|
Log-Analyse und Auswertung: vlc.de trojaner :-/ keine besserung durch die überprüfungenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
14.04.2015, 21:24 | #1 |
| vlc.de trojaner :-/ keine besserung durch die überprüfungen Hallo! Ich bekomme diese furchtbar lässtige Seit nicht weg! Interessanterweise ist der PC (aus anderen Gründen) eben neu aufgesetzt worden. Durch die Installation von Google Chrome habe ich dann das Problem gehabt, als ich mich in Chrome mit meinem Gmail Konto angemeldet habe. Danke im Voraus für die Hilfe! Hier die Logs die in einem anderen Post zu diesem Thema erfragt wurden: MBAM: <?xml version="1.0" encoding="UTF-16" ?> - <mbam-log> - <header> <date>2015/04/14 20:39:53 +0200</date> <logfile>mbam-log-2015-04-14 (20-39-52).xml</logfile> <isadmin>yes</isadmin> </header> - <engine> <version>2.01.4.1018</version> <malware-database>v2015.04.14.05</malware-database> <rootkit-database>v2015.03.31.01</rootkit-database> <license>trial</license> <file-protection>enabled</file-protection> <web-protection>enabled</web-protection> <self-protection>disabled</self-protection> </engine> - <system> <osversion>Windows 7 Service Pack 1</osversion> <arch>x86</arch> <username>Stand PC Gustel</username> <filesys>NTFS</filesys> </system> - <summary> <type>threat</type> <result>completed</result> <objects>286401</objects> <time>144</time> <processes>0</processes> <modules>0</modules> <keys>0</keys> <values>0</values> <datas>0</datas> <folders>0</folders> <files>0</files> <sectors>0</sectors> </summary> - <options> <memory>enabled</memory> <startup>enabled</startup> <filesystem>enabled</filesystem> <archives>enabled</archives> <rootkits>disabled</rootkits> <deeprootkit>disabled</deeprootkit> <heuristics>enabled</heuristics> <pup>enabled</pup> <pum>enabled</pum> </options> <items /> </mbam-log> <?xml version="1.0" encoding="UTF-8" ?> - <logs> <record severity="debug" LoggingEventType="2" datetime="2015-04-14T20:38:13.549546+02:00" source="Protection" type="Protection" username="SYSTEM" systemname="STAND_PC_GUSTEL" last_modified_tag="e3633eaa-d940-4a5e-a0d6-3a9b477610de" result="Starting" subtype="Malware Protection" /> <record severity="debug" LoggingEventType="2" datetime="2015-04-14T20:38:13.553546+02:00" source="Protection" type="Protection" username="SYSTEM" systemname="STAND_PC_GUSTEL" last_modified_tag="86c51a20-4ac9-4f8a-a710-c064e13af5fc" result="Started" subtype="Malware Protection" /> <record severity="debug" LoggingEventType="2" datetime="2015-04-14T20:38:13.579548+02:00" source="Protection" type="Protection" username="SYSTEM" systemname="STAND_PC_GUSTEL" last_modified_tag="89dda89d-f99b-486f-ae5f-ff4345e47453" result="Starting" subtype="Malicious Website Protection" /> <record severity="debug" LoggingEventType="2" datetime="2015-04-14T20:38:14.783617+02:00" source="Protection" type="Protection" username="SYSTEM" systemname="STAND_PC_GUSTEL" last_modified_tag="70ea8913-3c67-42e8-85ec-1140978691a7" result="Started" subtype="Malicious Website Protection" /> <record severity="debug" LoggingEventType="1" datetime="2015-04-14T20:38:18.207813+02:00" source="Manual" type="Update" username="SYSTEM" systemname="STAND_PC_GUSTEL" fromVersion="2015.2.25.1" last_modified_tag="3c3c6c49-99e5-45a8-b127-95df79b52586" name="Rootkit Database" toVersion="2015.3.31.1" /> <record severity="debug" LoggingEventType="1" datetime="2015-04-14T20:38:18.216813+02:00" source="Manual" type="Update" username="SYSTEM" systemname="STAND_PC_GUSTEL" fromVersion="2015.3.9.1" last_modified_tag="92f00400-77d2-4d73-a4ae-db7b1bea2299" name="Remediation Database" toVersion="2015.4.6.2" /> <record severity="debug" LoggingEventType="1" datetime="2015-04-14T20:39:04.074436+02:00" source="Manual" type="Update" username="SYSTEM" systemname="STAND_PC_GUSTEL" fromVersion="2015.3.9.5" last_modified_tag="d05146a1-67e6-488b-848d-36712e08c617" name="Malware Database" toVersion="2015.4.14.5" /> <record severity="debug" LoggingEventType="2" datetime="2015-04-14T20:39:04.110438+02:00" source="Protection" type="Protection" username="SYSTEM" systemname="STAND_PC_GUSTEL" last_modified_tag="fcb5ff08-f644-4be7-856b-711683e714ac" result="Starting" subtype="Refresh" /> <record severity="debug" LoggingEventType="2" datetime="2015-04-14T20:39:04.123439+02:00" source="Protection" type="Protection" username="SYSTEM" systemname="STAND_PC_GUSTEL" last_modified_tag="844c8afe-486f-4db0-b9e5-48abe7614a21" result="Stopping" subtype="Malicious Website Protection" /> <record severity="debug" LoggingEventType="2" datetime="2015-04-14T20:39:04.173442+02:00" source="Protection" type="Protection" username="SYSTEM" systemname="STAND_PC_GUSTEL" last_modified_tag="81689501-6829-4aa1-884e-8ef253964bfc" result="Stopped" subtype="Malicious Website Protection" /> <record severity="debug" LoggingEventType="2" datetime="2015-04-14T20:39:09.115724+02:00" source="Protection" type="Protection" username="SYSTEM" systemname="STAND_PC_GUSTEL" last_modified_tag="fcb7ad85-cd00-494f-8879-6e9b28071a47" result="Success" subtype="Refresh" /> <record severity="debug" LoggingEventType="2" datetime="2015-04-14T20:39:09.132725+02:00" source="Protection" type="Protection" username="SYSTEM" systemname="STAND_PC_GUSTEL" last_modified_tag="677c6c2d-ac60-45c1-9897-9cfba8362f37" result="Starting" subtype="Malicious Website Protection" /> <record severity="debug" LoggingEventType="2" datetime="2015-04-14T20:39:09.332737+02:00" source="Protection" type="Protection" username="SYSTEM" systemname="STAND_PC_GUSTEL" last_modified_tag="b68d206f-4383-483f-b610-85b1f3ad1e23" result="Started" subtype="Malicious Website Protection" /> <record severity="debug" scantype="threat" LoggingEventType="6" starttime="2015-04-14T20:39:53+02:00" datetime="2015-04-14T20:42:18.258543+02:00" source="Manual" type="Scan" username="SYSTEM" systemname="STAND_PC_GUSTEL" last_modified_tag="19eac67a-d8e3-46c0-9b37-d16c9a3cd170" duration="144" malwaredetections="0" nonmalwaredetections="0" scanresult="completed" /> </logs> AdwCleaner: # AdwCleaner v4.201 - Bericht erstellt 14/04/2015 um 21:37:12 # Aktualisiert 08/04/2015 von Xplode # Datenbank : 2015-04-08.1 [Server] # Betriebssystem : Windows 7 Home Premium Service Pack 1 (x86) # Benutzername : Stand PC Gustel - STAND_PC_GUSTEL # Gestarted von : C:\Users\Stand PC Gustel\Downloads\adwcleaner_4.201.exe # Option : Suchlauf ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Geplante Tasks ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gefunden : HKCU\Software\OCS ***** [ Internetbrowser ] ***** -\\ Internet Explorer v8.0.7601.17514 -\\ Google Chrome v42.0.2311.90 [C:\Users\Stand PC Gustel\AppData\Local\Google\Chrome\User Data\Default\Web data] - Gefunden [Search Provider] : hxxp://www.softonic.de/s/{searchTerms} [C:\Users\Stand PC Gustel\AppData\Local\Google\Chrome\User Data\Default\Web data] - Gefunden [Search Provider] : hxxp://www.searchgol.com/?q={searchTerms}&babsrc=SP_ss&mntrId=14CF028037EC0200&affID=119357&tt=250913_cpn2&tsp=5017 [C:\Users\Stand PC Gustel\AppData\Local\Google\Chrome\User Data\Default\Web data] - Gefunden [Search Provider] : hxxp://www.sm.de/?q={searchTerms} [C:\Users\Stand PC Gustel\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Gefunden [Startup_URLs] : hxxps://www.google.at/webhp?hl=de", "http://www.trojaner-board.de/125206-...entfernen.html ************************* AdwCleaner[R0].txt - [1476 Bytes] - [14/04/2015 21:37:12] ########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [1535 Bytes] ########## JRT: ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.5.4 (04.13.2015:1) OS: Windows 7 Home Premium x86 Ran by Stand PC Gustel on 14.04.2015 at 22:07:57,98 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 14.04.2015 at 22:09:11,90 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
15.04.2015, 05:51 | #2 |
/// the machine /// TB-Ausbilder | vlc.de trojaner :-/ keine besserung durch die überprüfungen hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
15.04.2015, 18:26 | #3 |
| vlc.de trojaner :-/ keine besserung durch die überprüfungen Danke für die prompte Antwort und verzeih das nicht richtige posten der log files....
__________________hier die beiden FRST log files: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 15-04-2015 02 Ran by Stand PC Gustel (administrator) on STAND_PC_GUSTEL on 15-04-2015 19:23:23 Running from C:\Users\Stand PC Gustel\Downloads Loaded Profiles: Stand PC Gustel (Available profiles: Stand PC Gustel) Platform: Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Malwarebytes Corporation) C:\Program Files\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files\ Malwarebytes Anti-Malware \mbamservice.exe (Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe (Malwarebytes Corporation) C:\Program Files\ Malwarebytes Anti-Malware \mbam.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Dropbox, Inc.) C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieCtrl.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe [5995152 2012-10-29] (Realtek Semiconductor) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5512912 2015-04-14] (Avast Software s.r.o.) HKU\S-1-5-21-2326092962-1437722205-4255648254-1000\...\Run: [SandboxieControl] => C:\Program Files\Sandboxie\SbieCtrl.exe [632840 2015-02-18] (Sandboxie Holdings, LLC) Startup: C:\Users\Stand PC Gustel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (Avast Software s.r.o.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKU\S-1-5-21-2326092962-1437722205-4255648254-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-at/?ocid=iehp SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-04-14] (Avast Software s.r.o.) Toolbar: HKU\S-1-5-21-2326092962-1437722205-4255648254-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Tcpip\Parameters: [DhcpNameServer] 195.34.133.21 212.186.211.21 FireFox: ======== FF Plugin: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation) FF Plugin: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-04-14] (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-04-14] (Google Inc.) FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: No Name - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-04-14] Chrome: ======= CHR HomePage: Default -> hxxp://www.google.at/ CHR StartupUrls: Default -> "https://www.google.at/webhp?hl=de", "http://www.trojaner-board.de/125206-...tfernen.html", "https://support.google.com/chrome/answer/95314?hl=de", "hxxp://www.google.com" CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter} CHR Profile: C:\Users\Stand PC Gustel\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (YouTube) - C:\Users\Stand PC Gustel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-04-14] CHR Extension: (Google Search) - C:\Users\Stand PC Gustel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-04-14] CHR Extension: (Bookmark Manager) - C:\Users\Stand PC Gustel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-04-14] CHR Extension: (Avast Online Security) - C:\Users\Stand PC Gustel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-04-14] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Stand PC Gustel\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-14] CHR Extension: (Google Wallet) - C:\Users\Stand PC Gustel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-14] CHR Extension: (Gmail) - C:\Users\Stand PC Gustel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-14] CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-04-14] ========================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-04-14] (Avast Software s.r.o.) R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3205216 2015-04-14] (Avast Software) S3 cphs; C:\Windows\system32\IntelCpHeciSvc.exe [277048 2012-11-14] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [462048 2012-04-20] (Intel(R) Corporation) R2 jhi_service; C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation) R2 MBAMScheduler; C:\Program Files\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2015-03-17] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files\ Malwarebytes Anti-Malware \mbamservice.exe [1080120 2015-03-17] (Malwarebytes Corporation) R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [135176 2015-02-18] (Sandboxie Holdings, LLC) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 asmthub3; C:\Windows\System32\DRIVERS\asmthub3.sys [110408 2012-08-20] (ASMedia Technology Inc) R3 asmtxhci; C:\Windows\System32\DRIVERS\asmtxhci.sys [331080 2012-08-20] (ASMedia Technology Inc) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24144 2015-04-14] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [73440 2015-04-14] (Avast Software s.r.o.) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81728 2015-04-14] (Avast Software s.r.o.) R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49904 2015-04-14] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [788272 2015-04-14] (Avast Software s.r.o.) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427736 2015-04-14] (Avast Software s.r.o.) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [106912 2015-04-14] (Avast Software s.r.o.) R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [208024 2015-04-14] () R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2015-03-17] (Malwarebytes Corporation) R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [119512 2015-04-15] (Malwarebytes Corporation) R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2015-03-17] (Malwarebytes Corporation) R3 MEI; C:\Windows\System32\DRIVERS\HECI.sys [55104 2012-07-02] (Intel Corporation) R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [161288 2015-02-18] (Sandboxie Holdings, LLC) R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [220240 2015-04-14] (Avast Software) R4 IOMap; \??\C:\Windows\system32\drivers\IOMap.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-04-15 19:23 - 2015-04-15 19:23 - 00012439 _____ () C:\Users\Stand PC Gustel\Downloads\FRST.txt 2015-04-15 19:21 - 2015-04-15 19:23 - 00000000 ____D () C:\FRST 2015-04-15 19:21 - 2015-04-15 19:21 - 00001388 _____ () C:\Windows\Sandboxie.ini 2015-04-15 19:21 - 2015-04-15 19:21 - 00000000 ___RD () C:\Sandbox 2015-04-15 19:20 - 2015-04-15 19:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie 2015-04-15 19:20 - 2015-04-15 19:20 - 00000000 ____D () C:\Program Files\Sandboxie 2015-04-15 19:19 - 2015-04-15 19:19 - 01136640 _____ (Farbar) C:\Users\Stand PC Gustel\Downloads\FRST.exe 2015-04-15 19:17 - 2015-04-15 19:17 - 01203488 _____ () C:\Users\Stand PC Gustel\Downloads\Sandboxie - CHIP-Installer.exe 2015-04-15 19:12 - 2015-04-15 19:12 - 00000000 ___SD () C:\Windows\system32\CompatTel 2015-04-15 19:12 - 2015-04-15 19:12 - 00000000 ____D () C:\Windows\system32\appraiser 2015-04-15 14:14 - 2015-04-15 14:14 - 00263272 _____ () C:\Users\Stand PC Gustel\Downloads\MA_SE_Ang.Orgsoziologie_Präsentation Claudia.pptx 2015-04-15 14:14 - 2015-04-15 14:14 - 00263272 _____ () C:\Users\Stand PC Gustel\Downloads\MA_SE_Ang.Orgsoziologie_Präsentation Claudia (1).pptx 2015-04-15 14:11 - 2015-04-15 14:11 - 00000000 ____D () C:\Users\Stand PC Gustel\AppData\Roaming\Adobe 2015-04-14 23:12 - 2015-04-15 14:11 - 00000000 ___SD () C:\Windows\system32\GWX 2015-04-14 23:09 - 2015-04-15 19:13 - 00000000 _____ () C:\Windows\system32\Drivers\lvuvc.hs 2015-04-14 23:09 - 2015-04-15 14:11 - 00003370 _____ () C:\Windows\system32\lvcoinst.log 2015-04-14 23:09 - 2015-04-14 23:09 - 00000000 ____D () C:\Program Files\Common Files\logishrd 2015-04-14 23:01 - 2015-04-14 23:02 - 00000000 ____D () C:\Windows\system32\MRT 2015-04-14 23:01 - 2015-04-01 11:22 - 125832184 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-04-14 22:51 - 2015-01-09 01:44 - 00419936 _____ () C:\Windows\system32\locale.nls 2015-04-14 22:37 - 2012-07-26 05:21 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2015-04-14 22:37 - 2012-07-26 05:20 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll 2015-04-14 22:37 - 2012-07-26 05:20 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2015-04-14 22:37 - 2012-07-26 05:20 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2015-04-14 22:37 - 2012-07-26 05:20 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll 2015-04-14 22:37 - 2012-07-26 04:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2015-04-14 22:37 - 2012-07-26 04:32 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2015-04-14 22:37 - 2012-06-02 16:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2015-04-14 22:36 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll 2015-04-14 22:36 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2015-04-14 22:36 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe 2015-04-14 22:36 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll 2015-04-14 22:36 - 2012-03-01 07:46 - 00019824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys 2015-04-14 22:36 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll 2015-04-14 22:09 - 2015-04-14 22:09 - 00000635 _____ () C:\Users\Stand PC Gustel\Desktop\JRT.txt 2015-04-14 22:08 - 2015-04-14 22:08 - 17142784 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 11220992 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 04240384 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-04-14 22:08 - 2015-04-14 22:08 - 02166272 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 01926656 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-04-14 22:08 - 2015-04-14 22:08 - 01818112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 01156608 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 01051136 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00703488 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2015-04-14 22:08 - 2015-04-14 22:08 - 00645120 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2015-04-14 22:08 - 2015-04-14 22:08 - 00610304 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00553472 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00454656 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-04-14 22:08 - 2015-04-14 22:08 - 00244736 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00238288 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-04-14 22:08 - 2015-04-14 22:08 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2015-04-14 22:08 - 2015-04-14 22:08 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2015-04-14 22:08 - 2015-04-14 22:08 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-04-14 22:08 - 2015-04-14 22:08 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-04-14 22:08 - 2015-04-14 22:08 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2015-04-14 22:08 - 2015-04-14 22:08 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2015-04-14 22:08 - 2015-04-14 22:08 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2015-04-14 22:08 - 2015-04-14 22:08 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2015-04-14 22:08 - 2015-04-14 22:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2015-04-14 22:08 - 2015-04-14 22:08 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-04-14 22:08 - 2015-04-14 22:08 - 00000207 _____ () C:\Windows\tweaking.com-regbackup-STAND_PC_GUSTEL-Windows-7-Home-Premium-(32-bit).dat 2015-04-14 22:07 - 2015-04-14 22:07 - 00000000 ____D () C:\RegBackup 2015-04-14 21:55 - 2015-03-06 07:15 - 00137656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-04-14 21:55 - 2015-03-06 07:15 - 00067512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2015-04-14 21:55 - 2015-03-06 07:10 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-04-14 21:55 - 2015-03-06 07:10 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-04-14 21:55 - 2015-03-06 07:10 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-04-14 21:55 - 2015-03-06 07:10 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-04-14 21:55 - 2015-03-06 07:10 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2015-04-14 21:55 - 2015-03-06 07:10 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2015-04-14 21:55 - 2015-03-06 07:10 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2015-04-14 21:55 - 2015-03-06 07:10 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2015-04-14 21:55 - 2015-03-06 07:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2015-04-14 21:55 - 2015-03-06 07:10 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2015-04-14 21:55 - 2015-03-06 07:10 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2015-04-14 21:55 - 2015-03-06 07:09 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2015-04-14 21:55 - 2015-03-06 07:09 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2015-04-14 21:55 - 2015-03-06 07:07 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-04-14 21:55 - 2015-03-06 07:07 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2015-04-14 21:55 - 2015-03-06 07:06 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-04-14 21:54 - 2015-02-04 04:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2015-04-14 21:54 - 2015-02-03 05:12 - 01230848 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2015-04-14 21:51 - 2015-04-14 21:52 - 02687136 _____ (Thisisu) C:\Users\Stand PC Gustel\Downloads\JRT_254.exe 2015-04-14 21:51 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-04-14 21:38 - 2015-04-14 21:38 - 00001614 _____ () C:\Users\Stand PC Gustel\Desktop\AdwCleaner[R0].txt 2015-04-14 21:37 - 2015-04-14 21:38 - 00000000 ____D () C:\AdwCleaner 2015-04-14 21:28 - 2015-04-14 21:28 - 00000000 ___HD () C:\CanoScan 2015-04-14 21:28 - 2003-09-17 17:35 - 00339968 _____ (CANON INC.) C:\Windows\system32\N067UFW.DLL 2015-04-14 21:28 - 2002-09-12 01:07 - 00036864 _____ (CANON INC.) C:\Windows\system32\CNQU70.DLL 2015-04-14 21:28 - 2002-05-24 03:04 - 00389180 _____ (Canon) C:\Windows\system32\UCS32P.DLL 2015-04-14 21:27 - 2015-04-14 21:27 - 02217984 _____ () C:\Users\Stand PC Gustel\Downloads\adwcleaner_4.201.exe 2015-04-14 21:25 - 2015-04-14 20:42 - 00004335 _____ () C:\Users\Stand PC Gustel\Desktop\protection-log-2015-04-14.xml 2015-04-14 21:25 - 2015-04-14 20:42 - 00002516 _____ () C:\Users\Stand PC Gustel\Desktop\mbam-log-2015-04-14 (20-39-52).xml 2015-04-14 21:13 - 2015-04-14 21:13 - 01289096 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-04-14 21:13 - 2015-04-14 21:13 - 00640512 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2015-04-14 21:13 - 2015-04-14 21:13 - 00619520 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2015-04-14 21:13 - 2015-04-14 21:13 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2015-04-14 21:13 - 2015-04-14 21:13 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe 2015-04-14 21:12 - 2015-04-14 21:12 - 03419136 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 02284544 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 01988096 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 01158144 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 01080832 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 00906240 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 00604160 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 00364544 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2015-04-14 21:12 - 2015-04-14 21:12 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2015-04-14 21:11 - 2015-04-14 22:13 - 00025055 _____ () C:\Windows\IE11_main.log 2015-04-14 21:11 - 2015-04-14 21:11 - 01505280 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2015-04-14 21:09 - 2014-11-11 04:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll 2015-04-14 21:09 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2015-04-14 21:05 - 2015-03-23 05:06 - 00860160 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2015-04-14 21:05 - 2015-03-23 05:06 - 00630784 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2015-04-14 21:05 - 2015-03-23 05:06 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2015-04-14 21:05 - 2015-03-23 05:06 - 00331264 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2015-04-14 21:05 - 2015-03-23 05:06 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2015-04-14 21:05 - 2015-03-23 05:06 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2015-04-14 21:05 - 2015-03-23 05:06 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2015-04-14 21:05 - 2015-03-23 04:59 - 00896000 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2015-04-14 21:05 - 2015-01-28 01:36 - 01167520 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe 2015-04-14 21:05 - 2015-01-09 04:48 - 00635904 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll 2015-04-14 21:05 - 2015-01-09 04:48 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll 2015-04-14 21:05 - 2015-01-09 04:48 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\powertracker.dll 2015-04-14 21:05 - 2014-07-14 03:42 - 00654336 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-04-14 21:05 - 2013-07-04 13:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2015-04-14 21:05 - 2013-07-03 06:02 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys 2015-04-14 21:05 - 2013-07-03 05:36 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2015-04-14 21:05 - 2013-07-03 05:36 - 00025728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2015-04-14 21:05 - 2013-02-12 05:32 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2015-04-14 21:05 - 2012-11-02 07:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2015-04-14 21:04 - 2015-03-05 06:06 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-04-14 21:04 - 2015-03-04 06:16 - 00249784 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys 2015-04-14 21:04 - 2015-03-04 06:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll 2015-04-14 21:04 - 2015-01-17 04:30 - 00828928 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2015-04-14 21:04 - 2014-11-11 03:32 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys 2015-04-14 21:04 - 2014-11-08 04:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2015-04-14 21:04 - 2014-10-14 03:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-04-14 21:04 - 2014-10-04 03:42 - 03221504 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-04-14 21:04 - 2014-10-04 03:42 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2015-04-14 21:04 - 2014-09-04 07:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 2015-04-14 21:04 - 2014-08-12 03:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL 2015-04-14 21:04 - 2014-06-16 03:44 - 00730048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2015-04-14 21:04 - 2014-06-16 03:44 - 00219072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2015-04-14 21:04 - 2014-06-16 03:40 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2015-04-14 21:04 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2015-04-14 21:04 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2015-04-14 21:04 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2015-04-14 21:04 - 2014-03-04 11:17 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2015-04-14 21:04 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2015-04-14 21:04 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2015-04-14 21:04 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2015-04-14 21:04 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2015-04-14 21:04 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2015-04-14 21:04 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2015-04-14 21:04 - 2014-02-04 04:07 - 00234432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2015-04-14 21:04 - 2014-02-04 04:07 - 00149440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2015-04-14 21:04 - 2014-02-04 04:07 - 00027072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys 2015-04-14 21:04 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll 2015-04-14 21:04 - 2014-01-28 04:07 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2015-04-14 21:04 - 2013-10-30 04:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2015-04-14 21:04 - 2013-10-19 03:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2015-04-14 21:04 - 2013-10-12 04:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2015-04-14 21:04 - 2013-10-12 04:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2015-04-14 21:04 - 2013-10-12 03:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2015-04-14 21:04 - 2013-10-12 03:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2015-04-14 21:04 - 2013-10-04 03:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2015-04-14 21:04 - 2013-10-04 03:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2015-04-14 21:04 - 2013-08-28 02:57 - 00434688 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2015-04-14 21:04 - 2013-07-20 12:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2015-04-14 21:04 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2015-04-14 21:04 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2015-04-14 21:04 - 2013-05-10 05:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2015-04-14 21:04 - 2013-04-26 06:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2015-04-14 21:04 - 2013-03-19 05:33 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll 2015-04-14 21:04 - 2013-01-24 06:47 - 00196328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2015-04-14 21:04 - 2012-10-03 18:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll 2015-04-14 21:04 - 2012-10-03 18:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll 2015-04-14 21:04 - 2012-10-03 18:40 - 00499712 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2015-04-14 21:04 - 2012-10-03 17:21 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2015-04-14 21:04 - 2012-08-22 19:16 - 00712048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2015-04-14 21:04 - 2012-08-21 22:12 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe 2015-04-14 21:04 - 2012-07-04 21:45 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys 2015-04-14 21:04 - 2012-06-06 07:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll 2015-04-14 21:04 - 2011-04-29 04:46 - 00311808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2015-04-14 21:04 - 2011-04-29 04:46 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2015-04-14 21:04 - 2011-04-29 04:46 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2015-04-14 21:03 - 2015-03-25 05:00 - 03088384 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-04-14 21:03 - 2015-03-25 05:00 - 02020864 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-04-14 21:03 - 2015-03-25 05:00 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-04-14 21:03 - 2015-03-25 05:00 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-04-14 21:03 - 2015-03-25 05:00 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-04-14 21:03 - 2015-03-25 05:00 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-04-14 21:03 - 2015-03-25 05:00 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-04-14 21:03 - 2015-03-25 05:00 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-04-14 21:03 - 2015-03-25 05:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-04-14 21:03 - 2015-03-25 05:00 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-04-14 21:03 - 2015-03-25 05:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2015-04-14 21:03 - 2015-02-26 05:11 - 02381312 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-04-14 21:03 - 2015-02-25 05:03 - 00514560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys 2015-04-14 21:03 - 2015-02-20 06:13 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2015-04-14 21:03 - 2015-02-20 06:13 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2015-04-14 21:03 - 2015-02-20 06:13 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2015-04-14 21:03 - 2015-02-20 06:13 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2015-04-14 21:03 - 2015-02-20 05:09 - 00299008 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2015-04-14 21:03 - 2015-02-13 07:26 - 12875264 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2015-04-14 21:03 - 2015-02-03 05:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll 2015-04-14 21:03 - 2014-12-19 04:43 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2015-04-14 21:03 - 2014-12-19 03:34 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2015-04-14 21:03 - 2014-12-11 19:47 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2015-04-14 21:03 - 2014-12-06 05:50 - 00242688 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2015-04-14 21:03 - 2014-11-26 05:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2015-04-14 21:03 - 2014-10-30 03:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe 2015-04-14 21:03 - 2014-10-25 03:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2015-04-14 21:03 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2015-04-14 21:03 - 2014-07-17 03:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll 2015-04-14 21:03 - 2014-07-17 03:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2015-04-14 21:03 - 2014-07-17 03:39 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2015-04-14 21:03 - 2014-07-17 03:39 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll 2015-04-14 21:03 - 2014-07-17 03:03 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2015-04-14 21:03 - 2014-07-17 03:02 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2015-04-14 21:03 - 2014-06-19 00:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll 2015-04-14 21:03 - 2014-06-19 00:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll 2015-04-14 21:03 - 2014-06-19 00:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll 2015-04-14 21:03 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2015-04-14 21:03 - 2014-06-03 11:30 - 00101824 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2015-04-14 21:03 - 2014-06-03 11:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-04-14 21:03 - 2014-06-03 11:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2015-04-14 21:03 - 2014-05-30 08:36 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2015-04-14 21:03 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2015-04-14 21:03 - 2014-04-05 04:25 - 01294272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2015-04-14 21:03 - 2014-04-05 04:24 - 00187840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2015-04-14 21:03 - 2014-03-04 11:17 - 00868352 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2015-04-14 21:03 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2015-04-14 21:03 - 2014-01-24 04:18 - 01212352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2015-04-14 21:03 - 2013-11-27 03:14 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2015-04-14 21:03 - 2013-11-27 03:13 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2015-04-14 21:03 - 2013-11-27 03:13 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2015-04-14 21:03 - 2013-11-27 03:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2015-04-14 21:03 - 2013-11-27 03:13 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2015-04-14 21:03 - 2013-11-26 13:11 - 00240576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2015-04-14 21:03 - 2013-10-12 04:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2015-04-14 21:03 - 2013-10-12 04:01 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2015-04-14 21:03 - 2013-10-12 04:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2015-04-14 21:03 - 2013-10-04 03:49 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2015-04-14 21:03 - 2013-10-04 03:17 - 00177152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2015-04-14 21:03 - 2013-08-05 03:56 - 00133056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2015-04-14 21:03 - 2013-08-02 03:50 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 02:52 - 00271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2015-04-14 21:03 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2015-04-14 21:03 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2015-04-14 21:03 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2015-04-14 21:03 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2015-04-14 21:03 - 2013-07-12 12:08 - 00146816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys 2015-04-14 21:03 - 2013-07-12 12:07 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys 2015-04-14 21:03 - 2013-07-12 12:07 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys 2015-04-14 21:03 - 2013-07-04 13:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2015-04-14 21:03 - 2013-07-04 13:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2015-04-14 21:03 - 2013-06-26 00:56 - 00527064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2015-04-14 21:03 - 2013-02-15 05:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2015-04-14 21:03 - 2012-12-07 14:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2015-04-14 21:03 - 2012-12-07 14:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll 2015-04-14 21:03 - 2012-12-07 12:46 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs 2015-04-14 21:03 - 2012-12-07 12:46 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs 2015-04-14 21:03 - 2012-12-07 12:46 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs 2015-04-14 21:03 - 2012-12-07 12:46 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs 2015-04-14 21:03 - 2012-12-07 12:46 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs 2015-04-14 21:03 - 2012-12-07 12:46 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs 2015-04-14 21:03 - 2012-12-07 12:46 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs 2015-04-14 21:03 - 2012-12-07 12:46 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs 2015-04-14 21:03 - 2012-12-07 12:46 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs 2015-04-14 21:03 - 2012-12-07 12:46 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs 2015-04-14 21:03 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs 2015-04-14 21:03 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs 2015-04-14 21:03 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs 2015-04-14 21:03 - 2012-12-07 12:46 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs 2015-04-14 21:03 - 2012-11-29 00:57 - 00047720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2015-04-14 21:03 - 2012-11-29 00:57 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2015-04-14 21:03 - 2012-11-29 00:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2015-04-14 21:03 - 2012-10-09 19:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2015-04-14 21:03 - 2012-10-09 19:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2015-04-14 21:03 - 2012-10-03 18:42 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2015-04-14 21:03 - 2012-10-03 18:42 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2015-04-14 21:03 - 2012-09-26 00:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2015-04-14 21:03 - 2012-07-04 23:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll 2015-04-14 21:03 - 2012-07-04 23:14 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2015-04-14 21:03 - 2012-07-04 23:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll 2015-04-14 21:03 - 2012-05-14 06:33 - 00769024 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2015-04-14 21:03 - 2012-04-26 06:45 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll 2015-04-14 21:03 - 2012-04-26 06:41 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe 2015-04-14 21:03 - 2012-03-17 09:27 - 00056176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys 2015-04-14 21:03 - 2012-01-04 10:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll 2015-04-14 21:03 - 2011-12-30 07:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl 2015-04-14 21:03 - 2011-12-16 09:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll 2015-04-14 21:03 - 2011-11-17 07:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll 2015-04-14 21:03 - 2011-10-15 07:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2015-04-14 21:03 - 2011-08-27 06:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll 2015-04-14 21:03 - 2011-08-17 06:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll 2015-04-14 21:03 - 2011-08-17 06:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax 2015-04-14 21:03 - 2011-07-09 04:30 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-04-14 21:03 - 2011-06-16 06:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll 2015-04-14 21:03 - 2011-06-15 10:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\system32\odbcjt32.dll 2015-04-14 21:03 - 2011-06-15 10:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll 2015-04-14 21:03 - 2011-06-15 10:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll 2015-04-14 21:03 - 2011-06-15 10:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll 2015-04-14 21:03 - 2011-06-15 10:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll 2015-04-14 21:03 - 2011-05-24 12:44 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2015-04-14 21:03 - 2011-05-04 06:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2015-04-14 21:03 - 2011-05-04 06:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2015-04-14 21:03 - 2011-05-04 06:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll 2015-04-14 21:03 - 2011-05-04 06:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll 2015-04-14 21:03 - 2011-05-04 06:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll 2015-04-14 21:03 - 2011-05-04 06:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll 2015-04-14 21:03 - 2011-05-04 06:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2015-04-14 21:03 - 2011-05-04 06:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe 2015-04-14 21:03 - 2011-05-04 06:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe 2015-04-14 21:03 - 2011-05-03 06:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2015-04-14 21:03 - 2011-04-27 04:17 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-04-14 21:03 - 2011-04-27 04:17 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-04-14 21:03 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2015-04-14 21:03 - 2011-03-11 07:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll 2015-04-14 21:03 - 2011-03-11 07:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll 2015-04-14 21:03 - 2011-03-03 07:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2015-04-14 21:03 - 2011-03-03 07:38 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2015-04-14 21:03 - 2011-03-03 07:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe 2015-04-14 21:03 - 2011-02-23 06:47 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys 2015-04-14 21:03 - 2011-02-18 07:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe 2015-04-14 21:03 - 2011-02-12 07:35 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe 2015-04-14 21:03 - 2010-12-23 07:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll 2015-04-14 21:03 - 2010-12-23 07:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll 2015-04-14 21:03 - 2010-12-23 07:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax 2015-04-14 21:02 - 2015-02-03 05:16 - 03973048 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe 2015-04-14 21:02 - 2015-02-03 05:16 - 03917760 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-04-14 21:02 - 2015-02-03 05:16 - 00078784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys 2015-04-14 21:02 - 2015-02-03 05:12 - 11411968 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 03209728 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 01329664 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 01174528 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 01005056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00988160 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00744960 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00442880 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00406016 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00354816 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00265216 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2015-04-14 21:02 - 2015-02-03 05:12 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll 2015-04-14 21:02 - 2015-02-03 05:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx 2015-04-14 21:02 - 2015-02-03 05:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll 2015-04-14 21:02 - 2015-02-03 05:11 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2015-04-14 21:02 - 2015-02-03 05:11 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2015-04-14 21:02 - 2015-02-03 05:11 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe 2015-04-14 21:02 - 2015-02-03 05:11 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe 2015-04-14 21:02 - 2015-02-03 05:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe 2015-04-14 21:02 - 2015-02-03 05:11 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe 2015-04-14 21:02 - 2015-02-03 05:11 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe 2015-04-14 21:02 - 2015-02-03 05:11 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe 2015-04-14 21:02 - 2015-02-03 05:11 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe 2015-04-14 21:02 - 2015-02-03 05:10 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll 2015-04-14 21:02 - 2015-02-03 05:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll 2015-04-14 21:02 - 2015-02-03 05:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2015-04-14 21:02 - 2015-02-03 05:00 - 00593920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys 2015-04-14 21:02 - 2015-02-03 04:26 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys 2015-04-14 21:02 - 2015-01-31 01:56 - 00370488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2015-04-14 21:02 - 2014-12-08 04:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll 2015-04-14 21:02 - 2014-11-01 00:22 - 00521384 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2015-04-14 21:02 - 2014-10-14 03:50 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2015-04-14 21:02 - 2014-06-28 02:21 - 00455752 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2015-04-14 21:02 - 2014-06-28 02:21 - 00409272 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll 2015-04-14 21:02 - 2013-12-04 04:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2015-04-14 21:02 - 2013-12-04 04:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2015-04-14 21:02 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2015-04-14 21:02 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2015-04-14 21:02 - 2013-12-04 04:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2015-04-14 21:02 - 2013-12-04 03:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2015-04-14 21:02 - 2013-12-04 03:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2015-04-14 21:02 - 2013-12-04 03:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2015-04-14 21:02 - 2013-12-04 03:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2015-04-14 21:02 - 2013-02-27 06:49 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2015-04-14 20:58 - 2015-03-10 05:08 - 01237504 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2015-04-14 20:58 - 2015-03-10 05:05 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2015-04-14 20:58 - 2014-10-03 03:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll 2015-04-14 20:58 - 2014-10-03 03:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll 2015-04-14 20:58 - 2014-10-03 03:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll 2015-04-14 20:58 - 2014-10-03 03:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll 2015-04-14 20:58 - 2014-10-03 03:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe 2015-04-14 20:55 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll 2015-04-14 20:55 - 2012-02-17 06:13 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys 2015-04-14 20:44 - 2015-04-14 20:44 - 00000000 ____D () C:\Users\Stand PC Gustel\AppData\Roaming\vlc 2015-04-14 20:43 - 2015-04-14 20:43 - 00001028 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2015-04-14 20:43 - 2015-04-14 20:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2015-04-14 20:43 - 2015-04-14 20:43 - 00000000 ____D () C:\Program Files\VideoLAN 2015-04-14 20:39 - 2015-04-14 20:39 - 01203488 _____ () C:\Users\Stand PC Gustel\Downloads\VLC media player 32 Bit - CHIP-Installer.exe 2015-04-14 20:38 - 2015-04-15 19:13 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-04-14 20:37 - 2015-04-14 20:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-04-14 20:37 - 2015-04-14 20:37 - 00000000 ____D () C:\ProgramData\Malwarebytes 2015-04-14 20:37 - 2015-04-14 20:37 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2015-04-14 20:37 - 2015-03-17 06:15 - 00092888 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-04-14 20:37 - 2015-03-17 06:15 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-04-14 20:37 - 2015-03-17 06:15 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2015-04-14 20:34 - 2015-04-14 20:36 - 21540440 _____ (Malwarebytes Corporation ) C:\Users\Stand PC Gustel\Downloads\mbam-setup-2.1.4.1018.exe 2015-04-14 20:19 - 2015-04-14 20:19 - 00291312 _____ (Avast Software s.r.o.) C:\Windows\system32\aswBoot.exe 2015-04-14 20:19 - 2015-04-14 20:19 - 00043112 _____ (Avast Software s.r.o.) C:\Windows\avastSS.scr 2015-04-14 20:19 - 2015-04-14 19:26 - 00000000 ____D () C:\Windows\Panther 2015-04-14 20:06 - 2015-04-14 20:06 - 00000000 ___HD () C:\ProgramData\CanonBJ 2015-04-14 20:05 - 2006-09-12 20:00 - 00197632 _____ (CANON INC.) C:\Windows\system32\CNMLM86.DLL 2015-04-14 20:00 - 2015-04-14 20:00 - 00018234 _____ () C:\Windows\system32\results.xml 2015-04-14 19:55 - 2015-04-15 19:13 - 00000000 ___RD () C:\Users\Stand PC Gustel\Dropbox 2015-04-14 19:55 - 2015-02-24 04:23 - 00246920 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2015-04-14 19:54 - 2015-04-14 19:54 - 00000000 ____D () C:\Users\Stand PC Gustel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-04-14 19:53 - 2015-04-15 19:13 - 00000000 ____D () C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox 2015-04-14 19:43 - 2015-04-14 20:19 - 00788272 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSnx.sys 2015-04-14 19:43 - 2015-04-14 20:19 - 00427736 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSP.sys 2015-04-14 19:43 - 2015-04-14 20:19 - 00208024 _____ () C:\Windows\system32\Drivers\aswVmm.sys 2015-04-14 19:43 - 2015-04-14 20:19 - 00106912 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswStm.sys 2015-04-14 19:43 - 2015-04-14 20:19 - 00081728 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswRdr2.sys 2015-04-14 19:43 - 2015-04-14 20:19 - 00073440 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswMonFlt.sys 2015-04-14 19:43 - 2015-04-14 20:19 - 00049904 _____ () C:\Windows\system32\Drivers\aswRvrt.sys 2015-04-14 19:43 - 2015-04-14 20:19 - 00024144 _____ () C:\Windows\system32\Drivers\aswHwid.sys 2015-04-14 19:43 - 2015-04-14 19:43 - 00000000 ____D () C:\Windows\system32\vbox 2015-04-14 19:43 - 2015-04-14 19:43 - 00000000 ____D () C:\Users\Stand PC Gustel\AppData\Roaming\AVAST Software 2015-04-14 19:43 - 2015-04-14 19:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2015-04-14 19:43 - 2015-04-14 19:43 - 00000000 ____D () C:\Program Files\AVAST Software 2015-04-14 19:42 - 2015-04-15 19:17 - 00058016 _____ () C:\Users\Stand PC Gustel\AppData\Local\GDIPFONTCACHEV1.DAT 2015-04-14 19:42 - 2015-04-14 19:42 - 00000000 ____D () C:\ProgramData\AVAST Software 2015-04-14 19:41 - 2015-04-14 19:46 - 00000000 ____D () C:\ProgramData\Norton 2015-04-14 19:41 - 2015-04-14 19:41 - 00007532 _____ () C:\Windows\DPINST.LOG 2015-04-14 19:41 - 2015-04-14 19:41 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2015-04-14 19:41 - 2015-04-14 19:41 - 00000000 ____D () C:\Program Files\ASUS 2015-04-14 19:41 - 2015-04-14 19:41 - 00000000 ____D () C:\Program Files\ASM104xUSB3 2015-04-14 19:40 - 2015-04-14 19:40 - 00000000 ____D () C:\Program Files\Common Files\postureAgent 2015-04-14 19:40 - 2012-07-02 15:16 - 00055104 _____ (Intel Corporation) C:\Windows\system32\Drivers\HECI.sys 2015-04-14 19:40 - 2012-06-25 10:42 - 00015168 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll 2015-04-14 19:39 - 2015-04-14 19:40 - 00000086 _____ () C:\Windows\MEI.log 2015-04-14 19:39 - 2015-04-14 19:40 - 00000000 ____D () C:\ProgramData\Intel 2015-04-14 19:39 - 2015-04-14 19:39 - 00000000 ____D () C:\Users\Stand PC Gustel\AppData\Roaming\InstallShield 2015-04-14 19:39 - 2012-11-14 01:55 - 00277048 _____ (Intel Corporation) C:\Windows\system32\IntelCpHeciSvc.exe 2015-04-14 19:39 - 2012-11-14 01:55 - 00269880 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe 2015-04-14 19:39 - 2012-11-14 01:55 - 00145464 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe 2015-04-14 19:39 - 2012-11-14 01:54 - 06228536 _____ (Intel Corporation) C:\Windows\system32\GfxUI.exe 2015-04-14 19:39 - 2012-11-14 01:54 - 00197688 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe 2015-04-14 19:39 - 2012-11-14 01:54 - 00189496 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe 2015-04-14 19:39 - 2012-11-14 01:54 - 00180792 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe 2015-04-14 19:39 - 2012-11-12 23:34 - 27644928 _____ (Intel Corporation) C:\Windows\system32\igdrcl32.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 21810688 _____ (Intel Corporation) C:\Windows\system32\igdfcl32.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 11171840 _____ (Intel Corporation) C:\Windows\system32\igd10umd32.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 11049472 _____ (Intel Corporation) C:\Windows\system32\igdumd32.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 09023488 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 08580096 _____ (Intel Corporation) C:\Windows\system32\ig7icd32.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 03745792 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd32.sys 2015-04-14 19:39 - 2012-11-12 23:34 - 03121664 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit32.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 02898944 _____ (Intel Corporation) C:\Windows\system32\igdbcl32.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 01921265 _____ () C:\Windows\system32\iglhxa32.cpa 2015-04-14 19:39 - 2012-11-12 23:34 - 00755048 _____ () C:\Windows\system32\igcodeckrng700.bin 2015-04-14 19:39 - 2012-11-12 23:34 - 00640512 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt32.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00598780 _____ () C:\Windows\system32\igvpkrng700.bin 2015-04-14 19:39 - 2012-11-12 23:34 - 00519680 _____ (Intel Corporation) C:\Windows\system32\iglhsip32.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00459264 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt32.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00452440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00437248 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00437248 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00436736 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00436736 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00436736 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00436736 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00436736 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00436736 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00436736 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00436224 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00436224 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00436224 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00435200 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00435200 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00433664 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00433664 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00430080 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00429056 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00427008 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00426496 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00330240 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00312832 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00286208 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00284160 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc 2015-04-14 19:39 - 2012-11-12 23:34 - 00223233 _____ () C:\Windows\system32\Gfxres.th-TH.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00209727 _____ () C:\Windows\system32\Gfxres.el-GR.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00195584 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL32.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00193862 _____ () C:\Windows\system32\Gfxres.ru-RU.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00180224 _____ (Intel Corporation) C:\Windows\system32\iglhcp32.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00174592 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00165865 _____ () C:\Windows\system32\Gfxres.ar-SA.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00163120 _____ () C:\Windows\system32\Gfxres.ja-JP.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00158727 _____ () C:\Windows\system32\Gfxres.he-IL.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00149390 _____ () C:\Windows\system32\Gfxres.it-IT.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00147759 _____ () C:\Windows\system32\Gfxres.ko-KR.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00147101 _____ () C:\Windows\system32\Gfxres.de-DE.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00147010 _____ () C:\Windows\system32\Gfxres.es-ES.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00145715 _____ () C:\Windows\system32\Gfxres.ro-RO.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00145211 _____ () C:\Windows\system32\Gfxres.fr-FR.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00144378 _____ () C:\Windows\system32\Gfxres.tr-TR.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00143976 _____ () C:\Windows\system32\Gfxres.pt-BR.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00143730 _____ () C:\Windows\system32\Gfxres.nl-NL.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00143657 _____ () C:\Windows\system32\Gfxres.hu-HU.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00142990 _____ () C:\Windows\system32\Gfxres.pt-PT.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00142617 _____ () C:\Windows\system32\Gfxres.sv-SE.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00142423 _____ () C:\Windows\system32\Gfxres.pl-PL.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00142008 _____ () C:\Windows\system32\Gfxres.cs-CZ.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00141739 _____ () C:\Windows\system32\Gfxres.fi-FI.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00141574 _____ () C:\Windows\system32\Gfxres.sk-SK.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00140779 _____ () C:\Windows\system32\Gfxres.hr-HR.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00137621 _____ () C:\Windows\system32\Gfxres.sl-SI.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00137534 _____ () C:\Windows\system32\Gfxres.nb-NO.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00136873 _____ () C:\Windows\system32\Gfxres.da-DK.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00132360 _____ () C:\Windows\system32\Gfxres.en-US.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00130048 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00126035 _____ () C:\Windows\system32\Gfxres.zh-TW.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00124403 _____ () C:\Windows\system32\Gfxres.zh-CN.resources 2015-04-14 19:39 - 2012-11-12 23:34 - 00120320 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl 2015-04-14 19:39 - 2012-11-12 23:34 - 00102400 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v2884.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00096256 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00094208 _____ () C:\Windows\system32\IccLibDll.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00067652 _____ () C:\Windows\system32\iglhxs32.vp 2015-04-14 19:39 - 2012-11-12 23:34 - 00064512 _____ () C:\Windows\system32\igdde32.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00059594 _____ () C:\Windows\system32\iglhxc32.vp 2015-04-14 19:39 - 2012-11-12 23:34 - 00059392 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00059384 _____ () C:\Windows\system32\iglhxc32_dev.vp 2015-04-14 19:39 - 2012-11-12 23:34 - 00059328 _____ () C:\Windows\system32\iglhxg32_dev.vp 2015-04-14 19:39 - 2012-11-12 23:34 - 00059215 _____ () C:\Windows\system32\iglhxo32_dev.vp 2015-04-14 19:39 - 2012-11-12 23:34 - 00058781 _____ () C:\Windows\system32\iglhxo32.vp 2015-04-14 19:39 - 2012-11-12 23:34 - 00056320 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL 2015-04-14 19:39 - 2012-11-12 23:34 - 00056320 _____ (Khronos Group) C:\Windows\system32\Intel_OpenCL_ICD32.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00025088 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00009728 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00001074 _____ () C:\Windows\system32\iglhxa32.vp 2015-04-14 19:39 - 2012-11-12 23:34 - 00000259 _____ () C:\Windows\system32\GfxUI.exe.config 2015-04-14 19:38 - 2015-04-14 19:38 - 00000189 _____ () C:\Windows\LAN.log 2015-04-14 19:38 - 2013-08-27 08:08 - 00679128 _____ (Realtek ) C:\Windows\system32\Drivers\Rt86win7.sys 2015-04-14 19:38 - 2013-08-27 08:08 - 00102104 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst32.dll 2015-04-14 19:38 - 2013-08-27 08:08 - 00077528 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp32.dll 2015-04-14 19:37 - 2015-04-14 19:37 - 00000000 ____D () C:\Windows\system32\RTCOM 2015-04-14 19:37 - 2015-04-14 19:37 - 00000000 ____D () C:\Windows\AsusInstAll 2015-04-14 19:37 - 2012-10-31 03:59 - 03340880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHDA.sys 2015-04-14 19:37 - 2012-10-26 00:45 - 00097424 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoInstII.dll 2015-04-14 19:37 - 2012-10-23 21:30 - 03219600 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO.dll 2015-04-14 19:37 - 2012-10-04 03:57 - 00726656 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2015-04-14 19:37 - 2012-09-25 02:32 - 01801592 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib.dll 2015-04-14 19:37 - 2012-09-12 19:51 - 02486416 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkPgExt.dll 2015-04-14 19:37 - 2012-08-22 00:51 - 00658064 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApoApi.dll 2015-04-14 19:37 - 2012-08-14 04:06 - 01501840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSndMgr.cpl 2015-04-14 19:37 - 2012-01-30 21:42 - 00819648 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo2.dll 2015-04-14 19:37 - 2012-01-10 20:20 - 00058264 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\TepeqAPO.dll 2015-04-14 19:37 - 2011-11-23 02:28 - 00013416 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR.dll 2015-04-14 19:37 - 2011-09-03 00:21 - 00214368 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK.dll 2015-04-14 19:37 - 2011-09-03 00:21 - 00074080 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM.dll 2015-04-14 19:37 - 2011-09-03 00:21 - 00068960 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO.dll 2015-04-14 19:37 - 2011-03-17 22:16 - 01379760 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2015-04-14 19:37 - 2011-03-08 03:03 - 00134584 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2015-04-14 19:37 - 2010-11-08 17:31 - 00359768 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP32A.dll 2015-04-14 19:37 - 2010-11-08 17:31 - 00170840 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED32A.dll 2015-04-14 19:37 - 2010-11-08 17:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL32A.dll 2015-04-14 19:37 - 2010-11-08 17:31 - 00064856 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG32A.dll 2015-04-14 19:37 - 2009-11-24 19:55 - 00345328 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSXT.dll 2015-04-14 19:37 - 2009-11-24 19:55 - 00185584 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSHD.dll 2015-04-14 19:37 - 2009-11-24 19:55 - 00173296 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP360.dll 2015-04-14 19:37 - 2009-11-24 19:55 - 00140528 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW.dll 2015-04-14 19:37 - 2009-11-19 04:42 - 01783056 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesLib.dll 2015-04-14 19:36 - 2015-04-15 19:13 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-04-14 19:36 - 2015-04-14 22:52 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-04-14 19:36 - 2015-04-14 20:00 - 00000000 ____D () C:\Program Files\Google 2015-04-14 19:36 - 2015-04-14 19:50 - 00000000 ____D () C:\Users\Stand PC Gustel\AppData\Local\Google 2015-04-14 19:36 - 2015-04-14 19:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-04-14 19:36 - 2015-04-14 19:40 - 00000000 ____D () C:\Program Files\Intel 2015-04-14 19:36 - 2015-04-14 19:39 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2015-04-14 19:36 - 2015-04-14 19:39 - 00000000 ____D () C:\Intel 2015-04-14 19:36 - 2015-04-14 19:38 - 00000000 ____D () C:\Program Files\Realtek 2015-04-14 19:36 - 2015-04-14 19:37 - 00002140 _____ () C:\RHDSetup.log 2015-04-14 19:36 - 2015-04-14 19:37 - 00000206 _____ () C:\Windows\audio.log 2015-04-14 19:36 - 2015-04-14 19:37 - 00000000 ___HD () C:\Program Files\Temp 2015-04-14 19:36 - 2015-04-14 19:36 - 00000000 ____D () C:\Program Files\Common Files\InstallShield 2015-04-14 19:36 - 2012-10-31 02:43 - 00369117 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2015-04-14 19:36 - 2012-10-30 02:34 - 02357344 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO.dll 2015-04-14 19:36 - 2012-10-30 00:41 - 09378304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes.dat 2015-04-14 19:36 - 2012-10-03 00:39 - 00426952 _____ (DTS) C:\Windows\system32\DTSU2PLFX32.dll 2015-04-14 19:36 - 2012-10-03 00:39 - 00402888 _____ (DTS) C:\Windows\system32\DTSU2PGFX32.dll 2015-04-14 19:36 - 2012-10-03 00:39 - 00346056 _____ (DTS) C:\Windows\system32\DTSU2PREC32.dll 2015-04-14 19:36 - 2012-09-25 02:32 - 07370104 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek.dll 2015-04-14 19:36 - 2012-09-21 08:44 - 01267064 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek2.dll 2015-04-14 19:36 - 2012-09-20 10:59 - 00742264 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell.dll 2015-04-14 19:36 - 2012-09-10 00:33 - 01929080 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ.dll 2015-04-14 19:36 - 2012-09-01 05:17 - 07162128 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP32A.dll 2015-04-14 19:36 - 2012-09-01 05:17 - 00352016 _____ (Dolby Laboratories) C:\Windows\system32\R4EED32A.dll 2015-04-14 19:36 - 2012-09-01 05:17 - 00106768 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL32A.dll 2015-04-14 19:36 - 2012-09-01 05:17 - 00091920 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA32A.dll 2015-04-14 19:36 - 2012-09-01 05:17 - 00062224 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG32A.dll 2015-04-14 19:36 - 2012-08-04 04:18 - 01706640 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2015-04-14 19:36 - 2012-07-16 07:13 - 00350072 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2015-04-14 19:36 - 2012-07-16 07:13 - 00349048 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2015-04-14 19:36 - 2012-06-21 03:26 - 00090624 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2015-04-14 19:36 - 2012-03-08 21:47 - 00176736 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTACap.dll 2015-04-14 19:36 - 2012-03-08 21:47 - 00095840 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTARen.dll 2015-04-14 19:36 - 2011-12-07 01:55 - 00053248 ____R (Windows XP Bundled build C-Centric Single User) C:\Windows\system32\CSVer.dll 2015-04-14 19:36 - 2011-08-24 03:00 - 00357712 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT.dll 2015-04-14 19:36 - 2011-05-31 19:42 - 01509480 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL.dll 2015-04-14 19:36 - 2011-05-31 19:42 - 01292904 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL.dll 2015-04-14 19:36 - 2011-05-31 19:42 - 01220200 _____ (DTS) C:\Windows\system32\DTSBoostDLL.dll 2015-04-14 19:36 - 2011-05-31 19:42 - 00654952 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL.dll 2015-04-14 19:36 - 2011-05-31 19:42 - 00631400 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL.dll 2015-04-14 19:36 - 2011-05-31 19:42 - 00601704 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL.dll 2015-04-14 19:36 - 2011-05-31 19:42 - 00458344 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL.dll 2015-04-14 19:36 - 2011-05-31 19:42 - 00389736 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL.dll 2015-04-14 19:36 - 2011-05-31 19:42 - 00375400 _____ (DTS) C:\Windows\system32\DTSLimiterDLL.dll 2015-04-14 19:36 - 2011-05-31 19:42 - 00218728 _____ (DTS) C:\Windows\system32\DTSGFXAPONS.dll 2015-04-14 19:36 - 2011-05-31 19:42 - 00218728 _____ (DTS) C:\Windows\system32\DTSGFXAPO.dll 2015-04-14 19:36 - 2011-05-31 19:42 - 00218216 _____ (DTS) C:\Windows\system32\DTSLFXAPO.dll 2015-04-14 19:36 - 2010-11-08 17:31 - 00295768 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT32.dll 2015-04-14 19:36 - 2010-11-08 17:31 - 00295768 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA32.dll 2015-04-14 19:36 - 2010-09-27 19:34 - 00232792 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2015-04-14 19:36 - 2009-12-05 01:43 - 00132368 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO.dll 2015-04-14 19:35 - 2015-04-14 19:42 - 00057398 _____ () C:\Windows\Ascd_log.ini 2015-04-14 19:35 - 2015-04-14 19:35 - 00040910 _____ () C:\Windows\Ascd_tmp.ini 2015-04-14 19:35 - 2015-04-14 19:35 - 00001769 _____ () C:\Windows\Language_trs.ini 2015-04-14 19:35 - 2015-04-14 19:35 - 00000096 _____ () C:\Windows\As_Utilities.log 2015-04-14 19:35 - 2015-04-14 19:35 - 00000000 _____ () C:\Windows\scd.ini 2015-04-14 19:35 - 2015-04-14 19:35 - 00000000 _____ () C:\Windows\Ascd_err.ini 2015-04-14 19:26 - 2015-04-15 19:22 - 01513680 _____ () C:\Windows\WindowsUpdate.log 2015-04-14 19:26 - 2015-04-15 14:16 - 00000000 ____D () C:\Users\Stand PC Gustel\AppData\Local\VirtualStore 2015-04-14 19:26 - 2015-04-14 19:55 - 00000000 ____D () C:\Users\Stand PC Gustel 2015-04-14 19:26 - 2015-04-14 19:26 - 00001413 _____ () C:\Users\Stand PC Gustel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-04-14 19:26 - 2015-04-14 19:26 - 00000020 ___SH () C:\Users\Stand PC Gustel\ntuser.ini 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Stand PC Gustel\Startmenü 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Stand PC Gustel\Netzwerkumgebung 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Stand PC Gustel\Druckumgebung 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Stand PC Gustel\Documents\Eigene Musik 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Stand PC Gustel\Documents\Eigene Bilder 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Stand PC Gustel\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Stand PC Gustel\AppData\Local\Verlauf 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Default\Startmenü 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\Programme 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\ProgramData\Startmenü 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 _SHDL () C:\ProgramData\Dokumente 2015-04-14 19:26 - 2015-04-14 19:26 - 00000000 __SHD () C:\Recovery 2015-04-14 19:26 - 2009-07-14 06:42 - 00000000 ___RD () C:\Users\Stand PC Gustel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-04-14 19:26 - 2009-07-14 06:37 - 00000000 ___RD () C:\Users\Stand PC Gustel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-04-14 19:22 - 2015-04-14 19:22 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk 2015-04-14 19:22 - 2015-04-14 19:22 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk 2015-04-14 19:20 - 2015-04-14 19:22 - 00001355 _____ () C:\Windows\TSSysprep.log 2015-04-14 19:20 - 2015-04-14 19:20 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-04-15 19:18 - 2010-11-20 23:01 - 01472002 _____ () C:\Windows\system32\PerfStringBackup.INI 2015-04-15 19:15 - 2009-07-14 06:34 - 00020656 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-04-15 19:15 - 2009-07-14 06:34 - 00020656 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-04-15 19:13 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-04-15 19:13 - 2009-07-14 06:39 - 00028238 _____ () C:\Windows\setupact.log 2015-04-15 19:13 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET 2015-04-15 19:12 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\tracing 2015-04-15 19:12 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\AppCompat 2015-04-15 19:12 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\System 2015-04-15 14:11 - 2009-07-14 06:33 - 00267160 _____ () C:\Windows\system32\FNTCACHE.DAT 2015-04-14 23:12 - 2011-04-12 03:38 - 00000000 ____D () C:\Program Files\Windows Journal 2015-04-14 23:12 - 2011-04-12 03:29 - 00000000 ____D () C:\Windows\system32\Drivers\de-DE 2015-04-14 23:12 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\Windows Defender 2015-04-14 23:12 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\de-DE 2015-04-14 23:09 - 2009-07-14 06:52 - 00000000 ____D () C:\Windows\twain_32 2015-04-14 21:45 - 2009-07-14 04:37 - 00000000 __RHD () C:\Users\Public\Libraries 2015-04-14 21:41 - 2010-11-20 23:48 - 00307680 _____ () C:\Windows\PFRO.log 2015-04-14 21:40 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\zh-TW 2015-04-14 21:40 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\zh-HK 2015-04-14 21:40 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\zh-CN 2015-04-14 21:40 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\tr-TR 2015-04-14 21:40 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\sv-SE 2015-04-14 21:40 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\ru-RU 2015-04-14 21:40 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\pt-PT 2015-04-14 21:40 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\pt-BR 2015-04-14 21:40 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\pl-PL 2015-04-14 21:40 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\nl-NL 2015-04-14 21:40 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\nb-NO 2015-04-14 21:40 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\ko-KR 2015-04-14 21:40 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\ja-JP 2015-04-14 21:40 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\it-IT 2015-04-14 21:40 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\hu-HU 2015-04-14 21:40 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\fr-FR 2015-04-14 21:40 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\fi-FI 2015-04-14 21:40 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\el-GR 2015-04-14 20:19 - 2009-07-14 06:57 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG 2015-04-14 20:19 - 2009-07-14 06:52 - 00028672 _____ () C:\Windows\system32\config\BCD-Template 2015-04-14 19:40 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2015-04-14 19:38 - 2009-07-14 06:52 - 00000000 ____D () C:\Windows\system32\restore 2015-04-14 19:26 - 2009-07-14 04:37 - 00000000 __RHD () C:\Users\Default 2015-04-14 19:26 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Windows NT 2015-04-14 19:24 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache 2015-04-14 19:22 - 2009-07-14 06:52 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-04-14 19:22 - 2009-07-14 04:37 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-04-14 19:20 - 2009-07-14 06:34 - 00002790 _____ () C:\Windows\DtcInstall.log Some content of TEMP: ==================== C:\Users\Stand PC Gustel\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp4yyrzt.dll C:\Users\Stand PC Gustel\AppData\Local\Temp\qc_a402013b_7656_4f6f_b57f_5a8ef69f5fc4_32.exe C:\Users\Stand PC Gustel\AppData\Local\Temp\Quarantine.exe C:\Users\Stand PC Gustel\AppData\Local\Temp\sqlite3.dll C:\Users\Stand PC Gustel\AppData\Local\Temp\_isCDF8.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\explorer.exe => File is digitally signed C:\Windows\system32\winlogon.exe => File is digitally signed C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll => File is digitally signed C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-04-14 19:20 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version: 15-04-2015 02 Ran by Stand PC Gustel at 2015-04-15 19:23:55 Running from C:\Users\Stand PC Gustel\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.2.0 - Asmedia Technology) ASUS Product Register Program (HKLM\...\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}) (Version: 1.0.020 - ASUSTek Computer Inc.) Avast Free Antivirus (HKLM\...\Avast) (Version: 10.2.2215 - AVAST Software) Dropbox (HKU\S-1-5-21-2326092962-1437722205-4255648254-1000\...\Dropbox) (Version: 3.4.3 - Dropbox, Inc.) Google Chrome (HKLM\...\Google Chrome) (Version: 42.0.2311.90 - Google Inc.) Google Update Helper (Version: 1.3.21.115 - Google Inc.) Hidden Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden Intel(R) Management Engine Components (HKLM\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation) Intel(R) Processor Graphics (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.2884 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Malwarebytes Anti-Malware Version 2.1.4.1018 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.4.1018 - Malwarebytes Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Realtek Ethernet Controller Driver (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.75.827.2013 - Realtek) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6767 - Realtek Semiconductor Corp.) Sandboxie 4.16 (32-bit) (HKLM\...\Sandboxie) (Version: 4.16 - Sandboxie Holdings, LLC) VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-2326092962-1437722205-4255648254-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2326092962-1437722205-4255648254-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2326092962-1437722205-4255648254-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2326092962-1437722205-4255648254-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2326092962-1437722205-4255648254-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2326092962-1437722205-4255648254-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2326092962-1437722205-4255648254-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2326092962-1437722205-4255648254-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2326092962-1437722205-4255648254-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2326092962-1437722205-4255648254-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) ==================== Restore Points ========================= 14-04-2015 19:38:12 Installiert Realtek Ethernet Controller Driver 14-04-2015 19:43:08 avast! antivirus system restore point 14-04-2015 19:55:34 Windows Update 14-04-2015 20:19:30 avast! antivirus system restore point 14-04-2015 20:49:17 Windows Update 14-04-2015 21:10:18 Windows Update 14-04-2015 21:54:22 Windows Update 14-04-2015 22:08:15 Windows Modules Installer 14-04-2015 22:28:12 Windows Update 15-04-2015 14:19:51 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0C36DB5A-C65E-4239-A82F-4F661C9BD040} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-04-14] (Google Inc.) Task: {10387410-2143-4D0E-86B6-978626286202} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-04-14] (Avast Software s.r.o.) Task: {27C09DA8-91F6-4EB0-86B4-2B3F3CA19118} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation) Task: {4191A2D3-F71D-4F65-90FC-51E71DE7C62D} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files\ASUS\APRP\aprp.exe [2013-01-25] (ASUSTek Computer Inc.) Task: {4B45C182-E226-47A8-AA74-53E01667C70C} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-03-25] (Microsoft Corporation) Task: {8965F05F-1E92-486C-96E5-C543E15A4D33} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation) Task: {A481E9CF-0C0E-4084-8EDB-03588F6772D1} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation) Task: {A58EB9ED-6368-42E6-993F-6FC747B46E46} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-04-14] (Google Inc.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============== 2015-04-14 20:19 - 2015-04-14 20:19 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-04-14 20:19 - 2015-04-14 20:19 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-04-14 19:45 - 2015-04-14 19:45 - 02925568 _____ () C:\Program Files\AVAST Software\Avast\defs\15041400\algo.dll 2015-04-15 19:13 - 2015-04-15 19:13 - 02925568 _____ () C:\Program Files\AVAST Software\Avast\defs\15041500\algo.dll 2015-04-15 19:19 - 2015-04-15 19:19 - 02925568 _____ () C:\Program Files\AVAST Software\Avast\defs\15041501\algo.dll 2015-04-14 19:39 - 2012-11-12 23:34 - 00094208 _____ () C:\Windows\System32\IccLibDll.dll 2015-04-14 19:43 - 2015-04-14 19:43 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2015-04-15 19:13 - 2015-04-15 19:13 - 00043008 _____ () c:\Users\Stand PC Gustel\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp4yyrzt.dll 2015-04-14 19:54 - 2015-03-04 23:45 - 00750080 _____ () C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\libGLESv2.dll 2015-04-14 19:54 - 2015-03-04 23:45 - 00047616 _____ () C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\libEGL.dll 2015-04-14 19:54 - 2015-03-04 23:45 - 00865280 _____ () C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll 2015-04-14 19:54 - 2015-03-04 23:45 - 00200704 _____ () C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll 2015-04-14 19:54 - 2015-03-04 23:45 - 00010240 _____ () C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\QtQuick.2\qtquick2plugin.dll 2015-04-14 19:54 - 2015-03-04 23:45 - 00726016 _____ () C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll 2015-04-14 19:54 - 2015-03-04 23:45 - 00010240 _____ () C:\Users\Stand PC Gustel\AppData\Roaming\Dropbox\bin\QtQuick\Window.2\windowplugin.dll 2015-04-14 19:40 - 2012-06-25 10:41 - 01198912 _____ () C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2015-04-14 19:50 - 2015-04-13 23:55 - 01252680 _____ () C:\Program Files\Google\Chrome\Application\42.0.2311.90\libglesv2.dll 2015-04-14 19:50 - 2015-04-13 23:55 - 00080712 _____ () C:\Program Files\Google\Chrome\Application\42.0.2311.90\libegl.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2326092962-1437722205-4255648254-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Stand PC Gustel\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 195.34.133.21 - 212.186.211.21 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== Accounts: ============================= Administrator (S-1-5-21-2326092962-1437722205-4255648254-500 - Administrator - Disabled) Gast (S-1-5-21-2326092962-1437722205-4255648254-501 - Limited - Disabled) Stand PC Gustel (S-1-5-21-2326092962-1437722205-4255648254-1000 - Administrator - Enabled) => C:\Users\Stand PC Gustel ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (04/15/2015 07:13:05 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/15/2015 07:12:20 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/15/2015 02:11:06 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (04/14/2015 11:11:15 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x8007000e fehlgeschlagen: Sicherheitsupdate für Windows 7 (KB2864058) Error: (04/14/2015 11:11:09 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x8007000e fehlgeschlagen: Sicherheitsupdate für Windows 7 (KB3035132) Error: (04/14/2015 11:11:08 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x8007000e fehlgeschlagen: Sicherheitsupdate für Windows 7 (KB2862335) Error: (04/14/2015 11:11:07 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x8007000e fehlgeschlagen: Sicherheitsupdate für Windows 7 (KB3006226) Error: (04/14/2015 11:10:58 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x8007000e fehlgeschlagen: Sicherheitsupdate für Windows 7 (KB2840149) Error: (04/14/2015 11:10:54 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x8007000e fehlgeschlagen: Sicherheitsupdate für Microsoft .NET Framework 3.5.1 unter Windows 7 SP1 x86 (KB2979570) Error: (04/14/2015 11:09:20 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x8007000e fehlgeschlagen: Update für Windows 7 (KB2719857) Error: (04/14/2015 11:09:19 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x8007000e fehlgeschlagen: Update für Windows 7 (KB2893519) Error: (04/14/2015 11:07:41 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x8007000e fehlgeschlagen: Sicherheitsupdate für Microsoft .NET Framework 3.5.1 unter Windows 7 SP1 x86 (KB2729452) Error: (04/14/2015 11:07:40 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x8007000e fehlgeschlagen: Sicherheitsupdate für Microsoft .NET Framework 3.5.1 unter Windows 7 SP1 x86 (KB2789645) Microsoft Office Sessions: ========================= Error: (04/15/2015 07:13:05 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/15/2015 07:12:20 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/15/2015 02:11:06 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-3470 CPU @ 3.20GHz Percentage of memory in use: 46% Total physical RAM: 3461.63 MB Available physical RAM: 1862.44 MB Total Pagefile: 6921.56 MB Available Pagefile: 4831.14 MB Total Virtual: 2047.88 MB Available Virtual: 1909.42 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:111.69 GB) (Free:78.04 GB) NTFS Drive d: (Daten) (Fixed) (Total:931.51 GB) (Free:545.28 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: AF47B510) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: 72C0D5D7) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=111.7 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
16.04.2015, 10:35 | #4 |
/// the machine /// TB-Ausbilder | vlc.de trojaner :-/ keine besserung durch die überprüfungen Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter CHR StartupUrls: Default -> "https://www.google.at/webhp?hl=de", "Startfenster.com entfernen "https://support.google.com/chrome/answer/95314?hl=de", "hxxp://www.google.com" Emptytemp: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
16.04.2015, 13:38 | #5 |
| vlc.de trojaner :-/ keine besserung durch die überprüfungen Hey! Es ist weg :-))))) Werde wohl in Zukunft genauer schauen von welcher Seite ich was runterlade!!! Hier noch das logfile: Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 15-04-2015 04 Ran by Stand PC Gustel at 2015-04-16 14:25:14 Run:1 Running from C:\Users\Stand PC Gustel\Downloads Loaded Profiles: Stand PC Gustel (Available profiles: Stand PC Gustel) Boot Mode: Normal ============================================== Content of fixlist: ***************** CHR StartupUrls: Default -> "https://www.google.at/webhp?hl=de", "Startfenster.com entfernen "https://support.google.com/chrome/answer/95314?hl=de", "hxxp://www.google.com" Emptytemp: ***************** Chrome StartupUrls deleted successfully. EmptyTemp: => Removed 464 MB temporary data. The system needed a reboot. ==== End of Fixlog 14:25:20 ==== |
16.04.2015, 21:21 | #6 |
/// the machine /// TB-Ausbilder | vlc.de trojaner :-/ keine besserung durch die überprüfungenCleanup: (Die Reihenfolge ist hier entscheidend) Falls Defogger verwendet wurde: Erneut starten und auf Re-enable klicken. Falls Combofix verwendet wurde: Combofix deinstallieren
Alle Logs gepostet? Dann lade Dir bitte DelFix herunter.
Hinweis: DelFix entfernt u.a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst. Starte Deinen Rechner abschließend neu. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein, kannst Du diese bedenkenlos löschen. Wenn Du möchtest, kannst Du hier sagen, ob Du mit mir und meiner Hilfe zufrieden warst...und/oder das Forum mit einer kleinen Spende unterstützen. Absicherung: Beim Betriebsystem Windows die automatischen Updates aktivieren. Auch die sicherheitsrelevante Software sollte immer nur in der aktuellsten Version vorliegen: Browser Java Flash-Player PDF-Reader Sicherheitslücken in deren alten Versionen werden dazu ausgenutzt, um beim einfachen Besuch einer manipulierten Website per "Drive-by" Malware zu installieren. Ich empfehle z.B. die Verwendung von Mozilla Firefox statt des Internet Explorers. Zudem lassen sich mit dem Firefox auch PDF-Dokumente öffnen. Aktiviere eine Firewall. Die in Windows integrierte genügt im Normalfall völlig. Verwende ein Antivirusprogramm mit Echtzeitscanner und stets aktueller Signaturendatenbank. Meine Empfehlung: Emsisoft Zusätzlich kannst Du Deinen PC regelmäßig mit Malwarebytes Anti-Malware und ESET scannen. Optional: NoScript verhindert das Ausführen von aktiven Inhalten (Java, JavaScript, Flash,...) für sämtliche Websites. Man kann aber nach dem Prinzip einer Whitelist festlegen, auf welchen Seiten Scripts erlaubt werden sollen. Malwarebytes Anti Exploit: Schützt die Anwendungen des Computers vor der Ausnutzung bekannter Schwachstellen. Lade Software von einem sauberen Portal wie . Wähle beim Installieren von Software immer die benutzerdefinierte Option und entferne den Haken bei allen optional angebotenen Toolbars oder sonstigen, fürs Programm, irrelevanten Ergänzungen. Um Adware wieder los zu werden, empfiehlt sich zunächst die Deinstallation sowie die anschließende Resteentfernung mit Adwcleaner . Abschließend noch ein paar grundsätzliche Bemerkungen: Ändere regelmäßig Deine wichtigen Online-Passwörter und erstelle regelmäßig Backups Deiner wichtigen Dateien oder des Systems. Der Nutzen von Registry-Cleanern, Optimizern usw. zur Performancesteigerung ist umstritten. Ich empfehle deshalb, die Finger von der Registry zu lassen und lieber die windowseigene Datenträgerbereinigung zu verwenden.
__________________ --> vlc.de trojaner :-/ keine besserung durch die überprüfungen |
Themen zu vlc.de trojaner :-/ keine besserung durch die überprüfungen |
appdata, bericht, browser, dateien, explorer, google, home, ics, installation, internet explorer, logfile, neu, ordner, problem, refresh, registry, rootkits, scan, secure, server, software, system, tool, trojaner, update, windows |