|
Plagegeister aller Art und deren Bekämpfung: Meldung , dass mein Rechner nicht mehr gesichert seiWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
23.03.2015, 11:03 | #1 |
| Meldung , dass mein Rechner nicht mehr gesichert sei Ich habe heute die Meldung erhalten, dass mein Rechner nicht mehr gesichert sei, weil meine Firewall und mein Virenprogramm deaktiviert seien. Die Meldung erweckt den Anschein, als käme sie von Windows. Ich bin dann auf meinen McAfee Button gegangen und habe McAfee geöffnet. Da wird angezeigt, es sei alles aktiviert und der Rechner sei sicher. Was soll ich jetzt tun. Ein Anruf bei McAfee hat mir nicht weitergeholfen. |
23.03.2015, 11:08 | #2 |
/// the machine /// TB-Ausbilder | Meldung , dass mein Rechner nicht mehr gesichert sei hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
23.03.2015, 11:54 | #3 |
| FRST Text Ich habe den scan gemacht. Der FRST Text ist aber 258 Seiten lang. Wie kann ich dir den posten?
__________________ |
23.03.2015, 18:31 | #4 |
/// the machine /// TB-Ausbilder | Meldung , dass mein Rechner nicht mehr gesichert sei Hi, Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen. Ich kann auf Arbeit keine Anhänge öffnen, danke. So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
24.03.2015, 02:56 | #5 |
| Meldung , dass mein Rechner nicht mehr gesichert sei Ich habe den Text mit Hilfe von Code gesendet. Scheint immer noch zu viel zu sein. Ist denn was angekommen? |
24.03.2015, 17:34 | #6 |
/// the machine /// TB-Ausbilder | Meldung , dass mein Rechner nicht mehr gesichert sei Deswegen steht oben ja, zur Not die Logs in Stücke teilen und mehrere Posts benutzen
__________________ --> Meldung , dass mein Rechner nicht mehr gesichert sei |
24.03.2015, 18:10 | #7 |
| Meldung , dass mein Rechner nicht mehr gesichert sei Nachfolgend FRST Text Teil1: Code:
ATTFilter RST Text: Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015 Ran by Roth (administrator) on MEDION on 23-03-2015 11:23:58 Running from C:\Users\Roth\Documents\Privo\EDV Loaded Profiles: Roth (Available profiles: Roth) Platform: Windows 8.1 Pro with Media Center (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe (APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSvc.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\livecomm.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.26.9\GoogleCrashHandler64.exe ( ) C:\Windows\System32\lxdxcoms.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe (Glarysoft Ltd) C:\Program Files (x86)\Glary Utilities 5\Integrator.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIIJE.EXE (APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIIJE.EXE (Dropbox, Inc.) C:\Users\Roth\AppData\Roaming\Dropbox\bin\Dropbox.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe (Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\CSP\1.3.336.0\McCSPServiceHost.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\splwow64.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM-x32\...\Run: [mcui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [533872 2014-10-06] (McAfee, Inc.) HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1058400 2011-10-31] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe [643064 2014-09-17] (McAfee, Inc.) HKLM-x32\...\Run: [ApnTBMon] => C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1949592 2015-02-14] (APN) HKLM-x32\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311616 2014-07-25] (Samsung Electronics Co., Ltd.) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [NoFolderOptions] 0 HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKU\S-1-5-21-702454674-806779369-458765198-1000\...\Run: [Google Update] => C:\Users\Roth\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2012-11-16] (Google Inc.) HKU\S-1-5-21-702454674-806779369-458765198-1000\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [688984 2014-12-31] (Garmin Ltd or its subsidiaries) HKU\S-1-5-21-702454674-806779369-458765198-1000\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIIJE.EXE [283232 2012-02-29] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-702454674-806779369-458765198-1000\...\Run: [KiesPreload] => C:\Program Files (x86)\Samsung\Kies\Kies.exe [1562264 2014-07-25] (Samsung) HKU\S-1-5-21-702454674-806779369-458765198-1000\...\Run: [KiesAirMessage] => C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup HKU\S-1-5-21-702454674-806779369-458765198-1000\...\Run: [GUDelayStartup] => C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe [37152 2015-02-12] (Glarysoft Ltd) HKU\S-1-5-21-702454674-806779369-458765198-1000\...\Run: [EPLTarget\P0000000000000001] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIIJE.EXE [283232 2012-02-29] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-702454674-806779369-458765198-1000\...\Run: [msdb21a829.exe] => C:\Users\Roth\AppData\Roaming\Microsoft\msdb21a829.exe [274432 2014-10-29] ( ) HKU\S-1-5-18\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIIJE.EXE [283232 2012-02-29] (SEIKO EPSON CORPORATION) HKU\S-1-5-18\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [688984 2014-12-31] (Garmin Ltd or its subsidiaries) Startup: C:\Users\Roth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Roth\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Roth\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Roth\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Roth\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Roth\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Roth\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Roth\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Roth\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Roth\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) BootExecute: autocheck autochk * CHR HKU\S-1-5-21-702454674-806779369-458765198-1000\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-702454674-806779369-458765198-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR HKU\S-1-5-21-702454674-806779369-458765198-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-702454674-806779369-458765198-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/ SearchScopes: HKU\S-1-5-21-702454674-806779369-458765198-1000 -> {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26] (SEIKO EPSON CORPORATION) BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-03-04] (Google Inc.) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-13] (Oracle Corporation) BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-04] (Google Inc.) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-13] (Oracle Corporation) Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26] (SEIKO EPSON CORPORATION) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-03-04] (Google Inc.) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-04] (Google Inc.) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl64.dll [2014-10-06] (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll [2014-10-06] (McAfee, Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Users\Roth\AppData\Roaming\Mozilla\Firefox\Profiles\t7pymjlr.default-1395161236685 FF NewTab: chrome://unitedtb/content/newtab/newtab-page.xhtml FF SelectedSearchEngine: WEB.DE Suche FF Homepage: hxxp://go.web.de/tb/mff_startpage FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll [2015-02-06] () FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2014-10-06] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-02-06] () FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google) FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-13] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-13] (Oracle Corporation) FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2014-10-06] () FF Plugin-x32: @mcafee.com/MVT -> C:\Program Files (x86)\McAfee\Supportability\MVT\NPMVTPlugin.dll [2013-02-05] (McAfee, Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-07] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-702454674-806779369-458765198-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Roth\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-06] (Google Inc.) FF Plugin HKU\S-1-5-21-702454674-806779369-458765198-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Roth\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-06] (Google Inc.) FF Plugin HKU\S-1-5-21-702454674-806779369-458765198-1000: google.com/WidevineMediaOptimizer -> C:\Users\Roth\AppData\Roaming\IDM\bin\npwidevinemediaoptimizer.dll [2014-06-09] (Google Inc.) FF Extension: WEB.DE MailCheck - C:\Users\Roth\AppData\Roaming\Mozilla\Firefox\Profiles\t7pymjlr.default-1395161236685\Extensions\toolbar@web.de [2015-02-27] FF Extension: Widevine Media Optimizer - C:\Users\Roth\AppData\Roaming\Mozilla\Firefox\Profiles\t7pymjlr.default-1395161236685\Extensions\{2d3fbcf7-be69-4433-8858-c621a8d0e58d} [2014-07-23] FF Extension: Privacy Badger Firefox - C:\Users\Roth\AppData\Roaming\Mozilla\Firefox\Profiles\t7pymjlr.default-1395161236685\Extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [2014-08-12] FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2012-11-16] Chrome: ======= CHR HomePage: Default -> hxxp://search.babylon.com/home?affID=10588&tl=gcn61196 CHR StartupUrls: Default -> "www.google.com" CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.89\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.89\ppGoogleNaClPluginChrome.dll No File CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.89\pdf.dll () CHR Plugin: (Google Update) - C:\Users\Roth\AppData\Local\Google\Update\1.3.21.124\npGoogleUpdate3.dll No File CHR Profile: C:\Users\Roth\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Drive) - C:\Users\Roth\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2012-11-16] CHR Extension: (YouTube) - C:\Users\Roth\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-11-16] CHR Extension: (Google Search) - C:\Users\Roth\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-11-16] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Roth\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-15] CHR Extension: (Google Wallet) - C:\Users\Roth\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-08] CHR Extension: (Gmail) - C:\Users\Roth\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-11-16] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY) R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [177560 2015-02-14] (APN LLC.) S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation) R2 EpsonBidirectionalService; C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe [94208 2006-12-19] (SEIKO EPSON CORPORATION) [File not signed] R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [135824 2011-12-12] (Seiko Epson Corporation) R2 Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [451416 2014-12-31] (Garmin Ltd or its subsidiaries) R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.) R2 lxdx_device; C:\WINDOWS\system32\lxdxcoms.exe [1039872 2009-10-16] ( ) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [562200 2014-10-06] (McAfee, Inc.) R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.3.336.0\McCSPServiceHost.exe [422632 2014-11-21] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.) S3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [601864 2014-12-03] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.) R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1050952 2014-11-06] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [221832 2014-10-01] (McAfee, Inc.) R2 mfevtp; C:\WINDOWS\system32\mfevtps.exe [189920 2014-10-01] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [72136 2014-10-01] (McAfee, Inc.) R1 GUBootStartup; C:\WINDOWS\System32\drivers\GUBootStartup.sys [20160 2015-02-14] (Glarysoft Ltd) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.) S3 IT9135BDA; C:\Windows\System32\Drivers\IT9135BDA.sys [113280 2010-02-03] (ITE ) R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [181584 2014-10-01] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [313680 2014-10-01] (McAfee, Inc.) S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [70608 2014-10-01] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [526360 2014-10-01] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [786304 2014-10-01] (McAfee, Inc.) R3 mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [447440 2014-09-19] (McAfee, Inc.) S3 mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [96600 2014-09-19] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [348560 2014-10-01] (McAfee, Inc.) R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [3345376 2013-09-04] (Intel Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation) S3 MFE_RR; \??\C:\Users\Roth\AppData\Local\Temp\mfe_rr.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-03-23 11:23 - 2015-03-23 11:24 - 00000000 ____D () C:\FRST 2015-03-22 06:14 - 2015-03-22 06:14 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2015-03-11 16:39 - 2015-01-23 08:17 - 00723072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll 2015-03-11 16:39 - 2015-01-23 06:02 - 00560392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll 2015-03-11 16:38 - 2015-03-06 03:53 - 00430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2015-03-11 16:38 - 2015-03-06 03:33 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll 2015-03-11 16:38 - 2015-02-26 00:26 - 04178944 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2015-03-11 16:38 - 2015-02-20 04:03 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2015-03-11 16:38 - 2015-02-20 03:58 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2015-03-11 16:38 - 2015-02-20 03:20 - 00301056 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2015-03-11 16:38 - 2015-02-20 03:15 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2015-03-11 16:38 - 2015-02-04 00:58 - 00264000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2015-03-11 16:38 - 2015-02-04 00:58 - 00114496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2015-03-11 16:38 - 2015-02-04 00:58 - 00044024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2015-03-11 16:38 - 2015-02-03 00:53 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll 2015-03-11 16:38 - 2015-02-03 00:53 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll 2015-03-11 16:38 - 2015-01-31 00:42 - 03097600 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2015-03-11 16:38 - 2015-01-31 00:29 - 02484224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2015-03-11 16:38 - 2015-01-29 02:58 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\photowiz.dll 2015-03-11 16:38 - 2015-01-29 02:29 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\photowiz.dll 2015-03-11 16:38 - 2015-01-29 02:04 - 01091072 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2015-03-11 16:38 - 2015-01-29 02:04 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2015-03-11 16:38 - 2015-01-27 04:44 - 00933888 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe 2015-03-11 16:38 - 2015-01-24 02:51 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\calc.exe 2015-03-11 16:37 - 2015-02-21 02:16 - 25021440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-03-11 16:37 - 2015-02-21 01:41 - 12827648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-03-11 16:37 - 2015-02-21 01:27 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2015-03-11 16:37 - 2015-02-21 01:27 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll 2015-03-11 16:37 - 2015-02-21 01:25 - 19720192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-03-11 16:37 - 2015-02-21 00:58 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2015-03-11 16:37 - 2015-02-21 00:32 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2015-03-11 16:37 - 2015-02-20 03:49 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-03-11 16:37 - 2015-02-20 03:48 - 02886144 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-03-11 16:37 - 2015-02-20 03:47 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll 2015-03-11 16:37 - 2015-02-20 03:35 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-03-11 16:37 - 2015-02-20 03:34 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2015-03-11 16:37 - 2015-02-20 03:32 - 06035456 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-03-11 16:37 - 2015-02-20 03:09 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-03-11 16:37 - 2015-02-20 03:07 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2015-03-11 16:37 - 2015-02-20 03:06 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll 2015-03-11 16:37 - 2015-02-20 03:05 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2015-03-11 16:37 - 2015-02-20 03:03 - 02278400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-03-11 16:37 - 2015-02-20 02:59 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2015-03-11 16:37 - 2015-02-20 02:56 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-03-11 16:37 - 2015-02-20 02:52 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2015-03-11 16:37 - 2015-02-20 02:49 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2015-03-11 16:37 - 2015-02-20 02:49 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2015-03-11 16:37 - 2015-02-20 02:46 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2015-03-11 16:37 - 2015-02-20 02:43 - 14398976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-03-11 16:37 - 2015-02-20 02:30 - 04300288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-03-11 16:37 - 2015-02-20 02:30 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2015-03-11 16:37 - 2015-02-20 02:29 - 02865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2015-03-11 16:37 - 2015-02-20 02:28 - 02358784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-03-11 16:37 - 2015-02-20 02:26 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll 2015-03-11 16:37 - 2015-02-20 02:24 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2015-03-11 16:37 - 2015-02-20 02:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2015-03-11 16:37 - 2015-02-20 02:16 - 01548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-03-11 16:37 - 2015-02-20 02:03 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2015-03-11 16:37 - 2015-02-20 02:01 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-03-11 16:37 - 2015-02-20 01:57 - 01311232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-03-11 16:37 - 2015-02-20 01:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2015-03-11 16:37 - 2015-02-07 00:09 - 00396419 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2015-03-11 16:37 - 2015-02-05 21:24 - 01113920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2015-03-11 16:37 - 2015-01-30 04:01 - 00097792 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys 2015-03-11 16:37 - 2015-01-30 04:00 - 00167424 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys 2015-03-11 16:35 - 2015-02-12 18:40 - 22291584 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2015-03-11 16:35 - 2015-02-12 18:34 - 19731824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2015-03-11 16:35 - 2015-01-31 00:20 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2015-03-11 16:35 - 2015-01-29 19:45 - 01763352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2015-03-11 16:35 - 2015-01-29 19:34 - 01488040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2015-03-11 16:35 - 2015-01-29 02:11 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-03-11 16:35 - 2015-01-29 02:00 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-03-11 16:35 - 2015-01-29 01:59 - 02773504 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2015-03-11 16:35 - 2015-01-29 01:55 - 00971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2015-03-11 16:35 - 2015-01-29 01:50 - 00811008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll 2015-03-11 16:35 - 2015-01-29 01:49 - 02459136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2015-03-11 16:35 - 2015-01-28 16:41 - 07472960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-03-11 16:35 - 2015-01-28 16:41 - 01733440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2015-03-11 16:35 - 2015-01-28 16:41 - 01498360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2015-03-11 16:35 - 2015-01-28 03:24 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageContextHandler.dll 2015-03-11 16:35 - 2015-01-28 02:47 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StorageContextHandler.dll 2015-03-11 16:35 - 2015-01-28 02:31 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll 2015-03-11 16:35 - 2015-01-28 02:11 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll 2015-03-11 16:35 - 2015-01-28 00:47 - 02501368 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2015-03-11 16:35 - 2015-01-28 00:41 - 02207488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2015-03-11 16:35 - 2015-01-27 05:22 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2015-03-11 16:35 - 2015-01-27 03:11 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2015-03-11 16:34 - 2015-02-08 00:57 - 01090048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2015-03-11 16:34 - 2015-02-08 00:49 - 00791040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2015-03-11 16:34 - 2015-02-06 02:28 - 02257408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2015-03-11 16:34 - 2015-02-06 02:08 - 01943040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2015-03-11 16:34 - 2015-02-03 01:03 - 03551744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2015-03-11 16:34 - 2015-02-03 01:02 - 04298240 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2015-03-11 16:34 - 2015-01-30 03:03 - 01488896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42u.dll 2015-03-11 16:34 - 2015-01-30 03:03 - 01464832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42.dll 2015-03-11 16:34 - 2015-01-30 03:02 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll 2015-03-11 16:34 - 2015-01-30 02:44 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42u.dll 2015-03-11 16:34 - 2015-01-30 02:42 - 01204224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42.dll 2015-03-11 16:34 - 2015-01-30 02:40 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll 2015-03-11 16:34 - 2015-01-30 02:37 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll 2015-03-11 16:34 - 2015-01-30 02:29 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atlthunk.dll 2015-03-11 16:34 - 2015-01-30 02:24 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll 2015-03-11 16:34 - 2015-01-30 02:24 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll 2015-03-11 16:34 - 2015-01-30 02:16 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll 2015-03-11 16:34 - 2015-01-30 02:08 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll 2015-03-11 16:34 - 2015-01-30 02:06 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll 2015-03-11 16:34 - 2015-01-21 06:54 - 01384712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2015-03-11 16:34 - 2015-01-21 06:15 - 01123848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2015-03-11 16:34 - 2014-12-11 06:36 - 00046456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentServer.exe 2015-03-09 21:14 - 2015-03-09 21:15 - 00000324 ____N () C:\WINDOWS\DtcInstall.log 2015-03-09 10:36 - 2014-10-31 05:50 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\BulkOperationHost.exe 2015-03-09 10:36 - 2014-10-31 04:30 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll 2015-03-09 10:36 - 2014-10-31 04:23 - 00733696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2015-03-09 10:36 - 2014-10-31 04:22 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll 2015-03-09 10:36 - 2014-10-31 04:18 - 04840960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2015-03-09 10:36 - 2014-10-31 04:09 - 01154048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2015-03-09 10:36 - 2014-10-31 03:12 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll 2015-03-09 10:34 - 2014-10-29 05:03 - 00116032 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe 2015-03-09 10:34 - 2014-10-29 04:59 - 00014144 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\swenum.sys 2015-03-09 10:34 - 2014-10-29 03:45 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\packager.dll 2015-03-09 10:34 - 2014-10-29 03:22 - 00428032 _____ (Microsoft Corporation) C:\WINDOWS\system32\msihnd.dll 2015-03-09 10:34 - 2014-10-29 03:19 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2015-03-09 10:34 - 2014-10-29 03:08 - 18822656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2015-03-09 10:34 - 2014-10-29 03:00 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\packager.dll 2015-03-09 10:34 - 2014-10-29 02:45 - 03607040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2015-03-09 10:34 - 2014-10-29 02:42 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msihnd.dll 2015-03-09 10:34 - 2014-10-29 02:33 - 15157760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2015-03-09 10:34 - 2014-10-29 02:17 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll 2015-03-09 10:34 - 2014-10-29 02:10 - 02344960 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2015-03-09 10:34 - 2014-10-29 02:09 - 03557376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-03-09 10:34 - 2014-10-29 01:52 - 15432704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2015-03-09 10:34 - 2014-10-29 01:51 - 01554432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2015-03-09 10:34 - 2014-10-29 01:45 - 13318144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2015-03-09 10:33 - 2014-10-29 05:00 - 02314952 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2015-03-09 10:33 - 2014-10-29 05:00 - 02229168 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2015-03-09 10:33 - 2014-10-29 04:59 - 03460472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll 2015-03-09 10:33 - 2014-10-29 04:59 - 02529856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2015-03-09 10:33 - 2014-10-29 04:59 - 00055776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2015-03-09 10:33 - 2014-10-29 04:58 - 00014528 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmkaud.sys 2015-03-09 10:33 - 2014-10-29 04:57 - 03138720 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL 2015-03-09 10:33 - 2014-10-29 04:57 - 03118096 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe 2015-03-09 10:33 - 2014-10-29 04:57 - 02745160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL 2015-03-09 10:33 - 2014-10-29 04:57 - 01286048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll 2015-03-09 10:33 - 2014-10-29 04:55 - 02174976 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2015-03-09 10:33 - 2014-10-29 04:55 - 01660528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2015-03-09 10:33 - 2014-10-29 04:52 - 02485056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2015-03-09 10:33 - 2014-10-29 04:52 - 02334080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2015-03-09 10:33 - 2014-10-29 04:52 - 01518504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2015-03-09 10:33 - 2014-10-29 04:52 - 01509688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2015-03-09 10:33 - 2014-10-29 04:51 - 01310912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2015-03-09 10:33 - 2014-10-29 04:13 - 01901240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2015-03-09 10:33 - 2014-10-29 04:12 - 01907384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll 2015-03-09 10:33 - 2014-10-29 04:11 - 02689392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL 2015-03-09 10:33 - 2014-10-29 04:11 - 02528760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL 2015-03-09 10:33 - 2014-10-29 04:11 - 01024200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAudDecMFT.dll 2015-03-09 10:33 - 2014-10-29 04:10 - 01564464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2015-03-09 10:33 - 2014-10-29 04:07 - 02324208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2015-03-09 10:33 - 2014-10-29 03:59 - 03109376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2015-03-09 10:33 - 2014-10-29 03:29 - 04483072 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll 2015-03-09 10:33 - 2014-10-29 03:24 - 04418560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll 2015-03-09 10:33 - 2014-10-29 03:10 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2015-03-09 10:33 - 2014-10-29 02:57 - 02924032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcndmgr.dll 2015-03-09 10:33 - 2014-10-29 02:56 - 03754496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll 2015-03-09 10:33 - 2014-10-29 02:51 - 00941056 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll 2015-03-09 10:33 - 2014-10-29 02:45 - 00165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpinput.exe 2015-03-09 10:33 - 2014-10-29 02:44 - 02984448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll 2015-03-09 10:33 - 2014-10-29 02:43 - 07075328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glcndFilter.dll 2015-03-09 10:33 - 2014-10-29 02:42 - 01999872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2015-03-09 10:33 - 2014-10-29 02:40 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe 2015-03-09 10:33 - 2014-10-29 02:39 - 02896384 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll 2015-03-09 10:33 - 2014-10-29 02:38 - 04690432 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe 2015-03-09 10:33 - 2014-10-29 02:35 - 04709888 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2015-03-09 10:33 - 2014-10-29 02:35 - 03256320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll 2015-03-09 10:33 - 2014-10-29 02:31 - 02941952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll 2015-03-09 10:33 - 2014-10-29 02:28 - 03820544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll 2015-03-09 10:33 - 2014-10-29 02:28 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\atlthunk.dll 2015-03-09 10:33 - 2014-10-29 02:26 - 03561984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll 2015-03-09 10:33 - 2014-10-29 02:24 - 02464768 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll 2015-03-09 10:33 - 2014-10-29 02:22 - 03633664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2015-03-09 10:33 - 2014-10-29 02:21 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll 2015-03-09 10:33 - 2014-10-29 02:16 - 05267968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glcndFilter.dll 2015-03-09 10:33 - 2014-10-29 02:12 - 02749952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2015-03-09 10:33 - 2014-10-29 02:08 - 02608640 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2015-03-09 10:33 - 2014-10-29 02:08 - 02542080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll 2015-03-09 10:33 - 2014-10-29 02:08 - 02174976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll 2015-03-09 10:33 - 2014-10-29 02:05 - 03273216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll 2015-03-09 10:33 - 2014-10-29 02:03 - 04067840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2015-03-09 10:33 - 2014-10-29 02:03 - 02487296 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll 2015-03-09 10:33 - 2014-10-29 02:02 - 14354944 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2015-03-09 10:33 - 2014-10-29 01:58 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2015-03-09 10:33 - 2014-10-29 01:57 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2015-03-09 10:33 - 2014-10-29 01:54 - 07784960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2015-03-09 10:33 - 2014-10-29 01:54 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2015-03-09 10:33 - 2014-10-29 01:54 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2015-03-09 10:33 - 2014-10-29 01:52 - 02554880 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2015-03-09 10:33 - 2014-10-29 01:52 - 02170368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll 2015-03-09 10:33 - 2014-10-29 01:52 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2015-03-09 10:33 - 2014-10-29 01:52 - 01275904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2015-03-09 10:33 - 2014-10-29 01:52 - 00894976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2015-03-09 10:33 - 2014-10-29 01:50 - 12749824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2015-03-09 10:33 - 2014-10-29 01:48 - 03056128 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll 2015-03-09 10:33 - 2014-10-29 01:46 - 09530368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2015-03-09 10:33 - 2014-10-29 01:46 - 01919488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll 2015-03-09 10:33 - 2014-10-29 01:46 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll 2015-03-09 10:33 - 2014-10-29 01:46 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe 2015-03-09 10:33 - 2014-10-29 01:43 - 05264384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2015-03-09 10:33 - 2014-10-29 01:43 - 00723968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2015-03-09 10:33 - 2014-10-29 01:43 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2015-03-09 10:33 - 2014-10-29 01:42 - 01922560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2015-03-09 10:33 - 2014-10-29 01:39 - 02814464 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2015-03-09 10:33 - 2014-10-29 01:38 - 07032320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2015-03-09 10:33 - 2014-10-29 01:37 - 06386176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2015-03-09 10:33 - 2014-10-29 01:33 - 06213632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2015-03-09 10:33 - 2014-10-15 09:32 - 02025792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2015-03-09 10:33 - 2014-10-07 07:45 - 03307112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2015-03-09 10:33 - 2014-10-07 04:44 - 02890296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2015-03-09 10:33 - 2014-09-25 04:42 - 00373568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2015-03-09 10:32 - 2014-10-29 05:10 - 01816008 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll 2015-03-09 10:32 - 2014-10-29 05:04 - 00105872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll 2015-03-09 10:32 - 2014-10-29 05:00 - 01385216 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2015-03-09 10:32 - 2014-10-29 04:57 - 02450216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVENCOD.DLL 2015-03-09 10:32 - 2014-10-29 04:57 - 01576312 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2015-03-09 10:32 - 2014-10-29 04:57 - 01210176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL 2015-03-09 10:32 - 2014-10-29 04:55 - 01543768 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll 2015-03-09 10:32 - 2014-10-29 04:55 - 01133200 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2015-03-09 10:32 - 2014-10-29 04:52 - 01288096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll 2015-03-09 10:32 - 2014-10-29 04:52 - 01165744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll 2015-03-09 10:32 - 2014-10-29 04:52 - 01064720 _____ (Microsoft Corporation) C:\WINDOWS\system32\drmv2clt.dll 2015-03-09 10:32 - 2014-10-29 04:52 - 00988544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll 2015-03-09 10:32 - 2014-10-29 04:52 - 00962216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2015-03-09 10:32 - 2014-10-29 04:52 - 00952384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2015-03-09 10:32 - 2014-10-29 04:52 - 00850656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll 2015-03-09 10:32 - 2014-10-29 04:52 - 00821696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2015-03-09 10:32 - 2014-10-29 04:52 - 00734448 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll 2015-03-09 10:32 - 2014-10-29 04:52 - 00634768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2015-03-09 10:32 - 2014-10-29 04:52 - 00580024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmdev.dll 2015-03-09 10:32 - 2014-10-29 04:18 - 00016504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\psapi.dll 2015-03-09 10:32 - 2014-10-29 04:12 - 01946144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2015-03-09 10:32 - 2014-10-29 04:11 - 02447104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVENCOD.DLL 2015-03-09 10:32 - 2014-10-29 04:11 - 01037656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL 2015-03-09 10:32 - 2014-10-29 04:10 - 01287112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll 2015-03-09 10:32 - 2014-10-29 04:10 - 01209624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2015-03-09 10:32 - 2014-10-29 04:10 - 01178104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll 2015-03-09 10:32 - 2014-10-29 04:07 - 01321192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2015-03-09 10:32 - 2014-10-29 04:07 - 01115104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll 2015-03-09 10:32 - 2014-10-29 04:07 - 00959112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 2015-03-09 10:32 - 2014-10-29 04:07 - 00857384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll 2015-03-09 10:32 - 2014-10-29 04:07 - 00801584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2015-03-09 10:32 - 2014-10-29 04:07 - 00785568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2015-03-09 10:32 - 2014-10-29 04:07 - 00705008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2015-03-09 10:32 - 2014-10-29 04:07 - 00700328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll 2015-03-09 10:32 - 2014-10-29 04:07 - 00551064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll 2015-03-09 10:32 - 2014-10-29 04:05 - 00890128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drmv2clt.dll 2015-03-09 10:32 - 2014-10-29 03:50 - 01192960 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll 2015-03-09 10:32 - 2014-10-29 03:43 - 00685056 _____ (Microsoft Corporation) C:\WINDOWS\system32\riched20.dll 2015-03-09 10:32 - 2014-10-29 03:37 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rfxvmt.dll 2015-03-09 10:32 - 2014-10-29 03:31 - 00971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlceqp40.dll 2015-03-09 10:32 - 2014-10-29 03:29 - 01246720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ogldrv.dll 2015-03-09 10:32 - 2014-10-29 03:28 - 01502208 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpssvcs.dll 2015-03-09 10:32 - 2014-10-29 03:26 - 00771584 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbc32.dll 2015-03-09 10:32 - 2014-10-29 03:25 - 00785920 _____ (Microsoft Corporation) C:\WINDOWS\system32\blackbox.dll 2015-03-09 10:32 - 2014-10-29 03:17 - 02003456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmc.exe 2015-03-09 10:32 - 2014-10-29 03:08 - 01540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagperf.dll 2015-03-09 10:32 - 2014-10-29 03:07 - 06692352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe 2015-03-09 10:32 - 2014-10-29 03:03 - 00862720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2015-03-09 10:32 - 2014-10-29 03:00 - 02162176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2015-03-09 10:32 - 2014-10-29 02:56 - 01526784 _____ (Microsoft Corporation) C:\WINDOWS\system32\pla.dll 2015-03-09 10:32 - 2014-10-29 02:56 - 00603648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll 2015-03-09 10:32 - 2014-10-29 02:55 - 01697280 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll 2015-03-09 10:32 - 2014-10-29 02:53 - 01101824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2015-03-09 10:32 - 2014-10-29 02:53 - 00881152 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe 2015-03-09 10:32 - 2014-10-29 02:50 - 01289216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMNetMgr.dll 2015-03-09 10:32 - 2014-10-29 02:49 - 01358336 _____ (Microsoft Corporation) C:\WINDOWS\system32\srmclient.dll 2015-03-09 10:32 - 2014-10-29 02:49 - 00742400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqlceqp40.dll 2015-03-09 10:32 - 2014-10-29 02:48 - 01080832 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll 2015-03-09 10:32 - 2014-10-29 02:48 - 00780288 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll 2015-03-09 10:32 - 2014-10-29 02:47 - 02072064 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll 2015-03-09 10:32 - 2014-10-29 02:45 - 00717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll 2015-03-09 10:32 - 2014-10-29 02:45 - 00618496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\blackbox.dll 2015-03-09 10:32 - 2014-10-29 02:43 - 01092608 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdosys.dll 2015-03-09 10:32 - 2014-10-29 02:43 - 00933376 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll 2015-03-09 10:32 - 2014-10-29 02:42 - 03724800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSAT.exe 2015-03-09 10:32 - 2014-10-29 02:37 - 01563136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmc.exe 2015-03-09 10:32 - 2014-10-29 02:34 - 01114624 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll 2015-03-09 10:32 - 2014-10-29 02:34 - 01037824 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll 2015-03-09 10:32 - 2014-10-29 02:33 - 01056768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll 2015-03-09 10:32 - 2014-10-29 02:32 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe 2015-03-09 10:32 - 2014-10-29 02:32 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2015-03-09 10:32 - 2014-10-29 02:25 - 01812992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll 2015-03-09 10:32 - 2014-10-29 02:25 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pla.dll 2015-03-09 10:32 - 2014-10-29 02:24 - 02364928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcndmgr.dll 2015-03-09 10:32 - 2014-10-29 02:24 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll 2015-03-09 10:32 - 2014-10-29 02:23 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll 2015-03-09 10:32 - 2014-10-29 02:22 - 02410496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll 2015-03-09 10:32 - 2014-10-29 02:22 - 01084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2015-03-09 10:32 - 2014-10-29 02:22 - 00945152 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistCacheProvider.dll 2015-03-09 10:32 - 2014-10-29 02:21 - 01250816 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2015-03-09 10:32 - 2014-10-29 02:20 - 01492480 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll 2015-03-09 10:32 - 2014-10-29 02:19 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll 2015-03-09 10:32 - 2014-10-29 02:18 - 01753600 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2015-03-09 10:32 - 2014-10-29 02:18 - 01050624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMNetMgr.dll 2015-03-09 10:32 - 2014-10-29 02:17 - 01402368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll 2015-03-09 10:32 - 2014-10-29 02:17 - 01360896 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2015-03-09 10:32 - 2014-10-29 02:17 - 00829952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sbe.dll 2015-03-09 10:32 - 2014-10-29 02:16 - 01696256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2015-03-09 10:32 - 2014-10-29 02:14 - 03553280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe 2015-03-09 10:32 - 2014-10-29 02:14 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2015-03-09 10:32 - 2014-10-29 02:12 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msTextPrediction.dll 2015-03-09 10:32 - 2014-10-29 02:11 - 01639424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll 2015-03-09 10:32 - 2014-10-29 02:10 - 02469888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll 2015-03-09 10:32 - 2014-10-29 02:09 - 01335296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2015-03-09 10:32 - 2014-10-29 02:08 - 01822720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll 2015-03-09 10:32 - 2014-10-29 02:08 - 01560576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2015-03-09 10:32 - 2014-10-29 02:08 - 01478144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe 2015-03-09 10:32 - 2014-10-29 02:08 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll 2015-03-09 10:32 - 2014-10-29 02:07 - 01396736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll 2015-03-09 10:32 - 2014-10-29 02:07 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll 2015-03-09 10:32 - 2014-10-29 02:07 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2015-03-09 10:32 - 2014-10-29 02:06 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll 2015-03-09 10:32 - 2014-10-29 02:04 - 01376256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2015-03-09 10:32 - 2014-10-29 02:03 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2015-03-09 10:32 - 2014-10-29 02:03 - 01547264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2015-03-09 10:32 - 2014-10-29 02:01 - 01710592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll 2015-03-09 10:32 - 2014-10-29 02:01 - 00843776 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll 2015-03-09 10:32 - 2014-10-29 02:00 - 01705984 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll 2015-03-09 10:32 - 2014-10-29 01:59 - 02252800 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistSvc.dll 2015-03-09 10:32 - 2014-10-29 01:59 - 01636864 _____ (Microsoft Corporation) C:\WINDOWS\system32\RacEngn.dll 2015-03-09 10:32 - 2014-10-29 01:59 - 01490944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2015-03-09 10:32 - 2014-10-29 01:59 - 01454080 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2015-03-09 10:32 - 2014-10-29 01:59 - 01207296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll 2015-03-09 10:32 - 2014-10-29 01:59 - 01021440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2015-03-09 10:32 - 2014-10-29 01:56 - 01337344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2015-03-09 10:32 - 2014-10-29 01:56 - 01248256 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll 2015-03-09 10:32 - 2014-10-29 01:56 - 01028608 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2015-03-09 10:32 - 2014-10-29 01:56 - 01001984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll 2015-03-09 10:32 - 2014-10-29 01:54 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2015-03-09 10:32 - 2014-10-29 01:53 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll 2015-03-09 10:32 - 2014-10-29 01:52 - 01461248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll 2015-03-09 10:32 - 2014-10-29 01:52 - 01265152 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll 2015-03-09 10:32 - 2014-10-29 01:52 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2015-03-09 10:32 - 2014-10-29 01:52 - 00801792 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll 2015-03-09 10:32 - 2014-10-29 01:50 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll 2015-03-09 10:32 - 2014-10-29 01:50 - 01482752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll 2015-03-09 10:32 - 2014-10-29 01:48 - 01344000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll 2015-03-09 10:32 - 2014-10-29 01:47 - 02090496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2015-03-09 10:32 - 2014-10-29 01:46 - 01348096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2015-03-09 10:32 - 2014-10-29 01:46 - 01265152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RacEngn.dll 2015-03-09 10:32 - 2014-10-29 01:46 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2015-03-09 10:32 - 2014-10-29 01:45 - 01725952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2015-03-09 10:32 - 2014-10-29 01:45 - 00918016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll 2015-03-09 10:32 - 2014-10-29 01:45 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2015-03-09 10:32 - 2014-10-29 01:42 - 01221120 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2015-03-09 10:32 - 2014-10-29 01:42 - 00841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2015-03-09 10:32 - 2014-10-29 01:41 - 02880000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll 2015-03-09 10:32 - 2014-10-29 01:41 - 01317376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2015-03-09 10:32 - 2014-10-29 01:40 - 02104832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll 2015-03-09 10:32 - 2014-10-29 01:39 - 01000448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll 2015-03-09 10:32 - 2014-10-29 01:38 - 01262080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll 2015-03-09 10:32 - 2014-10-29 01:37 - 00724480 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2015-03-09 10:32 - 2014-10-29 01:36 - 00954880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2015-03-09 10:32 - 2014-10-29 01:35 - 01668096 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2015-03-09 10:32 - 2014-10-29 01:35 - 00772096 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmIndexer.dll 2015-03-09 10:32 - 2014-10-29 01:34 - 01544192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2015-03-09 10:32 - 2014-10-29 01:33 - 01102848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll 2015-03-09 10:31 - 2014-10-29 05:09 - 01950280 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll 2015-03-09 10:31 - 2014-10-29 05:09 - 01309744 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2015-03-09 10:31 - 2014-10-29 05:09 - 01239576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe 2015-03-09 10:31 - 2014-10-29 05:03 - 00435008 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2015-03-09 10:31 - 2014-10-29 05:00 - 01540696 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2015-03-09 10:31 - 2014-10-29 05:00 - 00740664 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll 2015-03-09 10:31 - 2014-10-29 05:00 - 00544408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2015-03-09 10:31 - 2014-10-29 05:00 - 00379568 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2015-03-09 10:31 - 2014-10-29 04:57 - 01552704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2015-03-09 10:31 - 2014-10-29 04:57 - 01150208 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOE.DLL 2015-03-09 10:31 - 2014-10-29 04:57 - 00643064 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2015-03-09 10:31 - 2014-10-29 04:57 - 00557832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVSDECD.DLL 2015-03-09 10:31 - 2014-10-29 04:57 - 00389952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2015-03-09 10:31 - 2014-10-29 04:55 - 01063432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2015-03-09 10:31 - 2014-10-29 04:55 - 00730824 _____ (Microsoft Corporation) C:\WINDOWS\system32\clbcatq.dll 2015-03-09 10:31 - 2014-10-29 04:55 - 00426120 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll 2015-03-09 10:31 - 2014-10-29 04:54 - 00685408 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll 2015-03-09 10:31 - 2014-10-29 04:53 - 00411128 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2015-03-09 10:31 - 2014-10-29 04:52 - 00497936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2015-03-09 10:31 - 2014-10-29 04:52 - 00444728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll 2015-03-09 10:31 - 2014-10-29 04:52 - 00405456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2015-03-09 10:31 - 2014-10-29 04:52 - 00356936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2015-03-09 10:31 - 2014-10-29 04:18 - 01782912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll 2015-03-09 10:31 - 2014-10-29 04:18 - 01103768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe 2015-03-09 10:31 - 2014-10-29 04:18 - 00848568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll 2015-03-09 10:31 - 2014-10-29 04:12 - 00616704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll 2015-03-09 10:31 - 2014-10-29 04:12 - 00430176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2015-03-09 10:31 - 2014-10-29 04:11 - 00914648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOE.DLL 2015-03-09 10:31 - 2014-10-29 04:11 - 00492704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVSDECD.DLL 2015-03-09 10:31 - 2014-10-29 04:11 - 00488064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpeffects.dll 2015-03-09 10:31 - 2014-10-29 04:10 - 00569128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clbcatq.dll 2015-03-09 10:31 - 2014-10-29 04:10 - 00492232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2015-03-09 10:31 - 2014-10-29 04:07 - 00584120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll 2015-03-09 10:31 - 2014-10-29 04:07 - 00482360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmdev.dll 2015-03-09 10:31 - 2014-10-29 04:07 - 00409040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll 2015-03-09 10:31 - 2014-10-29 04:07 - 00399752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2015-03-09 10:31 - 2014-10-29 04:07 - 00331048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll 2015-03-09 10:31 - 2014-10-29 03:56 - 01164288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPEG2ENC.DLL 2015-03-09 10:31 - 2014-10-29 03:48 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoconv.exe 2015-03-09 10:31 - 2014-10-29 03:48 - 00636416 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx02000.dll 2015-03-09 10:31 - 2014-10-29 03:44 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll 2015-03-09 10:31 - 2014-10-29 03:42 - 01091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll 2015-03-09 10:31 - 2014-10-29 03:40 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxs.dll 2015-03-09 10:31 - 2014-10-29 03:36 - 00546304 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlcese40.dll 2015-03-09 10:31 - 2014-10-29 03:33 - 07558144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Data0011.dll 2015-03-09 10:31 - 2014-10-29 03:33 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlsrv32.dll 2015-03-09 10:31 - 2014-10-29 03:30 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB70804.dll 2015-03-09 10:31 - 2014-10-29 03:30 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB70404.dll 2015-03-09 10:31 - 2014-10-29 03:30 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB7001E.dll 2015-03-09 10:31 - 2014-10-29 03:30 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB70011.dll 2015-03-09 10:31 - 2014-10-29 03:29 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsound.dll 2015-03-09 10:31 - 2014-10-29 03:27 - 00899584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx.dll 2015-03-09 10:31 - 2014-10-29 03:27 - 00208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsRasterService.dll 2015-03-09 10:31 - 2014-10-29 03:26 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartCardSimulator.dll 2015-03-09 10:31 - 2014-10-29 03:18 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetup.exe 2015-03-09 10:31 - 2014-10-29 03:11 - 01070080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSMPEG2ENC.DLL 2015-03-09 10:31 - 2014-10-29 03:11 - 00435712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswmdm.dll 2015-03-09 10:31 - 2014-10-29 03:09 - 00632320 _____ (Microsoft Corporation) C:\WINDOWS\system32\psisdecd.dll 2015-03-09 10:31 - 2014-10-29 03:08 - 00858624 _____ (Microsoft Corporation) C:\WINDOWS\system32\comuid.dll 2015-03-09 10:31 - 2014-10-29 03:08 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll 2015-03-09 10:31 - 2014-10-29 03:08 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmnet.dll 2015-03-09 10:31 - 2014-10-29 03:07 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2015-03-09 10:31 - 2014-10-29 03:06 - 01313792 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe 2015-03-09 10:31 - 2014-10-29 03:06 - 00980480 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2fs.dll 2015-03-09 10:31 - 2014-10-29 03:06 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAC3ENC.DLL 2015-03-09 10:31 - 2014-10-29 03:05 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll 2015-03-09 10:31 - 2014-10-29 03:04 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdmTmpl.dll 2015-03-09 10:31 - 2014-10-29 03:04 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\WavDest.dll 2015-03-09 10:31 - 2014-10-29 03:03 - 02334720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll 2015-03-09 10:31 - 2014-10-29 03:03 - 00832000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autoconv.exe 2015-03-09 10:31 - 2014-10-29 03:01 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscui.dll 2015-03-09 10:31 - 2014-10-29 03:00 - 00652800 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMEX.dll 2015-03-09 10:31 - 2014-10-29 02:59 - 01106432 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll 2015-03-09 10:31 - 2014-10-29 02:59 - 00670720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll 2015-03-09 10:31 - 2014-10-29 02:59 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\riched20.dll 2015-03-09 10:31 - 2014-10-29 02:57 - 01479168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll 2015-03-09 10:31 - 2014-10-29 02:57 - 01038336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2015-03-09 10:31 - 2014-10-29 02:56 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxs.dll 2015-03-09 10:31 - 2014-10-29 02:54 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscp.dll 2015-03-09 10:31 - 2014-10-29 02:54 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2015-03-09 10:31 - 2014-10-29 02:53 - 01065984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8.dll 2015-03-09 10:31 - 2014-10-29 02:53 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll 2015-03-09 10:31 - 2014-10-29 02:53 - 00433152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqlcese40.dll 2015-03-09 10:31 - 2014-10-29 02:51 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll 2015-03-09 10:31 - 2014-10-29 02:50 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqlsrv32.dll 2015-03-09 10:31 - 2014-10-29 02:49 - 02236416 _____ (Microsoft Corporation) C:\WINDOWS\system32\certmgr.dll 2015-03-09 10:31 - 2014-10-29 02:48 - 00825856 _____ (Microsoft Corporation) C:\WINDOWS\system32\pmcsnap.dll 2015-03-09 10:31 - 2014-10-29 02:47 - 01096192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ogldrv.dll 2015-03-09 10:31 - 2014-10-29 02:47 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpssvcs.dll 2015-03-09 10:31 - 2014-10-29 02:47 - 00517120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsound.dll 2015-03-09 10:31 - 2014-10-29 02:46 - 01497600 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe 2015-03-09 10:31 - 2014-10-29 02:46 - 01001472 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe 2015-03-09 10:31 - 2014-10-29 02:45 - 00672768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbc32.dll 2015-03-09 10:31 - 2014-10-29 02:42 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\PurchaseWindowsLicense.dll 2015-03-09 10:31 - 2014-10-29 02:40 - 02067968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdshext.dll 2015-03-09 10:31 - 2014-10-29 02:39 - 01571328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe 2015-03-09 10:31 - 2014-10-29 02:39 - 00898048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll 2015-03-09 10:31 - 2014-10-29 02:37 - 01436160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll 2015-03-09 10:31 - 2014-10-29 02:36 - 02764288 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll 2015-03-09 10:31 - 2014-10-29 02:36 - 01252864 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll 2015-03-09 10:31 - 2014-10-29 02:36 - 01008128 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2015-03-09 10:31 - 2014-10-29 02:36 - 00787456 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2015-03-09 10:31 - 2014-10-29 02:36 - 00609792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmsdk.dll 2015-03-09 10:31 - 2014-10-29 02:36 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs.dll 2015-03-09 10:31 - 2014-10-29 02:35 - 00532480 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDec.dll 2015-03-09 10:31 - 2014-10-29 02:33 - 00677376 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll 2015-03-09 10:31 - 2014-10-29 02:32 - 00654848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comuid.dll 2015-03-09 10:31 - 2014-10-29 02:32 - 00512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\psisdecd.dll 2015-03-09 10:31 - 2014-10-29 02:32 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmnet.dll 2015-03-09 10:31 - 2014-10-29 02:31 - 01278464 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll 2015-03-09 10:31 - 2014-10-29 02:31 - 00761344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2fs.dll 2015-03-09 10:31 - 2014-10-29 02:31 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll 2015-03-09 10:31 - 2014-10-29 02:30 - 06465536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe 2015-03-09 10:31 - 2014-10-29 02:30 - 00657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2015-03-09 10:31 - 2014-10-29 02:30 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll 2015-03-09 10:31 - 2014-10-29 02:29 - 00833536 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2015-03-09 10:31 - 2014-10-29 02:27 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll 2015-03-09 10:31 - 2014-10-29 02:26 - 00838656 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2015-03-09 10:31 - 2014-10-29 02:25 - 01058816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpedit.dll 2015-03-09 10:31 - 2014-10-29 02:24 - 01335296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll 2015-03-09 10:31 - 2014-10-29 02:24 - 00902144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll 2015-03-09 10:31 - 2014-10-29 02:24 - 00845312 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2015-03-09 10:31 - 2014-10-29 02:23 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll 2015-03-09 10:31 - 2014-10-29 02:22 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2015-03-09 10:31 - 2014-10-29 02:21 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll 2015-03-09 10:31 - 2014-10-29 02:21 - 00482304 _____ (Microsoft Corporation) C:\WINDOWS\system32\tpmvsc.dll 2015-03-09 10:31 - 2014-10-29 02:21 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll 2015-03-09 10:31 - 2014-10-29 02:19 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll 2015-03-09 10:31 - 2014-10-29 02:19 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSync.dll 2015-03-09 10:31 - 2014-10-29 02:19 - 00550912 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll 2015-03-09 10:31 - 2014-10-29 02:18 - 00967680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srmclient.dll 2015-03-09 10:31 - 2014-10-29 02:17 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll 2015-03-09 10:31 - 2014-10-29 02:16 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\secproc.dll 2015-03-09 10:31 - 2014-10-29 02:16 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\secproc_isv.dll 2015-03-09 10:31 - 2014-10-29 02:16 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAnimation.dll 2015-03-09 10:31 - 2014-10-29 02:14 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdosys.dll 2015-03-09 10:31 - 2014-10-29 02:14 - 00737280 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll 2015-03-09 10:31 - 2014-10-29 02:14 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll 2015-03-09 10:31 - 2014-10-29 02:12 - 01969664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpdshext.dll 2015-03-09 10:31 - 2014-10-29 02:12 - 00702976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll 2015-03-09 10:31 - 2014-10-29 02:12 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2015-03-09 10:31 - 2014-10-29 02:12 - 00516608 _____ (Microsoft Corporation) C:\WINDOWS\system32\es.dll 2015-03-09 10:31 - 2014-10-29 02:11 - 02597376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll 2015-03-09 10:31 - 2014-10-29 02:11 - 01323008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdc.dll 2015-03-09 10:31 - 2014-10-29 02:10 - 01096704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2015-03-09 10:31 - 2014-10-29 02:10 - 00516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmsdk.dll 2015-03-09 10:31 - 2014-10-29 02:10 - 00442880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EncDec.dll 2015-03-09 10:31 - 2014-10-29 02:09 - 00873984 _____ (Microsoft Corporation) C:\WINDOWS\system32\provcore.dll 2015-03-09 10:31 - 2014-10-29 02:09 - 00809984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll 2015-03-09 10:31 - 2014-10-29 02:09 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2015-03-09 10:31 - 2014-10-29 02:09 - 00658944 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll 2015-03-09 10:31 - 2014-10-29 02:09 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2015-03-09 10:31 - 2014-10-29 02:08 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpprefcl.dll 2015-03-09 10:31 - 2014-10-29 02:07 - 01197056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll 2015-03-09 10:31 - 2014-10-29 02:07 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certutil.exe 2015-03-09 10:31 - 2014-10-29 02:07 - 00657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll 2015-03-09 10:31 - 2014-10-29 02:07 - 00420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll 2015-03-09 10:31 - 2014-10-29 02:06 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2015-03-09 10:31 - 2014-10-29 02:06 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2015-03-09 10:31 - 2014-10-29 02:05 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2015-03-09 10:31 - 2014-10-29 02:05 - 00534016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2015-03-09 10:31 - 2014-10-29 02:04 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll 2015-03-09 10:31 - 2014-10-29 02:04 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll 2015-03-09 10:31 - 2014-10-29 02:03 - 00781824 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll 2015-03-09 10:31 - 2014-10-29 02:03 - 00740352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll 2015-03-09 10:31 - 2014-10-29 02:02 - 00880640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2015-03-09 10:31 - 2014-10-29 02:02 - 00695296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2015-03-09 10:31 - 2014-10-29 02:01 - 01145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\perftrack.dll 2015-03-09 10:31 - 2014-10-29 02:01 - 00706048 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll 2015-03-09 10:31 - 2014-10-29 02:01 - 00657408 _____ (Microsoft Corporation) C:\WINDOWS\system32\srmscan.dll 2015-03-09 10:31 - 2014-10-29 02:01 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdrm.dll 2015-03-09 10:31 - 2014-10-29 02:00 - 01574400 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll 2015-03-09 10:31 - 2014-10-29 02:00 - 00591360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2015-03-09 10:31 - 2014-10-29 01:59 - 01010688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOD.DLL 2015-03-09 10:31 - 2014-10-29 01:59 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll 2015-03-09 10:31 - 2014-10-29 01:59 - 00578048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSync.dll 2015-03-09 10:31 - 2014-10-29 01:58 - 00926208 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll 2015-03-09 10:31 - 2014-10-29 01:56 - 00702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2015-03-09 10:31 - 2014-10-29 01:56 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2015-03-09 10:31 - 2014-10-29 01:56 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2015-03-09 10:31 - 2014-10-29 01:56 - 00512512 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2015-03-09 10:31 - 2014-10-29 01:55 - 00719360 _____ (Microsoft Corporation) C:\WINDOWS\system32\PortableDeviceApi.dll 2015-03-09 10:31 - 2014-10-29 01:55 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\es.dll 2015-03-09 10:31 - 2014-10-29 01:54 - 00599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll 2015-03-09 10:31 - 2014-10-29 01:52 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll 2015-03-09 10:31 - 2014-10-29 01:52 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcprx.dll 2015-03-09 10:31 - 2014-10-29 01:52 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll 2015-03-09 10:31 - 2014-10-29 01:52 - 00555008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll 2015-03-09 10:31 - 2014-10-29 01:52 - 00544256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddraw.dll 2015-03-09 10:31 - 2014-10-29 01:51 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\duser.dll 2015-03-09 10:31 - 2014-10-29 01:51 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll 2015-03-09 10:31 - 2014-10-29 01:51 - 00457728 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll 2015-03-09 10:31 - 2014-10-29 01:50 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll 2015-03-09 10:31 - 2014-10-29 01:48 - 01142272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vssapi.dll 2015-03-09 10:31 - 2014-10-29 01:48 - 00949760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll 2015-03-09 10:31 - 2014-10-29 01:48 - 00562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll 2015-03-09 10:31 - 2014-10-29 01:48 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\system32\hnetcfg.dll 2015-03-09 10:31 - 2014-10-29 01:47 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOD.DLL 2015-03-09 10:31 - 2014-10-29 01:47 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll 2015-03-09 10:31 - 2014-10-29 01:47 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll 2015-03-09 10:31 - 2014-10-29 01:45 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll 2015-03-09 10:31 - 2014-10-29 01:45 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PortableDeviceApi.dll 2015-03-09 10:31 - 2014-10-29 01:45 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2015-03-09 10:31 - 2014-10-29 01:44 - 00522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll 2015-03-09 10:31 - 2014-10-29 01:43 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcprx.dll 2015-03-09 10:31 - 2014-10-29 01:43 - 00624640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll 2015-03-09 10:31 - 2014-10-29 01:42 - 01207808 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.dll 2015-03-09 10:31 - 2014-10-29 01:42 - 00654848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll 2015-03-09 10:31 - 2014-10-29 01:42 - 00608256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll 2015-03-09 10:31 - 2014-10-29 01:42 - 00539648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hgcpl.dll 2015-03-09 10:31 - 2014-10-29 01:41 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2015-03-09 10:31 - 2014-10-29 01:40 - 00651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll 2015-03-09 10:31 - 2014-10-29 01:36 - 00955392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2015-03-09 10:31 - 2014-10-29 01:35 - 01085952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.dll 2015-03-09 10:31 - 2014-10-29 01:35 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2015-03-09 10:31 - 2014-10-29 01:35 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll 2015-03-09 10:31 - 2014-10-29 01:32 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll 2015-03-09 10:31 - 2014-10-29 01:31 - 00626176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2015-03-09 10:31 - 2014-10-29 01:30 - 00602624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmIndexer.dll 2015-03-09 10:31 - 2014-10-08 08:33 - 00678400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2015-03-09 10:31 - 2014-10-07 07:44 - 00533824 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys 2015-03-09 10:31 - 2014-07-04 22:29 - 00478528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll 2015-03-09 10:30 - 2014-10-29 05:10 - 00430728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll 2015-03-09 10:30 - 2014-10-29 05:04 - 00397192 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll 2015-03-09 10:30 - 2014-10-29 05:04 - 00324864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2015-03-09 10:30 - 2014-10-29 04:59 - 00520536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll 2015-03-09 10:30 - 2014-10-29 04:59 - 00498496 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2015-03-09 10:30 - 2014-10-29 04:57 - 00725672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll 2015-03-09 10:30 - 2014-10-29 04:57 - 00662120 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.exe 2015-03-09 10:30 - 2014-10-29 04:57 - 00295432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMASF.DLL 2015-03-09 10:30 - 2014-10-29 04:57 - 00256744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll 2015-03-09 10:30 - 2014-10-29 04:55 - 00359496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll 2015-03-09 10:30 - 2014-10-29 04:53 - 00687496 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcrt.dll 2015-03-09 10:30 - 2014-10-29 04:52 - 00311448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll 2015-03-09 10:30 - 2014-10-29 04:52 - 00225696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mftranscode.dll 2015-03-09 10:30 - 2014-10-29 04:52 - 00020160 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSup.dll 2015-03-09 10:30 - 2014-10-29 04:51 - 00363080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll 2015-03-09 10:30 - 2014-10-29 04:51 - 00360992 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll 2015-03-09 10:30 - 2014-10-29 04:18 - 00320736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll 2015-03-09 10:30 - 2014-10-29 04:15 - 00340848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll 2015-03-09 10:30 - 2014-10-29 04:15 - 00340288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2015-03-09 10:30 - 2014-10-29 04:15 - 00245296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll 2015-03-09 10:30 - 2014-10-29 04:15 - 00089856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll 2015-03-09 10:30 - 2014-10-29 04:12 - 00403776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll 2015-03-09 10:30 - 2014-10-29 04:11 - 00463744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP4SDECD.DLL 2015-03-09 10:30 - 2014-10-29 04:10 - 00547992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll 2015-03-09 10:30 - 2014-10-29 04:10 - 00367248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll 2015-03-09 10:30 - 2014-10-29 04:07 - 00320256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll 2015-03-09 10:30 - 2014-10-29 04:06 - 00800008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcrt.dll 2015-03-09 10:30 - 2014-10-29 04:06 - 00507152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll 2015-03-09 10:30 - 2014-10-29 03:45 - 00548864 _____ (Microsoft Corporation) C:\WINDOWS\system32\glmf32.dll 2015-03-09 10:30 - 2014-10-29 03:45 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\msls31.dll 2015-03-09 10:30 - 2014-10-29 03:44 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll 2015-03-09 10:30 - 2014-10-29 03:37 - 02329088 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Data0404.dll 2015-03-09 10:30 - 2014-10-29 03:34 - 03438592 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Data0804.dll 2015-03-09 10:30 - 2014-10-29 03:31 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wvc.dll 2015-03-09 10:30 - 2014-10-29 03:31 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax 2015-03-09 10:30 - 2014-10-29 03:28 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wisp.dll 2015-03-09 10:30 - 2014-10-29 03:26 - 00308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll 2015-03-09 10:30 - 2014-10-29 03:25 - 00995328 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapi3.dll 2015-03-09 10:30 - 2014-10-29 03:25 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdohlp.dll 2015-03-09 10:30 - 2014-10-29 03:25 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax 2015-03-09 10:30 - 2014-10-29 03:24 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\WmpDui.dll 2015-03-09 10:30 - 2014-10-29 03:24 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSNP.ax 2015-03-09 10:30 - 2014-10-29 03:23 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\offfilt.dll 2015-03-09 10:30 - 2014-10-29 03:21 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassdo.dll 2015-03-09 10:30 - 2014-10-29 03:20 - 00802304 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscsvc.dll 2015-03-09 10:30 - 2014-10-29 03:20 - 00397312 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnp.dll 2015-03-09 10:30 - 2014-10-29 03:19 - 09732096 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData000a.dll 2015-03-09 10:30 - 2014-10-29 03:18 - 06259712 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll 2015-03-09 10:30 - 2014-10-29 03:18 - 04616704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData001d.dll 2015-03-09 10:30 - 2014-10-29 03:18 - 02403328 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData000c.dll 2015-03-09 10:30 - 2014-10-29 03:18 - 02140672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0007.dll 2015-03-09 10:30 - 2014-10-29 03:17 - 04621312 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0414.dll 2015-03-09 10:30 - 2014-10-29 03:17 - 04620288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0816.dll 2015-03-09 10:30 - 2014-10-29 03:17 - 03231232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData004b.dll 2015-03-09 10:30 - 2014-10-29 03:17 - 02480128 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData000d.dll 2015-03-09 10:30 - 2014-10-29 03:17 - 01926144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0022.dll 2015-03-09 10:30 - 2014-10-29 03:16 - 04621312 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0010.dll 2015-03-09 10:30 - 2014-10-29 03:16 - 04616704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0416.dll 2015-03-09 10:30 - 2014-10-29 03:16 - 03235840 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0039.dll 2015-03-09 10:30 - 2014-10-29 03:16 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData004a.dll 2015-03-09 10:30 - 2014-10-29 03:16 - 00546816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll 2015-03-09 10:30 - 2014-10-29 03:15 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData004e.dll 2015-03-09 10:30 - 2014-10-29 03:15 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0049.dll 2015-03-09 10:30 - 2014-10-29 03:15 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0047.dll 2015-03-09 10:30 - 2014-10-29 03:15 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0046.dll 2015-03-09 10:30 - 2014-10-29 03:15 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0020.dll 2015-03-09 10:30 - 2014-10-29 03:15 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0026.dll 2015-03-09 10:30 - 2014-10-29 03:15 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0024.dll 2015-03-09 10:30 - 2014-10-29 03:15 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData001b.dll 2015-03-09 10:30 - 2014-10-29 03:15 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0002.dll 2015-03-09 10:30 - 2014-10-29 03:15 - 01904640 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData002a.dll 2015-03-09 10:30 - 2014-10-29 03:14 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData004c.dll 2015-03-09 10:30 - 2014-10-29 03:14 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0045.dll 2015-03-09 10:30 - 2014-10-29 03:14 - 02075136 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0027.dll 2015-03-09 10:30 - 2014-10-29 03:14 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0c1a.dll 2015-03-09 10:30 - 2014-10-29 03:14 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData081a.dll 2015-03-09 10:30 - 2014-10-29 03:14 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData001a.dll 2015-03-09 10:30 - 2014-10-29 03:14 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0018.dll 2015-03-09 10:30 - 2014-10-29 03:14 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData000f.dll 2015-03-09 10:30 - 2014-10-29 03:14 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0003.dll 2015-03-09 10:30 - 2014-10-29 03:14 - 01904640 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData003e.dll 2015-03-09 10:30 - 2014-10-29 03:14 - 01904640 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0021.dll 2015-03-09 10:30 - 2014-10-29 03:12 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll 2015-03-09 10:30 - 2014-10-29 03:11 - 00547328 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2.dll 2015-03-09 10:30 - 2014-10-29 03:11 - 00478720 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmon.ocx 2015-03-09 10:30 - 2014-10-29 03:08 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroles.dll 2015-03-09 10:30 - 2014-10-29 03:08 - 00390656 _____ (Microsoft Corporation) C:\WINDOWS\system32\difxapi.dll 2015-03-09 10:30 - 2014-10-29 03:06 - 02902016 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll 2015-03-09 10:30 - 2014-10-29 03:04 - 00587264 _____ (Microsoft Corporation) C:\WINDOWS\system32\filemgmt.dll 2015-03-09 10:30 - 2014-10-29 03:02 - 00476672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xwizards.dll 2015-03-09 10:30 - 2014-10-29 03:01 - 00549888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll 2015-03-09 10:30 - 2014-10-29 03:01 - 00453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroleui.dll 2015-03-09 10:30 - 2014-10-29 03:01 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2015-03-09 10:30 - 2014-10-29 03:00 - 01861632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2015-03-09 10:30 - 2014-10-29 03:00 - 00642560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll 2015-03-09 10:30 - 2014-10-29 02:59 - 00404480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncInfrastructure.dll 2015-03-09 10:30 - 2014-10-29 02:59 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2015-03-09 10:30 - 2014-10-29 02:58 - 01040384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll 2015-03-09 10:30 - 2014-10-29 02:58 - 00894976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll 2015-03-09 10:30 - 2014-10-29 02:57 - 02592256 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll 2015-03-09 10:30 - 2014-10-29 02:57 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll 2015-03-09 10:30 - 2014-10-29 02:56 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2015-03-09 10:30 - 2014-10-29 02:56 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WPDSp.dll 2015-03-09 10:30 - 2014-10-29 02:55 - 00669184 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx 2015-03-09 10:30 - 2014-10-29 02:54 - 00833536 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe 2015-03-09 10:30 - 2014-10-29 02:54 - 00408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DfpCommon.dll 2015-03-09 10:30 - 2014-10-29 02:54 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\qasf.dll 2015-03-09 10:30 - 2014-10-29 02:52 - 02829312 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll 2015-03-09 10:30 - 2014-10-29 02:52 - 00809984 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll 2015-03-09 10:30 - 2014-10-29 02:52 - 00680960 _____ (Microsoft Corporation) C:\WINDOWS\system32\objsel.dll 2015-03-09 10:30 - 2014-10-29 02:52 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll 2015-03-09 10:30 - 2014-10-29 02:52 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvvmtransport.dll 2015-03-09 10:30 - 2014-10-29 02:51 - 07331840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NL7Data0011.dll 2015-03-09 10:30 - 2014-10-29 02:50 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdri.dll 2015-03-09 10:30 - 2014-10-29 02:49 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\system32\StikyNot.exe 2015-03-09 10:30 - 2014-10-29 02:49 - 00478720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wvc.dll 2015-03-09 10:30 - 2014-10-29 02:48 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipsmsnap.dll 2015-03-09 10:30 - 2014-10-29 02:48 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSWB70804.dll 2015-03-09 10:30 - 2014-10-29 02:48 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSWB70404.dll 2015-03-09 10:30 - 2014-10-29 02:48 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSWB7001E.dll 2015-03-09 10:30 - 2014-10-29 02:48 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSWB70011.dll 2015-03-09 10:30 - 2014-10-29 02:47 - 00616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\msra.exe 2015-03-09 10:30 - 2014-10-29 02:47 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wisp.dll 2015-03-09 10:30 - 2014-10-29 02:46 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsRasterService.dll 2015-03-09 10:30 - 2014-10-29 02:45 - 00519680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll 2015-03-09 10:30 - 2014-10-29 02:45 - 00429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sdohlp.dll 2015-03-09 10:30 - 2014-10-29 02:44 - 00872960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapi3.dll 2015-03-09 10:30 - 2014-10-29 02:44 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax 2015-03-09 10:30 - 2014-10-29 02:43 - 00774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll 2015-03-09 10:30 - 2014-10-29 02:43 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSNP.ax 2015-03-09 10:30 - 2014-10-29 02:42 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll Code:
ATTFilter Teil2 2015-03-09 10:30 - 2014-10-29 02:41 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL 2015-03-09 10:30 - 2014-10-29 02:41 - 00459264 _____ (Microsoft Corporation) C:\WINDOWS\system32\appmgr.dll 2015-03-09 10:30 - 2014-10-29 02:41 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnp.dll 2015-03-09 10:30 - 2014-10-29 02:38 - 04945920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll 2015-03-09 10:30 - 2014-10-29 02:38 - 00430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMPOSE.dll 2015-03-09 10:30 - 2014-10-29 02:36 - 00943616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFS.exe 2015-03-09 10:30 - 2014-10-29 02:34 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2.dll 2015-03-09 10:30 - 2014-10-29 02:34 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sysmon.ocx 2015-03-09 10:30 - 2014-10-29 02:34 - 00353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswmdm.dll 2015-03-09 10:30 - 2014-10-29 02:33 - 01291776 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe 2015-03-09 10:30 - 2014-10-29 02:33 - 00963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll 2015-03-09 10:30 - 2014-10-29 02:33 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WLanConn.dll 2015-03-09 10:30 - 2014-10-29 02:32 - 00794624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\azroles.dll 2015-03-09 10:30 - 2014-10-29 02:31 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll 2015-03-09 10:30 - 2014-10-29 02:30 - 01171456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe 2015-03-09 10:30 - 2014-10-29 02:30 - 00642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2015-03-09 10:30 - 2014-10-29 02:30 - 00579584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiaaut.dll 2015-03-09 10:30 - 2014-10-29 02:30 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll 2015-03-09 10:30 - 2014-10-29 02:30 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAC3ENC.DLL 2015-03-09 10:30 - 2014-10-29 02:29 - 02848768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll 2015-03-09 10:30 - 2014-10-29 02:29 - 00464384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AdmTmpl.dll 2015-03-09 10:30 - 2014-10-29 02:29 - 00365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll 2015-03-09 10:30 - 2014-10-29 02:29 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll 2015-03-09 10:30 - 2014-10-29 02:29 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll 2015-03-09 10:30 - 2014-10-29 02:28 - 02213888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncCenter.dll 2015-03-09 10:30 - 2014-10-29 02:27 - 00397312 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll 2015-03-09 10:30 - 2014-10-29 02:26 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll 2015-03-09 10:30 - 2014-10-29 02:26 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2015-03-09 10:30 - 2014-10-29 02:25 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncInfrastructure.dll 2015-03-09 10:30 - 2014-10-29 02:24 - 00519680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2015-03-09 10:30 - 2014-10-29 02:23 - 01826304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll 2015-03-09 10:30 - 2014-10-29 02:23 - 00376320 _____ (Microsoft Corporation) C:\WINDOWS\system32\livessp.dll 2015-03-09 10:30 - 2014-10-29 02:23 - 00332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsku.dll 2015-03-09 10:30 - 2014-10-29 02:22 - 02551808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themecpl.dll 2015-03-09 10:30 - 2014-10-29 02:22 - 00536576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx 2015-03-09 10:30 - 2014-10-29 02:22 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdelta.dll 2015-03-09 10:30 - 2014-10-29 02:22 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll 2015-03-09 10:30 - 2014-10-29 02:21 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe 2015-03-09 10:30 - 2014-10-29 02:21 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscp.dll 2015-03-09 10:30 - 2014-10-29 02:21 - 00320512 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedynos.dll 2015-03-09 10:30 - 2014-10-29 02:21 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFHost.exe 2015-03-09 10:30 - 2014-10-29 02:21 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll 2015-03-09 10:30 - 2014-10-29 02:20 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxApplicabilityEngine.dll 2015-03-09 10:30 - 2014-10-29 02:20 - 00517120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbemcomn.dll 2015-03-09 10:30 - 2014-10-29 02:20 - 00510464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll 2015-03-09 10:30 - 2014-10-29 02:20 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll 2015-03-09 10:30 - 2014-10-29 02:19 - 02714624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll 2015-03-09 10:30 - 2014-10-29 02:19 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsFilt.dll 2015-03-09 10:30 - 2014-10-29 02:18 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certmgr.dll 2015-03-09 10:30 - 2014-10-29 02:18 - 00329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2015-03-09 10:30 - 2014-10-29 02:18 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll 2015-03-09 10:30 - 2014-10-29 02:17 - 00981504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdt.exe 2015-03-09 10:30 - 2014-10-29 02:17 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ipsmsnap.dll 2015-03-09 10:30 - 2014-10-29 02:17 - 00412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll 2015-03-09 10:30 - 2014-10-29 02:17 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2015-03-09 10:30 - 2014-10-29 02:16 - 01242112 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10.dll 2015-03-09 10:30 - 2014-10-29 02:16 - 00795136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll 2015-03-09 10:30 - 2014-10-29 02:16 - 00599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMActivate_isv.exe 2015-03-09 10:30 - 2014-10-29 02:16 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll 2015-03-09 10:30 - 2014-10-29 02:15 - 00809472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2015-03-09 10:30 - 2014-10-29 02:15 - 00569344 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMActivate.exe 2015-03-09 10:30 - 2014-10-29 02:15 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Proximity.dll 2015-03-09 10:30 - 2014-10-29 02:14 - 00699392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll 2015-03-09 10:30 - 2014-10-29 02:14 - 00301568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityService.dll 2015-03-09 10:30 - 2014-10-29 02:13 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll 2015-03-09 10:30 - 2014-10-29 02:13 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2015-03-09 10:30 - 2014-10-29 02:12 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ninput.dll 2015-03-09 10:30 - 2014-10-29 02:12 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appmgr.dll 2015-03-09 10:30 - 2014-10-29 02:11 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll 2015-03-09 10:30 - 2014-10-29 02:10 - 00516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll 2015-03-09 10:30 - 2014-10-29 02:09 - 00633344 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll 2015-03-09 10:30 - 2014-10-29 02:09 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmicmiplugin.dll 2015-03-09 10:30 - 2014-10-29 02:09 - 00345088 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2015-03-09 10:30 - 2014-10-29 02:07 - 00594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddraw.dll 2015-03-09 10:30 - 2014-10-29 02:07 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll 2015-03-09 10:30 - 2014-10-29 02:06 - 01086976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe 2015-03-09 10:30 - 2014-10-29 02:06 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll 2015-03-09 10:30 - 2014-10-29 02:06 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll 2015-03-09 10:30 - 2014-10-29 02:06 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswsock.dll 2015-03-09 10:30 - 2014-10-29 02:05 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll 2015-03-09 10:30 - 2014-10-29 02:05 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll 2015-03-09 10:30 - 2014-10-29 02:04 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsvcs.dll 2015-03-09 10:30 - 2014-10-29 02:04 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2015-03-09 10:30 - 2014-10-29 02:04 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcncsvc.dll 2015-03-09 10:30 - 2014-10-29 02:03 - 00474112 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll 2015-03-09 10:30 - 2014-10-29 02:03 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2015-03-09 10:30 - 2014-10-29 02:03 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll 2015-03-09 10:30 - 2014-10-29 02:01 - 01241600 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistSh.dll 2015-03-09 10:30 - 2014-10-29 02:01 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll 2015-03-09 10:30 - 2014-10-29 02:01 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsku.dll 2015-03-09 10:30 - 2014-10-29 02:00 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wbemcomn.dll 2015-03-09 10:30 - 2014-10-29 02:00 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\framedynos.dll 2015-03-09 10:30 - 2014-10-29 02:00 - 00251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll 2015-03-09 10:30 - 2014-10-29 01:59 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll 2015-03-09 10:30 - 2014-10-29 01:59 - 00420864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxApplicabilityEngine.dll 2015-03-09 10:30 - 2014-10-29 01:59 - 00413696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll 2015-03-09 10:30 - 2014-10-29 01:59 - 00302080 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcsvDevice.dll 2015-03-09 10:30 - 2014-10-29 01:58 - 00746496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll 2015-03-09 10:30 - 2014-10-29 01:58 - 00743424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll 2015-03-09 10:30 - 2014-10-29 01:58 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll 2015-03-09 10:30 - 2014-10-29 01:58 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll 2015-03-09 10:30 - 2014-10-29 01:58 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringMgr.dll 2015-03-09 10:30 - 2014-10-29 01:57 - 01065472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10.dll 2015-03-09 10:30 - 2014-10-29 01:57 - 00562688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RMActivate_isv.exe 2015-03-09 10:30 - 2014-10-29 01:57 - 00543744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RMActivate.exe 2015-03-09 10:30 - 2014-10-29 01:57 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secproc.dll 2015-03-09 10:30 - 2014-10-29 01:57 - 00346624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secproc_isv.dll 2015-03-09 10:30 - 2014-10-29 01:57 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAnimation.dll 2015-03-09 10:30 - 2014-10-29 01:56 - 00232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll 2015-03-09 10:30 - 2014-10-29 01:55 - 00887808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dim700.dll 2015-03-09 10:30 - 2014-10-29 01:55 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskcomp.dll 2015-03-09 10:30 - 2014-10-29 01:55 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll 2015-03-09 10:30 - 2014-10-29 01:55 - 00428032 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistCleaner.dll 2015-03-09 10:30 - 2014-10-29 01:55 - 00331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\DaOtpCredentialProvider.dll 2015-03-09 10:30 - 2014-10-29 01:55 - 00304128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ninput.dll 2015-03-09 10:30 - 2014-10-29 01:54 - 00560640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll 2015-03-09 10:30 - 2014-10-29 01:54 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.HardwareId.dll 2015-03-09 10:30 - 2014-10-29 01:53 - 00612352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provcore.dll 2015-03-09 10:30 - 2014-10-29 01:53 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2015-03-09 10:30 - 2014-10-29 01:53 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll 2015-03-09 10:30 - 2014-10-29 01:52 - 00522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll 2015-03-09 10:30 - 2014-10-29 01:51 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll 2015-03-09 10:30 - 2014-10-29 01:51 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\provsvc.dll 2015-03-09 10:30 - 2014-10-29 01:51 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2015-03-09 10:30 - 2014-10-29 01:50 - 00624128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll 2015-03-09 10:30 - 2014-10-29 01:50 - 00468480 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskeng.exe 2015-03-09 10:30 - 2014-10-29 01:50 - 00430592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll 2015-03-09 10:30 - 2014-10-29 01:50 - 00399360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlangpui.dll 2015-03-09 10:30 - 2014-10-29 01:49 - 00576512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shsvcs.dll 2015-03-09 10:30 - 2014-10-29 01:48 - 00454144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdrm.dll 2015-03-09 10:30 - 2014-10-29 01:47 - 00628224 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll 2015-03-09 10:30 - 2014-10-29 01:47 - 00527872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll 2015-03-09 10:30 - 2014-10-29 01:47 - 00488448 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrv.dll 2015-03-09 10:30 - 2014-10-29 01:47 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll 2015-03-09 10:30 - 2014-10-29 01:47 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2015-03-09 10:30 - 2014-10-29 01:46 - 00455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll 2015-03-09 10:30 - 2014-10-29 01:45 - 00397824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2015-03-09 10:30 - 2014-10-29 01:44 - 00677376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll 2015-03-09 10:30 - 2014-10-29 01:42 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll 2015-03-09 10:30 - 2014-10-29 01:42 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provsvc.dll 2015-03-09 10:30 - 2014-10-29 01:42 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll 2015-03-09 10:30 - 2014-10-29 01:40 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll 2015-03-09 10:30 - 2014-10-29 01:39 - 00565248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll 2015-03-09 10:30 - 2014-10-29 01:39 - 00454144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hnetcfg.dll 2015-03-09 10:30 - 2014-10-29 01:39 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrv.dll 2015-03-09 10:30 - 2014-10-29 01:37 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrvut.dll 2015-03-09 10:30 - 2014-10-29 01:35 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2015-03-09 10:30 - 2014-10-15 09:32 - 00551232 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2015-03-09 10:30 - 2014-10-08 08:32 - 00405504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2015-03-09 10:29 - 2014-10-29 05:09 - 00315576 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgmgr32.dll 2015-03-09 10:29 - 2014-10-29 05:09 - 00294880 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeunlock.exe 2015-03-09 10:29 - 2014-10-29 05:09 - 00233448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityUxHost.exe 2015-03-09 10:29 - 2014-10-29 05:09 - 00214360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll 2015-03-09 10:29 - 2014-10-29 05:04 - 00217912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll 2015-03-09 10:29 - 2014-10-29 04:59 - 00415040 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2015-03-09 10:29 - 2014-10-29 04:59 - 00230816 _____ (Microsoft Corporation) C:\WINDOWS\system32\xmllite.dll 2015-03-09 10:29 - 2014-10-29 04:58 - 01797944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll 2015-03-09 10:29 - 2014-10-29 04:57 - 01913128 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplaySwitch.exe 2015-03-09 10:29 - 2014-10-29 04:57 - 00767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll 2015-03-09 10:29 - 2014-10-29 04:57 - 00629576 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP4SDECD.DLL 2015-03-09 10:29 - 2014-10-29 04:57 - 00339312 _____ (Microsoft Corporation) C:\WINDOWS\system32\shlwapi.dll 2015-03-09 10:29 - 2014-10-29 04:57 - 00271152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2015-03-09 10:29 - 2014-10-29 04:57 - 00217432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2015-03-09 10:29 - 2014-10-29 04:57 - 00034568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserAccountBroker.exe 2015-03-09 10:29 - 2014-10-29 04:57 - 00031496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CameraSettingsUIHost.exe 2015-03-09 10:29 - 2014-10-29 04:57 - 00029408 _____ (Microsoft Corporation) C:\WINDOWS\system32\PickerHost.exe 2015-03-09 10:29 - 2014-10-29 04:57 - 00027360 _____ (Microsoft Corporation) C:\WINDOWS\syste |
25.03.2015, 09:09 | #8 |
/// the machine /// TB-Ausbilder | Meldung , dass mein Rechner nicht mehr gesichert sei Fehlt noch die Addition.txt von FRST
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
25.03.2015, 11:42 | #9 |
| Meldung , dass mein Rechner nicht mehr gesichert sei anbei die addition Text: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-03-2015 Ran by Roth at 2015-03-23 11:28:26 Running from C:\Users\Roth\Documents\Privo\EDV Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {DA9F8ED0-D0DE-39CC-F55A-51AB4CC1B556} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {61FE6F34-F6E4-3642-CFEA-6AD93746FFEB} FW: McAfee Firewall (Enabled) {E2A40FF5-9AB1-3894-DE05-F89EB212F22D} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) ABBYY FineReader 9.0 Sprint (HKLM-x32\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY) ABBYY FineReader 9.0 Sprint (x32 Version: 9.01.513.58212 - ABBYY) Hidden Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 4.0.0.1390 - Adobe Systems Incorporated) Adobe Digital Editions 3.0 (HKLM-x32\...\Adobe Digital Editions 3.0) (Version: 3.0 - Adobe Systems Incorporated) Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) ANT Drivers Installer x64 (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden Ask Toolbar (HKLM-x32\...\{4F524A2D-5637-4300-76A7-A758B70C1902}) (Version: 12.25.2.88 - APN, LLC) <==== ATTENTION Benutzerhandbuch - Grundlagen EPSON XP-402 403 405 406 Series (HKLM-x32\...\EPSON XP-402 403 405 406 Series Bog) (Version: - ) Benutzerhandbuch EPSON XP-402 403 405 406 Series (HKLM-x32\...\EPSON XP-402 403 405 406 Series Useg) (Version: - ) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) CCleaner (HKLM\...\CCleaner) (Version: 4.11 - Piriform) Compatibility Pack für 2007 Office System (HKLM-x32\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) DAF Desk (HKLM-x32\...\de.anleger-fernsehen.dafdesk.C1051E74B3FAE4202E494B14ADD69FC8A349CD49.1) (Version: 1.10 - Herrlich & Ramuschkat GmbH) DAF Desk (x32 Version: 1.10 - Herrlich & Ramuschkat GmbH) Hidden Dropbox (HKU\S-1-5-21-702454674-806779369-458765198-1000\...\Dropbox) (Version: 3.2.9 - Dropbox, Inc.) Elevated Installer (x32 Version: 3.2.27.0 - Garmin Ltd or its subsidiaries) Hidden ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 15.2.20140326 - Landesfinanzdirektion Thüringen) Epson Connect Printer Setup (HKLM-x32\...\{D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C}) (Version: 1.3.0 - SEIKO EPSON CORPORATION) Epson Easy Photo Print 2 (HKLM-x32\...\{30E01116-5666-4807-8EF1-D80E9FF16717}) (Version: 2.3.2.0 - SEIKO EPSON CORPORATION) Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM-x32\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION2) Epson Event Manager (HKLM-x32\...\{BECE9CCD-83F6-4BAA-9B26-227DF7D2E932}) (Version: 3.01.0000 - Seiko Epson Corporation) EPSON Printer Finder (HKLM-x32\...\{B8ECD0D3-AE08-4891-B6C7-32F96B75EB6C}) (Version: 1.0.0 - SEIKO EPSON CORPORATION) EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation) EPSON XP-402 403 405 406 Series Printer Uninstall (HKLM\...\EPSON XP-402 403 405 406 Series) (Version: - SEIKO EPSON Corporation) EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.5.00 - SEIKO EPSON CORPORATION) Garmin Express (HKLM-x32\...\{855d8086-4275-4bd3-a7a8-b44da3a56d7a}) (Version: 3.2.27.0 - Garmin Ltd or its subsidiaries) Garmin Express (x32 Version: 3.2.27.0 - Garmin Ltd or its subsidiaries) Hidden Garmin Express Tray (x32 Version: 3.2.27.0 - Garmin Ltd or its subsidiaries) Hidden Garmin USB Drivers (HKLM-x32\...\{3D5D6CFC-3097-425A-8D8F-7EAF5D57641D}) (Version: 2.3.1.0 - Garmin Ltd or its subsidiaries) Garmin WebUpdater (HKLM-x32\...\{AE1EC58E-B2AC-4959-A4C2-C38202A25239}) (Version: 2.5.6 - Garmin Ltd or its subsidiaries) Glary Undelete 5.0.1.19 (HKLM-x32\...\Glary Undelete) (Version: 5.0.1.19 - Glarysoft Ltd) Glary Utilities 5.19 (HKLM-x32\...\Glary Utilities 5) (Version: 5.19.0.32 - Glarysoft Ltd) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 41.0.2272.101 - Google Inc.) Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.6227.252 - Google Inc.) Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3347 - Intel Corporation) Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.550 - Oracle) Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation) Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation) Java 8 Update 40 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation) McAfee Internet Security Suite (HKLM-x32\...\MSC) (Version: 13.6.1492 - McAfee, Inc.) McAfee Virtual Technician (HKLM-x32\...\McAfee Virtual Technician) (Version: 7.1.0.2483 - McAfee, Inc.) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{402ED4A1-8F5B-387A-8688-997ABF58B8F2}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Mozilla Firefox 36.0.4 (x86 de) (HKLM-x32\...\Mozilla Firefox 36.0.4 (x86 de)) (Version: 36.0.4 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 36.0 - Mozilla) MyFreeCodec (HKU\S-1-5-21-702454674-806779369-458765198-1000\...\MyFreeCodec) (Version: - ) Netzwerkhandbuch EPSON XP-402 403 405 406 Series (HKLM-x32\...\EPSON XP-402 403 405 406 Series Netg) (Version: - ) Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.0.13074_14 - Samsung Electronics Co., Ltd.) Samsung Kies (x32 Version: 2.6.0.13074_14 - Samsung Electronics Co., Ltd.) Hidden SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.45.0 - SAMSUNG Electronics Co., Ltd.) Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) Software Updater (HKLM-x32\...\{FA7EE274-7370-43B7-9A45-A39B17CCCDC5}) (Version: 4.3.3 - SEIKO EPSON CORPORATION) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) Widevine Media Optimizer IE 6.0.0 (HKU\S-1-5-21-702454674-806779369-458765198-1000\...\optimizer_ie) (Version: 6.0.0.12757 - Widevine Technologies) Windows Driver Package - Garmin (grmnusb) GARMIN Devices (04/19/2012 2.3.1.0) (HKLM\...\98157A226B40B173301B0F53C8E98C47805D5152) (Version: 04/19/2012 2.3.1.0 - Garmin) Windows-Treiberpaket - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.) Windows-Treiberpaket - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-702454674-806779369-458765198-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Roth\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-702454674-806779369-458765198-1000_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Roth\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-702454674-806779369-458765198-1000_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Roth\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-702454674-806779369-458765198-1000_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Roth\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-702454674-806779369-458765198-1000_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Roth\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-702454674-806779369-458765198-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Roth\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-702454674-806779369-458765198-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Roth\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-702454674-806779369-458765198-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Roth\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-702454674-806779369-458765198-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Roth\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-702454674-806779369-458765198-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Roth\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-702454674-806779369-458765198-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Roth\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-702454674-806779369-458765198-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Roth\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-702454674-806779369-458765198-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Roth\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-702454674-806779369-458765198-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Roth\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-702454674-806779369-458765198-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Roth\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-702454674-806779369-458765198-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Roth\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-702454674-806779369-458765198-1000_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Roth\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll No File ==================== Restore Points ========================= 06-03-2015 07:57:58 McAfee Vulnerability Scanner 09-03-2015 11:37:54 Windows Update 13-03-2015 10:39:09 Windows Update 22-03-2015 10:38:18 Geplanter Prüfpunkt ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {10BB687D-9DBA-401B-BB51-00348820C900} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-03] (Google Inc.) Task: {2E9A6F89-C89F-47E7-9407-45C01D5B670B} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-702454674-806779369-458765198-1000Core => C:\Users\Roth\AppData\Local\Google\Update\GoogleUpdate.exe [2012-11-16] (Google Inc.) Task: {547799A9-9660-4DE8-9362-617174BCF8E3} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {6C632253-572C-46C1-A699-C11B01DE9CB6} - System32\Tasks\GoogleUpdateTaskMachineUA1cf96bee52fe971 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-03] (Google Inc.) Task: {7456E8AF-0982-4D53-8C13-785A6D0ED4C2} - System32\Tasks\GU5SkipUAC => C:\Program Files (x86)\Glary Utilities 5\Integrator.exe [2015-02-12] (Glarysoft Ltd) Task: {9ED99572-19B0-4B4C-A955-B05A2479B9B4} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-06] (Adobe Systems Incorporated) Task: {C22BFAF1-4ECF-4464-8230-537C48DC7195} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express Self Updater\ExpressSelfUpdater.exe [2014-12-31] () Task: {CE9CEFDE-14D7-4B57-AD67-9D2B253CE5E2} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-02-20] (Piriform Ltd) Task: {E47AEC88-249B-4E6B-A4FC-EF7BF7E67E7B} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-702454674-806779369-458765198-1000UA => C:\Users\Roth\AppData\Local\Google\Update\GoogleUpdate.exe [2012-11-16] (Google Inc.) Task: {F158ECFF-2952-4EC7-B3A2-F4D68803C07C} - System32\Tasks\GlaryInitialize 5 => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe [2015-02-12] (Glarysoft Ltd) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\GlaryInitialize 5.job => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1cf96bee52fe971.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-702454674-806779369-458765198-1000Core.job => C:\Users\Roth\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-702454674-806779369-458765198-1000UA.job => C:\Users\Roth\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============== 2012-11-15 15:01 - 2009-10-16 18:12 - 00177664 _____ () C:\WINDOWS\system32\spool\PRTPROCS\x64\lxdxdrpp.dll 2012-12-14 02:42 - 2012-12-14 02:42 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2015-02-12 09:07 - 2015-02-12 09:07 - 00080160 _____ () C:\Program Files (x86)\Glary Utilities 5\zlib1.dll 2015-03-04 23:08 - 2015-03-04 23:08 - 00750080 _____ () C:\Users\Roth\AppData\Roaming\Dropbox\bin\libGLESv2.dll 2015-03-23 08:47 - 2015-03-23 08:47 - 00043008 _____ () c:\users\roth\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpiqsrm6.dll 2015-03-04 23:08 - 2015-03-04 23:08 - 00047616 _____ () C:\Users\Roth\AppData\Roaming\Dropbox\bin\libEGL.dll 2015-03-04 23:08 - 2015-03-04 23:08 - 00865280 _____ () C:\Users\Roth\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll 2015-03-04 23:07 - 2015-03-04 23:07 - 00200704 _____ () C:\Users\Roth\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll 2013-07-10 17:07 - 2013-07-10 17:07 - 00756888 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\MSPTLS.DLL ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\WINDOWS\system32\lxdxcomm.dll:Microsoft_Appcompat_ReinstallUpgrade AlternateDataStreams: C:\Users\Roth\Downloads\noname(1).eml:OECustomProperty AlternateDataStreams: C:\Users\Roth\Downloads\noname.eml:OECustomProperty ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver" ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-702454674-806779369-458765198-1000\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg DNS Servers: 192.168.0.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run32: => "KiesTrayAgent" HKU\S-1-5-21-702454674-806779369-458765198-1000\...\StartupApproved\Run: => "GUDelayStartup" HKU\S-1-5-21-702454674-806779369-458765198-1000\...\StartupApproved\Run: => "KiesPreload" HKU\S-1-5-21-702454674-806779369-458765198-1000\...\StartupApproved\Run: => "msdb21a829.exe" ==================== Accounts: ============================= Administrator (S-1-5-21-702454674-806779369-458765198-500 - Administrator - Disabled) Gast (S-1-5-21-702454674-806779369-458765198-501 - Limited - Enabled) HomeGroupUser$ (S-1-5-21-702454674-806779369-458765198-1004 - Limited - Enabled) Roth (S-1-5-21-702454674-806779369-458765198-1000 - Administrator - Enabled) => C:\Users\Roth ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (03/23/2015 10:05:28 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: B138.tmp, Version: 1.0.0.37, Zeitstempel: 0x550fcc00 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00257ac8 ID des fehlerhaften Prozesses: 0xf28 Startzeit der fehlerhaften Anwendung: 0xB138.tmp0 Pfad der fehlerhaften Anwendung: B138.tmp1 Pfad des fehlerhaften Moduls: B138.tmp2 Berichtskennung: B138.tmp3 Vollständiger Name des fehlerhaften Pakets: B138.tmp4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: B138.tmp5 Error: (03/22/2015 07:04:06 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: 742F.tmp, Version: 1.0.0.66, Zeitstempel: 0x550ede21 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00569a70 ID des fehlerhaften Prozesses: 0x1b8c Startzeit der fehlerhaften Anwendung: 0x742F.tmp0 Pfad der fehlerhaften Anwendung: 742F.tmp1 Pfad des fehlerhaften Moduls: 742F.tmp2 Berichtskennung: 742F.tmp3 Vollständiger Name des fehlerhaften Pakets: 742F.tmp4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: 742F.tmp5 Error: (03/22/2015 05:05:23 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 2422 Error: (03/22/2015 05:05:23 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 2422 Error: (03/22/2015 05:05:23 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (03/22/2015 05:05:22 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1188 Error: (03/22/2015 05:05:22 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1188 Error: (03/22/2015 05:05:22 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (03/22/2015 02:34:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: B678.tmp, Version: 1.0.0.65, Zeitstempel: 0x550e8cf8 Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00289a98 ID des fehlerhaften Prozesses: 0x2014 Startzeit der fehlerhaften Anwendung: 0xB678.tmp0 Pfad der fehlerhaften Anwendung: B678.tmp1 Pfad des fehlerhaften Moduls: B678.tmp2 Berichtskennung: B678.tmp3 Vollständiger Name des fehlerhaften Pakets: B678.tmp4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: B678.tmp5 Error: (03/22/2015 10:18:50 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: 8EFC.tmp, Version: 1.0.0.62, Zeitstempel: 0x550e6aed Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00306f78 ID des fehlerhaften Prozesses: 0x1704 Startzeit der fehlerhaften Anwendung: 0x8EFC.tmp0 Pfad der fehlerhaften Anwendung: 8EFC.tmp1 Pfad des fehlerhaften Moduls: 8EFC.tmp2 Berichtskennung: 8EFC.tmp3 Vollständiger Name des fehlerhaften Pakets: 8EFC.tmp4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: 8EFC.tmp5 System errors: ============= Error: (03/23/2015 09:28:44 AM) (Source: DCOM) (EventID: 10010) (User: Medion) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (03/23/2015 09:28:14 AM) (Source: DCOM) (EventID: 10010) (User: Medion) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Error: (03/23/2015 08:46:21 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst ShellHWDetection erreicht. Error: (03/23/2015 08:45:51 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst iphlpsvc erreicht. Error: (03/23/2015 08:45:12 AM) (Source: DCOM) (EventID: 10016) (User: Medion) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}MedionRothS-1-5-21-702454674-806779369-458765198-1000LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (03/23/2015 08:45:11 AM) (Source: DCOM) (EventID: 10016) (User: Medion) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}MedionRothS-1-5-21-702454674-806779369-458765198-1000LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (03/23/2015 08:45:11 AM) (Source: DCOM) (EventID: 10016) (User: Medion) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}MedionRothS-1-5-21-702454674-806779369-458765198-1000LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (03/23/2015 08:45:11 AM) (Source: DCOM) (EventID: 10016) (User: Medion) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}MedionRothS-1-5-21-702454674-806779369-458765198-1000LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (03/23/2015 08:45:11 AM) (Source: DCOM) (EventID: 10016) (User: Medion) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}MedionRothS-1-5-21-702454674-806779369-458765198-1000LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (03/23/2015 08:45:11 AM) (Source: DCOM) (EventID: 10016) (User: Medion) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}MedionRothS-1-5-21-702454674-806779369-458765198-1000LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Microsoft Office Sessions: ========================= Error: (11/13/2014 09:58:03 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6705.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 260714 seconds with 840 seconds of active time. This session ended with a crash. Error: (06/02/2014 08:14:09 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6695.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 46318 seconds with 180 seconds of active time. This session ended with a crash. CodeIntegrity Errors: =================================== Date: 2013-11-10 12:22:02.405 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\Definition Updates\{BC93A257-BE1B-473A-AE46-22F15DE0A4E6}\mpengine.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2013-11-10 12:22:00.701 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\Definition Updates\{5F5092A4-CB60-4EF5-A53E-51DE45ECFF7A}\mpengine.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3-2350M CPU @ 2.30GHz Percentage of memory in use: 46% Total physical RAM: 3990.83 MB Available physical RAM: 2120.23 MB Total Pagefile: 4694.83 MB Available Pagefile: 2626.86 MB Total Virtual: 131072 MB Available Virtual: 131071.78 MB ==================== Drives ================================ Drive c: (Boot) (Fixed) (Total:647.54 GB) (Free:589.64 GB) NTFS Drive d: (Recover) (Fixed) (Total:50 GB) (Free:10.1 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 698.6 GB) (Disk ID: 2BD2C32A) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=647.5 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=50 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=1 GB) - (Type=12) ==================== End Of Log ============================ |
26.03.2015, 06:46 | #10 |
/// the machine /// TB-Ausbilder | Meldung , dass mein Rechner nicht mehr gesichert sei Lade Dir bitte von hier Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
27.03.2015, 15:48 | #11 |
| Meldung , dass mein Rechner nicht mehr gesichert sei Hi Schrauber, ich habe die Ask Toolbar mit Hilfe des Revo Uninstallers entfernt. bei der MBAM, , AdwCleaner und JRT habe ich die Befürchtung, dass ich die Programme nicht mehr entfernen kann, weil ich ja zu dem (von mir monatlich bezahlten) McAfee zurückkehren möchte. Mit beenden der McAfee meinst Du da deaktivieren? Glaubst Du, dass die kostenlose MBAM, AdwCleaner und JRT, besser funktionieren als das kostenpflichtige McAfee? McAfee hat nämlich gerade den routinemäßigen Scann gestartet und 10 Viren gefunden. Gruß Roth Vielen herzlichen Dank für Deine freundliche Hilfe. Ich habe mittlerweile einen kompetenten Mitarbeiter von McAfee gefunden, der mir per Fernübernahme den Rechner gereinigt hat. Im Übrigen habe ich gesehen, dass er tatsächlich unter anderem die gleichen Tools benutzt hat, wie du sie mir auch empfohlen hast. Jedenfalls ist diese Angelegenheit damit erledigt. Nochmals herzlichen Dank. Roth |
28.03.2015, 03:08 | #12 |
/// the machine /// TB-Ausbilder | Meldung , dass mein Rechner nicht mehr gesichert sei KLar benutzt er die auch, sind ja auch spezielle Tools für Adware
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
28.03.2015, 08:54 | #13 |
| Meldung , dass mein Rechner nicht mehr gesichert sei Nochmals besten Dank M.f.G. Roth |
28.03.2015, 12:40 | #14 |
/// the machine /// TB-Ausbilder | Meldung , dass mein Rechner nicht mehr gesichert sei Gern Geschehen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Meldung , dass mein Rechner nicht mehr gesichert sei |
angezeigt, anruf, button, deaktiviert, erhalte, erhalten, firewall, gen, heute, mcafee, mcafee firewall, mcafee virus, meldung, nicht mehr, programm, rechner, schei, virenprogramm, virenprogramm deaktiviert |