.ead, nqij.exe, programme, reaktivieren, registry, security.hijack, software, super, trojan.agent, trojaner, windows 8




Ähnliche Themen: Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden


  1. Frage zu Program JRT (Junkware Removal Tool) Registry Eintrag gelöscht
    Antiviren-, Firewall- und andere Schutzprogramme - 20.06.2015 (3)
  2. Registry eintrag lässt sich nicht entfernen.
    Plagegeister aller Art und deren Bekämpfung - 19.12.2014 (6)
  3. Unbekannter Dienst bzw. Eintrag in der Registry
    Plagegeister aller Art und deren Bekämpfung - 25.01.2014 (1)
  4. Suspekter Registry-Eintrag und Windows Mini-Anwendungsproblem
    Plagegeister aller Art und deren Bekämpfung - 18.12.2013 (13)
  5. registry eintrag (virus?)
    Plagegeister aller Art und deren Bekämpfung - 20.08.2013 (29)
  6. Versteckter Eintrag i.d. REGISTRY
    Log-Analyse und Auswertung - 28.09.2011 (7)
  7. Unbekannter Nameserver in Registry Eintrag
    Plagegeister aller Art und deren Bekämpfung - 27.12.2010 (2)
  8. Backdoor.Bot -> immer wieder in Registry eintrag zu finden.
    Log-Analyse und Auswertung - 15.08.2010 (19)
  9. Wo in der Registry Trojaner-Eintrag löschen?
    Plagegeister aller Art und deren Bekämpfung - 27.01.2010 (7)
  10. Registry-Eintrag CLSID will sich nicht löschen lassen
    Plagegeister aller Art und deren Bekämpfung - 25.02.2009 (0)
  11. Trojaner der Run Registry Eintrag immer wieder neu erstellt?
    Log-Analyse und Auswertung - 30.10.2008 (1)
  12. Registry-Eintrag
    Alles rund um Windows - 11.07.2007 (3)
  13. Merkwürdiger Registry Eintrag
    Plagegeister aller Art und deren Bekämpfung - 27.07.2006 (3)
  14. internet explorer geht nach registry eintrag nicht mehr
    Plagegeister aller Art und deren Bekämpfung - 27.05.2006 (1)
  15. Adware.Srv32 -Registry-Eintrag löschen?
    Plagegeister aller Art und deren Bekämpfung - 07.05.2006 (2)
  16. Kann Registry Eintrag nicht dauerhaft löschen
    Alles rund um Windows - 13.04.2006 (1)

Zum Thema Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden - Hallo zusammen, ich habe mir beim Einrichten eines neuen Toshiba-NBs mit vorinstalliertem Win 8.1 (64bit) offenbar einen Trojaner eingefangen. Rechner wurde plötzlich langsam und Windows Defender ließ sich nicht mehr - Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden...
Archiv
Du betrachtest: Win 8.1 (64bit) verweigert Antivirenprogramme, ngij.exe-Eintrag in Registry gefunden auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.