Guten Tag zusammen,

nach Start des PCs konnte keine Verbindung mit dem Internet hergestellt werden. Ich fand heraus das ein Proxyserver mit Adresse aktiviert ist und sich nicht abschalten lässt.

Habe das Problem gegoogelt und anschließend Malwarebyte per USB-Stick auf den PC gezogen. Nach mehrmaligen ausführen der Software ließ sich der Proxyserver wieder deaktivieren.

Um mein System wieder restlos Virenfrei zu bekommen habe ich folgende Programme gedownloadet und ausgeführt:
Malewarebytes
AdwCleaner
Junkware Removal Tool

Ich bin mir aber unsicher ob ich alle Schädlinge finden und entfernen konnte.

Meine bisherigen Logs kann ich leider nicht Posten, da die Dateien trotz Code Funktion zu Groß sind.

Grüße
Richard

Edit: Ich möchte die Logs nicht gleich als Antwort erstellen da das Thema dann vielleicht untergeht.
hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: ![]() (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
Hi Schrauber,
__________________FRST FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-04-2015 Ran by Richi (administrator) on DAMPFWALZE on 13-04-2015 16:57:20 Running from C:\Users\Richi\Desktop Loaded Profiles: Richi (Available profiles: Richi) Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\\N360.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\\N360.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe (Spotify Ltd) C:\Users\Richi\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Sitecom Europe BV) C:\Program Files (x86)\Sitecom\Common\RaUI.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9654.17499_x64__8wekyb3d8bbwe\glcnd.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe (Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\ielowutil.exe () C:\Users\Richi\Desktop\Defogger.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2013-10-24] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2673296 2015-03-28] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [323312 2014-12-10] (Intel Corporation) HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [13318424 2015-03-12] (Logitech Inc.) HKU\S-1-5-21-1206241334-3998519493-1326637554-1001\...\Run: [Steam] => D:\Steam\steam.exe [2889408 2015-04-09] (Valve Corporation) HKU\S-1-5-21-1206241334-3998519493-1326637554-1001\...\Run: [Spotify Web Helper] => C:\Users\Richi\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2018360 2015-04-11] (Spotify Ltd) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Sitecom Wireless Utility.lnk ShortcutTarget: Sitecom Wireless Utility.lnk -> C:\Program Files (x86)\Sitecom\Common\RaUI.exe (Sitecom Europe BV) ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File ShellIconOverlayIdentifiers: [OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files (x86)\Norton 360\Engine64\\buShell.dll (Symantec Corporation) ShellIconOverlayIdentifiers: [OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files (x86)\Norton 360\Engine64\\buShell.dll (Symantec Corporation) ShellIconOverlayIdentifiers: [OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files (x86)\Norton 360\Engine64\\buShell.dll (Symantec Corporation) ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1206241334-3998519493-1326637554-1001 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = BHO: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton 360\Engine64\\coIEPlg.dll [2014-09-20] (Symantec Corporation) BHO-x32: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton 360\Engine\\coIEPlg.dll [2014-09-20] (Symantec Corporation) BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files (x86)\Norton 360\Engine\\IPS\IPSBHO.DLL [2014-08-26] (Symantec Corporation) Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine64\\coIEPlg.dll [2014-09-20] (Symantec Corporation) Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\\coIEPlg.dll [2014-09-20] (Symantec Corporation) Tcpip\Parameters: [DhcpNameServer] StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-11-10] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-11-10] (Intel Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2013-02-05] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-03-13] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-03-13] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll [2015-04-12] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll [2015-04-12] (Google Inc.) FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_21.6.0.32\IPSFF FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_21.6.0.32\IPSFF [2015-04-12] FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_21.6.0.32\coFFPlgn FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_21.6.0.32\coFFPlgn [2015-04-12] Chrome: ======= CHR Profile: C:\Users\Richi\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (SAO Theme 1920x1080) - C:\Users\Richi\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgikfepnnphbmgngmpiflajcbmoomnll [2015-04-12] CHR Extension: (Norton Identity Safe) - C:\Users\Richi\AppData\Local\Google\Chrome\User Data\Default\Extensions\iikflkcanblccfahdhdonehdalibjnif [2015-04-12] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Richi\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-12] CHR Extension: (Google Wallet) - C:\Users\Richi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-12] CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - https://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - https://clients2.google.com/service/update2/crx ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152144 2015-03-28] (NVIDIA Corporation) S2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [19184 2014-12-10] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation) S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [158496 2014-11-10] (Intel Corporation) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1080120 2015-03-17] (Malwarebytes Corporation) R2 N360; C:\Program Files (x86)\Norton 360\Engine\\N360.exe [265040 2014-09-21] (Symantec Corporation) S2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1878672 2015-03-28] (NVIDIA Corporation) S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [22995600 2015-03-28] (NVIDIA Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1931632 2015-04-11] (Electronic Arts) S2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75136 2015-04-11] () S2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [189248 2015-04-11] () S2 RalinkRegistryWriter; C:\Program Files (x86)\Sitecom\Common\RaRegistry.exe [185632 2009-10-20] (Ralink Technology, Corp.) S2 RalinkRegistryWriter64; C:\Program Files (x86)\Sitecom\Common\RaRegistry64.exe [212256 2009-10-20] (Ralink Technology, Corp.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R1 BHDrvx64; C:\Program Files (x86)\Norton 360\NortonData\\Definitions\BASHDefs\20140801.001\BHDrvx64.sys [1530160 2014-08-26] (Symantec Corporation) R1 ccSet_N360; C:\Windows\system32\drivers\N360x64\1506000.020\ccSetx64.sys [162392 2014-02-21] (Symantec Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [487216 2014-11-25] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [142640 2014-11-25] (Symantec Corporation) R1 IDSVia64; C:\Program Files (x86)\Norton 360\NortonData\\Definitions\IPSDefs\20140717.001\IDSVia64.sys [525016 2014-08-26] (Symantec Corporation) S3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [164720 2012-07-25] (Qualcomm Atheros, Inc.) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-03-17] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-03-17] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\System32\drivers\TeeDriverx64.sys [129312 2014-11-10] (Intel Corporation) R3 NAVENG; C:\Program Files (x86)\Norton 360\NortonData\\Definitions\VirusDefs\20150411.001\ENG64.SYS [129752 2014-11-15] (Symantec Corporation) R3 NAVEX15; C:\Program Files (x86)\Norton 360\NortonData\\Definitions\VirusDefs\20150411.001\EX64.SYS [2137304 2014-11-15] (Symantec Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-03-28] (NVIDIA Corporation) S3 NVSWCFilter; C:\Windows\System32\drivers\nvswcfilter.sys [19616 2015-03-13] (Windows (R) Win 7 DDK provider) R3 NVVADARM; C:\Windows\system32\drivers\nvvadarm.sys [40136 2015-03-13] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2015-03-13] (NVIDIA Corporation) R1 SRTSP; C:\Windows\system32\drivers\N360x64\1506000.020\SRTSP64.SYS [876248 2014-08-26] (Symantec Corporation) R1 SRTSPX; C:\Windows\system32\drivers\N360x64\1506000.020\SRTSPX64.SYS [37592 2014-08-26] (Symantec Corporation) R0 SymDS; C:\Windows\System32\drivers\N360x64\1506000.020\SYMDS64.SYS [493656 2014-08-26] (Symantec Corporation) R0 SymEFA; C:\Windows\System32\drivers\N360x64\1506000.020\SYMEFA64.SYS [1148120 2014-08-26] (Symantec Corporation) S0 SymELAM; C:\Windows\System32\drivers\N360x64\1506000.020\SymELAM.sys [23568 2014-08-26] (Symantec Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2015-04-12] (Symantec Corporation) R1 SymIRON; C:\Windows\system32\drivers\N360x64\1506000.020\Ironx64.SYS [266968 2014-08-06] (Symantec Corporation) R1 SymNetS; C:\Windows\system32\drivers\N360x64\1506000.020\SYMNETS.SYS [593112 2014-08-26] (Symantec Corporation) S3 VUSB3HUB; C:\Windows\System32\drivers\ViaHub3.sys [227840 2013-09-25] (VIA Technologies, Inc.) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation) S3 xhcdrv; C:\Windows\System32\drivers\xhcdrv.sys [297472 2013-09-25] (VIA Technologies, Inc.) R3 xusb22; C:\Windows\System32\drivers\xusb22.sys [87040 2013-08-22] (Microsoft Corporation) S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-04-13 16:57 - 2015-04-13 16:57 - 00015396 _____ () C:\Users\Richi\Desktop\FRST.txt 2015-04-13 16:57 - 2015-04-13 16:57 - 00000000 ____D () C:\FRST 2015-04-13 16:56 - 2015-04-13 16:56 - 02096640 _____ (Farbar) C:\Users\Richi\Desktop\frst64.exe 2015-04-13 16:54 - 2015-04-13 16:54 - 00050477 _____ () C:\Users\Richi\Desktop\Defogger.exe 2015-04-13 16:54 - 2015-04-13 16:54 - 00000244 _____ () C:\Users\Richi\Desktop\defogger_enable.log 2015-04-13 16:54 - 2015-04-13 16:54 - 00000000 _____ () C:\Users\Richi\defogger_reenable 2015-04-13 16:53 - 2015-04-13 16:54 - 00000472 _____ () C:\Users\Richi\Desktop\defogger_disable.log 2015-04-12 22:06 - 2015-04-12 22:06 - 00000614 _____ () C:\Users\Richi\Desktop\JRT.txt 2015-04-12 22:05 - 2015-04-12 22:05 - 02686959 _____ (Thisisu) C:\Users\Richi\Downloads\JRT_6.5.3.exe 2015-04-12 22:05 - 2015-04-12 22:05 - 00000207 _____ () C:\Windows\tweaking.com-regbackup-DAMPFWALZE-Windows-8.1-(64-bit).dat 2015-04-12 22:05 - 2015-04-12 22:05 - 00000000 ____D () C:\RegBackup 2015-04-12 22:01 - 2015-04-12 22:01 - 00000000 ____D () C:\AdwCleaner 2015-04-12 22:00 - 2015-04-12 22:00 - 02217984 _____ () C:\Users\Richi\Downloads\adwcleaner_4.201.exe 2015-04-12 21:30 - 2015-04-12 22:24 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-04-12 21:30 - 2015-04-12 21:30 - 00001118 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-04-12 21:30 - 2015-04-12 21:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-04-12 21:30 - 2015-04-12 21:30 - 00000000 ____D () C:\ProgramData\Malwarebytes 2015-04-12 21:30 - 2015-04-12 21:30 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-04-12 21:30 - 2015-03-17 06:15 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-04-12 21:30 - 2015-03-17 06:15 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-04-12 21:30 - 2015-03-17 06:15 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2015-04-12 20:11 - 2015-04-12 20:11 - 00000000 ____D () C:\ProgramData\Ralink 2015-04-12 20:09 - 2015-04-12 20:09 - 00000000 ____D () C:\Users\Richi\AppData\Roaming\InstallShield 2015-04-12 20:09 - 2015-04-12 20:09 - 00000000 ____D () C:\ProgramData\Sitecom Driver 2015-04-12 20:09 - 2015-04-12 20:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sitecom Wireless 2015-04-12 20:09 - 2015-04-12 20:09 - 00000000 ____D () C:\Program Files (x86)\Sitecom 2015-04-12 20:09 - 2015-04-12 20:09 - 00000000 ____D () C:\Program Files (x86)\Cisco 2015-04-12 20:09 - 2009-10-20 13:13 - 02056192 _____ (Ralink Technology, Corp.) C:\Windows\system32\RaCertMgr.dll 2015-04-12 20:09 - 2009-10-20 13:13 - 01585152 _____ (Ralink Technology, Corp.) C:\Windows\SysWOW64\RaCertMgr.dll 2015-04-12 20:09 - 2009-10-20 13:13 - 01055232 _____ (Ralink Technology, Corp.) C:\Windows\SysWOW64\RAIHV.dll 2015-04-12 20:09 - 2009-10-20 13:13 - 01055232 _____ (Ralink Technology, Corp.) C:\Windows\system32\RAIHV.dll 2015-04-12 20:09 - 2009-10-20 13:13 - 00104448 _____ (Ralink Technology, Corp.) C:\Windows\SysWOW64\RAEXTUI.dll 2015-04-12 20:09 - 2009-10-20 13:13 - 00104448 _____ (Ralink Technology, Corp.) C:\Windows\system32\RAEXTUI.dll 2015-04-12 20:08 - 2010-12-28 19:43 - 00014051 ____R () C:\Windows\SysWOW64\RaCoInst.dat 2015-04-12 20:08 - 2010-12-28 19:43 - 00014051 ____R () C:\Windows\system32\RaCoInst.dat 2015-04-12 15:39 - 2015-04-12 15:39 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2015-04-12 12:02 - 2015-04-12 12:02 - 00000000 ____D () C:\Users\Richi\Documents\Witcher 2 2015-04-12 12:02 - 2015-04-12 12:02 - 00000000 ____D () C:\Users\Richi\Documents\Arbeit 2015-04-12 12:02 - 2014-01-29 23:07 - 00008428 _____ () C:\Users\Richi\Documents\Rust Base Holz2.ods 2015-04-12 12:02 - 2014-01-27 18:43 - 00012755 _____ () C:\Users\Richi\Documents\Rust Stock 4-6.xlsx 2015-04-12 12:02 - 2014-01-26 23:30 - 00008428 _____ () C:\Users\Richi\Documents\Rust Base Holz.ods 2015-04-12 12:02 - 2012-12-30 15:22 - 00015990 _____ () C:\Users\Richi\Documents\DA Origins Geschenke.ods 2015-04-12 12:01 - 2015-04-12 12:01 - 00000000 ____D () C:\Users\Richi\Documents\The Witcher 2015-04-12 12:01 - 2015-04-12 12:01 - 00000000 ____D () C:\Users\Richi\Documents\Telltale Games 2015-04-12 12:01 - 2015-04-12 12:01 - 00000000 ____D () C:\Users\Richi\Documents\Electronic Arts 2015-04-12 12:00 - 2015-04-12 12:01 - 00000000 ____D () C:\Users\Richi\Documents\BioWare 2015-04-12 11:32 - 2015-04-12 11:32 - 00000000 ____D () C:\Users\Richi\AppData\Local\openvr 2015-04-12 11:31 - 2015-04-12 21:59 - 00000000 ____D () C:\Users\Richi\AppData\Roaming\TS3Client 2015-04-12 11:31 - 2015-04-12 11:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2015-04-12 11:29 - 2015-04-12 11:30 - 30014480 _____ (TeamSpeak Systems GmbH) C:\Users\Richi\Downloads\TeamSpeak3-Client-win64-3.0.16.exe 2015-04-12 04:07 - 2015-04-12 04:07 - 00000000 ____D () C:\Windows\System32\Tasks\Norton 360 2015-04-12 04:06 - 2015-04-12 04:06 - 00177752 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS 2015-04-12 04:06 - 2015-04-12 04:06 - 00008222 _____ () C:\Windows\system32\Drivers\SYMEVENT64x86.CAT 2015-04-12 04:06 - 2015-04-12 04:06 - 00003206 _____ () C:\Windows\System32\Tasks\Norton WSC Integration 2015-04-12 04:06 - 2015-04-12 04:06 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton 360 2015-04-12 04:06 - 2015-04-12 04:06 - 00000000 ____D () C:\Windows\system32\Drivers\N360x64 2015-04-12 04:06 - 2015-04-12 04:06 - 00000000 ____D () C:\Users\Richi\Documents\Symantec 2015-04-12 04:06 - 2015-04-12 04:06 - 00000000 ____D () C:\Program Files\Common Files\Symantec Shared 2015-04-12 04:06 - 2015-04-12 04:06 - 00000000 ____D () C:\Program Files (x86)\Norton 360 2015-04-12 04:02 - 2015-04-12 04:06 - 00000000 ____D () C:\ProgramData\Norton 2015-04-12 04:02 - 2015-04-12 04:02 - 01021968 _____ (Symantec Corporation) C:\Users\Richi\Downloads\NortonN360Downloader.exe 2015-04-12 04:02 - 2015-04-12 04:02 - 00033280 ___SH () C:\Users\Richi\Desktop\Thumbs.db 2015-04-12 04:02 - 2015-04-12 04:02 - 00000000 ____D () C:\Users\Public\Downloads\Norton 2015-04-12 02:17 - 2015-04-12 02:17 - 00000004 _____ () C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7 2015-04-12 01:17 - 2015-04-12 01:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-04-12 01:16 - 2015-04-13 16:35 - 00001150 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-04-12 01:16 - 2015-04-13 16:33 - 00001146 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-04-12 01:16 - 2015-04-12 01:29 - 00004122 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-04-12 01:16 - 2015-04-12 01:29 - 00003886 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-04-12 01:16 - 2015-04-12 01:17 - 00000000 ____D () C:\Users\Richi\AppData\Local\Google 2015-04-12 01:16 - 2015-04-12 01:17 - 00000000 ____D () C:\Program Files (x86)\Google 2015-04-12 01:11 - 2015-04-12 01:21 - 00000000 ____D () C:\Program Files (x86)\Hearthstone 2015-04-12 01:11 - 2015-04-12 01:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone 2015-04-11 23:47 - 2015-04-11 23:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III 2015-04-11 23:44 - 2015-04-11 23:44 - 00000000 ____D () C:\Users\Richi\AppData\Roaming\NVIDIA 2015-04-11 23:17 - 2015-04-11 23:45 - 00000000 ____D () C:\Users\Richi\AppData\Roaming\.minecraft 2015-04-11 23:17 - 2015-04-11 23:17 - 00000000 ____D () C:\Users\Richi\AppData\Roaming\java 2015-04-11 23:16 - 2015-04-12 01:10 - 00000000 ____D () C:\Program Files (x86)\Diablo III 2015-04-11 23:16 - 2015-04-11 23:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft 2015-04-11 22:54 - 2015-04-12 01:26 - 00000000 ____D () C:\Users\Richi\AppData\Local\Battle.net 2015-04-11 22:54 - 2015-04-11 23:12 - 00000000 ____D () C:\Users\Richi\AppData\Roaming\Battle.net 2015-04-11 22:54 - 2015-04-11 22:54 - 00000000 ____D () C:\Users\Richi\AppData\Local\Blizzard Entertainment 2015-04-11 22:54 - 2015-04-11 22:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2015-04-11 22:54 - 2015-04-11 22:54 - 00000000 ____D () C:\ProgramData\Blizzard Entertainment 2015-04-11 22:54 - 2015-04-11 22:54 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2015-04-11 22:50 - 2015-04-11 22:50 - 00000000 ____D () C:\ProgramData\Battle.net 2015-04-11 21:59 - 2015-04-11 21:59 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2015-04-11 21:55 - 2015-04-11 21:55 - 00000000 ____D () C:\Users\Richi\Documents\nbgi 2015-04-11 21:34 - 2015-04-11 21:34 - 00447752 _____ (On2.com) C:\Windows\SysWOW64\vp6vfw.dll 2015-04-11 21:02 - 2015-04-11 21:35 - 00000000 ____D () C:\Program Files (x86)\Origin Games 2015-04-11 20:00 - 2015-04-12 12:01 - 00000000 ____D () C:\Users\Richi\Documents\My Games 2015-04-11 19:59 - 2015-04-11 19:59 - 00000000 ____D () C:\ProgramData\Stardock 2015-04-11 19:59 - 2015-04-11 19:59 - 00000000 ____D () C:\ProgramData\Ironclad Games 2015-04-11 19:58 - 2015-04-11 19:58 - 00000000 ____D () C:\Users\Richi\AppData\Roaming\LolClient 2015-04-11 19:56 - 2015-04-11 19:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-04-11 19:53 - 2015-04-11 21:02 - 00189248 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2015-04-11 19:53 - 2015-04-11 21:02 - 00189248 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2015-04-11 19:53 - 2015-04-11 21:02 - 00075136 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2015-04-11 19:15 - 2015-04-11 19:57 - 00000000 ____D () C:\Users\Richi\AppData\Roaming\Origin 2015-04-11 19:15 - 2015-04-11 19:55 - 00000000 ____D () C:\Users\Richi\AppData\Local\Origin 2015-04-11 19:14 - 2015-04-12 12:15 - 00000000 ____D () C:\ProgramData\Origin 2015-04-11 19:14 - 2015-04-11 19:15 - 00000000 ____D () C:\Program Files (x86)\Origin 2015-04-11 19:14 - 2015-04-11 19:14 - 00000000 ____D () C:\ProgramData\Electronic Arts 2015-04-11 19:11 - 2015-04-13 16:43 - 00000000 ____D () C:\Users\Richi\AppData\Local\Spotify 2015-04-11 19:11 - 2015-04-11 19:11 - 00001839 _____ () C:\Users\Richi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2015-04-11 19:10 - 2015-04-13 16:43 - 00000000 ____D () C:\Users\Richi\AppData\Roaming\Spotify 2015-04-11 19:07 - 2015-04-12 11:31 - 00000000 ____D () C:\Program Files (x86)\Teamspeak 2015-04-11 18:59 - 2015-04-11 18:59 - 00000000 ____D () C:\ProgramData\Riot Games 2015-04-11 18:57 - 2015-04-11 20:00 - 00000000 ____D () C:\Program Files (x86)\Riot Games 2015-04-11 18:51 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2015-04-11 18:51 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2015-04-11 18:51 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2015-04-11 18:43 - 2015-04-11 18:58 - 00000000 ____D () C:\Users\Richi\AppData\Roaming\Riot Games 2015-04-11 18:24 - 2015-04-11 18:24 - 00000000 ____D () C:\Users\Richi\AppData\Roaming\Macromedia 2015-04-11 18:24 - 2015-04-11 18:24 - 00000000 ____D () C:\Users\Richi\AppData\Local\Steam 2015-04-11 18:23 - 2015-04-11 18:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2015-04-11 18:22 - 2015-04-11 18:23 - 01142128 _____ () C:\Users\Richi\Downloads\SteamSetup.exe 2015-04-11 18:14 - 2015-04-11 18:14 - 00000000 ____D () C:\Users\Richi\AppData\Local\Logitech 2015-04-11 18:14 - 2015-04-11 18:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech 2015-04-11 18:14 - 2015-04-11 18:14 - 00000000 ____D () C:\ProgramData\LogiShrd 2015-04-11 18:14 - 2015-04-11 18:14 - 00000000 ____D () C:\ProgramData\Apple 2015-04-11 18:14 - 2015-04-11 18:14 - 00000000 ____D () C:\Program Files\Logitech Gaming Software 2015-04-11 18:13 - 2015-04-11 18:13 - 00000000 ____D () C:\Users\Richi\AppData\Roaming\Logitech 2015-04-11 18:13 - 2015-04-11 18:13 - 00000000 ____D () C:\Users\Richi\AppData\Roaming\Logishrd 2015-04-11 18:08 - 2015-04-13 16:52 - 00003938 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{6C4E36DB-6998-40F7-BA8E-5BF2A64F237A} 2015-04-11 18:07 - 2015-04-11 18:07 - 00003100 _____ () C:\Windows\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1206241334-3998519493-1326637554-1001 2015-04-11 18:06 - 2015-04-11 18:06 - 00000000 ___RD () C:\Users\Richi\SkyDrive 2015-04-11 18:06 - 2015-04-11 18:06 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive 2015-04-11 18:00 - 2015-04-12 22:20 - 00003600 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1206241334-3998519493-1326637554-1001 2015-04-11 17:56 - 2015-04-11 17:56 - 00000000 ____D () C:\Users\Richi\AppData\Roaming\Intel Corporation 2015-04-11 17:54 - 2015-04-13 16:54 - 00000000 ____D () C:\Users\Richi 2015-04-11 17:54 - 2015-04-12 22:01 - 00001007 _____ () C:\Users\Richi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-04-11 17:54 - 2015-04-11 17:59 - 00000000 ____D () C:\Users\Richi\AppData\Local\NVIDIA 2015-04-11 17:54 - 2015-04-11 17:58 - 00000000 ____D () C:\Users\Richi\AppData\Local\NVIDIA Corporation 2015-04-11 17:54 - 2015-04-11 17:55 - 00000000 ____D () C:\Users\Richi\AppData\Local\Packages 2015-04-11 17:54 - 2015-04-11 17:54 - 00000020 ___SH () C:\Users\Richi\ntuser.ini 2015-04-11 17:54 - 2015-04-11 17:54 - 00000000 _SHDL () C:\Users\Richi\Vorlagen 2015-04-11 17:54 - 2015-04-11 17:54 - 00000000 _SHDL () C:\Users\Richi\Startmenü 2015-04-11 17:54 - 2015-04-11 17:54 - 00000000 _SHDL () C:\Users\Richi\Netzwerkumgebung 2015-04-11 17:54 - 2015-04-11 17:54 - 00000000 _SHDL () C:\Users\Richi\Lokale Einstellungen 2015-04-11 17:54 - 2015-04-11 17:54 - 00000000 _SHDL () C:\Users\Richi\Eigene Dateien 2015-04-11 17:54 - 2015-04-11 17:54 - 00000000 _SHDL () C:\Users\Richi\Druckumgebung 2015-04-11 17:54 - 2015-04-11 17:54 - 00000000 _SHDL () C:\Users\Richi\Documents\Eigene Musik 2015-04-11 17:54 - 2015-04-11 17:54 - 00000000 _SHDL () C:\Users\Richi\Documents\Eigene Bilder 2015-04-11 17:54 - 2015-04-11 17:54 - 00000000 _SHDL () C:\Users\Richi\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-04-11 17:54 - 2015-04-11 17:54 - 00000000 _SHDL () C:\Users\Richi\AppData\Local\Verlauf 2015-04-11 17:54 - 2015-04-11 17:54 - 00000000 _SHDL () C:\Users\Richi\AppData\Local\Anwendungsdaten 2015-04-11 17:54 - 2015-04-11 17:54 - 00000000 _SHDL () C:\Users\Richi\Anwendungsdaten 2015-04-11 17:54 - 2015-04-11 17:54 - 00000000 ____D () C:\Windows\System32\Tasks\WPD 2015-04-11 17:54 - 2015-04-11 17:54 - 00000000 ____D () C:\Users\Richi\AppData\Roaming\Adobe 2015-04-11 17:54 - 2015-04-11 17:54 - 00000000 ____D () C:\Users\Richi\AppData\Local\VirtualStore 2015-04-11 17:54 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Richi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-04-11 17:54 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Richi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-04-11 17:54 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Richi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-04-11 17:54 - 2013-08-22 17:36 - 00000000 ____D () C:\Users\Richi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-04-11 17:53 - 2015-04-13 16:53 - 01649349 _____ () C:\Windows\WindowsUpdate.log 2015-04-08 15:58 - 2015-04-08 15:58 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2015-04-08 15:58 - 2015-04-08 15:58 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2015-04-08 15:58 - 2015-04-08 15:58 - 00000000 ____D () C:\Program Files\Realtek 2015-04-08 15:58 - 2015-04-08 15:29 - 00003594 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2126287996-129295774-1086316358-500 2015-04-08 15:58 - 2013-09-10 05:02 - 06217904 ____R (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2015-04-08 15:58 - 2013-09-10 05:02 - 00313520 ____R (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2015-04-08 15:58 - 2013-09-10 05:01 - 01938608 ____R (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2015-04-08 15:58 - 2013-09-10 05:01 - 00260272 ____R (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2015-04-08 15:58 - 2012-08-31 20:18 - 07164176 ____R (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2015-04-08 15:58 - 2012-08-31 20:17 - 00434960 ____R (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2015-04-08 15:58 - 2012-08-31 20:17 - 00141584 ____R (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2015-04-08 15:58 - 2012-08-31 20:17 - 00124176 ____R (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2015-04-08 15:58 - 2012-08-31 20:17 - 00075024 ____R (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Users\Default\Startmenü 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Programme 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\ProgramData\Startmenü 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\ProgramData\Dokumente 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2015-04-08 15:55 - 2015-04-08 15:55 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2015-04-08 15:53 - 2015-04-08 15:53 - 00002324 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1206241334-3998519493-1326637554-500 2015-04-08 15:26 - 2015-04-12 22:04 - 00011724 _____ () C:\Windows\SysWOW64\Gms.log 2015-04-08 15:23 - 2015-04-08 15:23 - 01804472 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2015-04-08 15:23 - 2015-04-08 15:23 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2015-04-08 15:21 - 2015-04-08 15:21 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2015-04-08 15:21 - 2015-04-08 15:21 - 00000000 ____D () C:\ProgramData\Intel 2015-04-08 15:21 - 2015-04-08 15:21 - 00000000 ____D () C:\Program Files (x86)\Intel 2015-04-08 15:14 - 2015-04-12 00:18 - 00000000 ____D () C:\ProgramData\Package Cache 2015-04-08 15:14 - 2015-04-08 15:23 - 00000000 ____D () C:\Program Files\Intel 2015-04-08 15:02 - 2015-04-12 22:02 - 00000000 ____D () C:\ProgramData\NVIDIA 2015-04-08 15:02 - 2015-04-08 15:04 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2015-04-08 15:02 - 2015-04-08 15:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2015-04-08 15:02 - 2015-04-08 15:02 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2015-04-08 15:02 - 2015-03-28 05:44 - 01316000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2015-04-08 15:02 - 2015-03-28 05:44 - 01316000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2015-04-08 15:02 - 2015-03-28 05:43 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2015-04-08 15:02 - 2015-03-28 05:43 - 01570672 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2015-04-08 15:02 - 2015-03-13 21:41 - 00073872 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2015-04-08 15:02 - 2015-03-13 21:41 - 00060560 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2015-04-08 15:02 - 2015-03-13 18:16 - 06861968 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2015-04-08 15:02 - 2015-03-13 18:16 - 03526856 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2015-04-08 15:02 - 2015-03-13 18:16 - 02559808 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2015-04-08 15:02 - 2015-03-13 18:16 - 00935056 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2015-04-08 15:02 - 2015-03-13 18:16 - 00386248 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2015-04-08 15:02 - 2015-03-13 18:16 - 00062608 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2015-04-08 15:02 - 2015-03-13 17:38 - 00622224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2015-04-08 15:02 - 2015-03-11 15:10 - 04246327 _____ () C:\Windows\system32\nvcoproc.bin 2015-04-08 15:01 - 2015-04-08 15:02 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2015-04-08 15:01 - 2015-04-08 15:01 - 00000000 ____D () C:\Program Files (x86)\Futuremark 2015-04-08 15:01 - 2015-03-13 21:41 - 32114888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 25460880 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 24775368 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 20466376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 18580512 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 17258024 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 16022016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 14121624 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 13297144 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 13210080 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 10775080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 10715864 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 10262160 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2015-04-08 15:01 - 2015-03-13 21:41 - 03611792 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 03303448 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 03249352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 02906928 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 01896136 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434788.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvmcvadgenco64.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434788.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 01556624 _____ (NVIDIA Corporation) C:\Windows\system32\nvir3dgenco64.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 01540240 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00997856 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00970384 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00944784 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00930448 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00909512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00878328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00833680 _____ () C:\Windows\system32\nvmcumd.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00496272 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00452424 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstusb.sys 2015-04-08 15:01 - 2015-03-13 21:41 - 00400584 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00390288 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00354112 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00346824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00306208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00195728 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2015-04-08 15:01 - 2015-03-13 21:41 - 00178512 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00164568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00101576 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcaparm.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00040136 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvadarm.sys 2015-04-08 15:01 - 2015-03-13 21:41 - 00038032 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2015-04-08 15:01 - 2015-03-13 21:41 - 00035472 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00032400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00030536 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2015-04-08 15:01 - 2015-03-13 21:41 - 00027441 _____ () C:\Windows\system32\nvinfo.pb 2015-04-08 15:01 - 2015-03-13 21:41 - 00019616 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\nvswcfilter.sys 2015-04-08 15:00 - 2015-04-12 20:09 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2015-04-08 15:00 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2015-04-08 15:00 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2015-04-08 15:00 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2015-04-08 15:00 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2015-04-08 15:00 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2015-04-08 15:00 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2015-04-08 15:00 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2015-04-08 15:00 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2015-04-08 15:00 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2015-04-08 15:00 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2015-04-08 15:00 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2015-04-08 15:00 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2015-04-08 15:00 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2015-04-08 15:00 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2015-04-08 15:00 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2015-04-08 15:00 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2015-04-08 15:00 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2015-04-08 15:00 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2015-04-08 15:00 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2015-04-08 15:00 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2015-04-08 15:00 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2015-04-08 15:00 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2015-04-08 15:00 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2015-04-08 15:00 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2015-04-08 15:00 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2015-04-08 15:00 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2015-04-08 15:00 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2015-04-08 15:00 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2015-04-08 15:00 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2015-04-08 15:00 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2015-04-08 15:00 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2015-04-08 15:00 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2015-04-08 15:00 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2015-04-08 15:00 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2015-04-08 15:00 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2015-04-08 15:00 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2015-04-08 15:00 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2015-04-08 15:00 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2015-04-08 15:00 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2015-04-08 15:00 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2015-04-08 15:00 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2015-04-08 15:00 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2015-04-08 15:00 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2015-04-08 15:00 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2015-04-08 15:00 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2015-04-08 15:00 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2015-04-08 15:00 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2015-04-08 15:00 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2015-04-08 15:00 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2015-04-08 15:00 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2015-04-08 15:00 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2015-04-08 15:00 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2015-04-08 15:00 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2015-04-08 15:00 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2015-04-08 15:00 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2015-04-08 15:00 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2015-04-08 15:00 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2015-04-08 15:00 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2015-04-08 15:00 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2015-04-08 15:00 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2015-04-08 15:00 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2015-04-08 15:00 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2015-04-08 15:00 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2015-04-08 15:00 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2015-04-08 15:00 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2015-04-08 15:00 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2015-04-08 15:00 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2015-04-08 15:00 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2015-04-08 15:00 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2015-04-08 15:00 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2015-04-08 15:00 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2015-04-08 15:00 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2015-04-08 15:00 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2015-04-08 15:00 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2015-04-08 15:00 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2015-04-08 15:00 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2015-04-08 15:00 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2015-04-08 15:00 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2015-04-08 15:00 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2015-04-08 15:00 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2015-04-08 15:00 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2015-04-08 15:00 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2015-04-08 15:00 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2015-04-08 15:00 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2015-04-08 15:00 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2015-04-08 15:00 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2015-04-08 15:00 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2015-04-08 15:00 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2015-04-08 15:00 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2015-04-08 15:00 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2015-04-08 15:00 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2015-04-08 15:00 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2015-04-08 15:00 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2015-04-08 15:00 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2015-04-08 15:00 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2015-04-08 15:00 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2015-04-08 15:00 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2015-04-08 15:00 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2015-04-08 15:00 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2015-04-08 15:00 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2015-04-08 15:00 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2015-04-08 15:00 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2015-04-08 15:00 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2015-04-08 15:00 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2015-04-08 15:00 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2015-04-08 15:00 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2015-04-08 15:00 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2015-04-08 15:00 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2015-04-08 15:00 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2015-04-08 15:00 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2015-04-08 15:00 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2015-04-08 15:00 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2015-04-08 15:00 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2015-04-08 15:00 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2015-04-08 15:00 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2015-04-08 15:00 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2015-04-08 15:00 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2015-04-08 15:00 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2015-04-08 15:00 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2015-04-08 15:00 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2015-04-08 15:00 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2015-04-08 15:00 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2015-04-08 15:00 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2015-04-08 15:00 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2015-04-08 15:00 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2015-04-08 15:00 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2015-04-08 15:00 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2015-04-08 15:00 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2015-04-08 15:00 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2015-04-08 15:00 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2015-04-08 15:00 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2015-04-08 15:00 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2015-04-08 15:00 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2015-04-08 15:00 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2015-04-08 15:00 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2015-04-08 15:00 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2015-04-08 15:00 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2015-04-08 15:00 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2015-04-08 15:00 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2015-04-08 15:00 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2015-04-08 15:00 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2015-04-08 15:00 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2015-04-08 15:00 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2015-04-08 15:00 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2015-04-08 15:00 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2015-04-08 15:00 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2015-04-08 15:00 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2015-04-08 15:00 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2015-04-08 15:00 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2015-04-08 15:00 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2015-04-08 15:00 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2015-04-08 15:00 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2015-04-08 15:00 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2015-04-08 15:00 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2015-04-08 15:00 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2015-04-08 15:00 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2015-04-08 15:00 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2015-04-08 15:00 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2015-04-08 15:00 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2015-04-08 15:00 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2015-04-08 15:00 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2015-04-08 15:00 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2015-04-08 15:00 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2015-04-08 15:00 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2015-04-08 15:00 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2015-03-26 21:14 - 2015-03-26 21:14 - 00005542 _____ () C:\Users\Richi\AppData\Roaming\FROMTE 2015-03-26 21:14 - 2015-03-26 21:14 - 00005542 _____ () C:\Users\Richi\AppData\Roaming\EMJHPJX ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-04-13 16:42 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\system32\NDF 2015-04-13 16:35 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\system32\sru 2015-04-12 22:13 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\AppReadiness 2015-04-12 22:06 - 2013-12-11 13:59 - 01780340 _____ () C:\Windows\system32\PerfStringBackup.INI 2015-04-12 22:06 - 2013-08-23 01:24 - 00765378 _____ () C:\Windows\system32\perfh007.dat 2015-04-12 22:06 - 2013-08-23 01:24 - 00159696 _____ () C:\Windows\system32\perfc007.dat 2015-04-12 22:02 - 2013-12-11 13:45 - 00161130 _____ () C:\Windows\PFRO.log 2015-04-12 22:02 - 2013-08-22 16:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-04-12 21:54 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\System 2015-04-12 21:54 - 2013-08-22 16:45 - 00000000 ____D () C:\Windows\Setup 2015-04-12 21:34 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\Registration 2015-04-12 20:21 - 2013-08-22 15:25 - 00262144 ___SH () C:\Windows\system32\config\BBI 2015-04-12 19:42 - 2013-08-22 16:46 - 00026217 _____ () C:\Windows\setupact.log 2015-04-12 04:06 - 2013-08-22 17:36 - 00000000 ___HD () C:\Windows\ELAMBKUP 2015-04-12 04:06 - 2013-08-22 15:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM 2015-04-12 01:29 - 2013-12-11 14:00 - 00116430 _____ () C:\Windows\DirectX.log 2015-04-12 00:00 - 2013-12-11 13:44 - 00000000 ____D () C:\Windows\Panther 2015-04-11 19:14 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2015-04-11 18:14 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\system32\restore 2015-04-08 15:58 - 2013-08-22 15:36 - 00000000 ____D () C:\Windows\system32\Sysprep 2015-04-08 15:57 - 2013-08-22 16:44 - 00335992 _____ () C:\Windows\system32\FNTCACHE.DAT 2015-04-08 15:55 - 2013-08-22 15:36 - 00000000 __RHD () C:\Users\Default 2015-04-08 15:54 - 2013-12-11 13:45 - 00000000 __SHD () C:\Recovery 2015-04-08 15:54 - 2013-08-22 17:37 - 00003608 _____ () C:\Windows\DtcInstall.log 2015-04-08 15:54 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\system32\Recovery 2015-04-08 15:02 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\Help ==================== Files in the root of some directories ======= 2015-03-26 21:14 - 2015-03-26 21:14 - 0005542 _____ () C:\Users\Richi\AppData\Roaming\EMJHPJX 2015-03-26 21:14 - 2015-03-26 21:14 - 0005542 _____ () C:\Users\Richi\AppData\Roaming\FROMTE 2015-04-08 15:58 - 2015-04-08 15:58 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Some content of TEMP: ==================== C:\Users\Richi\AppData\Local\Temp\Quarantine.exe C:\Users\Richi\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2013-12-11 13:45 ==================== End Of Log ============================ Addition Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-04-2015 Ran by Richi at 2015-04-13 16:57:34 Running from C:\Users\Richi\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Norton 360 Premier Edition (Enabled - Up to date) {D87FA2C0-F526-77B1-D6EC-0EDF3936CEDB} AS: Norton 360 Premier Edition (Enabled - Up to date) {631E4324-D31C-783F-EC5C-35AD42B18466} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Norton 360 Premier Edition (Enabled) {E04423E5-BF49-76E9-FDB3-A7EAC7E589A0} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7 Days to Die (HKLM-x32\...\Steam App 251570) (Version: - The Fun Pimps) Age of Empires II: HD Edition (HKLM-x32\...\Steam App 221380) (Version: - Hidden Path Entertainment, Ensemble Studios) Arma 3 (HKLM-x32\...\Steam App 107410) (Version: - Bohemia Interactive) Audiosurf (HKLM-x32\...\Steam App 12900) (Version: - Dylan Fitterer) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: - Electronic Arts) BioShock Infinite (HKLM-x32\...\Steam App 8870) (Version: - Irrational Games) Borderlands (HKLM-x32\...\Steam App 8980) (Version: - Gearbox Software) Call of Duty: Black Ops (HKLM-x32\...\Steam App 42700) (Version: - Treyarch) Call of Duty: Modern Warfare 2 (HKLM-x32\...\Steam App 10180) (Version: - Infinity Ward) Call of Duty: Modern Warfare 3 (HKLM-x32\...\Steam App 42680) (Version: - Infinity Ward) Chivalry: Medieval Warfare (HKLM-x32\...\Steam App 219640) (Version: - Torn Banner Studios) Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) Company of Heroes (HKLM-x32\...\Steam App 4560) (Version: - Relic Entertainment) Company of Heroes: Opposing Fronts (HKLM-x32\...\Steam App 9340) (Version: - Relic Entertainment) Cossacks II: Napoleonic Wars (HKLM-x32\...\Steam App 115200) (Version: - GSC Game World) Cossacks: Back to War (HKLM-x32\...\Steam App 4850) (Version: - GSC Game World) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve) Crysis® 2 (HKLM-x32\...\{6033673D-2530-4587-8AD0-EB059FC263F9}) (Version: - Electronic Arts) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dark Souls: Prepare to Die Edition (HKLM-x32\...\Steam App 211420) (Version: - FromSoftware) DARK SOULS™ II (HKLM-x32\...\Steam App 236430) (Version: - FromSoftware, Inc) Darksiders (HKLM-x32\...\Steam App 50620) (Version: - Vigil Games) Darksiders II (HKLM-x32\...\Steam App 50650) (Version: - Vigil Games) Day of Defeat: Source (HKLM-x32\...\Steam App 300) (Version: - Valve) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Die*Sims™*3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.42.130 - Electronic Arts) Dishonored (HKLM-x32\...\Steam App 205100) (Version: - Arkane Studios) Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve) Dragon Age: Origins - Ultimate Edition (HKLM-x32\...\Steam App 47810) (Version: - BioWare) Dragon Age™ II (HKLM-x32\...\{4D565319-8B91-41CB-961C-0DDC86101AC5}) (Version: 1.04.8524.0 - Electronic Arts) Dragon Age™: Inquisition (HKLM-x32\...\{DC4C36DC-4E5B-4262-B0C7-157DF534B969}) (Version: - Electronic Arts) Far Cry (HKLM-x32\...\Steam App 13520) (Version: - Crytek Studios) Far Cry 2 (HKLM-x32\...\Steam App 19900) (Version: - Ubisoft Montreal) Far Cry® 3 (HKLM-x32\...\Steam App 220240) (Version: - Ubisoft Montreal, Massive Entertainment, and Ubisoft Shanghai) Fight The Dragon (HKLM-x32\...\Steam App 250560) (Version: - 3 Sprockets) Fotogalerie (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Futuremark SystemInfo (HKLM-x32\...\{BEE64C14-BEF1-4610-8A68-A16EAA47B882}) (Version: 4.17.0 - Futuremark Corporation) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 41.0.2272.118 - Google Inc.) Google Update Helper (x32 Version: - Google Inc.) Hidden Google Update Helper (x32 Version: - Google Inc.) Hidden Half-Life 2: Deathmatch (HKLM-x32\...\Steam App 320) (Version: - Valve) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Homefront (HKLM-x32\...\Steam App 55100) (Version: - Kaos Studios) How to Survive (HKLM-x32\...\Steam App 250400) (Version: - EKO Software) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: - Intel Corporation) Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.26 - Intel(R) Corporation) Hidden Killing Floor (HKLM-x32\...\Steam App 1250) (Version: - Tripwire Interactive) Kingdoms of Amalur: Reckoning™ (HKLM-x32\...\Steam App 102500) (Version: - Big Huge Games) Kingdoms Rise (HKLM-x32\...\Steam App 248630) (Version: - Flyleap Studios Pty. Ltd.) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Logitech Gaming Software 8.58 (HKLM\...\Logitech Gaming Software) (Version: 8.58.183 - Logitech Inc.) Magicka (HKLM-x32\...\Steam App 42910) (Version: - Arrowhead Game Studios) Malwarebytes Anti-Malware Version (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: - Malwarebytes Corporation) Mass Effect (HKLM-x32\...\Steam App 17460) (Version: - BioWare) Mass Effect 2 (HKLM-x32\...\Steam App 24980) (Version: - BioWare) Mass Effect™ 3 (HKLM-x32\...\{534A31BD-20F4-46b0-85CE-09778379663C}) (Version: - Electronic Arts) Metro 2033 (HKLM-x32\...\Steam App 43110) (Version: - 4A Games) Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1206241334-3998519493-1326637554-1001\...\OneDriveSetup.exe) (Version: 17.3.4726.0226 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: - Mojang) Minimum (HKLM-x32\...\Steam App 214190) (Version: - Human Head Studios) Mirror's Edge (HKLM-x32\...\Steam App 17410) (Version: - DICE) Mount Your Friends (HKLM-x32\...\Steam App 296470) (Version: - Stegersaurus Software Inc.) Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden MX vs. ATV Reflex (HKLM-x32\...\Steam App 55140) (Version: - Double Helix Games) Natural Selection 2 (HKLM-x32\...\Steam App 4920) (Version: - Unknown Worlds Entertainment) Nexuiz (HKLM-x32\...\Steam App 96800) (Version: - Illfonic) Norton 360 (HKLM-x32\...\N360) (Version: - Symantec Corporation) NVIDIA 3D Vision Controller-Treiber 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 347.09 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 347.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 347.88 - NVIDIA Corporation) NVIDIA GeForce Experience (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: - NVIDIA Corporation) NVIDIA Grafiktreiber 347.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 347.88 - NVIDIA Corporation) NVIDIA HD-Audiotreiber (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: - NVIDIA Corporation) NVIDIA Miracast Virtueller Ton 347.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 347.88 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation) Origin (HKLM-x32\...\Origin) (Version: - Electronic Arts, Inc.) PAYDAY 2 (HKLM-x32\...\Steam App 218620) (Version: - OVERKILL - a Starbreeze Studio.) PAYDAY: The Heist (HKLM-x32\...\Steam App 24240) (Version: - OVERKILL Software) Pflanzen gegen Zombies™ (HKLM-x32\...\{5E6536C2-E79A-49CF-83EA-817AD81F9FC8}) (Version: - Electronic Arts, Inc.) Portal (HKLM-x32\...\Steam App 400) (Version: - Valve) Portal 2 (HKLM-x32\...\Steam App 620) (Version: - Valve) POSTAL 2 (HKLM-x32\...\Steam App 223470) (Version: - Running With Scissors) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - Realtek Semiconductor Corp.) Red Faction (HKLM-x32\...\Steam App 20530) (Version: - Volition, Inc.) Risen 2 - Dark Waters (HKLM-x32\...\Steam App 40390) (Version: - Piranha Bytes) Rust (HKLM-x32\...\Steam App 252490) (Version: - Facepunch Studios) Serious Sam 3: BFE (HKLM-x32\...\Steam App 41070) (Version: - Croteam) SHIELD Streaming (Version: 4.1.1000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: - NVIDIA Corporation) Hidden SimCity 2000 Special Edition (HKLM-x32\...\{59D2C751-F7BE-4E9F-9C8C-1F16013802C7}) (Version: - Electronic Arts) Sins of a Solar Empire®: Rebellion (HKLM-x32\...\Steam App 204880) (Version: - Ironclad Games) Sitecom Wireless Network 300N Adapter (HKLM-x32\...\{F912EF57-65C8-48E8-911F-7FCAF8ADD62E}) (Version: - Sitecom) Spotify (HKU\S-1-5-21-1206241334-3998519493-1326637554-1001\...\Spotify) (Version: - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Syndicate (HKLM-x32\...\{64CFBAAB-46F7-4628-8D9B-E656A8C11CDB}) (Version: - Electronic Arts) Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) Terraria (HKLM-x32\...\Steam App 105600) (Version: - Re-Logic) The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios) The Forest (HKLM-x32\...\Steam App 242760) (Version: - Endnight Games Ltd) The Walking Dead (HKLM-x32\...\Steam App 207610) (Version: - ) The Walking Dead: Season Two (HKLM-x32\...\Steam App 261030) (Version: - Telltale Games) The Witcher 2: Assassins of Kings Enhanced Edition (HKLM-x32\...\Steam App 20920) (Version: - CD PROJEKT RED) The Witcher: Enhanced Edition (HKLM-x32\...\Steam App 20900) (Version: - CD PROJEKT RED) The Wolf Among Us (HKLM-x32\...\Steam App 250320) (Version: - Telltale Games) theHunter: Primal (HKLM-x32\...\Steam App 322920) (Version: - Expansive Worlds) Thief (HKLM-x32\...\Steam App 239160) (Version: - Eidos-Montréal) Thief 2 (HKLM-x32\...\Steam App 211740) (Version: - Looking Glass Studios) Thief Gold (HKLM-x32\...\Steam App 211600) (Version: - Looking Glass Studios) Thief: Deadly Shadows (HKLM-x32\...\Steam App 6980) (Version: - Ion Storm) Titan Quest (HKLM-x32\...\Steam App 4540) (Version: - Iron Lore Entertainment) Titan Quest: Immortal Throne (HKLM-x32\...\Steam App 4550) (Version: - Iron Lore Entertainment) Tomb Raider (HKLM-x32\...\Steam App 203160) (Version: - Crystal Dynamics) Trine 2 (HKLM-x32\...\Steam App 35720) (Version: - Frozenbyte) Vampire: The Masquerade - Bloodlines (HKLM-x32\...\Steam App 2600) (Version: - Troika Games) Wajam (HKLM-x32\...\WaNetEnhance) (Version: (i2.6) - WaNetEnhance) <==== ATTENTION Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-1206241334-3998519493-1326637554-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Richi\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\amd64\FileSyncApi64.dll (Microsoft Corporation) ==================== Restore Points ========================= 11-04-2015 18:14:24 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 12-04-2015 20:08:51 Installed Wireless Network 300N Adapter ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0266456D-3DC8-48E6-ADE2-C736AFAE5C87} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton 360\Engine\\WSCStub.exe [2014-09-21] (Symantec Corporation) Task: {67E96E59-1BD7-4C02-BA57-AF5D12358D44} - System32\Tasks\Norton 360\Norton Error Analyzer => C:\Program Files (x86)\Norton 360\Engine\\SymErr.exe [2014-01-30] (Symantec Corporation) Task: {76D40ED7-B595-4170-B5F2-ACB49A9442FA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-12] (Google Inc.) Task: {B1F82E87-0D08-4156-ACAB-8766D7966DE4} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1206241334-3998519493-1326637554-1001 => %localappdata%\Microsoft\OneDrive\OneDrive.exe Task: {CCDE6FCD-9375-4A07-8E6E-684F880F625A} - System32\Tasks\Norton 360\Norton Error Processor => C:\Program Files (x86)\Norton 360\Engine\\SymErr.exe [2014-01-30] (Symantec Corporation) Task: {F5AFC8C6-7B1E-478B-9C93-F689F914FEFC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-12] (Google Inc.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============== 2014-09-18 09:23 - 2014-09-18 09:23 - 00866584 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll 2015-03-12 20:23 - 2015-03-12 20:23 - 01050904 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll 2014-09-18 09:23 - 2014-09-18 09:23 - 00059160 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll 2015-03-12 20:23 - 2015-03-12 20:23 - 00242456 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll 2015-04-08 15:02 - 2015-03-13 18:16 - 00118472 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-04-13 16:54 - 2015-04-13 16:54 - 00050477 _____ () C:\Users\Richi\Desktop\Defogger.exe 2014-11-10 12:12 - 2014-11-10 12:12 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2015-04-11 18:04 - 2015-03-28 05:45 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-04-12 20:09 - 2009-11-09 12:35 - 00913408 _____ () C:\Program Files (x86)\Sitecom\Common\RaWLAPI.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1206241334-3998519493-1326637554-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Richi\Pictures\2560x1440\Crystals-broken-power-green-nvidia-1440x2560.jpg DNS Servers: ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== Accounts: ============================= Administrator (S-1-5-21-1206241334-3998519493-1326637554-500 - Administrator - Disabled) Gast (S-1-5-21-1206241334-3998519493-1326637554-501 - Limited - Disabled) Richi (S-1-5-21-1206241334-3998519493-1326637554-1001 - Administrator - Enabled) => C:\Users\Richi ==================== Faulty Device Manager Devices ============= Name: Killer e2200 Gigabit Ethernet Controller (NDIS 6.30) Description: Killer e2200 Gigabit Ethernet Controller (NDIS 6.30) Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Killer Service: Ke2200 Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (04/13/2015 04:33:05 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 System errors: ============= Error: (04/12/2015 10:14:07 PM) (Source: DCOM) (EventID: 10010) (User: Dampfwalze) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (04/12/2015 10:13:37 PM) (Source: DCOM) (EventID: 10010) (User: Dampfwalze) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Microsoft Office Sessions: ========================= Error: (04/13/2015 04:33:05 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-4790K CPU @ 4.00GHz Percentage of memory in use: 12% Total physical RAM: 16286.38 MB Available physical RAM: 14315.09 MB Total Pagefile: 19230.38 MB Available Pagefile: 17026.16 MB Total Virtual: 131072 MB Available Virtual: 131071.79 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:465.76 GB) (Free:279.17 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: () (Fixed) (Total:931.51 GB) (Free:340.46 GB) NTFS Drive f: (Transcend) (Fixed) (Total:1863.02 GB) (Free:1787.22 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 3240A774) Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 3240A77C) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: F6CD845E) Partition 1: (Active) - (Size=1863 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
schaut gut aus, noch Probleme?
Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter 2015-03-26 21:14 - 2015-03-26 21:14 - 0005542 _____ () C:\Users\Richi\AppData\Roaming\EMJHPJX 2015-03-26 21:14 - 2015-03-26 21:14 - 0005542 _____ () C:\Users\Richi\AppData\Roaming\FROMTE Emptytemp: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Lade Dir bitte von hier ![]()
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Hier mal das neue FRST:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 12-04-2015 Ran by Richi at 2015-04-14 17:04:08 Run:1 Running from C:\Users\Richi\Desktop Loaded Profiles: Richi (Available profiles: Richi) Boot Mode: Normal ============================================== Content of fixlist: ***************** 2015-03-26 21:14 - 2015-03-26 21:14 - 0005542 _____ () C:\Users\Richi\AppData\Roaming\EMJHPJX 2015-03-26 21:14 - 2015-03-26 21:14 - 0005542 _____ () C:\Users\Richi\AppData\Roaming\FROMTE Emptytemp: ***************** C:\Users\Richi\AppData\Roaming\EMJHPJX => Moved successfully. C:\Users\Richi\AppData\Roaming\FROMTE => Moved successfully. EmptyTemp: => Removed 242.8 MB temporary data. The system needed a reboot. ==== End of Fixlog 17:04:18 ==== Code:
ATTFilter Emsisoft Emergency Kit - Version 9.0 Letztes Update: 14.04.2015 17:37:11 Benutzerkonto: Dampfwalze\Richi Scan-Einstellungen: Scan Methode: Detail-Scan Objekte: Rootkits, Speicher, Traces, C:\, D:\, F:\ PUPs-Erkennung: An Archiv-Scan: An ADS Scan: An Dateitypen-Filter: Aus Erweitertes Caching: An Direkter Festplattenzugriff: Aus Scan-Beginn: 14.04.2015 17:37:35 Value: HKEY_USERS\S-1-5-21-1206241334-3998519493-1326637554-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLETASKMGR gefunden: Setting.DisableTaskMgr (A) Value: HKEY_USERS\S-1-5-21-1206241334-3998519493-1326637554-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLEREGISTRYTOOLS gefunden: Setting.DisableRegistryTools (A) C:\AdwCleaner\Quarantine\C\Program Files (x86)\BrowserV11.04\021bb557-9c1d-4fcf-baa9-8113717c44c5-1-7.exe.vir gefunden: Gen:Application.Heur.7u0@mG4VI0bO (B) C:\AdwCleaner\Quarantine\C\Program Files (x86)\BrowserV11.04\021bb557-9c1d-4fcf-baa9-8113717c44c5-5.exe.vir gefunden: Gen:Application.Heur.dv0@m4EKAfcO (B) C:\AdwCleaner\Quarantine\C\Program Files (x86)\BrowserV11.04\Uninstall.exe.vir gefunden: Gen:Application.Heur.gqW@lSOSmooi (B) C:\AdwCleaner\Quarantine\C\Program Files (x86)\BrowserV11.04\utils.exe.vir -> (NSIS o) -> lzma_solid_nsis0005 gefunden: Gen:Application.Parj.1 (B) Gescannt 459364 Gefunden 6 Scan-Ende: 14.04.2015 18:38:21 Scan-Zeit: 1:00:46 C:\AdwCleaner\Quarantine\C\Program Files (x86)\BrowserV11.04\utils.exe.vir Quarantäne Gen:Application.Parj.1 (B) C:\AdwCleaner\Quarantine\C\Program Files (x86)\BrowserV11.04\Uninstall.exe.vir Quarantäne Gen:Application.Heur.gqW@lSOSmooi (B) C:\AdwCleaner\Quarantine\C\Program Files (x86)\BrowserV11.04\021bb557-9c1d-4fcf-baa9-8113717c44c5-5.exe.vir Quarantäne Gen:Application.Heur.dv0@m4EKAfcO (B) C:\AdwCleaner\Quarantine\C\Program Files (x86)\BrowserV11.04\021bb557-9c1d-4fcf-baa9-8113717c44c5-1-7.exe.vir Quarantäne Gen:Application.Heur.7u0@mG4VI0bO (B) Value: HKEY_USERS\S-1-5-21-1206241334-3998519493-1326637554-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLEREGISTRYTOOLS Quarantäne Setting.DisableRegistryTools (A) Value: HKEY_USERS\S-1-5-21-1206241334-3998519493-1326637554-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLETASKMGR Quarantäne Setting.DisableTaskMgr (A) Quarantäne 6 |
ok
__________________ --> Proxyserver ließ sich nicht abschalten / durch Malewarebyte behoben / System wieder Clean? |
Hi schrauber,

mein Internet ist ungewöhnlich langsam. Für den EEK download z.b. hab ich ca. 30 Minuten gebraucht (130 MB). Die Verbindung wurde auch oft komplett unterbrochen. Aber ob das an Malware liegt, weiß ich nicht.
Trenn mal den Router 30 min vom Strom und poste dann bitte ein frisches FRST log.

Ebenso das:

Downloade dir bitte Farbar's MiniToolBox auf deinen Desktop und starte das Tool

Setze einen Haken bei folgenden Einträgen
- Flush DNS
- Report IE Proxy Settings
- Reset IE Proxy Settings
- Report FF Proxy Settings
- Reset FF Proxy Settings
- List content of Hosts
- List IP configuration
- List Winsock Entries
- List last 10 Event Viewer log
- List Installed Programs
- List Users, Partitions and Memory size.
- List Minidump Files

Klicke Go und poste den Inhalt der Result.txt.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Hi schrauber,

mittlerweile ist wieder alles beim alten. Die Internetverbindung ist wieder stabil. Falls doch noch was passiert melde ich mich nochmal.

Vielen Dank für die Hilfe!

Grüße
Richard
ok
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Hallo schrauber,

muss dich leider erneut um Hilfe bitten. Irgendwas stimmt nicht.

Ich kann Programme teilweise nicht ausführen. Sobald ich z.B. Steam starten möchte passiert einfach nichts. Der Prozess ist zwar im Task Manager ersichtlich, mehr aber nicht. Das gleiche Problem hab ich auch noch bei League of Legends.

Spotify kann ich zwar ganz normal öffnen, Musik lässt sich aber nicht abspielen. Sobald ich ein Lied auswähle und auf Play klick passiert einfach nichts.

Teamspeak lässt sich zwar öffnen, sobald ich aber auf ein Server möchte hängt sich das Programm auf und reagiert einfach nicht mehr.

Auf dem Internet Explorer kann ich ganz normal surfen. Videos lassen sich aber nicht abspielen.

Chrome kann ich ganz normal starten, hängt sich aber nach ein paar Sekunden auch auf.

Das sind so viele verschiedene Probleme, ich hab keine Ahnung woran das liegen könnte. Ich versuch seit ca. 4 Stunden den PC wieder in den Griff zu kriegen, komme aber kein Stück voran.

Grüße
Richard
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-04-2015 Ran by Richi (administrator) on DAMPFWALZE on 18-04-2015 12:42:46 Running from C:\Users\Richi\Downloads\Malware Loaded Profiles: Richi (Available profiles: Richi) Platform: Windows 8.1 (Update 1) (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Ralink Technology, Corp.) C:\Program Files (x86)\Sitecom\Common\RaRegistry.exe (Ralink Technology, Corp.) C:\Program Files (x86)\Sitecom\Common\RaRegistry64.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\\n360.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\\n360.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9654.17499_x64__8wekyb3d8bbwe\glcnd.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe (Spotify Ltd) C:\Users\Richi\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Sitecom Europe BV) C:\Program Files (x86)\Sitecom\Common\RaUI.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe () C:\Program Files (x86)\Riot Games\RADS\system\rads_user_kernel.exe () C:\Program Files (x86)\Riot Games\RADS\projects\lol_launcher\releases\\deploy\LoLLauncher.exe () C:\Program Files (x86)\Riot Games\RADS\projects\lol_patcher\releases\\deploy\LoLPatcher.exe () C:\Program Files (x86)\Riot Games\RADS\projects\lol_patcher\releases\\deploy\LoLPatcherUx.exe () C:\Program Files (x86)\Riot Games\RADS\projects\lol_patcher\releases\\deploy\LoLPatcherUx.exe () C:\Program Files (x86)\Riot Games\RADS\projects\lol_patcher\releases\\deploy\LoLPatcherUx.exe (Spotify Ltd) C:\Users\Richi\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd) C:\Users\Richi\AppData\Roaming\Spotify\SpotifyCrashService.exe (Spotify Ltd) C:\Users\Richi\AppData\Roaming\Spotify\Spotify.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\SndVol.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2013-10-24] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2673296 2015-03-28] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [323312 2014-12-10] (Intel Corporation) HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [13318424 2015-03-12] (Logitech Inc.) HKU\S-1-5-21-1206241334-3998519493-1326637554-1001\...\Run: [Steam] => D:\Steam\steam.exe [2889408 2015-04-14] (Valve Corporation) HKU\S-1-5-21-1206241334-3998519493-1326637554-1001\...\Run: [Spotify Web Helper] => C:\Users\Richi\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2018360 2015-04-11] (Spotify Ltd) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Sitecom Wireless Utility.lnk ShortcutTarget: Sitecom Wireless Utility.lnk -> C:\Program Files (x86)\Sitecom\Common\RaUI.exe (Sitecom Europe BV) ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File ShellIconOverlayIdentifiers: [OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files (x86)\Norton 360\Engine64\\buShell.dll (Symantec Corporation) ShellIconOverlayIdentifiers: [OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files (x86)\Norton 360\Engine64\\buShell.dll (Symantec Corporation) ShellIconOverlayIdentifiers: [OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files (x86)\Norton 360\Engine64\\buShell.dll (Symantec Corporation) ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1206241334-3998519493-1326637554-1001 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = BHO: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton 360\Engine64\\coIEPlg.dll [2015-03-05] (Symantec Corporation) BHO-x32: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton 360\Engine\\coIEPlg.dll [2015-03-05] (Symantec Corporation) BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files (x86)\Norton 360\Engine\\IPS\IPSBHO.DLL [2015-03-05] (Symantec Corporation) Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine64\\coIEPlg.dll [2015-03-05] (Symantec Corporation) Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\\coIEPlg.dll [2015-03-05] (Symantec Corporation) Tcpip\Parameters: [DhcpNameServer] StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-11-10] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-11-10] (Intel Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2013-02-05] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-03-13] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-03-13] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll [2015-04-12] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll [2015-04-12] (Google Inc.) FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_21.6.0.32\coFFPlgn FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_21.6.0.32\coFFPlgn [2015-04-18] Chrome: ======= CHR HomePage: Default -> hxxp://www.facebook.de/ CHR StartupUrls: Default -> "https://www.facebook.com/" CHR Profile: C:\Users\Richi\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Adblock Plus) - C:\Users\Richi\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-04-15] CHR Extension: (SAO Theme 1920x1080) - C:\Users\Richi\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgikfepnnphbmgngmpiflajcbmoomnll [2015-04-12] CHR Extension: (Bookmark Manager) - C:\Users\Richi\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-04-17] CHR Extension: (Norton Identity Safe) - C:\Users\Richi\AppData\Local\Google\Chrome\User Data\Default\Extensions\iikflkcanblccfahdhdonehdalibjnif [2015-04-12] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Richi\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-12] CHR Extension: (Google Wallet) - C:\Users\Richi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-12] CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - https://clients2.google.com/service/update2/crx CHR HKLM\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton 360\Engine\\Exts\Chrome.crx [2015-04-18] CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - https://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton 360\Engine\\Exts\Chrome.crx [2015-04-18] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152144 2015-03-28] (NVIDIA Corporation) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [19184 2014-12-10] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [158496 2014-11-10] (Intel Corporation) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1080120 2015-03-17] (Malwarebytes Corporation) R2 N360; C:\Program Files (x86)\Norton 360\Engine\\N360.exe [265000 2015-03-07] (Symantec Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1878672 2015-03-28] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [22995600 2015-03-28] (NVIDIA Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1931632 2015-04-11] (Electronic Arts) R2 RalinkRegistryWriter; C:\Program Files (x86)\Sitecom\Common\RaRegistry.exe [185632 2009-10-20] (Ralink Technology, Corp.) R2 RalinkRegistryWriter64; C:\Program Files (x86)\Sitecom\Common\RaRegistry64.exe [212256 2009-10-20] (Ralink Technology, Corp.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [348392 2013-10-31] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2013-10-31] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R1 BHDrvx64; C:\Program Files (x86)\Norton 360\NortonData\\Definitions\BASHDefs\20150408.001\BHDrvx64.sys [1639128 2015-04-08] (Symantec Corporation) R1 ccSet_N360; C:\Windows\system32\drivers\N360x64\1507000.00B\ccSetx64.sys [162392 2014-02-21] (Symantec Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [487216 2014-11-25] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [142640 2014-11-25] (Symantec Corporation) R1 IDSVia64; C:\Program Files (x86)\Norton 360\NortonData\\Definitions\IPSDefs\20150417.001\IDSvia64.sys [671448 2015-04-17] (Symantec Corporation) R3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [164720 2012-07-25] (Qualcomm Atheros, Inc.) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-03-17] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-03-17] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\System32\drivers\TeeDriverx64.sys [129312 2014-11-10] (Intel Corporation) R3 NAVENG; C:\Program Files (x86)\Norton 360\NortonData\\Definitions\VirusDefs\20150417.002\ENG64.SYS [129752 2014-11-15] (Symantec Corporation) R3 NAVEX15; C:\Program Files (x86)\Norton 360\NortonData\\Definitions\VirusDefs\20150417.002\EX64.SYS [2137304 2014-11-15] (Symantec Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-03-28] (NVIDIA Corporation) S3 NVSWCFilter; C:\Windows\System32\drivers\nvswcfilter.sys [19616 2015-03-13] (Windows (R) Win 7 DDK provider) R3 NVVADARM; C:\Windows\system32\drivers\nvvadarm.sys [40136 2015-03-13] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2015-03-13] (NVIDIA Corporation) R1 SRTSP; C:\Windows\System32\Drivers\N360x64\1507000.00B\SRTSP64.SYS [876248 2014-08-26] (Symantec Corporation) R1 SRTSPX; C:\Windows\system32\drivers\N360x64\1507000.00B\SRTSPX64.SYS [37592 2014-08-26] (Symantec Corporation) R0 SymDS; C:\Windows\System32\drivers\N360x64\1507000.00B\SYMDS64.SYS [493656 2014-08-26] (Symantec Corporation) R0 SymEFA; C:\Windows\System32\drivers\N360x64\1507000.00B\SYMEFA64.SYS [1148120 2014-08-26] (Symantec Corporation) S0 SymELAM; C:\Windows\System32\drivers\N360x64\1507000.00B\SymELAM.sys [23568 2014-08-26] (Symantec Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2015-04-12] (Symantec Corporation) R1 SymIRON; C:\Windows\system32\drivers\N360x64\1507000.00B\Ironx64.SYS [266968 2014-08-06] (Symantec Corporation) R1 SymNetS; C:\Windows\System32\Drivers\N360x64\1507000.00B\SYMNETS.SYS [593112 2014-08-26] (Symantec Corporation) S3 VUSB3HUB; C:\Windows\System32\drivers\ViaHub3.sys [227840 2013-09-25] (VIA Technologies, Inc.) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124760 2013-10-31] (Microsoft Corporation) S3 xhcdrv; C:\Windows\System32\drivers\xhcdrv.sys [297472 2013-09-25] (VIA Technologies, Inc.) R3 xusb22; C:\Windows\System32\drivers\xusb22.sys [87040 2013-08-22] (Microsoft Corporation) S3 cleanhlp; \??\C:\EEK\bin\cleanhlp64.sys [X] S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-04-18 12:42 - 2015-04-18 12:42 - 00000000 ____D () C:\FRST 2015-04-18 11:57 - 2015-04-18 11:57 - 00000000 ____D () C:\Windows\SysWOW64\N360_BACKUP 2015-04-18 11:31 - 2015-04-18 11:58 - 00000000 ____D () C:\AdwCleaner 2015-04-18 11:15 - 2015-04-18 11:55 - 00000000 ____D () C:\Users\Richi\Downloads\tw2 mods 2015-04-18 11:13 - 2015-04-18 11:13 - 00000000 ____D () C:\Users\Richi\Documents\Nexus Mod Manager 2015-04-18 11:13 - 2015-04-18 11:13 - 00000000 ____D () C:\Users\Richi\AppData\Local\Black_Tree_Gaming 2015-04-18 11:04 - 2015-04-18 11:04 - 01118920 _____ (Microsoft Corporation) C:\Users\Richi\Downloads\NDP452-KB2901954-Web.exe 2015-04-18 11:03 - 2014-04-16 01:35 - 00028352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aspnet_counters.dll 2015-04-18 11:03 - 2014-04-16 01:34 - 00029888 _____ (Microsoft Corporation) C:\Windows\system32\aspnet_counters.dll 2015-04-18 11:02 - 2015-04-18 11:04 - 00000000 ____D () C:\Program Files (x86)\Nexus Mod Manager 2015-04-18 10:48 - 2015-04-18 10:48 - 05553280 _____ (Black Tree Gaming ) C:\Users\Richi\Downloads\Nexus Mod Manager-0.54.9.exe 2015-04-18 09:16 - 2015-04-18 09:16 - 00000000 ____D () C:\Windows\System32\Tasks\Norton 360 2015-04-18 09:06 - 2015-04-18 09:06 - 00000000 __SHD () C:\Users\Richi\AppData\Local\EmieUserList 2015-04-18 09:06 - 2015-04-18 09:06 - 00000000 __SHD () C:\Users\Richi\AppData\Local\EmieSiteList 2015-04-17 17:25 - 2014-03-20 05:48 - 21232792 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2015-04-17 17:25 - 2014-03-20 03:20 - 18679216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2015-04-17 17:25 - 2014-03-06 14:42 - 07425368 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-04-17 17:25 - 2014-03-06 11:19 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll 2015-04-17 17:25 - 2014-03-06 09:22 - 16875520 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2015-04-17 17:25 - 2014-03-06 08:59 - 12732416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2015-04-17 17:25 - 2014-03-06 08:33 - 13286400 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2015-04-17 17:25 - 2014-03-06 07:28 - 08653824 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll 2015-04-17 17:24 - 2014-03-20 06:19 - 01291200 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2015-04-17 17:24 - 2014-03-20 05:41 - 02013016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2015-04-17 17:24 - 2014-03-20 05:41 - 00376152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys 2015-04-17 17:24 - 2014-03-20 05:40 - 01112536 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2015-04-17 17:24 - 2014-03-20 03:29 - 04268544 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2015-04-17 17:24 - 2014-03-20 02:53 - 00950784 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll 2015-04-17 17:24 - 2014-03-20 02:48 - 00201216 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll 2015-04-17 17:24 - 2014-03-20 01:55 - 01036288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2015-04-17 17:24 - 2014-03-20 01:39 - 00800256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll 2015-04-17 17:24 - 2014-03-20 01:36 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll 2015-04-17 17:24 - 2014-03-19 09:13 - 00836096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2015-04-17 17:24 - 2014-03-19 07:57 - 00621568 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe 2015-04-17 17:24 - 2014-03-19 07:50 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe 2015-04-17 17:24 - 2014-03-19 07:31 - 01656832 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2015-04-17 17:24 - 2014-03-19 07:20 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe 2015-04-17 17:24 - 2014-03-19 07:08 - 01351168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2015-04-17 17:24 - 2014-03-19 06:41 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll 2015-04-17 17:24 - 2014-03-19 06:17 - 00872448 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe 2015-04-17 17:24 - 2014-03-15 06:56 - 00381952 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll 2015-04-17 17:24 - 2014-03-15 06:44 - 01705984 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-04-17 17:24 - 2014-03-13 14:35 - 00157016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys 2015-04-17 17:24 - 2014-03-12 15:45 - 00387210 _____ () C:\Windows\system32\ApnDatabase.xml 2015-04-17 17:24 - 2014-03-11 17:45 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfgLib.dll 2015-04-17 17:24 - 2014-03-11 17:18 - 01015808 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll 2015-04-17 17:24 - 2014-03-11 17:02 - 00794112 _____ (Microsoft Corporation) C:\Windows\system32\fvewiz.dll 2015-04-17 17:24 - 2014-03-11 16:28 - 00887296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll 2015-04-17 17:24 - 2014-03-11 16:25 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerDeviceEncryption.exe 2015-04-17 17:24 - 2014-03-11 16:05 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll 2015-04-17 17:24 - 2014-03-11 16:03 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll 2015-04-17 17:24 - 2014-03-11 16:00 - 00720896 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll 2015-04-17 17:24 - 2014-03-11 15:21 - 00918528 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll 2015-04-17 17:24 - 2014-03-11 15:02 - 00629760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll 2015-04-17 17:24 - 2014-03-11 14:42 - 02641920 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-04-17 17:24 - 2014-03-11 14:35 - 02317824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2015-04-17 17:24 - 2014-03-08 22:47 - 00565536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2015-04-17 17:24 - 2014-03-08 22:47 - 00180056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-04-17 17:24 - 2014-03-08 22:40 - 00136024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys 2015-04-17 17:24 - 2014-03-08 22:38 - 01542768 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2015-04-17 17:24 - 2014-03-08 22:35 - 00467800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS 2015-04-17 17:24 - 2014-03-08 22:35 - 00337752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys 2015-04-17 17:24 - 2014-03-08 17:29 - 01339240 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-04-17 17:24 - 2014-03-08 17:29 - 00356848 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll 2015-04-17 17:24 - 2014-03-08 13:34 - 01095488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2015-04-17 17:24 - 2014-03-08 11:34 - 00731648 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-04-17 17:24 - 2014-03-08 11:02 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll 2015-04-17 17:24 - 2014-03-08 10:44 - 00731648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-04-17 17:24 - 2014-03-08 10:33 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll 2015-04-17 17:24 - 2014-03-08 10:25 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\SetNetworkLocation.dll 2015-04-17 17:24 - 2014-03-08 10:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxproxy.dll 2015-04-17 17:24 - 2014-03-08 09:53 - 01843712 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll 2015-04-17 17:24 - 2014-03-08 09:51 - 00334848 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe 2015-04-17 17:24 - 2014-03-08 09:47 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll 2015-04-17 17:24 - 2014-03-08 09:12 - 01816576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll 2015-04-17 17:24 - 2014-03-08 09:09 - 01411584 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-04-17 17:24 - 2014-03-08 09:04 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll 2015-04-17 17:24 - 2014-03-08 09:03 - 00939520 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-04-17 17:24 - 2014-03-08 09:01 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2015-04-17 17:24 - 2014-03-08 08:50 - 01066496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2015-04-17 17:24 - 2014-03-08 08:48 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll 2015-04-17 17:24 - 2014-03-08 08:46 - 01063424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2015-04-17 17:24 - 2014-03-08 08:41 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2015-04-17 17:24 - 2014-03-08 08:40 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll 2015-04-17 17:24 - 2014-03-08 08:37 - 00755712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-04-17 17:24 - 2014-03-08 08:31 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll 2015-04-17 17:24 - 2014-03-08 08:30 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll 2015-04-17 17:24 - 2014-03-08 08:25 - 00264192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2015-04-17 17:24 - 2014-03-08 08:09 - 00958464 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll 2015-04-17 17:24 - 2014-03-08 08:04 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2015-04-17 17:24 - 2014-03-08 08:02 - 00801792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll 2015-04-17 17:24 - 2014-03-08 07:58 - 00567296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2015-04-17 17:24 - 2014-03-08 07:41 - 01306624 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll 2015-04-17 17:24 - 2014-03-08 07:11 - 00924160 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll 2015-04-17 17:24 - 2014-03-06 16:35 - 01466864 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll 2015-04-17 17:24 - 2014-03-06 16:34 - 02331000 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2015-04-17 17:24 - 2014-03-06 16:34 - 00113648 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll 2015-04-17 17:24 - 2014-03-06 14:53 - 02141912 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2015-04-17 17:24 - 2014-03-06 14:53 - 00518552 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2015-04-17 17:24 - 2014-03-06 14:51 - 01557848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2015-04-17 17:24 - 2014-03-06 14:51 - 00488280 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll 2015-04-17 17:24 - 2014-03-06 14:51 - 00379224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2015-04-17 17:24 - 2014-03-06 14:40 - 00492256 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll 2015-04-17 17:24 - 2014-03-06 14:40 - 00467504 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2015-04-17 17:24 - 2014-03-06 14:40 - 00463264 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2015-04-17 17:24 - 2014-03-06 14:40 - 00364640 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2015-04-17 17:24 - 2014-03-06 14:40 - 00244888 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe 2015-04-17 17:24 - 2014-03-06 14:39 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2015-04-17 17:24 - 2014-03-06 13:20 - 01200296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll 2015-04-17 17:24 - 2014-03-06 13:19 - 00390488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll 2015-04-17 17:24 - 2014-03-06 13:19 - 00094016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll 2015-04-17 17:24 - 2014-03-06 13:13 - 01779800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2015-04-17 17:24 - 2014-03-06 13:13 - 00406912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2015-04-17 17:24 - 2014-03-06 12:46 - 01679128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2015-04-17 17:24 - 2014-03-06 12:35 - 00406512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll 2015-04-17 17:24 - 2014-03-06 12:35 - 00388408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll 2015-04-17 17:24 - 2014-03-06 12:35 - 00326024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll 2015-04-17 17:24 - 2014-03-06 12:35 - 00305768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll 2015-04-17 17:24 - 2014-03-06 11:29 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll 2015-04-17 17:24 - 2014-03-06 11:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2015-04-17 17:24 - 2014-03-06 11:24 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys 2015-04-17 17:24 - 2014-03-06 11:24 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys 2015-04-17 17:24 - 2014-03-06 11:22 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2015-04-17 17:24 - 2014-03-06 11:22 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2015-04-17 17:24 - 2014-03-06 11:22 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys 2015-04-17 17:24 - 2014-03-06 11:20 - 00443392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys 2015-04-17 17:24 - 2014-03-06 11:20 - 00402944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-04-17 17:24 - 2014-03-06 11:20 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2015-04-17 17:24 - 2014-03-06 11:19 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-04-17 17:24 - 2014-03-06 11:19 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2015-04-17 17:24 - 2014-03-06 11:19 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\drvcfg.exe 2015-04-17 17:24 - 2014-03-06 11:19 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2015-04-17 17:24 - 2014-03-06 11:08 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe 2015-04-17 17:24 - 2014-03-06 11:08 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll 2015-04-17 17:24 - 2014-03-06 10:41 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\DevPropMgr.dll 2015-04-17 17:24 - 2014-03-06 10:38 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2015-04-17 17:24 - 2014-03-06 10:37 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2015-04-17 17:24 - 2014-03-06 10:28 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll 2015-04-17 17:24 - 2014-03-06 10:20 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll 2015-04-17 17:24 - 2014-03-06 10:10 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\l2gpstore.dll 2015-04-17 17:24 - 2014-03-06 10:09 - 00098816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe 2015-04-17 17:24 - 2014-03-06 10:00 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll 2015-04-17 17:24 - 2014-03-06 09:47 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2015-04-17 17:24 - 2014-03-06 09:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2015-04-17 17:24 - 2014-03-06 09:44 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2015-04-17 17:24 - 2014-03-06 09:16 - 00171008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll 2015-04-17 17:24 - 2014-03-06 09:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2015-04-17 17:24 - 2014-03-06 09:02 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll 2015-04-17 17:24 - 2014-03-06 08:57 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll 2015-04-17 17:24 - 2014-03-06 08:51 - 02900992 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll 2015-04-17 17:24 - 2014-03-06 08:39 - 02133504 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2015-04-17 17:24 - 2014-03-06 08:34 - 00201216 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll 2015-04-17 17:24 - 2014-03-06 08:32 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll 2015-04-17 17:24 - 2014-03-06 08:31 - 02479616 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll 2015-04-17 17:24 - 2014-03-06 08:29 - 11791360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2015-04-17 17:24 - 2014-03-06 08:29 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll 2015-04-17 17:24 - 2014-03-06 08:27 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll 2015-04-17 17:24 - 2014-03-06 08:24 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll 2015-04-17 17:24 - 2014-03-06 08:23 - 02270208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll 2015-04-17 17:24 - 2014-03-06 08:23 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll 2015-04-17 17:24 - 2014-03-06 08:21 - 00370176 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll 2015-04-17 17:24 - 2014-03-06 08:21 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll 2015-04-17 17:24 - 2014-03-06 08:16 - 01527296 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll 2015-04-17 17:24 - 2014-03-06 08:16 - 00834048 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2015-04-17 17:24 - 2014-03-06 08:13 - 00298496 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll 2015-04-17 17:24 - 2014-03-06 08:13 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll 2015-04-17 17:24 - 2014-03-06 08:11 - 02030080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll 2015-04-17 17:24 - 2014-03-06 08:09 - 01764864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2015-04-17 17:24 - 2014-03-06 08:06 - 00386560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll 2015-04-17 17:24 - 2014-03-06 08:05 - 01230336 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll 2015-04-17 17:24 - 2014-03-06 08:04 - 00300544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll 2015-04-17 17:24 - 2014-03-06 08:04 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll 2015-04-17 17:24 - 2014-03-06 08:01 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll 2015-04-17 17:24 - 2014-03-06 07:54 - 01023488 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2015-04-17 17:24 - 2014-03-06 07:54 - 00888320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll 2015-04-17 17:24 - 2014-03-06 07:51 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll 2015-04-17 17:24 - 2014-03-06 07:47 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll 2015-04-17 17:24 - 2014-03-06 07:42 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll 2015-04-17 17:24 - 2014-03-06 07:42 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll 2015-04-17 17:24 - 2014-03-06 07:35 - 01054208 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll 2015-04-17 17:24 - 2014-03-06 07:33 - 00839168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll 2015-04-17 17:24 - 2014-03-06 07:32 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll 2015-04-17 17:24 - 2014-03-06 07:27 - 05833728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll 2015-04-17 17:24 - 2014-03-06 07:21 - 05770752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-04-17 17:24 - 2014-03-06 07:20 - 06641152 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-04-17 17:24 - 2014-03-04 14:25 - 02373784 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2015-04-17 17:24 - 2014-03-04 14:15 - 02519384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2015-04-17 17:24 - 2014-03-04 14:15 - 00428888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2015-04-17 17:24 - 2014-03-04 14:14 - 00360512 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll 2015-04-17 17:24 - 2014-03-04 13:16 - 02088160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2015-04-17 17:24 - 2014-03-04 13:10 - 00355832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll 2015-04-17 17:24 - 2014-03-04 09:16 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2015-04-17 17:24 - 2014-03-04 09:13 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2015-04-17 17:24 - 2014-03-04 09:08 - 00299008 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll 2015-04-17 17:24 - 2014-03-04 09:00 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll 2015-04-17 17:24 - 2014-03-04 08:56 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll 2015-04-17 17:24 - 2014-03-04 08:50 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2015-04-17 17:24 - 2014-03-04 08:42 - 00494592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2015-04-17 17:24 - 2014-03-04 08:39 - 00254976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll 2015-04-17 17:24 - 2014-03-04 08:32 - 00356864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll 2015-04-17 17:24 - 2014-03-04 08:15 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll 2015-04-17 17:24 - 2014-03-04 08:05 - 00402432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll 2015-04-17 17:24 - 2014-03-04 08:03 - 00669696 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll 2015-04-17 17:24 - 2014-03-04 08:03 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll 2015-04-17 17:24 - 2014-03-04 07:54 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll 2015-04-17 17:24 - 2014-03-04 07:52 - 00605184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll 2015-04-17 17:24 - 2014-02-07 00:59 - 00425984 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll 2015-04-17 17:24 - 2014-02-06 23:26 - 00313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll 2015-04-17 17:24 - 2013-12-24 01:28 - 00262656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll 2015-04-17 17:24 - 2013-12-24 01:26 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll 2015-04-17 17:23 - 2014-03-02 12:20 - 23549952 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-04-17 17:23 - 2014-03-02 11:33 - 17387008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-04-17 17:22 - 2014-02-26 08:29 - 02678784 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll 2015-04-17 17:21 - 2014-02-08 03:08 - 00139600 _____ () C:\Windows\system32\systemsf.ebd 2015-04-17 17:20 - 2014-02-22 17:53 - 03394384 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll 2015-04-17 17:20 - 2014-02-22 14:08 - 00630784 _____ (Microsoft Corporation) C:\Windows\system32\OobeFldr.dll 2015-04-17 17:20 - 2014-02-22 13:17 - 00630272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OobeFldr.dll 2015-04-17 17:20 - 2014-02-22 13:00 - 05784064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-04-17 17:20 - 2014-02-22 12:34 - 11742720 _____ (Microsoft Corporation) C:\Windows\system32\glcndFilter.dll 2015-04-17 17:20 - 2014-02-22 12:02 - 08946688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glcndFilter.dll 2015-04-17 17:20 - 2014-02-22 11:39 - 13551104 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-04-17 17:19 - 2014-02-22 18:59 - 01519520 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2015-04-17 17:19 - 2014-02-22 18:59 - 01290688 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2015-04-17 17:19 - 2014-02-22 18:59 - 00526304 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2015-04-17 17:19 - 2014-02-22 18:15 - 01929608 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll 2015-04-17 17:19 - 2014-02-22 18:15 - 01206000 _____ (Microsoft Corporation) C:\Windows\system32\Taskmgr.exe 2015-04-17 17:19 - 2014-02-22 17:55 - 01435304 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll 2015-04-17 17:19 - 2014-02-22 17:50 - 02588168 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe 2015-04-17 17:19 - 2014-02-22 17:50 - 00645104 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll 2015-04-17 17:19 - 2014-02-22 17:48 - 02574240 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2015-04-17 17:19 - 2014-02-22 17:46 - 01927600 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll 2015-04-17 17:19 - 2014-02-22 17:46 - 01445616 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll 2015-04-17 17:19 - 2014-02-22 17:46 - 01000424 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll 2015-04-17 17:19 - 2014-02-22 17:44 - 00539992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys 2015-04-17 17:19 - 2014-02-22 17:43 - 01727760 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-04-17 17:19 - 2014-02-22 17:41 - 02142976 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2015-04-17 17:19 - 2014-02-22 17:41 - 01399176 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll 2015-04-17 17:19 - 2014-02-22 17:41 - 01215832 _____ (Microsoft Corporation) C:\Windows\system32\mfnetsrc.dll 2015-04-17 17:19 - 2014-02-22 17:41 - 00881616 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2015-04-17 17:19 - 2014-02-22 17:41 - 00800552 _____ (Microsoft Corporation) C:\Windows\system32\mfnetcore.dll 2015-04-17 17:19 - 2014-02-22 17:41 - 00609456 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2015-04-17 17:19 - 2014-02-22 17:41 - 00391008 _____ (Microsoft Corporation) C:\Windows\system32\MMDevAPI.dll 2015-04-17 17:19 - 2014-02-22 17:40 - 01118552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2015-04-17 17:19 - 2014-02-22 16:52 - 01767440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupapi.dll 2015-04-17 17:19 - 2014-02-22 16:42 - 00422968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2015-04-17 17:19 - 2014-02-22 16:38 - 01374384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll 2015-04-17 17:19 - 2014-02-22 16:38 - 01077944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webservices.dll 2015-04-17 17:19 - 2014-02-22 16:25 - 02410496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2015-04-17 17:19 - 2014-02-22 16:18 - 00477744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll 2015-04-17 17:19 - 2014-02-22 16:08 - 01474104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2015-04-17 17:19 - 2014-02-22 16:04 - 02144984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2015-04-17 17:19 - 2014-02-22 16:04 - 01011280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll 2015-04-17 17:19 - 2014-02-22 16:04 - 00650736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll 2015-04-17 17:19 - 2014-02-22 16:04 - 00518552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll 2015-04-17 17:19 - 2014-02-22 14:24 - 02825216 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2015-04-17 17:19 - 2014-02-22 14:22 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2015-04-17 17:19 - 2014-02-22 14:15 - 04192768 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-04-17 17:19 - 2014-02-22 13:44 - 02767360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-04-17 17:19 - 2014-02-22 13:28 - 02428928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2015-04-17 17:19 - 2014-02-22 13:17 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-04-17 17:19 - 2014-02-22 12:44 - 02178048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-04-17 17:19 - 2014-02-22 12:38 - 00390656 _____ (Microsoft Corporation) C:\Windows\system32\DfpCommon.dll 2015-04-17 17:19 - 2014-02-22 12:36 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-04-17 17:19 - 2014-02-22 12:06 - 02943488 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2015-04-17 17:19 - 2014-02-22 12:01 - 02648064 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll 2015-04-17 17:19 - 2014-02-22 11:53 - 00825344 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll 2015-04-17 17:19 - 2014-02-22 11:52 - 01132032 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll 2015-04-17 17:19 - 2014-02-22 11:47 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll 2015-04-17 17:19 - 2014-02-22 11:38 - 00753664 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll 2015-04-17 17:19 - 2014-02-22 11:37 - 02220032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2015-04-17 17:19 - 2014-02-22 11:35 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\WofTasks.dll 2015-04-17 17:19 - 2014-02-22 11:33 - 11745792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-04-17 17:19 - 2014-02-22 11:28 - 02643456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll 2015-04-17 17:19 - 2014-02-22 11:26 - 00792576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll 2015-04-17 17:19 - 2014-02-22 11:23 - 03494912 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2015-04-17 17:19 - 2014-02-22 11:23 - 02843136 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2015-04-17 17:19 - 2014-02-22 11:23 - 01576960 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll 2015-04-17 17:19 - 2014-02-22 11:23 - 00628224 _____ (Microsoft Corporation) C:\Windows\system32\msTextPrediction.dll 2015-04-17 17:19 - 2014-02-22 11:16 - 11776000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2015-04-17 17:19 - 2014-02-22 11:14 - 00584704 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll 2015-04-17 17:19 - 2014-02-22 11:13 - 01728000 _____ (Microsoft Corporation) C:\Windows\system32\dui70.dll 2015-04-17 17:19 - 2014-02-22 11:11 - 02395136 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll 2015-04-17 17:19 - 2014-02-22 11:11 - 02262016 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-04-17 17:19 - 2014-02-22 11:11 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll 2015-04-17 17:19 - 2014-02-22 11:01 - 13933568 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2015-04-17 17:19 - 2014-02-22 11:00 - 01341440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dui70.dll 2015-04-17 17:19 - 2014-02-22 11:00 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll 2015-04-17 17:19 - 2014-02-22 10:59 - 01621504 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll 2015-04-17 17:19 - 2014-02-22 10:59 - 00791552 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll 2015-04-17 17:19 - 2014-02-22 10:59 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll 2015-04-17 17:19 - 2014-02-22 10:54 - 00647168 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe 2015-04-17 17:19 - 2014-02-22 10:53 - 12027904 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll 2015-04-17 17:19 - 2014-02-22 10:49 - 08874496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll 2015-04-17 17:19 - 2014-02-22 10:49 - 01400832 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-04-17 17:19 - 2014-02-22 10:45 - 00845824 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2015-04-17 17:19 - 2014-02-22 10:44 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll 2015-04-17 17:19 - 2014-02-22 10:42 - 03408384 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-04-17 17:19 - 2014-02-22 10:40 - 02368512 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2015-04-17 17:19 - 2014-02-22 10:38 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-04-17 17:19 - 2014-02-22 10:37 - 01716736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll 2015-04-17 17:19 - 2014-02-22 10:34 - 02100736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll 2015-04-17 17:19 - 2014-02-22 10:32 - 01789440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-04-17 17:19 - 2014-02-22 10:27 - 01143808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-04-17 17:19 - 2014-02-22 10:24 - 02760704 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll 2015-04-17 17:19 - 2014-02-22 10:22 - 00777728 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll 2015-04-17 17:19 - 2014-02-22 10:06 - 01640960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll 2015-04-17 17:19 - 2014-02-22 10:03 - 01496576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll 2015-04-17 17:19 - 2014-01-29 10:53 - 01653352 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2015-04-17 17:19 - 2014-01-29 09:44 - 01369736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2015-04-17 17:18 - 2014-02-22 18:59 - 00461176 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe 2015-04-17 17:18 - 2014-02-22 18:59 - 00407536 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll 2015-04-17 17:18 - 2014-02-22 18:59 - 00289752 _____ (Microsoft Corporation) C:\Windows\system32\sqmapi.dll 2015-04-17 17:18 - 2014-02-22 18:59 - 00209160 _____ (Microsoft Corporation) C:\Windows\system32\imm32.dll 2015-04-17 17:18 - 2014-02-22 18:59 - 00139464 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe 2015-04-17 17:18 - 2014-02-22 18:59 - 00123448 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll 2015-04-17 17:18 - 2014-02-22 18:58 - 00036200 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe 2015-04-17 17:18 - 2014-02-22 18:15 - 00531128 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll 2015-04-17 17:18 - 2014-02-22 18:15 - 00275312 _____ (Microsoft Corporation) C:\Windows\system32\powrprof.dll 2015-04-17 17:18 - 2014-02-22 18:15 - 00188464 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe 2015-04-17 17:18 - 2014-02-22 18:15 - 00071888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpfve.sys 2015-04-17 17:18 - 2014-02-22 18:02 - 00170952 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll 2015-04-17 17:18 - 2014-02-22 18:02 - 00083120 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe 2015-04-17 17:18 - 2014-02-22 18:02 - 00080048 _____ (Microsoft Corporation) C:\Windows\system32\taskhostex.exe 2015-04-17 17:18 - 2014-02-22 18:00 - 00590168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2015-04-17 17:18 - 2014-02-22 18:00 - 00249688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys 2015-04-17 17:18 - 2014-02-22 18:00 - 00236888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2015-04-17 17:18 - 2014-02-22 18:00 - 00151384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2015-04-17 17:18 - 2014-02-22 18:00 - 00079192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fileinfo.sys 2015-04-17 17:18 - 2014-02-22 17:59 - 00032088 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll 2015-04-17 17:18 - 2014-02-22 17:59 - 00027480 _____ (Microsoft Corporation) C:\Windows\system32\SysResetErr.exe 2015-04-17 17:18 - 2014-02-22 17:55 - 00388408 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll 2015-04-17 17:18 - 2014-02-22 17:55 - 00244848 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll 2015-04-17 17:18 - 2014-02-22 17:55 - 00162176 _____ (Microsoft Corporation) C:\Windows\system32\AuthHost.exe 2015-04-17 17:18 - 2014-02-22 17:55 - 00152848 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll 2015-04-17 17:18 - 2014-02-22 17:55 - 00131168 _____ (Microsoft Corporation) C:\Windows\system32\easinvoker.exe 2015-04-17 17:18 - 2014-02-22 17:55 - 00105864 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll 2015-04-17 17:18 - 2014-02-22 17:53 - 00054776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-04-17 17:18 - 2014-02-22 17:50 - 00761792 _____ (Microsoft Corporation) C:\Windows\system32\iuilp.dll 2015-04-17 17:18 - 2014-02-22 17:50 - 00555736 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll 2015-04-17 17:18 - 2014-02-22 17:50 - 00258784 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe 2015-04-17 17:18 - 2014-02-22 17:50 - 00101216 _____ (Microsoft Corporation) C:\Windows\system32\RestoreOptIn.exe 2015-04-17 17:18 - 2014-02-22 17:50 - 00054816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys 2015-04-17 17:18 - 2014-02-22 17:50 - 00043408 _____ (Microsoft Corporation) C:\Windows\system32\CloudNotifications.exe 2015-04-17 17:18 - 2014-02-22 17:50 - 00032544 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountBroker.exe 2015-04-17 17:18 - 2014-02-22 17:49 - 00384856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys 2015-04-17 17:18 - 2014-02-22 17:49 - 00372568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2015-04-17 17:18 - 2014-02-22 17:49 - 00325464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS 2015-04-17 17:18 - 2014-02-22 17:49 - 00280920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys 2015-04-17 17:18 - 2014-02-22 17:49 - 00189784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UCX01000.SYS 2015-04-17 17:18 - 2014-02-22 17:49 - 00148824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2015-04-17 17:18 - 2014-02-22 17:49 - 00146776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys 2015-04-17 17:18 - 2014-02-22 17:49 - 00079192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdstor.sys 2015-04-17 17:18 - 2014-02-22 17:48 - 01791752 _____ (Microsoft Corporation) C:\Windows\system32\WMALFXGFXDSP.dll 2015-04-17 17:18 - 2014-02-22 17:48 - 00210736 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe 2015-04-17 17:18 - 2014-02-22 17:46 - 00669896 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2015-04-17 17:18 - 2014-02-22 17:44 - 00924504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys 2015-04-17 17:18 - 2014-02-22 17:44 - 00424280 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll 2015-04-17 17:18 - 2014-02-22 17:44 - 00360792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys 2015-04-17 17:18 - 2014-02-22 17:44 - 00311640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2015-04-17 17:18 - 2014-02-22 17:43 - 01659056 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2015-04-17 17:18 - 2014-02-22 17:43 - 01519592 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2015-04-17 17:18 - 2014-02-22 17:43 - 01487520 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2015-04-17 17:18 - 2014-02-22 17:43 - 01356360 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2015-04-17 17:18 - 2014-02-22 17:43 - 00142576 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2015-04-17 17:18 - 2014-02-22 17:43 - 00094560 _____ (Microsoft Corporation) C:\Windows\system32\bcd.dll 2015-04-17 17:18 - 2014-02-22 17:41 - 01374384 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll 2015-04-17 17:18 - 2014-02-22 17:41 - 00372360 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll 2015-04-17 17:18 - 2014-02-22 17:41 - 00324896 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll 2015-04-17 17:18 - 2014-02-22 17:41 - 00028416 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe 2015-04-17 17:18 - 2014-02-22 16:52 - 00251504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powrprof.dll 2015-04-17 17:18 - 2014-02-22 16:51 - 01063976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Taskmgr.exe 2015-04-17 17:18 - 2014-02-22 16:51 - 00140456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll 2015-04-17 17:18 - 2014-02-22 16:42 - 01017936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll 2015-04-17 17:18 - 2014-02-22 16:42 - 00410568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe 2015-04-17 17:18 - 2014-02-22 16:42 - 00369288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll 2015-04-17 17:18 - 2014-02-22 16:42 - 00232896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqmapi.dll 2015-04-17 17:18 - 2014-02-22 16:42 - 00137344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe 2015-04-17 17:18 - 2014-02-22 16:42 - 00098072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll 2015-04-17 17:18 - 2014-02-22 16:41 - 00033056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe 2015-04-17 17:18 - 2014-02-22 16:38 - 00506120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll 2015-04-17 17:18 - 2014-02-22 16:38 - 00336232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll 2015-04-17 17:18 - 2014-02-22 16:38 - 00089848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll 2015-04-17 17:18 - 2014-02-22 16:25 - 00180240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe 2015-04-17 17:18 - 2014-02-22 16:18 - 00419928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll 2015-04-17 17:18 - 2014-02-22 16:18 - 00089848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RestoreOptIn.exe 2015-04-17 17:18 - 2014-02-22 16:18 - 00041320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudNotifications.exe 2015-04-17 17:18 - 2014-02-22 16:18 - 00029912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserAccountBroker.exe 2015-04-17 17:18 - 2014-02-22 16:11 - 00490136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2015-04-17 17:18 - 2014-02-22 16:08 - 00079496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcd.dll 2015-04-17 17:18 - 2014-02-22 16:04 - 01206000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll 2015-04-17 17:18 - 2014-02-22 16:04 - 00707048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll 2015-04-17 17:18 - 2014-02-22 16:04 - 00317584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll 2015-04-17 17:18 - 2014-02-22 16:04 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll 2015-04-17 17:18 - 2014-02-22 16:04 - 00285144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll 2015-04-17 17:18 - 2014-02-22 14:20 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll 2015-04-17 17:18 - 2014-02-22 14:20 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-kernel-power-events.dll 2015-04-17 17:18 - 2014-02-22 14:17 - 00902144 _____ (Microsoft Corporation) C:\Windows\system32\autoconv.exe 2015-04-17 17:18 - 2014-02-22 14:17 - 00890880 _____ (Microsoft Corporation) C:\Windows\system32\autochk.exe 2015-04-17 17:18 - 2014-02-22 14:17 - 00874496 _____ (Microsoft Corporation) C:\Windows\system32\autofmt.exe 2015-04-17 17:18 - 2014-02-22 14:17 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\f3ahvoas.dll 2015-04-17 17:18 - 2014-02-22 14:17 - 00008192 ____H (Microsoft Corporation) C:\Windows\system32\ext-ms-win-ntuser-private-l1-1-1.dll 2015-04-17 17:18 - 2014-02-22 14:17 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\ext-ms-win-session-winsta-l1-1-0.dll 2015-04-17 17:18 - 2014-02-22 14:17 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\ext-ms-win-ntuser-private-l1-1-0.dll 2015-04-17 17:18 - 2014-02-22 14:17 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\ext-ms-win-kernel32-package-l1-1-1.dll 2015-04-17 17:18 - 2014-02-22 14:14 - 00298496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys 2015-04-17 17:18 - 2014-02-22 14:14 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys 2015-04-17 17:18 - 2014-02-22 14:14 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\watchdog.sys 2015-04-17 17:18 - 2014-02-22 14:14 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BasicRender.sys 2015-04-17 17:18 - 2014-02-22 14:11 - 00272896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2015-04-17 17:18 - 2014-02-22 14:09 - 00663040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys 2015-04-17 17:18 - 2014-02-22 14:08 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\syncui.dll 2015-04-17 17:18 - 2014-02-22 14:08 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll 2015-04-17 17:18 - 2014-02-22 14:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll 2015-04-17 17:18 - 2014-02-22 14:08 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx 2015-04-17 17:18 - 2014-02-22 14:08 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll 2015-04-17 17:18 - 2014-02-22 14:07 - 00545792 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll 2015-04-17 17:18 - 2014-02-22 14:07 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2015-04-17 17:18 - 2014-02-22 14:07 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\WofUtil.dll 2015-04-17 17:18 - 2014-02-22 14:07 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\clrhost.dll 2015-04-17 17:18 - 2014-02-22 14:06 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2015-04-17 17:18 - 2014-02-22 14:04 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\offreg.dll 2015-04-17 17:18 - 2014-02-22 14:03 - 00349696 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe 2015-04-17 17:18 - 2014-02-22 14:03 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll 2015-04-17 17:18 - 2014-02-22 14:02 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll 2015-04-17 17:18 - 2014-02-22 14:01 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\spcompat.dll 2015-04-17 17:18 - 2014-02-22 14:00 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-04-17 17:18 - 2014-02-22 14:00 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe 2015-04-17 17:18 - 2014-02-22 14:00 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\lpksetupproxyserv.dll 2015-04-17 17:18 - 2014-02-22 13:59 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgrade.exe 2015-04-17 17:18 - 2014-02-22 13:57 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\slc.dll 2015-04-17 17:18 - 2014-02-22 13:57 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2015-04-17 17:18 - 2014-02-22 13:54 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll 2015-04-17 17:18 - 2014-02-22 13:50 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll 2015-04-17 17:18 - 2014-02-22 13:50 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe 2015-04-17 17:18 - 2014-02-22 13:48 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\ocsetapi.dll 2015-04-17 17:18 - 2014-02-22 13:47 - 00589312 _____ (Microsoft Corporation) C:\Windows\system32\vdsdyn.dll 2015-04-17 17:18 - 2014-02-22 13:47 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll 2015-04-17 17:18 - 2014-02-22 13:47 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\bcdboot.exe 2015-04-17 17:18 - 2014-02-22 13:46 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-04-17 17:18 - 2014-02-22 13:46 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2015-04-17 17:18 - 2014-02-22 13:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\system32\scrobj.dll 2015-04-17 17:18 - 2014-02-22 13:45 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\fhevents.dll 2015-04-17 17:18 - 2014-02-22 13:42 - 00038680 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentServer.exe 2015-04-17 17:18 - 2014-02-22 13:41 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\PkgMgr.exe 2015-04-17 17:18 - 2014-02-22 13:39 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\fhsvcctl.dll 2015-04-17 17:18 - 2014-02-22 13:37 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\diskpart.exe 2015-04-17 17:18 - 2014-02-22 13:34 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\dmdskmgr.dll 2015-04-17 17:18 - 2014-02-22 13:32 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll 2015-04-17 17:18 - 2014-02-22 13:30 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-04-17 17:18 - 2014-02-22 13:29 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\RelPost.exe 2015-04-17 17:18 - 2014-02-22 13:27 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\dot3mm.dll 2015-04-17 17:18 - 2014-02-22 13:25 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\recimg.exe 2015-04-17 17:18 - 2014-02-22 13:25 - 00307712 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe 2015-04-17 17:18 - 2014-02-22 13:25 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE 2015-04-17 17:18 - 2014-02-22 13:25 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll 2015-04-17 17:18 - 2014-02-22 13:25 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\f3ahvoas.dll 2015-04-17 17:18 - 2014-02-22 13:25 - 00008192 ____H (Microsoft Corporation) C:\Windows\SysWOW64\ext-ms-win-ntuser-private-l1-1-1.dll 2015-04-17 17:18 - 2014-02-22 13:25 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\ext-ms-win-ntuser-private-l1-1-0.dll 2015-04-17 17:18 - 2014-02-22 13:24 - 00800256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoconv.exe 2015-04-17 17:18 - 2014-02-22 13:24 - 00792576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autochk.exe 2015-04-17 17:18 - 2014-02-22 13:24 - 00780288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autofmt.exe 2015-04-17 17:18 - 2014-02-22 13:24 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SSShim.dll 2015-04-17 17:18 - 2014-02-22 13:24 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\ext-ms-win-session-winsta-l1-1-0.dll 2015-04-17 17:18 - 2014-02-22 13:24 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\ext-ms-win-networking-wcmapi-l1-1-0.dll 2015-04-17 17:18 - 2014-02-22 13:24 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\ext-ms-win-kernel32-package-l1-1-1.dll 2015-04-17 17:18 - 2014-02-22 13:22 - 00177664 _____ (Microsoft Corporation) C:\Windows\system32\easwrt.dll 2015-04-17 17:18 - 2014-02-22 13:22 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2015-04-17 17:18 - 2014-02-22 13:17 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\DAMM.dll 2015-04-17 17:18 - 2014-02-22 13:17 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\BulkOperationHost.exe 2015-04-17 17:18 - 2014-02-22 13:16 - 00617472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll 2015-04-17 17:18 - 2014-02-22 13:16 - 00527360 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2015-04-17 17:18 - 2014-02-22 13:16 - 00432640 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll 2015-04-17 17:18 - 2014-02-22 13:16 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2015-04-17 17:18 - 2014-02-22 13:16 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2015-04-17 17:18 - 2014-02-22 13:16 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clrhost.dll 2015-04-17 17:18 - 2014-02-22 13:15 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imm32.dll 2015-04-17 17:18 - 2014-02-22 13:14 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\cleanmgr.exe 2015-04-17 17:18 - 2014-02-22 13:13 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offreg.dll 2015-04-17 17:18 - 2014-02-22 13:11 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spbcd.dll 2015-04-17 17:18 - 2014-02-22 13:09 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-04-17 17:18 - 2014-02-22 13:09 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgentc.exe 2015-04-17 17:18 - 2014-02-22 13:08 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll 2015-04-17 17:18 - 2014-02-22 13:08 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll 2015-04-17 17:18 - 2014-02-22 13:07 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2015-04-17 17:18 - 2014-02-22 13:07 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\StorageContextHandler.dll 2015-04-17 17:18 - 2014-02-22 13:07 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2015-04-17 17:18 - 2014-02-22 13:06 - 00148992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slc.dll 2015-04-17 17:18 - 2014-02-22 13:05 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\RASMM.dll 2015-04-17 17:18 - 2014-02-22 13:05 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\pnpclean.dll 2015-04-17 17:18 - 2014-02-22 13:05 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll 2015-04-17 17:18 - 2014-02-22 13:05 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentHost.dll 2015-04-17 17:18 - 2014-02-22 13:04 - 00575488 _____ (Microsoft Corporation) C:\Windows\system32\dfrgui.exe 2015-04-17 17:18 - 2014-02-22 13:03 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2015-04-17 17:18 - 2014-02-22 13:02 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContent.dll 2015-04-17 17:18 - 2014-02-22 13:02 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\acppage.dll 2015-04-17 17:18 - 2014-02-22 13:01 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2015-04-17 17:18 - 2014-02-22 13:01 - 00112640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe 2015-04-17 17:18 - 2014-02-22 13:00 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-04-17 17:18 - 2014-02-22 12:59 - 01283584 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe 2015-04-17 17:18 - 2014-02-22 12:59 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll 2015-04-17 17:18 - 2014-02-22 12:59 - 00163328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ocsetapi.dll 2015-04-17 17:18 - 2014-02-22 12:59 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-04-17 17:18 - 2014-02-22 12:58 - 00610304 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll 2015-04-17 17:18 - 2014-02-22 12:58 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-04-17 17:18 - 2014-02-22 12:58 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\DAConn.dll 2015-04-17 17:18 - 2014-02-22 12:57 - 00165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrobj.dll 2015-04-17 17:18 - 2014-02-22 12:57 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2015-04-17 17:18 - 2014-02-22 12:56 - 02862592 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll 2015-04-17 17:18 - 2014-02-22 12:56 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2015-04-17 17:18 - 2014-02-22 12:56 - 00350720 _____ (Microsoft Corporation) C:\Windows\system32\srchadmin.dll 2015-04-17 17:18 - 2014-02-22 12:56 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\dmvdsitf.dll 2015-04-17 17:18 - 2014-02-22 12:55 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\srrstr.dll 2015-04-17 17:18 - 2014-02-22 12:55 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\SrTasks.exe 2015-04-17 17:18 - 2014-02-22 12:54 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-04-17 17:18 - 2014-02-22 12:53 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PkgMgr.exe 2015-04-17 17:18 - 2014-02-22 12:52 - 02288640 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll 2015-04-17 17:18 - 2014-02-22 12:52 - 00331264 _____ (Microsoft Corporation) C:\Windows\system32\newdev.dll 2015-04-17 17:18 - 2014-02-22 12:51 - 00444416 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll 2015-04-17 17:18 - 2014-02-22 12:50 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskpart.exe 2015-04-17 17:18 - 2014-02-22 12:47 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmdskmgr.dll 2015-04-17 17:18 - 2014-02-22 12:47 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\migisol.dll 2015-04-17 17:18 - 2014-02-22 12:47 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupugc.exe 2015-04-17 17:18 - 2014-02-22 12:47 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-04-17 17:18 - 2014-02-22 12:47 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\dfp.exe 2015-04-17 17:18 - 2014-02-22 12:46 - 00283136 _____ (Microsoft Corporation) C:\Windows\system32\wbadmin.exe 2015-04-17 17:18 - 2014-02-22 12:41 - 02566656 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll 2015-04-17 17:18 - 2014-02-22 12:41 - 00878592 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll 2015-04-17 17:18 - 2014-02-22 12:41 - 00320000 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe 2015-04-17 17:18 - 2014-02-22 12:41 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\netid.dll 2015-04-17 17:18 - 2014-02-22 12:40 - 00304640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe 2015-04-17 17:18 - 2014-02-22 12:40 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE 2015-04-17 17:18 - 2014-02-22 12:39 - 00834048 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2015-04-17 17:18 - 2014-02-22 12:38 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\easwrt.dll 2015-04-17 17:18 - 2014-02-22 12:37 - 00912384 _____ (Microsoft Corporation) C:\Windows\system32\nettrace.dll 2015-04-17 17:18 - 2014-02-22 12:36 - 00441344 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll 2015-04-17 17:18 - 2014-02-22 12:36 - 00385024 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2015-04-17 17:18 - 2014-02-22 12:36 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-04-17 17:18 - 2014-02-22 12:35 - 00504832 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll 2015-04-17 17:18 - 2014-02-22 12:35 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\aitagent.exe 2015-04-17 17:18 - 2014-02-22 12:34 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgradeResults.exe 2015-04-17 17:18 - 2014-02-22 12:33 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-04-17 17:18 - 2014-02-22 12:33 - 00402944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\zipfldr.dll 2015-04-17 17:18 - 2014-02-22 12:32 - 00118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2015-04-17 17:18 - 2014-02-22 12:31 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-04-17 17:18 - 2014-02-22 12:30 - 00213504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cleanmgr.exe 2015-04-17 17:18 - 2014-02-22 12:29 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2015-04-17 17:18 - 2014-02-22 12:28 - 00250880 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-04-17 17:18 - 2014-02-22 12:27 - 00397824 _____ (Microsoft Corporation) C:\Windows\system32\sharemediacpl.dll 2015-04-17 17:18 - 2014-02-22 12:27 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2015-04-17 17:18 - 2014-02-22 12:25 - 01428480 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe 2015-04-17 17:18 - 2014-02-22 12:25 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorageContextHandler.dll 2015-04-17 17:18 - 2014-02-22 12:22 - 00606208 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll 2015-04-17 17:18 - 2014-02-22 12:21 - 00561664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfrgui.exe 2015-04-17 17:18 - 2014-02-22 12:21 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2015-04-17 17:18 - 2014-02-22 12:21 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\acppage.dll 2015-04-17 17:18 - 2014-02-22 12:20 - 01152512 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl 2015-04-17 17:18 - 2014-02-22 12:18 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll 2015-04-17 17:18 - 2014-02-22 12:18 - 00722432 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgradeui.exe 2015-04-17 17:18 - 2014-02-22 12:18 - 00488448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2015-04-17 17:18 - 2014-02-22 12:17 - 00693248 _____ (Microsoft Corporation) C:\Windows\system32\fhcfg.dll 2015-04-17 17:18 - 2014-02-22 12:17 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-04-17 17:18 - 2014-02-22 12:17 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll 2015-04-17 17:18 - 2014-02-22 12:16 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sud.dll 2015-04-17 17:18 - 2014-02-22 12:16 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srchadmin.dll 2015-04-17 17:18 - 2014-02-22 12:16 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmvdsitf.dll 2015-04-17 17:18 - 2014-02-22 12:15 - 01543680 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe 2015-04-17 17:18 - 2014-02-22 12:14 - 02811392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll 2015-04-17 17:18 - 2014-02-22 12:14 - 02165760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncCenter.dll 2015-04-17 17:18 - 2014-02-22 12:14 - 00376320 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe 2015-04-17 17:18 - 2014-02-22 12:13 - 00897024 _____ (Microsoft Corporation) C:\Windows\system32\sdclt.exe 2015-04-17 17:18 - 2014-02-22 12:13 - 00557056 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs.dll 2015-04-17 17:18 - 2014-02-22 12:13 - 00307200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\newdev.dll 2015-04-17 17:18 - 2014-02-22 12:12 - 00797696 _____ (Microsoft Corporation) C:\Windows\system32\PurchaseWindowsLicense.dll 2015-04-17 17:18 - 2014-02-22 12:12 - 00352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwizeng.dll 2015-04-17 17:18 - 2014-02-22 12:09 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll 2015-04-17 17:18 - 2014-02-22 12:09 - 01224192 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll 2015-04-17 17:18 - 2014-02-22 12:09 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-04-17 17:18 - 2014-02-22 12:09 - 00097280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\migisol.dll 2015-04-17 17:18 - 2014-02-22 12:09 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-04-17 17:18 - 2014-02-22 12:08 - 00997888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll 2015-04-17 17:18 - 2014-02-22 12:05 - 01757184 _____ (Microsoft Corporation) C:\Windows\system32\WMPDMC.exe 2015-04-17 17:18 - 2014-02-22 12:04 - 00935424 _____ (Microsoft Corporation) C:\Windows\system32\rasgcw.dll 2015-04-17 17:18 - 2014-02-22 12:04 - 00483840 _____ (Microsoft Corporation) C:\Windows\system32\WLanConn.dll 2015-04-17 17:18 - 2014-02-22 12:04 - 00098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netid.dll 2015-04-17 17:18 - 2014-02-22 12:03 - 02544128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themecpl.dll 2015-04-17 17:18 - 2014-02-22 12:03 - 00779264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2015-04-17 17:18 - 2014-02-22 12:02 - 00258560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe 2015-04-17 17:18 - 2014-02-22 12:01 - 01227776 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll 2015-04-17 17:18 - 2014-02-22 12:01 - 00832512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll 2015-04-17 17:18 - 2014-02-22 12:01 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll 2015-04-17 17:18 - 2014-02-22 12:00 - 02043904 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-04-17 17:18 - 2014-02-22 12:00 - 00217600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll 2015-04-17 17:18 - 2014-02-22 11:59 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll 2015-04-17 17:18 - 2014-02-22 11:59 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\wmpdxm.dll 2015-04-17 17:18 - 2014-02-22 11:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-04-17 17:18 - 2014-02-22 11:57 - 00710656 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll 2015-04-17 17:18 - 2014-02-22 11:56 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll 2015-04-17 17:18 - 2014-02-22 11:55 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-04-17 17:18 - 2014-02-22 11:54 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll 2015-04-17 17:18 - 2014-02-22 11:54 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\authz.dll 2015-04-17 17:18 - 2014-02-22 11:54 - 00225280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-04-17 17:18 - 2014-02-22 11:54 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\deviceassociation.dll 2015-04-17 17:18 - 2014-02-22 11:53 - 00545280 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll 2015-04-17 17:18 - 2014-02-22 11:53 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2015-04-17 17:18 - 2014-02-22 11:52 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.exe 2015-04-17 17:18 - 2014-02-22 11:51 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\fveskybackup.dll 2015-04-17 17:18 - 2014-02-22 11:50 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\winbrand.dll 2015-04-17 17:18 - 2014-02-22 11:49 - 00155648 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountTokenProvider.dll 2015-04-17 17:18 - 2014-02-22 11:48 - 01136128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscui.cpl 2015-04-17 17:18 - 2014-02-22 11:48 - 00427520 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-04-17 17:18 - 2014-02-22 11:48 - 00355328 _____ (Microsoft Corporation) C:\Windows\system32\wincorlib.dll 2015-04-17 17:18 - 2014-02-22 11:48 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll 2015-04-17 17:18 - 2014-02-22 11:46 - 00528896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll 2015-04-17 17:18 - 2014-02-22 11:46 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\winsku.dll 2015-04-17 17:18 - 2014-02-22 11:45 - 00562176 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2015-04-17 17:18 - 2014-02-22 11:45 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe 2015-04-17 17:18 - 2014-02-22 11:45 - 00453632 _____ (Microsoft Corporation) C:\Windows\system32\wbiosrvc.dll 2015-04-17 17:18 - 2014-02-22 11:45 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2015-04-17 17:18 - 2014-02-22 11:45 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll 2015-04-17 17:18 - 2014-02-22 11:44 - 00675328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll 2015-04-17 17:18 - 2014-02-22 11:44 - 00356864 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2015-04-17 17:18 - 2014-02-22 11:44 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\korwbrkr.dll 2015-04-17 17:18 - 2014-02-22 11:43 - 00107008 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll 2015-04-17 17:18 - 2014-02-22 11:43 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Sockets.PushEnabledApplication.dll 2015-04-17 17:18 - 2014-02-22 11:41 - 00492032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll 2015-04-17 17:18 - 2014-02-22 11:40 - 02537472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll 2015-04-17 17:18 - 2014-02-22 11:40 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-04-17 17:18 - 2014-02-22 11:39 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\dasHost.exe 2015-04-17 17:18 - 2014-02-22 11:37 - 00183808 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe 2015-04-17 17:18 - 2014-02-22 11:36 - 01392640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPDMC.exe 2015-04-17 17:18 - 2014-02-22 11:36 - 00835584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasgcw.dll 2015-04-17 17:18 - 2014-02-22 11:36 - 00391680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WLanConn.dll 2015-04-17 17:18 - 2014-02-22 11:36 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\Dism.exe 2015-04-17 17:18 - 2014-02-22 11:35 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2015-04-17 17:18 - 2014-02-22 11:34 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\energy.dll 2015-04-17 17:18 - 2014-02-22 11:34 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll 2015-04-17 17:18 - 2014-02-22 11:33 - 01967104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-04-17 17:18 - 2014-02-22 11:33 - 00653312 _____ (Microsoft Corporation) C:\Windows\system32\DismApi.dll 2015-04-17 17:18 - 2014-02-22 11:32 - 01162752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll 2015-04-17 17:18 - 2014-02-22 11:31 - 00242688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll 2015-04-17 17:18 - 2014-02-22 11:30 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll 2015-04-17 17:18 - 2014-02-22 11:29 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll 2015-04-17 17:18 - 2014-02-22 11:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll 2015-04-17 17:18 - 2014-02-22 11:28 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authz.dll 2015-04-17 17:18 - 2014-02-22 11:28 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceassociation.dll 2015-04-17 17:18 - 2014-02-22 11:27 - 00484864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll 2015-04-17 17:18 - 2014-02-22 11:27 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll 2015-04-17 17:18 - 2014-02-22 11:26 - 00366080 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll 2015-04-17 17:18 - 2014-02-22 11:26 - 00299008 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll 2015-04-17 17:18 - 2014-02-22 11:26 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.exe 2015-04-17 17:18 - 2014-02-22 11:25 - 01361408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll 2015-04-17 17:18 - 2014-02-22 11:25 - 00449024 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll 2015-04-17 17:18 - 2014-02-22 11:25 - 00399872 _____ (Microsoft Corporation) C:\Windows\system32\das.dll 2015-04-17 17:18 - 2014-02-22 11:25 - 00269824 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll 2015-04-17 17:18 - 2014-02-22 11:25 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.HumanInterfaceDevice.dll 2015-04-17 17:18 - 2014-02-22 11:25 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\wscinterop.dll 2015-04-17 17:18 - 2014-02-22 11:25 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winbrand.dll 2015-04-17 17:18 - 2014-02-22 11:24 - 00666624 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll 2015-04-17 17:18 - 2014-02-22 11:23 - 00344576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-04-17 17:18 - 2014-02-22 11:23 - 00256000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincorlib.dll 2015-04-17 17:18 - 2014-02-22 11:23 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountTokenProvider.dll 2015-04-17 17:18 - 2014-02-22 11:22 - 00336384 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll 2015-04-17 17:18 - 2014-02-22 11:22 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsku.dll 2015-04-17 17:18 - 2014-02-22 11:21 - 01287168 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll 2015-04-17 17:18 - 2014-02-22 11:19 - 00146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\korwbrkr.dll 2015-04-17 17:18 - 2014-02-22 11:19 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll 2015-04-17 17:18 - 2014-02-22 11:19 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Sockets.PushEnabledApplication.dll 2015-04-17 17:18 - 2014-02-22 11:18 - 00619520 _____ (Microsoft Corporation) C:\Windows\system32\UserLanguagesCpl.dll 2015-04-17 17:18 - 2014-02-22 11:16 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxshared.dll 2015-04-17 17:18 - 2014-02-22 11:15 - 00211968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Dism.exe 2015-04-17 17:18 - 2014-02-22 11:14 - 00752640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2015-04-17 17:18 - 2014-02-22 11:12 - 00459776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DismApi.dll 2015-04-17 17:18 - 2014-02-22 11:10 - 00747008 _____ (Microsoft Corporation) C:\Windows\system32\wlidcli.dll 2015-04-17 17:18 - 2014-02-22 11:10 - 00569856 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll 2015-04-17 17:18 - 2014-02-22 11:09 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll 2015-04-17 17:18 - 2014-02-22 11:09 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\dwm.exe 2015-04-17 17:18 - 2014-02-22 11:08 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll 2015-04-17 17:18 - 2014-02-22 11:07 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll 2015-04-17 17:18 - 2014-02-22 11:07 - 00551424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll 2015-04-17 17:18 - 2014-02-22 11:07 - 00109568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscinterop.dll 2015-04-17 17:18 - 2014-02-22 11:06 - 01035264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll 2015-04-17 17:18 - 2014-02-22 11:06 - 00251904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll 2015-04-17 17:18 - 2014-02-22 11:04 - 01107456 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll 2015-04-17 17:18 - 2014-02-22 11:04 - 01029120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll 2015-04-17 17:18 - 2014-02-22 11:04 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\slpts.dll 2015-04-17 17:18 - 2014-02-22 11:02 - 00559104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserLanguagesCpl.dll 2015-04-17 17:18 - 2014-02-22 11:02 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll 2015-04-17 17:18 - 2014-02-22 11:02 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll 2015-04-17 17:18 - 2014-02-22 10:59 - 01436160 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe 2015-04-17 17:18 - 2014-02-22 10:59 - 01403392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll 2015-04-17 17:18 - 2014-02-22 10:58 - 00544768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcli.dll 2015-04-17 17:18 - 2014-02-22 10:57 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll 2015-04-17 17:18 - 2014-02-22 10:57 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-04-17 17:18 - 2014-02-22 10:55 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-04-17 17:18 - 2014-02-22 10:55 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-04-17 17:18 - 2014-02-22 10:55 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll 2015-04-17 17:18 - 2014-02-22 10:55 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\ConfigureExpandedStorage.dll 2015-04-17 17:18 - 2014-02-22 10:55 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\dataclen.dll 2015-04-17 17:18 - 2014-02-22 10:55 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\energytask.dll 2015-04-17 17:18 - 2014-02-22 10:55 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slpts.dll 2015-04-17 17:18 - 2014-02-22 10:55 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll 2015-04-17 17:18 - 2014-02-22 10:54 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\rdbui.dll 2015-04-17 17:18 - 2014-02-22 10:54 - 00286720 _____ (Microsoft Corporation) C:\Windows\system32\wlidcredprov.dll 2015-04-17 17:18 - 2014-02-22 10:54 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe 2015-04-17 17:18 - 2014-02-22 10:54 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll 2015-04-17 17:18 - 2014-02-22 10:54 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\AepRoam.dll 2015-04-17 17:18 - 2014-02-22 10:53 - 00876544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2015-04-17 17:18 - 2014-02-22 10:52 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\WSClient.dll 2015-04-17 17:18 - 2014-02-22 10:52 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll 2015-04-17 17:18 - 2014-02-22 10:51 - 01258496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RacEngn.dll 2015-04-17 17:18 - 2014-02-22 10:51 - 00716288 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll 2015-04-17 17:18 - 2014-02-22 10:51 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll 2015-04-17 17:18 - 2014-02-22 10:51 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll 2015-04-17 17:18 - 2014-02-22 10:50 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll 2015-04-17 17:18 - 2014-02-22 10:49 - 00755200 _____ (Microsoft Corporation) C:\Windows\system32\msctfuimanager.dll 2015-04-17 17:18 - 2014-02-22 10:49 - 00468480 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll 2015-04-17 17:18 - 2014-02-22 10:49 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-04-17 17:18 - 2014-02-22 10:49 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-04-17 17:18 - 2014-02-22 10:48 - 01144320 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll 2015-04-17 17:18 - 2014-02-22 10:48 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\BioCredProv.dll 2015-04-17 17:18 - 2014-02-22 10:48 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-04-17 17:18 - 2014-02-22 10:48 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-04-17 17:18 - 2014-02-22 10:48 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ConfigureExpandedStorage.dll 2015-04-17 17:18 - 2014-02-22 10:48 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll 2015-04-17 17:18 - 2014-02-22 10:48 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dataclen.dll 2015-04-17 17:18 - 2014-02-22 10:48 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msshooks.dll 2015-04-17 17:18 - 2014-02-22 10:47 - 01008640 _____ (Microsoft Corporation) C:\Windows\system32\WlanMM.dll 2015-04-17 17:18 - 2014-02-22 10:47 - 00517120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe 2015-04-17 17:18 - 2014-02-22 10:47 - 00505344 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll 2015-04-17 17:18 - 2014-02-22 10:47 - 00185856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcredprov.dll 2015-04-17 17:18 - 2014-02-22 10:47 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\AltTab.dll 2015-04-17 17:18 - 2014-02-22 10:46 - 03312128 _____ (Microsoft Corporation) C:\Windows\system32\bootux.dll 2015-04-17 17:18 - 2014-02-22 10:46 - 00824832 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-04-17 17:18 - 2014-02-22 10:45 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\PlayToDevice.dll 2015-04-17 17:18 - 2014-02-22 10:45 - 00169472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSClient.dll 2015-04-17 17:18 - 2014-02-22 10:45 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe 2015-04-17 17:18 - 2014-02-22 10:44 - 00510976 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl 2015-04-17 17:18 - 2014-02-22 10:44 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\provsvc.dll 2015-04-17 17:18 - 2014-02-22 10:44 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll 2015-04-17 17:18 - 2014-02-22 10:44 - 00154624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netplwiz.dll 2015-04-17 17:18 - 2014-02-22 10:43 - 00644608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll 2015-04-17 17:18 - 2014-02-22 10:43 - 00469504 _____ (Microsoft Corporation) C:\Windows\system32\taskeng.exe 2015-04-17 17:18 - 2014-02-22 10:43 - 00260608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BioCredProv.dll 2015-04-17 17:18 - 2014-02-22 10:43 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll 2015-04-17 17:18 - 2014-02-22 10:43 - 00117760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\thumbcache.dll 2015-04-17 17:18 - 2014-02-22 10:43 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-04-17 17:18 - 2014-02-22 10:43 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Renewal.dll 2015-04-17 17:18 - 2014-02-22 10:42 - 00943104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WlanMM.dll 2015-04-17 17:18 - 2014-02-22 10:42 - 00709120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfuimanager.dll 2015-04-17 17:18 - 2014-02-22 10:42 - 00448000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll 2015-04-17 17:18 - 2014-02-22 10:41 - 00662528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-04-17 17:18 - 2014-02-22 10:40 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\fhcpl.dll 2015-04-17 17:18 - 2014-02-22 10:40 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll 2015-04-17 17:18 - 2014-02-22 10:40 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToDevice.dll |
The adware programs should be uninstalled manually.) 7 Days to Die (HKLM-x32\...\Steam App 251570) (Version: - The Fun Pimps) Age of Empires II: HD Edition (HKLM-x32\...\Steam App 221380) (Version: - Hidden Path Entertainment, Ensemble Studios) Arma 3 (HKLM-x32\...\Steam App 107410) (Version: - Bohemia Interactive) Audiosurf (HKLM-x32\...\Steam App 12900) (Version: - Dylan Fitterer) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: - Electronic Arts) BioShock Infinite (HKLM-x32\...\Steam App 8870) (Version: - Irrational Games) Borderlands (HKLM-x32\...\Steam App 8980) (Version: - Gearbox Software) Call of Duty: Black Ops (HKLM-x32\...\Steam App 42700) (Version: - Treyarch) Call of Duty: Modern Warfare 2 (HKLM-x32\...\Steam App 10180) (Version: - Infinity Ward) Call of Duty: Modern Warfare 3 (HKLM-x32\...\Steam App 42680) (Version: - Infinity Ward) Chivalry: Medieval Warfare (HKLM-x32\...\Steam App 219640) (Version: - Torn Banner Studios) Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) Company of Heroes (HKLM-x32\...\Steam App 4560) (Version: - Relic Entertainment) Company of Heroes: Opposing Fronts (HKLM-x32\...\Steam App 9340) (Version: - Relic Entertainment) Cossacks II: Napoleonic Wars (HKLM-x32\...\Steam App 115200) (Version: - GSC Game World) Cossacks: Back to War (HKLM-x32\...\Steam App 4850) (Version: - GSC Game World) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve) Crysis® 2 (HKLM-x32\...\{6033673D-2530-4587-8AD0-EB059FC263F9}) (Version: - Electronic Arts) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dark Souls: Prepare to Die Edition (HKLM-x32\...\Steam App 211420) (Version: - FromSoftware) DARK SOULS™ II (HKLM-x32\...\Steam App 236430) (Version: - FromSoftware, Inc) Darksiders (HKLM-x32\...\Steam App 50620) (Version: - Vigil Games) Darksiders II (HKLM-x32\...\Steam App 50650) (Version: - Vigil Games) Day of Defeat: Source (HKLM-x32\...\Steam App 300) (Version: - Valve) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Die*Sims™*3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.42.130 - Electronic Arts) Dishonored (HKLM-x32\...\Steam App 205100) (Version: - Arkane Studios) Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve) Dragon Age: Origins - Ultimate Edition (HKLM-x32\...\Steam App 47810) (Version: - BioWare) Dragon Age™ II (HKLM-x32\...\{4D565319-8B91-41CB-961C-0DDC86101AC5}) (Version: 1.04.8524.0 - Electronic Arts) Dragon Age™: Inquisition (HKLM-x32\...\{DC4C36DC-4E5B-4262-B0C7-157DF534B969}) (Version: - Electronic Arts) Far Cry (HKLM-x32\...\Steam App 13520) (Version: - Crytek Studios) Far Cry 2 (HKLM-x32\...\Steam App 19900) (Version: - Ubisoft Montreal) Far Cry® 3 (HKLM-x32\...\Steam App 220240) (Version: - Ubisoft Montreal, Massive Entertainment, and Ubisoft Shanghai) Fight The Dragon (HKLM-x32\...\Steam App 250560) (Version: - 3 Sprockets) Fotogalerie (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Futuremark SystemInfo (HKLM-x32\...\{BEE64C14-BEF1-4610-8A68-A16EAA47B882}) (Version: 4.17.0 - Futuremark Corporation) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 42.0.2311.90 - Google Inc.) Google Update Helper (x32 Version: - Google Inc.) Hidden Google Update Helper (x32 Version: - Google Inc.) Hidden Half-Life 2: Deathmatch (HKLM-x32\...\Steam App 320) (Version: - Valve) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Homefront (HKLM-x32\...\Steam App 55100) (Version: - Kaos Studios) How to Survive (HKLM-x32\...\Steam App 250400) (Version: - EKO Software) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: - Intel Corporation) Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.26 - Intel(R) Corporation) Hidden Killing Floor (HKLM-x32\...\Steam App 1250) (Version: - Tripwire Interactive) Kingdoms of Amalur: Reckoning™ (HKLM-x32\...\Steam App 102500) (Version: - Big Huge Games) Kingdoms Rise (HKLM-x32\...\Steam App 248630) (Version: - Flyleap Studios Pty. Ltd.) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Logitech Gaming Software 8.58 (HKLM\...\Logitech Gaming Software) (Version: 8.58.183 - Logitech Inc.) Magicka (HKLM-x32\...\Steam App 42910) (Version: - Arrowhead Game Studios) Malwarebytes Anti-Malware Version (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: - Malwarebytes Corporation) Mass Effect (HKLM-x32\...\Steam App 17460) (Version: - BioWare) Mass Effect 2 (HKLM-x32\...\Steam App 24980) (Version: - BioWare) Mass Effect™ 3 (HKLM-x32\...\{534A31BD-20F4-46b0-85CE-09778379663C}) (Version: - Electronic Arts) Metro 2033 (HKLM-x32\...\Steam App 43110) (Version: - 4A Games) Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1206241334-3998519493-1326637554-1001\...\OneDriveSetup.exe) (Version: 17.3.4726.0226 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: - Mojang) Minimum (HKLM-x32\...\Steam App 214190) (Version: - Human Head Studios) Mirror's Edge (HKLM-x32\...\Steam App 17410) (Version: - DICE) Mount Your Friends (HKLM-x32\...\Steam App 296470) (Version: - Stegersaurus Software Inc.) Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden MX vs. ATV Reflex (HKLM-x32\...\Steam App 55140) (Version: - Double Helix Games) Natural Selection 2 (HKLM-x32\...\Steam App 4920) (Version: - Unknown Worlds Entertainment) Nexuiz (HKLM-x32\...\Steam App 96800) (Version: - Illfonic) Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.54.9 - Black Tree Gaming) Norton 360 (HKLM-x32\...\N360) (Version: - Symantec Corporation) NVIDIA 3D Vision Controller-Treiber 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 347.09 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 347.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 347.88 - NVIDIA Corporation) NVIDIA GeForce Experience (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: - NVIDIA Corporation) NVIDIA Grafiktreiber 347.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 347.88 - NVIDIA Corporation) NVIDIA HD-Audiotreiber (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: - NVIDIA Corporation) NVIDIA Miracast Virtueller Ton 347.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 347.88 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation) Origin (HKLM-x32\...\Origin) (Version: - Electronic Arts, Inc.) PAYDAY 2 (HKLM-x32\...\Steam App 218620) (Version: - OVERKILL - a Starbreeze Studio.) PAYDAY: The Heist (HKLM-x32\...\Steam App 24240) (Version: - OVERKILL Software) Pflanzen gegen Zombies™ (HKLM-x32\...\{5E6536C2-E79A-49CF-83EA-817AD81F9FC8}) (Version: - Electronic Arts, Inc.) Portal (HKLM-x32\...\Steam App 400) (Version: - Valve) Portal 2 (HKLM-x32\...\Steam App 620) (Version: - Valve) POSTAL 2 (HKLM-x32\...\Steam App 223470) (Version: - Running With Scissors) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - Realtek Semiconductor Corp.) Red Faction (HKLM-x32\...\Steam App 20530) (Version: - Volition, Inc.) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) Risen 2 - Dark Waters (HKLM-x32\...\Steam App 40390) (Version: - Piranha Bytes) Rust (HKLM-x32\...\Steam App 252490) (Version: - Facepunch Studios) Serious Sam 3: BFE (HKLM-x32\...\Steam App 41070) (Version: - Croteam) SHIELD Streaming (Version: 4.1.1000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: - NVIDIA Corporation) Hidden SimCity 2000 Special Edition (HKLM-x32\...\{59D2C751-F7BE-4E9F-9C8C-1F16013802C7}) (Version: - Electronic Arts) Sins of a Solar Empire®: Rebellion (HKLM-x32\...\Steam App 204880) (Version: - Ironclad Games) Sitecom Wireless Network 300N Adapter (HKLM-x32\...\{F912EF57-65C8-48E8-911F-7FCAF8ADD62E}) (Version: - Sitecom) Spotify (HKU\S-1-5-21-1206241334-3998519493-1326637554-1001\...\Spotify) (Version: - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Syndicate (HKLM-x32\...\{64CFBAAB-46F7-4628-8D9B-E656A8C11CDB}) (Version: - Electronic Arts) Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) Terraria (HKLM-x32\...\Steam App 105600) (Version: - Re-Logic) The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios) The Forest (HKLM-x32\...\Steam App 242760) (Version: - Endnight Games Ltd) The Walking Dead (HKLM-x32\...\Steam App 207610) (Version: - ) The Walking Dead: Season Two (HKLM-x32\...\Steam App 261030) (Version: - Telltale Games) The Witcher: Enhanced Edition (HKLM-x32\...\Steam App 20900) (Version: - CD PROJEKT RED) The Wolf Among Us (HKLM-x32\...\Steam App 250320) (Version: - Telltale Games) theHunter: Primal (HKLM-x32\...\Steam App 322920) (Version: - Expansive Worlds) Thief (HKLM-x32\...\Steam App 239160) (Version: - Eidos-Montréal) Thief 2 (HKLM-x32\...\Steam App 211740) (Version: - Looking Glass Studios) Thief Gold (HKLM-x32\...\Steam App 211600) (Version: - Looking Glass Studios) Thief: Deadly Shadows (HKLM-x32\...\Steam App 6980) (Version: - Ion Storm) Titan Quest (HKLM-x32\...\Steam App 4540) (Version: - Iron Lore Entertainment) Titan Quest: Immortal Throne (HKLM-x32\...\Steam App 4550) (Version: - Iron Lore Entertainment) Tomb Raider (HKLM-x32\...\Steam App 203160) (Version: - Crystal Dynamics) Trine 2 (HKLM-x32\...\Steam App 35720) (Version: - Frozenbyte) Vampire: The Masquerade - Bloodlines (HKLM-x32\...\Steam App 2600) (Version: - Troika Games) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-1206241334-3998519493-1326637554-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Richi\AppData\Local\Microsoft\OneDrive\17.3.4726.0226\amd64\FileSyncApi64.dll (Microsoft Corporation) ==================== Restore Points ========================= 11-04-2015 18:14:24 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 12-04-2015 20:08:51 Installed Wireless Network 300N Adapter 14-04-2015 17:01:28 Revo Uninstaller's restore point - Wajam 16-04-2015 16:57:33 DirectX wurde installiert 18-04-2015 10:16:48 Entfernt The Witcher 2 ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {4A59A59D-FE74-45A9-B722-F98A77E7A1B6} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-04-01] (Microsoft Corporation) Task: {4F91FB2E-87A8-4057-96A8-704EABD8F3CE} - System32\Tasks\{8E521F19-3C45-4678-BBA2-B7739752DE54} => pcalua.exe -a "C:\Program Files (x86)\ Malwarebytes Anti-Malware \unins000.exe" Task: {696F798A-AFF4-4376-8648-C61449E3F83E} - System32\Tasks\Norton 360\Norton Error Processor => C:\Program Files (x86)\Norton 360\Engine\\SymErr.exe [2014-01-30] (Symantec Corporation) Task: {7053DE24-8076-4C95-BFA3-5BBBAA987C84} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton 360\Engine\\WSCStub.exe [2015-03-07] (Symantec Corporation) Task: {76D40ED7-B595-4170-B5F2-ACB49A9442FA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-12] (Google Inc.) Task: {86F74004-E85F-40C3-A8D3-45068477A0D8} - System32\Tasks\Norton 360\Norton Error Analyzer => C:\Program Files (x86)\Norton 360\Engine\\SymErr.exe [2014-01-30] (Symantec Corporation) Task: {B1F82E87-0D08-4156-ACAB-8766D7966DE4} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1206241334-3998519493-1326637554-1001 => %localappdata%\Microsoft\OneDrive\OneDrive.exe Task: {F5AFC8C6-7B1E-478B-9C93-F689F914FEFC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-12] (Google Inc.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============== 2015-04-08 15:02 - 2015-03-13 18:16 - 00118472 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-09-18 09:23 - 2014-09-18 09:23 - 00866584 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll 2015-03-12 20:23 - 2015-03-12 20:23 - 01050904 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll 2014-09-18 09:23 - 2014-09-18 09:23 - 00059160 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll 2015-03-12 20:23 - 2015-03-12 20:23 - 00242456 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll 2014-11-10 12:12 - 2014-11-10 12:12 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2015-04-11 18:04 - 2015-03-28 05:45 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-04-11 18:24 - 2015-03-10 08:37 - 00775680 _____ () D:\Steam\SDL2.dll 2015-04-11 18:24 - 2014-12-02 02:29 - 05002752 _____ () D:\Steam\v8.dll 2015-04-11 18:24 - 2015-04-14 01:44 - 02371776 _____ () D:\Steam\video.dll 2015-04-11 18:24 - 2014-12-02 02:29 - 01612800 _____ () D:\Steam\icui18n.dll 2015-04-11 18:24 - 2014-12-02 02:29 - 01210368 _____ () D:\Steam\icuuc.dll 2015-04-11 18:24 - 2014-12-01 23:31 - 02396672 _____ () D:\Steam\libavcodec-56.dll 2015-04-11 18:24 - 2014-12-01 23:31 - 00479744 _____ () D:\Steam\libavformat-56.dll 2015-04-11 18:24 - 2014-12-01 23:31 - 00332800 _____ () D:\Steam\libavresample-2.dll 2015-04-11 18:24 - 2014-12-01 23:31 - 00442880 _____ () D:\Steam\libavutil-54.dll 2015-04-11 18:24 - 2014-12-01 23:31 - 00485888 _____ () D:\Steam\libswscale-3.dll 2015-04-11 18:24 - 2015-04-14 01:44 - 00702656 _____ () D:\Steam\bin\chromehtml.DLL 2015-04-12 20:09 - 2009-11-09 12:35 - 00913408 _____ () C:\Program Files (x86)\Sitecom\Common\RaWLAPI.dll 2015-04-11 18:24 - 2015-02-25 03:58 - 34641288 _____ () D:\Steam\bin\libcef.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp.sys => ""="Driver" ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1206241334-3998519493-1326637554-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Richi\Pictures\2560x1440\1SzBC.jpg DNS Servers: Media is not connected to internet. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== Accounts: ============================= Administrator (S-1-5-21-1206241334-3998519493-1326637554-500 - Administrator - Disabled) Gast (S-1-5-21-1206241334-3998519493-1326637554-501 - Limited - Disabled) Richi (S-1-5-21-1206241334-3998519493-1326637554-1001 - Administrator - Enabled) => C:\Users\Richi ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (04/19/2015 11:21:30 AM) (Source: NvStreamSvc) (EventID: 2001) (User: ) Description: NvStreamSvcFailed continue stopping. [6] Error: (04/19/2015 11:20:20 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (04/18/2015 03:41:17 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm ts3client_win64.exe, Version kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: a44 Startzeit: 01d079dcbb7a468b Endzeit: 25 Anwendungspfad: C:\Program Files (x86)\Teamspeak\ts3client_win64.exe Berichts-ID: 00e616f0-e5d0-11e4-8267-fcaa147b652b Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (04/18/2015 03:35:48 PM) (Source: NvStreamSvc) (EventID: 2001) (User: ) Description: NvStreamSvcFailed continue stopping. [5] Error: (04/18/2015 00:46:26 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm IEXPLORE.EXE, Version 11.0.9600.17037 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1190 Startzeit: 01d079c38bff25c0 Endzeit: 38 Anwendungspfad: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE Berichts-ID: 27280f8c-e5b8-11e4-8267-fcaa147b652b Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (04/18/2015 00:35:21 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm ts3client_win64.exe, Version kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 15b4 Startzeit: 01d079c30f2a23ca Endzeit: 22 Anwendungspfad: C:\Program Files (x86)\Teamspeak\ts3client_win64.exe Berichts-ID: 9a6dce1d-e5b6-11e4-8267-fcaa147b652b Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (04/18/2015 00:23:28 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm ts3client_win64.exe, Version kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: ea4 Startzeit: 01d079c19b173f32 Endzeit: 16 Anwendungspfad: C:\Program Files (x86)\Teamspeak\ts3client_win64.exe Berichts-ID: e8dd35b1-e5b4-11e4-8267-fcaa147b652b Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (04/18/2015 00:05:08 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm ts3client_win64.exe, Version kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 126c Startzeit: 01d079be7923a2bb Endzeit: 21 Anwendungspfad: C:\Program Files (x86)\Teamspeak\ts3client_win64.exe Berichts-ID: 61624c4c-e5b2-11e4-8267-fcaa147b652b Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (04/18/2015 11:27:02 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm launcher.exe, Version kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 13b4 Startzeit: 01d079b935bc14f4 Endzeit: 4294967295 Anwendungspfad: D:\Steam\steamapps\common\the witcher 2\launcher.exe Berichts-ID: 11289afb-e5ad-11e4-8266-fcaa147b652b Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (04/18/2015 11:22:25 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm launcher.exe, Version kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: f24 Startzeit: 01d079b8be9e5814 Endzeit: 4294967295 Anwendungspfad: D:\Steam\steamapps\common\the witcher 2\launcher.exe Berichts-ID: 6c297287-e5ac-11e4-8266-fcaa147b652b Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: System errors: ============= Error: (04/18/2015 11:58:18 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Volumeschattenkopie" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (04/18/2015 11:58:18 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Media Player-Netzwerkfreigabedienst" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (04/18/2015 11:58:18 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Dynamic Application Loader Host Interface Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (04/18/2015 11:58:18 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Rapid Storage Technology" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (04/18/2015 11:58:17 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (04/18/2015 11:58:17 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Ralink Registry Writer 64" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (04/18/2015 11:58:17 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Ralink Registry Writer" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (04/18/2015 11:58:17 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "NVIDIA Streamer Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (04/18/2015 11:58:17 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "NVIDIA Network Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (04/18/2015 11:58:17 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "NVIDIA GeForce Experience Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Microsoft Office Sessions: ========================= Error: (04/19/2015 11:21:30 AM) (Source: NvStreamSvc) (EventID: 2001) (User: ) Description: NvStreamSvcFailed continue stopping. [6] Error: (04/19/2015 11:20:20 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (04/18/2015 03:41:17 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: ts3client_win64.exe3.0.16.0a4401d079dcbb7a468b25C:\Program Files (x86)\Teamspeak\ts3client_win64.exe00e616f0-e5d0-11e4-8267-fcaa147b652b Error: (04/18/2015 03:35:48 PM) (Source: NvStreamSvc) (EventID: 2001) (User: ) Description: NvStreamSvcFailed continue stopping. [5] Error: (04/18/2015 00:46:26 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: IEXPLORE.EXE11.0.9600.17037119001d079c38bff25c038C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE27280f8c-e5b8-11e4-8267-fcaa147b652b Error: (04/18/2015 00:35:21 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: ts3client_win64.exe3.0.16.015b401d079c30f2a23ca22C:\Program Files (x86)\Teamspeak\ts3client_win64.exe9a6dce1d-e5b6-11e4-8267-fcaa147b652b Error: (04/18/2015 00:23:28 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: ts3client_win64.exe3.0.16.0ea401d079c19b173f3216C:\Program Files (x86)\Teamspeak\ts3client_win64.exee8dd35b1-e5b4-11e4-8267-fcaa147b652b Error: (04/18/2015 00:05:08 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: ts3client_win64.exe3.0.16.0126c01d079be7923a2bb21C:\Program Files (x86)\Teamspeak\ts3client_win64.exe61624c4c-e5b2-11e4-8267-fcaa147b652b Error: (04/18/2015 11:27:02 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: launcher.exe0.9.0.86613b401d079b935bc14f44294967295D:\Steam\steamapps\common\the witcher 2\launcher.exe11289afb-e5ad-11e4-8266-fcaa147b652b Error: (04/18/2015 11:22:25 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: launcher.exe0.9.0.866f2401d079b8be9e58144294967295D:\Steam\steamapps\common\the witcher 2\launcher.exe6c297287-e5ac-11e4-8266-fcaa147b652b ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-4790K CPU @ 4.00GHz Percentage of memory in use: 10% Total physical RAM: 16286.38 MB Available physical RAM: 14655.32 MB Total Pagefile: 18718.38 MB Available Pagefile: 17094.92 MB Total Virtual: 131072 MB Available Virtual: 131071.85 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:465.76 GB) (Free:256.49 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: () (Fixed) (Total:931.51 GB) (Free:345.86 GB) NTFS Drive e: (TW2_EFIGS_Disc2) (CDROM) (Total:6.12 GB) (Free:0 GB) UDF Drive g: (INTENSO) (Removable) (Total:59.09 GB) (Free:25.95 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 3240A774) Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 3240A77C) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 59.1 GB) (Disk ID: 00000000) Partition: GPT Partition Type. ==================== End Of Log ============================ |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Proxyserver ließ sich nicht abschalten / durch Malewarebyte behoben / System wieder Clean? seit wann genau ist das so?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
