|
Log-Analyse und Auswertung: pua/DownProt.I - Virus/MalwareWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
11.08.2015, 19:16 | #1 |
| pua/DownProt.I - Virus/Malware Hallo, habe folgenden Virus auf meinem Laptop: pua/DownProt.I, könnt Ihr mit bitte helfen, diesen zu entfernen? Hier die Hintergrundsgeschichte: (1) Nagelneuer Laptop, wollte lediglich Antivir installieren. habe in der Eile aus Versehen wohl auf der Seite Digitentertainment (?) oder so eine Virusdatei heruntergeladen, die irgendwie antivir...exe hieß. Und sie natürlich prompt ausgeführt. (2) Bei richtiger Antivir Installation und anschließender Systemüberprüfung habe ich zunächst den Fund "pua/Downloadguide.gen" erhalten. Auf Tip eine Amateurfreundes, habe ich dann CCleaner heruntergeladen und diesen ausgeführt. (3) Bei wiederholter Antivir Systemüberprüfung erhalte ich jetzt nebst 2 Warnungen folgenden Fund "pua/DownProt.I". Wie gesagt der Laptop ist völlig jungfräulich, ich könnte also auch FP formatieren oder ähnliches - ich müsste nur wissen wie! Allerings müsste man mir dann auch erklären, wie ich Windows 8.1. wiederinstallieren kann, ich habe ja keine CD bekommen. Oder Wäre auf "Werkeinstellungen zurücksetzen" eine Lösung? Hier der Log: Mit der Bitte um baldige Hilfe, herzlichen Dank im Voraus! |
11.08.2015, 19:20 | #2 |
/// the machine /// TB-Ausbilder | pua/DownProt.I - Virus/Malware Hi,
__________________Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen. Ich kann auf Arbeit keine Anhänge öffnen, danke. So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
11.08.2015, 19:39 | #3 |
| pua/DownProt.I - Virus/Malware sorry, wie kopiere ich aus dem Avira Dialogfenster heraus? Mit strg +c lässt sich nichts kopieren...? Ich habe hier mal den Bericht kopiert und lade mir jetzt FRST runter. DANKE
__________________Code:
ATTFilter Free Antivirus Erstellungsdatum der Reportdatei: Dienstag, 11. August 2015 19:03 Das Programm läuft als uneingeschränkte Vollversion. Online-Dienste stehen zur Verfügung. Lizenznehmer : Free Seriennummer : 0000149996-AVHOE-0000001 Plattform : Windows 8.1 Windowsversion : (plain) [6.3.9600] Boot Modus : Normal gebootet Benutzername : SYSTEM Computername : BIG_LEBOWSKI Versionsinformationen: BUILD.DAT : 15.0.12.408 93846 Bytes 15.07.2015 08:38:00 AVSCAN.EXE : 15.0.12.402 1171384 Bytes 15.07.2015 06:37:55 AVSCANRC.DLL : 15.0.12.380 67688 Bytes 15.07.2015 06:37:55 LUKE.DLL : 15.0.12.398 69248 Bytes 15.07.2015 06:38:20 AVSCPLR.DLL : 15.0.12.398 106352 Bytes 15.07.2015 06:37:55 REPAIR.DLL : 15.0.12.402 516304 Bytes 15.07.2015 06:37:54 REPAIR.RDF : 1.0.9.74 1055360 Bytes 11.08.2015 15:31:45 AVREG.DLL : 15.0.12.398 318008 Bytes 15.07.2015 06:37:54 AVLODE.DLL : 15.0.12.402 634712 Bytes 15.07.2015 06:37:53 AVLODE.RDF : 14.0.4.72 79262 Bytes 15.07.2015 06:37:53 XBV00024.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00025.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00026.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00027.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00028.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00029.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00030.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00031.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00032.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00033.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00034.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00035.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00036.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00037.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00038.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00039.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00040.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00041.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00083.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:36 XBV00084.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:36 XBV00085.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:36 XBV00086.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:36 XBV00087.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00088.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00089.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00090.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00091.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00092.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00093.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00094.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00095.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00096.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00097.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00098.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00099.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00100.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00101.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00102.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00103.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00104.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00105.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00106.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00107.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:37 XBV00108.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00109.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00110.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00111.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00112.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00113.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00114.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00115.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00116.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00117.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00118.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00119.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00120.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00121.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00122.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00123.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00124.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00125.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00126.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00127.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00128.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00129.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00130.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00131.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00132.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00133.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00134.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00135.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00136.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00137.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00138.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00139.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00140.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00141.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00142.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00143.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00144.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00145.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00146.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00147.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00148.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00149.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00150.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00151.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00152.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00153.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00154.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00155.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00156.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00157.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00158.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00159.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00160.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00161.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00162.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00163.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00164.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00165.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00166.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00167.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00168.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00169.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00170.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00171.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00172.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00173.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00174.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00175.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00176.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00177.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00178.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00179.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00180.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00181.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00182.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00183.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00184.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00185.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00186.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00187.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00188.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00189.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00190.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00191.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00192.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00193.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00194.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00195.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00196.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00197.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00198.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00199.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00200.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00201.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00202.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00203.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00204.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00205.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00206.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00207.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00208.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00209.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00210.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00211.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00212.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00213.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00214.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00215.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00216.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00217.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00218.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00219.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00220.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00221.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00222.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00223.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00224.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00225.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00226.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00227.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00228.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00229.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00230.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00231.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00232.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00233.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00234.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00235.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00236.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00237.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00238.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00239.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00240.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00241.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00242.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00243.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:43 XBV00244.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:44 XBV00245.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:44 XBV00246.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:44 XBV00247.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00248.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00249.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00250.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00251.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00252.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00253.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00254.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00255.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00000.VDF : 7.11.70.0 66736640 Bytes 04.04.2013 06:38:40 XBV00001.VDF : 7.11.74.226 2201600 Bytes 30.04.2013 06:38:40 XBV00002.VDF : 7.11.80.60 2751488 Bytes 28.05.2013 06:38:40 XBV00003.VDF : 7.11.85.214 2162688 Bytes 21.06.2013 06:38:40 XBV00004.VDF : 7.11.91.176 3903488 Bytes 23.07.2013 06:38:40 XBV00005.VDF : 7.11.98.186 6822912 Bytes 29.08.2013 06:38:40 XBV00006.VDF : 7.11.139.38 15708672 Bytes 27.03.2014 06:38:40 XBV00007.VDF : 7.11.152.100 4193792 Bytes 02.06.2014 06:38:40 XBV00008.VDF : 8.11.165.192 4251136 Bytes 07.08.2014 06:38:40 XBV00009.VDF : 8.11.172.30 2094080 Bytes 15.09.2014 06:38:40 XBV00010.VDF : 8.11.178.32 1581056 Bytes 14.10.2014 06:38:40 XBV00011.VDF : 8.11.184.50 2178560 Bytes 11.11.2014 06:38:40 XBV00012.VDF : 8.11.190.32 1876992 Bytes 03.12.2014 06:38:40 XBV00013.VDF : 8.11.201.28 2973696 Bytes 14.01.2015 06:38:40 XBV00014.VDF : 8.11.206.252 2695680 Bytes 04.02.2015 06:38:40 XBV00015.VDF : 8.11.213.84 3175936 Bytes 03.03.2015 06:38:40 XBV00016.VDF : 8.11.213.176 212480 Bytes 05.03.2015 06:38:40 XBV00017.VDF : 8.11.219.166 2033664 Bytes 25.03.2015 06:38:40 XBV00018.VDF : 8.11.225.88 2367488 Bytes 22.04.2015 06:38:40 XBV00019.VDF : 8.11.230.186 1674752 Bytes 13.05.2015 06:38:40 XBV00020.VDF : 8.11.237.30 4711936 Bytes 02.06.2015 06:38:40 XBV00021.VDF : 8.11.243.12 2747904 Bytes 26.06.2015 06:38:40 XBV00022.VDF : 8.11.248.172 2350592 Bytes 17.07.2015 15:31:23 XBV00023.VDF : 8.11.254.112 2570752 Bytes 07.08.2015 15:31:24 XBV00042.VDF : 8.11.254.114 5632 Bytes 07.08.2015 15:31:24 XBV00043.VDF : 8.11.254.116 9216 Bytes 07.08.2015 15:31:24 XBV00044.VDF : 8.11.254.120 40960 Bytes 07.08.2015 15:31:24 XBV00045.VDF : 8.11.254.122 13824 Bytes 07.08.2015 15:31:24 XBV00046.VDF : 8.11.254.126 30720 Bytes 07.08.2015 15:31:24 XBV00047.VDF : 8.11.254.128 10240 Bytes 07.08.2015 15:31:25 XBV00048.VDF : 8.11.254.130 2048 Bytes 07.08.2015 15:31:25 XBV00049.VDF : 8.11.254.132 17920 Bytes 07.08.2015 15:31:25 XBV00050.VDF : 8.11.254.146 8704 Bytes 07.08.2015 15:31:25 XBV00051.VDF : 8.11.254.162 54784 Bytes 08.08.2015 15:31:25 XBV00052.VDF : 8.11.254.176 2048 Bytes 08.08.2015 15:31:25 XBV00053.VDF : 8.11.254.190 9728 Bytes 08.08.2015 15:31:25 XBV00054.VDF : 8.11.254.204 32768 Bytes 08.08.2015 15:31:25 XBV00055.VDF : 8.11.254.206 99328 Bytes 09.08.2015 15:31:25 XBV00056.VDF : 8.11.254.220 14336 Bytes 09.08.2015 15:31:25 XBV00057.VDF : 8.11.254.232 2048 Bytes 09.08.2015 15:31:25 XBV00058.VDF : 8.11.254.244 28160 Bytes 09.08.2015 15:31:25 XBV00059.VDF : 8.11.255.2 3584 Bytes 09.08.2015 15:31:25 XBV00060.VDF : 8.11.255.4 95232 Bytes 10.08.2015 15:31:25 XBV00061.VDF : 8.11.255.6 4608 Bytes 10.08.2015 15:31:26 XBV00062.VDF : 8.11.255.8 8192 Bytes 10.08.2015 15:31:26 XBV00063.VDF : 8.11.255.20 6656 Bytes 10.08.2015 15:31:26 XBV00064.VDF : 8.11.255.32 22016 Bytes 10.08.2015 15:31:26 XBV00065.VDF : 8.11.255.44 2048 Bytes 10.08.2015 15:31:26 XBV00066.VDF : 8.11.255.56 7680 Bytes 10.08.2015 15:31:26 XBV00067.VDF : 8.11.255.58 7680 Bytes 10.08.2015 15:31:26 XBV00068.VDF : 8.11.255.60 37888 Bytes 10.08.2015 15:31:26 XBV00069.VDF : 8.11.255.62 19456 Bytes 10.08.2015 15:31:26 XBV00070.VDF : 8.11.255.64 5120 Bytes 10.08.2015 15:31:26 XBV00071.VDF : 8.11.255.66 10240 Bytes 10.08.2015 15:31:26 XBV00072.VDF : 8.11.255.68 24576 Bytes 10.08.2015 15:31:26 XBV00073.VDF : 8.11.255.74 30208 Bytes 10.08.2015 15:31:26 XBV00074.VDF : 8.11.255.86 7680 Bytes 10.08.2015 15:31:26 XBV00075.VDF : 8.11.255.96 9216 Bytes 10.08.2015 15:31:26 XBV00076.VDF : 8.11.255.106 8192 Bytes 10.08.2015 15:31:27 XBV00077.VDF : 8.11.255.116 5632 Bytes 10.08.2015 15:31:27 XBV00078.VDF : 8.11.255.120 26112 Bytes 11.08.2015 15:31:36 XBV00079.VDF : 8.11.255.122 2048 Bytes 11.08.2015 15:31:36 XBV00080.VDF : 8.11.255.124 24064 Bytes 11.08.2015 15:31:36 XBV00081.VDF : 8.11.255.126 7168 Bytes 11.08.2015 15:31:36 XBV00082.VDF : 8.11.255.128 9728 Bytes 11.08.2015 15:31:36 LOCAL000.VDF : 8.11.255.128 134480384 Bytes 11.08.2015 15:33:57 Engineversion : 8.3.32.38 AEBB.DLL : 8.1.2.0 60448 Bytes 15.07.2015 06:37:47 AECORE.DLL : 8.3.7.2 249920 Bytes 15.07.2015 06:37:47 AEDROID.DLL : 8.4.3.324 1540160 Bytes 11.08.2015 15:31:22 AEEMU.DLL : 8.1.3.4 399264 Bytes 15.07.2015 06:37:47 AEEXP.DLL : 8.4.2.116 269168 Bytes 11.08.2015 15:31:22 AEGEN.DLL : 8.1.7.48 460704 Bytes 11.08.2015 15:31:15 AEHELP.DLL : 8.3.2.2 281456 Bytes 15.07.2015 06:37:47 AEHEUR.DLL : 8.1.4.1826 8615848 Bytes 11.08.2015 15:31:21 AEMOBILE.DLL : 8.1.8.2 303168 Bytes 15.07.2015 06:37:47 AEOFFICE.DLL : 8.3.1.44 404608 Bytes 15.07.2015 06:37:47 AEPACK.DLL : 8.4.0.90 793456 Bytes 11.08.2015 15:31:21 AERDL.DLL : 8.2.1.30 805736 Bytes 11.08.2015 15:31:22 AESBX.DLL : 8.2.21.0 1622072 Bytes 15.07.2015 06:37:47 AESCN.DLL : 8.3.2.10 142456 Bytes 15.07.2015 06:37:47 AESCRIPT.DLL : 8.2.2.90 534440 Bytes 11.08.2015 15:31:22 AEVDF.DLL : 8.3.1.6 133992 Bytes 15.07.2015 06:37:47 AVWINLL.DLL : 15.0.12.380 29600 Bytes 15.07.2015 06:37:58 AVPREF.DLL : 15.0.12.380 55864 Bytes 15.07.2015 06:37:54 AVREP.DLL : 15.0.12.380 225320 Bytes 15.07.2015 06:37:54 AVARKT.DLL : 15.0.12.380 232000 Bytes 15.07.2015 06:37:48 AVEVTLOG.DLL : 15.0.12.398 202112 Bytes 15.07.2015 06:37:50 SQLITE3.DLL : 15.0.12.380 461672 Bytes 15.07.2015 06:38:34 AVSMTP.DLL : 15.0.12.380 82120 Bytes 15.07.2015 06:37:56 NETNT.DLL : 15.0.12.380 18792 Bytes 15.07.2015 06:38:23 CommonImageRc.dll: 15.0.12.380 4308216 Bytes 15.07.2015 06:38:24 CommonTextRc.dll: 15.0.12.386 69248 Bytes 15.07.2015 06:38:24 Konfiguration für den aktuellen Suchlauf: Job Name..............................: Vollständige Prüfung Konfigurationsdatei...................: C:\Program Files (x86)\Avira\Antivirus\sysscan.avp Protokollierung.......................: standard Primäre Aktion........................: Interaktiv Sekundäre Aktion......................: Ignorieren Durchsuche Masterbootsektoren.........: ein Durchsuche Bootsektoren...............: ein Bootsektoren..........................: C:, Durchsuche aktive Programme...........: ein Laufende Programme erweitert..........: ein Durchsuche Registrierung..............: ein Suche nach Rootkits...................: ein Integritätsprüfung von Systemdateien..: aus Prüfe alle Dateien....................: Alle Dateien Durchsuche Archive....................: ein Rekursionstiefe einschränken..........: 20 Archiv Smart Extensions...............: ein Makrovirenheuristik...................: ein Dateiheuristik........................: erweitert Beginn des Suchlaufs: Dienstag, 11. August 2015 19:03 Der Suchlauf über die Bootsektoren wird begonnen: Bootsektor 'HDD0(C:)' [INFO] Es wurde kein Virus gefunden! Der Suchlauf nach versteckten Objekten wird begonnen. Eine Instanz der ARK Library läuft bereits. Der Suchlauf über gestartete Prozesse wird begonnen: Durchsuche Prozess 'svchost.exe' - '47' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'dwm.exe' - '57' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '100' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '169' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '70' Modul(e) wurden durchsucht Durchsuche Prozess 'igfxCUIService.exe' - '40' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '124' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '68' Modul(e) wurden durchsucht Durchsuche Prozess 'WLANExt.exe' - '75' Modul(e) wurden durchsucht Durchsuche Prozess 'conhost.exe' - '12' Modul(e) wurden durchsucht Durchsuche Prozess 'spoolsv.exe' - '73' Modul(e) wurden durchsucht Durchsuche Prozess 'sched.exe' - '100' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '80' Modul(e) wurden durchsucht Durchsuche Prozess 'avguard.exe' - '103' Modul(e) wurden durchsucht Durchsuche Prozess 'CCDMonitorService.exe' - '37' Modul(e) wurden durchsucht Durchsuche Prozess 'DnsBlockUpdateSvc.exe' - '70' Modul(e) wurden durchsucht Durchsuche Prozess 'EvtEng.exe' - '58' Modul(e) wurden durchsucht Durchsuche Prozess 'dashost.exe' - '56' Modul(e) wurden durchsucht Durchsuche Prozess 'ibtsiva.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'LMSvc.exe' - '32' Modul(e) wurden durchsucht Durchsuche Prozess 'McSvHost.exe' - '151' Modul(e) wurden durchsucht Durchsuche Prozess 'mfevtps.exe' - '25' Modul(e) wurden durchsucht Durchsuche Prozess 'rundll32.exe' - '14' Modul(e) wurden durchsucht Durchsuche Prozess 'rundll32.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'rundll32.exe' - '40' Modul(e) wurden durchsucht Durchsuche Prozess 'RegSrvc.exe' - '36' Modul(e) wurden durchsucht Durchsuche Prozess 'RichVideo.exe' - '27' Modul(e) wurden durchsucht Durchsuche Prozess 'ZeroConfigService.exe' - '84' Modul(e) wurden durchsucht Durchsuche Prozess 'Avira.ServiceHost.exe' - '112' Modul(e) wurden durchsucht Durchsuche Prozess 'McAPExe.exe' - '28' Modul(e) wurden durchsucht Durchsuche Prozess 'mcshield.exe' - '77' Modul(e) wurden durchsucht Durchsuche Prozess 'mfefire.exe' - '35' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '23' Modul(e) wurden durchsucht Durchsuche Prozess 'wmiprvse.exe' - '47' Modul(e) wurden durchsucht Durchsuche Prozess 'avshadow.exe' - '29' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '56' Modul(e) wurden durchsucht Durchsuche Prozess 'McCSPServiceHost.exe' - '50' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '51' Modul(e) wurden durchsucht Durchsuche Prozess 'DllHost.exe' - '28' Modul(e) wurden durchsucht Durchsuche Prozess 'taskhostex.exe' - '50' Modul(e) wurden durchsucht Durchsuche Prozess 'Explorer.EXE' - '220' Modul(e) wurden durchsucht Durchsuche Prozess 'PresentationFontCache.exe' - '39' Modul(e) wurden durchsucht Durchsuche Prozess 'LMEvent.exe' - '52' Modul(e) wurden durchsucht Durchsuche Prozess 'LMLockHandler.exe' - '35' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '44' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'QASvc.exe' - '21' Modul(e) wurden durchsucht Durchsuche Prozess 'QAEvent.exe' - '69' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '44' Modul(e) wurden durchsucht Durchsuche Prozess 'igfxEM.exe' - '60' Modul(e) wurden durchsucht Durchsuche Prozess 'igfxHK.exe' - '44' Modul(e) wurden durchsucht Durchsuche Prozess 'igfxTray.exe' - '57' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchIndexer.exe' - '70' Modul(e) wurden durchsucht Durchsuche Prozess 'LMTray.exe' - '21' Modul(e) wurden durchsucht Durchsuche Prozess 'QAMsg.exe' - '25' Modul(e) wurden durchsucht Durchsuche Prozess 'ePowerSvc.exe' - '52' Modul(e) wurden durchsucht Durchsuche Prozess 'ePowerTray.exe' - '65' Modul(e) wurden durchsucht Durchsuche Prozess 'igfxext.exe' - '57' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '44' Modul(e) wurden durchsucht Durchsuche Prozess 'ePowerEvent.exe' - '33' Modul(e) wurden durchsucht Durchsuche Prozess 'ePowerWinMonitor.exe' - '25' Modul(e) wurden durchsucht Durchsuche Prozess 'Avira.Systray.exe' - '108' Modul(e) wurden durchsucht Durchsuche Prozess 'RMSvc.exe' - '36' Modul(e) wurden durchsucht Durchsuche Prozess 'skydrive.exe' - '76' Modul(e) wurden durchsucht Durchsuche Prozess 'rundll32.exe' - '55' Modul(e) wurden durchsucht Durchsuche Prozess 'RAVCpl64.exe' - '52' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchProtocolHost.exe' - '57' Modul(e) wurden durchsucht Durchsuche Prozess 'avcenter.exe' - '119' Modul(e) wurden durchsucht Durchsuche Prozess 'devmonsrv.exe' - '47' Modul(e) wurden durchsucht Durchsuche Prozess 'McUICnt.exe' - '97' Modul(e) wurden durchsucht Durchsuche Prozess 'DnsBlockTray.exe' - '32' Modul(e) wurden durchsucht Durchsuche Prozess 'obexsrv.exe' - '41' Modul(e) wurden durchsucht Durchsuche Prozess 'avgnt.exe' - '121' Modul(e) wurden durchsucht Durchsuche Prozess 'GamesAppIntegrationService.exe' - '32' Modul(e) wurden durchsucht Durchsuche Prozess 'CCleaner64.exe' - '62' Modul(e) wurden durchsucht Durchsuche Prozess 'jhi_service.exe' - '35' Modul(e) wurden durchsucht Durchsuche Prozess 'LMS.exe' - '60' Modul(e) wurden durchsucht Durchsuche Prozess 'BackgroundAgent.exe' - '107' Modul(e) wurden durchsucht Durchsuche Prozess 'ccd.exe' - '57' Modul(e) wurden durchsucht Durchsuche Prozess 'conhost.exe' - '12' Modul(e) wurden durchsucht Durchsuche Prozess 'wmpnetwk.exe' - '78' Modul(e) wurden durchsucht Durchsuche Prozess 'SettingSyncHost.exe' - '83' Modul(e) wurden durchsucht Durchsuche Prozess 'HostAppServiceUpdater.exe' - '84' Modul(e) wurden durchsucht Durchsuche Prozess 'UBTService.exe' - '39' Modul(e) wurden durchsucht Durchsuche Prozess 'HostAppService.exe' - '121' Modul(e) wurden durchsucht Durchsuche Prozess 'HostAppService.exe' - '76' Modul(e) wurden durchsucht Durchsuche Prozess 'StartMenuIndexer.exe' - '103' Modul(e) wurden durchsucht Durchsuche Prozess 'wmiprvse.exe' - '34' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchFilterHost.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'avscan.exe' - '115' Modul(e) wurden durchsucht Durchsuche Prozess 'avscan.exe' - '115' Modul(e) wurden durchsucht Durchsuche Prozess 'wininit.exe' - '15' Modul(e) wurden durchsucht Durchsuche Prozess 'winlogon.exe' - '28' Modul(e) wurden durchsucht Durchsuche Prozess 'lsass.exe' - '65' Modul(e) wurden durchsucht Der Suchlauf auf Verweise zu ausführbaren Dateien (Registry) wird begonnen: Die Registry wurde durchsucht ( '1284' Dateien ). Der Suchlauf über die ausgewählten Dateien wird begonnen: Beginne mit der Suche in 'C:\' <Acer> C:\swapfile.sys [WARNUNG] Die Datei konnte nicht geöffnet werden! C:\Windows\Installer\{3AE7A6E7-6DED-4209-A4EA-0FC3C61B02B4}\{75206EC8-B084-4E08-BDD4-36F4583F0F1B}.xpi [0] Archivtyp: ZIP --> chrome/content/g.js [FUND] Enthält Muster der Software PUA/DownProt.I [WARNUNG] Infizierte Dateien in Archiven können nicht repariert werden Beginne mit der Desinfektion: C:\Windows\Installer\{3AE7A6E7-6DED-4209-A4EA-0FC3C61B02B4}\{75206EC8-B084-4E08-BDD4-36F4583F0F1B}.xpi [FUND] Enthält Muster der Software PUA/DownProt.I [HINWEIS] Die Datei wurde ins Quarantäneverzeichnis unter dem Namen '510e94dc.qua' verschoben! Ende des Suchlaufs: Dienstag, 11. August 2015 19:56 Benötigte Zeit: 46:52 Minute(n) Der Suchlauf wurde vollständig durchgeführt. 31117 Verzeichnisse wurden überprüft 453175 Dateien wurden geprüft 1 Viren bzw. unerwünschte Programme wurden gefunden 0 Dateien wurden als verdächtig eingestuft 0 Dateien wurden gelöscht 0 Viren bzw. unerwünschte Programme wurden repariert 1 Dateien wurden in die Quarantäne verschoben 0 Dateien wurden umbenannt 1 Dateien konnten nicht durchsucht werden 453173 Dateien ohne Befall 2809 Archive wurden durchsucht 2 Warnungen 1 Hinweise hier auch schon mal der FRST Addition Text. DANKE Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:11-08-2015 durchgeführt von Giovanni (2015-08-11 20:35:32) Gestartet von C:\Users\Giovanni\Downloads Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-209834852-2542712019-429283644-500 - Administrator - Disabled) Gast (S-1-5-21-209834852-2542712019-429283644-501 - Limited - Disabled) Giovanni (S-1-5-21-209834852-2542712019-429283644-1001 - Administrator - Enabled) => C:\Users\Giovanni HomeGroupUser$ (S-1-5-21-209834852-2542712019-429283644-1003 - Limited - Enabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {DA9F8ED0-D0DE-39CC-F55A-51AB4CC1B556} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {61FE6F34-F6E4-3642-CFEA-6AD93746FFEB} FW: McAfee Firewall (Enabled) {E2A40FF5-9AB1-3894-DE05-F89EB212F22D} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) abDocs (HKLM-x32\...\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}) (Version: 1.08.2003 - Acer Incorporated) abDocs Office AddIn (HKLM-x32\...\{DCBF3379-246B-47E1-8173-639B63940838}) (Version: 3.02.2000 - Acer Incorporated) abFiles (HKLM-x32\...\{13885028-098C-4799-9B71-27DAC96502D5}) (Version: 2.00.3009 - Acer Incorporated) abMedia (HKLM-x32\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 2.09.2002.1 - Acer Incorporated) abPhoto (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 3.04.2004.0 - Acer Incorporated) Acer Care Center (HKLM\...\{A424844F-CDB3-45E2-BB77-1DDE4A091E76}) (Version: 1.00.3012 - Acer Incorporated) Acer Explorer Agent (HKLM\...\{4D0F42CF-1693-43D9-BDC8-19141D023EE0}) (Version: 2.00.3001 - Acer Incorporated) Acer Launch Manager (HKLM\...\{C18D55BD-1EC6-466D-B763-8EEDDDA9100E}) (Version: 8.00.8115 - Acer Incorporated) Acer Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 3.01.2014 - Acer Incorporated) Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.8106.0 - Acer Incorporated) Acer Quick Access (HKLM\...\{C1FA525F-D701-4B31-9D32-504FC0CF0B98}) (Version: 1.01.3018 - Acer Incorporated) Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.8108 - Acer Incorporated) Acer User Experience Improvement Program App Monitor Plugin (HKLM\...\{978724F6-1863-4DD5-9E66-FB77F5AB5613}) (Version: 1.02.3005 - Acer Incorporated) Acer User Experience Improvement Program Framework (HKLM\...\{12A718F2-2357-4D41-9E1F-18583A4745F7}) (Version: 1.02.3005 - Acer Incorporated) Acer Video Player (HKLM-x32\...\{B6846F20-4821-11E3-8F96-0800200C9A66}) (Version: 1.00.2011.1 - Acer Incorporated) Aloha TriPeaks (x32 Version: 2.2.0.98 - WildTangent) Hidden AOP Framework (HKLM-x32\...\{4A37A114-702F-4055-A4B6-16571D4A5353}) (Version: 3.09.2004.0 - Acer Incorporated) Avira (HKLM-x32\...\{a5e00a72-db4a-4f77-8874-d1265b8fcd7e}) (Version: 1.1.42.10415 - Avira Operations GmbH & Co. KG) Avira (x32 Version: 1.1.42.10415 - Avira Operations GmbH & Co. KG) Hidden Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.12.408 - Avira Operations GmbH & Co. KG) Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.08 - Piriform) CyberLink PhotoDirector 3 (HKLM-x32\...\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}) (Version: 3.0.1.5524 - CyberLink Corp.) CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.0.4220 - CyberLink Corp.) CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.4609.02 - CyberLink Corp.) DNSBlock (HKLM\...\{7b5da7f5-de7d-4e00-b330-a2e08e460095}) (Version: 1.0.0 - NETNS GMBH) eBay Worldwide (HKLM-x32\...\{91589413-6675-4C27-8AFC-EFB9103B90A5}) (Version: 2.4.0105 - OEM) Farm to Fork Collector's Edition (x32 Version: 3.0.2.59 - WildTangent) Hidden Foxit PhantomPDF (HKLM-x32\...\{D4DF5498-C95C-4A02-9951-725FB2D7BC0D}) (Version: 6.0.121.624 - Foxit Corporation) Game Explorer Categories - genres (HKLM-x32\...\WildTangentGameProvider-acer-genres) (Version: 11.0.0.7 - WildTangent, Inc.) Game Explorer Categories - main (HKLM-x32\...\WildTangentGameProvider-acer-main) (Version: 11.0.0.7 - WildTangent, Inc.) Governor of Poker 2 Premium Edition (x32 Version: 3.0.2.59 - WildTangent) Hidden Host App Service (HKU\S-1-5-21-209834852-2542712019-429283644-1001\...\Pokki) (Version: 0.269.7.738 - Pokki) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.28.1006 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4062 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology(patch version 17.0.1423.2) (HKLM\...\{302600C1-6BDF-4FD1-1405-148929CC1385}) (Version: 17.0.1405.0464 - Intel Corporation) Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 1.1.226.0 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.22 - Intel(R) Corporation) Hidden Intel® PROSet/Wireless Software (HKLM-x32\...\{85b9d34f-7397-4e39-8600-07942ef6ca04}) (Version: 17.0.5 - Intel Corporation) Jewel Match 3 (x32 Version: 3.0.2.59 - WildTangent) Hidden King Oddball (x32 Version: 3.0.2.48 - WildTangent) Hidden LUXOR Evolved (x32 Version: 2.2.0.98 - WildTangent) Hidden Magic Academy (x32 Version: 2.2.0.98 - WildTangent) Hidden McAfee LiveSafe – Internet Security (HKLM-x32\...\MSC) (Version: 13.6.1599 - McAfee, Inc.) Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Peggle Nights (x32 Version: 2.2.0.98 - WildTangent) Hidden Plants vs. Zombies - Game of the Year (x32 Version: 3.0.2.59 - WildTangent) Hidden Pokki Start Menu (HKU\S-1-5-21-209834852-2542712019-429283644-1001\...\Pokki_Start_Menu) (Version: 0.269.7.738 - Pokki) Polar Bowler 1st Frame (x32 Version: 3.0.2.59 - WildTangent) Hidden Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.21257 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.34.617.2014 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7300 - Realtek Semiconductor Corp.) SecurityUtility (HKLM-x32\...\SecurityUtility) (Version: - ) <==== ACHTUNG Spotify (HKLM-x32\...\Spotify) (Version: 0.9.6.81.gd359a796 - Spotify AB) The Chronicles of Emerland Solitaire (x32 Version: 3.0.2.51 - WildTangent) Hidden Trinklit Supreme (x32 Version: 2.2.0.98 - WildTangent) Hidden Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Wajam (HKLM-x32\...\WaInternetEn) (Version: 1.50.1.8 (i1.0) - Wajam) <==== ACHTUNG WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 - WildTangent) WildTangent Games App (x32 Version: 4.0.11.13 - WildTangent) Hidden Zuma's Revenge (x32 Version: 2.2.0.97 - WildTangent) Hidden ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Wiederherstellungspunkte ========================= 11-08-2015 15:57:56 Windows Modules Installer ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {33455BBC-C734-45FF-BBC9-FB81999352C7} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTrayLauncher.exe [2014-07-22] (Acer Incorporated) Task: {59B2B028-BB29-4110-859B-DB43103D7F11} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [2014-08-30] () Task: {5B896119-6F19-41CC-8210-B2EEAC89548C} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [2015-07-23] (Acer Incorporated) Task: {618F1154-7435-4359-924D-77A2C0496FEC} - System32\Tasks\Quick Access => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [2014-10-17] (Acer Incorporate) Task: {652ABA73-75DF-4CE6-AFA1-D52A5E3EEADF} - System32\Tasks\Pokki => %LOCALAPPDATA%\Pokki\Engine\HostAppServiceUpdater.exe Task: {74377150-BFE4-4F56-8221-3B96BA6C8DF8} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [2014-06-09] (Acer Incorporated) Task: {7464E8BD-D21A-45EE-9ABE-3606B02D759F} - System32\Tasks\AcerCloud => C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe [2014-08-22] (Acer) Task: {A089ED66-4468-4552-8BB1-9AF4CEE4114E} - System32\Tasks\Recovery Management\Notification => C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe [2014-06-17] (Acer Incorporated) Task: {A5F001DA-ECCC-409E-9027-3D6449AD256C} - System32\Tasks\Quick Access Quick Launcher => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [2014-10-17] (Acer Incorporate) Task: {BB243FA4-55FC-4709-8EA0-1CA86CADBFDA} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [2014-08-30] () Task: {C34D729E-FB77-45CD-87F2-C3F0E5B01B76} - System32\Tasks\UbtFrameworkService => C:\Program Files\Acer\User Experience Improvement Program\Framework\TriggerFramework.exe [2014-03-13] (TODO: <Company name>) Task: {D1A7656A-817A-43F7-B5AE-04CB171A81DB} - System32\Tasks\Launch Manager => C:\Program Files\Acer\Acer Launch Manager\LMLauncher.exe [2014-12-30] (Acer Incorporate) Task: {DC23D373-FF60-401B-8655-260D459A0CC6} - System32\Tasks\EDZSD1 => C:\ProgramData\SecurityUtility\SecurityUtility.exe <==== ACHTUNG Task: {DF9AE1FC-E9C3-4D7D-A4E8-229DEB417F31} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-07-17] (Piriform Ltd) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\EDZSD1.job => C:\ProgramData\SecurityUtility\SecurityUtility.exe <==== ACHTUNG ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-08-11 16:31 - 2015-08-11 16:31 - 00149024 _____ () C:\Windows\system32\DnsBlockUpdateSvc.exe 2014-10-27 19:11 - 2014-08-23 03:21 - 00111872 _____ () C:\Program Files (x86)\Acer\clear.fi plug-in\Clearfishellext_x64.dll 2014-10-27 19:06 - 2012-04-24 12:43 - 00254512 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe 2014-12-30 04:43 - 2014-12-22 06:47 - 00391784 _____ () C:\Windows\system32\igfxTray.exe 2015-08-11 16:31 - 2015-08-11 16:31 - 00788000 _____ () C:\Program Files (x86)\DnsBlock\DnsBlockTray.exe 2015-07-17 19:34 - 2015-07-17 19:34 - 00057344 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll 2014-09-03 11:03 - 2014-09-03 11:03 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2015-08-05 19:48 - 2015-08-05 19:48 - 00201568 _____ () C:\Program Files (x86)\Acer\abPhoto\curllib.dll 2015-08-05 19:48 - 2015-08-05 19:48 - 00653112 _____ () C:\Program Files (x86)\Acer\abPhoto\sqlite3.dll 2015-08-05 19:48 - 2015-08-05 19:48 - 00640352 _____ () C:\Program Files (x86)\Acer\abPhoto\tag.dll 2015-08-05 19:48 - 2015-08-05 19:48 - 00118112 _____ () C:\Program Files (x86)\Acer\abPhoto\OpenLDAP.dll 2015-08-11 16:20 - 2015-08-11 16:20 - 00014176 _____ () C:\Windows\assembly\GAC_MSIL\MyService\1.0.0.1__2dfa3f50f0bed57d\MyService.dll 2015-07-23 16:08 - 2015-07-23 16:08 - 00012128 _____ () C:\Program Files (x86)\Acer\AOP Framework\ServiceInterface.dll 2015-07-23 15:56 - 2015-07-23 15:56 - 00277856 _____ () C:\Program Files (x86)\Acer\AOP Framework\libcurl.dll 2014-10-27 19:11 - 2014-08-23 03:21 - 00090368 _____ () C:\Program Files (x86)\Acer\clear.fi plug-in\Clearfishellext.dll 2015-04-28 22:15 - 2015-04-28 22:15 - 00569856 _____ () C:\Users\Giovanni\AppData\Local\Pokki\Engine\ppGoogleNaClPluginChrome.dll 2015-04-28 22:15 - 2015-04-28 22:15 - 01400846 _____ () C:\Users\Giovanni\AppData\Local\Pokki\Engine\avcodec-54.dll 2015-04-28 22:15 - 2015-04-28 22:15 - 00151054 _____ () C:\Users\Giovanni\AppData\Local\Pokki\Engine\avutil-51.dll 2015-04-28 22:15 - 2015-04-28 22:15 - 00222734 _____ () C:\Users\Giovanni\AppData\Local\Pokki\Engine\avformat-54.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\Users\Giovanni\OneDrive:ms-properties ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver" ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-209834852-2542712019-429283644-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\acer01.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{B2A37AE5-61AB-4DDA-8958-E971DED4703D}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.EXE FirewallRules: [{7B79927F-F60A-490A-8B7A-373A0EE6493D}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{2A19D9E7-E945-4F8A-9940-2D63FDEA0D8A}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{01E15757-400F-48A6-9D38-8645E6B2042E}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe FirewallRules: [{E699741F-34A4-45A0-A37E-0CAF96C9B120}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe FirewallRules: [{3D5FD8C9-87A1-4920-94A6-232449338BD7}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{774BDE96-1363-4585-83DF-D47FECCDA4A6}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe FirewallRules: [{0528517F-7E46-456D-A64B-DDDC0245A41E}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe FirewallRules: [{477402E0-78B8-48B3-8E95-08047C3C98C9}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe FirewallRules: [{71FBFE17-F95E-458B-B6A0-5DAD5032681D}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe FirewallRules: [{F9522839-E580-4011-A28C-A5D0C98CBD69}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe FirewallRules: [{AB59B3C2-2BBE-4170-B4E0-DD56EDCAEB72}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe FirewallRules: [{DDCDE613-7954-4F1F-835A-350556D289FD}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe FirewallRules: [{B7861AE3-8132-4146-9231-B7ECA69BEBB1}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe FirewallRules: [{EE7FB70C-AA90-41A0-A9AF-1DD7AE4906EA}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe FirewallRules: [{FDC658EA-E552-4DAD-8816-37ECD88C7892}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe FirewallRules: [{551A189E-2C39-4D54-865D-63757C51A96F}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{FE081C64-FA8B-462A-96DA-FE92D0A623C1}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{0CEC95B3-4A9A-4A70-9652-910B08F9DC5D}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{0DB0FE75-FDE1-4437-A0B4-EDA6B38442BB}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{A4C604CB-AC05-424C-AE8D-9E5BDCB35C88}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{99056AE7-27C4-4ADB-9A12-B4AF9DBAECFC}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{42371435-1CC2-4959-B31B-646040B178E9}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{F64BD9E9-6138-453E-8D3E-D8A10D49D650}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{35B179B7-A2AA-4030-A8CB-46AEF1DAE382}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{A476685D-3427-4F74-921B-68F7A586930C}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{B6308FA7-AFC9-434A-A53B-216CCB16F06E}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{CDB674CD-5828-4139-85C3-19FC8625A33E}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{38B2B496-462E-4A3A-8F96-1B07B10CDAD9}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{A7D0CD6C-FB1C-4712-A90B-197654608224}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{BADB2856-51B9-4E0E-99FF-27D592211ADC}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{0F1CAD06-62A7-4EB8-A778-78B8A810E4FC}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{3B55C2A6-AD6D-4805-83C0-1396E39B5A71}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{DFC1B355-9DBC-4EC4-9AC9-A8504ECB6A83}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe FirewallRules: [{0E9811B4-013B-4532-B378-B6B311663CCA}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{675C82DB-3351-4F0D-88ED-F860A46936F9}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe FirewallRules: [{0A2693AB-526B-42F2-8948-0B9BEB60D7FA}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe FirewallRules: [{A398F5D5-C0FE-4A05-8231-FF0C18390C48}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe FirewallRules: [{E44AE699-88F1-4432-931A-6CF604342D05}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe FirewallRules: [{F175EE05-9331-47CD-B317-7F8366C20301}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (08/11/2015 08:36:07 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm avscan.exe, Version 15.0.12.402 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1310 Startzeit: 01d0d457aae1f0ea Endzeit: 60000 Anwendungspfad: C:\Program Files (x86)\Avira\Antivirus\avscan.exe Berichts-ID: a955b757-4057-11e5-8265-f0761c85b295 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (08/11/2015 08:00:18 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: BackgroundAgent.exe, Version: 1.0.1.7, Zeitstempel: 0x55b09eea Name des fehlerhaften Moduls: MSVCR90.dll, Version: 9.0.30729.8387, Zeitstempel: 0x51ea24a5 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00056b1d ID des fehlerhaften Prozesses: 0xe18 Startzeit der fehlerhaften Anwendung: 0xBackgroundAgent.exe0 Pfad der fehlerhaften Anwendung: BackgroundAgent.exe1 Pfad des fehlerhaften Moduls: BackgroundAgent.exe2 Berichtskennung: BackgroundAgent.exe3 Vollständiger Name des fehlerhaften Pakets: BackgroundAgent.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: BackgroundAgent.exe5 Error: (08/11/2015 06:51:12 PM) (Source: Windows Search Service) (EventID: 7010) (User: ) Description: Der Index kann nicht initialisiert werden. Details: Das angegebene Objekt wurde nicht gefunden. Geben Sie den Namen eines vorhandenen Objekts an. (HRESULT : 0x80040d06) (0x80040d06) Error: (08/11/2015 06:51:12 PM) (Source: Windows Search Service) (EventID: 3058) (User: ) Description: Die Anwendung kann nicht initialisiert werden. Kontext: Windows Anwendung Details: Das angegebene Objekt wurde nicht gefunden. Geben Sie den Namen eines vorhandenen Objekts an. (HRESULT : 0x80040d06) (0x80040d06) Error: (08/11/2015 06:51:12 PM) (Source: Windows Search Service) (EventID: 3028) (User: ) Description: Das Gatherer-Objekt kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Das angegebene Objekt wurde nicht gefunden. Geben Sie den Namen eines vorhandenen Objekts an. (HRESULT : 0x80040d06) (0x80040d06) Error: (08/11/2015 06:51:12 PM) (Source: Windows Search Service) (EventID: 3029) (User: ) Description: Plug-In in <Search.TripoliIndexer> kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Das angegebene Objekt wurde nicht gefunden. Geben Sie den Namen eines vorhandenen Objekts an. (HRESULT : 0x80040d06) (0x80040d06) Error: (08/11/2015 06:51:11 PM) (Source: Windows Search Service) (EventID: 3057) (User: ) Description: Der Plug-In-Manager <Search.TripoliIndexer> kann nicht initialisiert werden. Kontext: Windows Anwendung Details: (HRESULT : 0x8e5e0210) (0x8e5e0210) Error: (08/11/2015 06:51:10 PM) (Source: Windows Search Service) (EventID: 7042) (User: ) Description: Windows Search wird aufgrund eines Problems bei der Indizierung The catalog is corrupt beendet. Details: Der Inhaltsindexkatalog ist fehlerhaft. 0xc0041801 (0xc0041801) Error: (08/11/2015 06:51:10 PM) (Source: Windows Search Service) (EventID: 7040) (User: ) Description: Vom Suchdienst wurden beschädigte Datendateien im Index {id=4810 - enduser\mssearch2\search\ytrip\common\util\jetutil.cpp (167)} erkannt. Vom Dienst wird versucht, dieses Problem durch Neuerstellung des Indexes automatisch zu beheben. Details: 0x8e5e0210 (0x8e5e0210) Error: (08/11/2015 06:51:09 PM) (Source: ESENT) (EventID: 455) (User: ) Description: SearchIndexer (4484) Windows: Fehler -1811 (0xfffff8ed) beim Öffnen von Protokolldatei C:\ProgramData\Microsoft\Search\Data\Applications\Windows\edb00024.log. Systemfehler: ============= Error: (08/11/2015 06:54:38 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT) Description: {209500FC-6B45-4693-8871-6296C4843751} Error: (08/11/2015 06:51:57 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Der Versuch des Dienststeuerungs-Managers, nach dem unerwarteten Beenden des Dienstes "Windows Search" Korrekturmaßnahmen (Neustart des Diensts) durchzuführen, ist fehlgeschlagen. Fehler: %%1056 Error: (08/11/2015 06:51:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (08/11/2015 06:51:12 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "Windows Search" wurde mit dem folgenden dienstspezifischen Fehler beendet: %%2147749126 Error: (08/11/2015 06:48:42 PM) (Source: Microsoft-Windows-Kernel-Boot) (EventID: 29) (User: NT-AUTORITÄT) Description: 32212256841160064 Error: (08/11/2015 06:49:21 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 11.08.2015 um 18:27:01 unerwartet heruntergefahren. Error: (08/11/2015 05:18:16 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) PROSet/Wireless Zero Configuration Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/11/2015 05:18:01 PM) (Source: DCOM) (EventID: 10016) (User: BIG_LEBOWSKI) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}Big_LebowskiGiovanniS-1-5-21-209834852-2542712019-429283644-1001LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (08/11/2015 05:18:01 PM) (Source: DCOM) (EventID: 10016) (User: BIG_LEBOWSKI) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}Big_LebowskiGiovanniS-1-5-21-209834852-2542712019-429283644-1001LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (08/11/2015 05:18:01 PM) (Source: DCOM) (EventID: 10016) (User: BIG_LEBOWSKI) Description: AnwendungsspezifischLokalStart{7022A3B3-D004-4F52-AF11-E9E987FEE25F}{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}Big_LebowskiGiovanniS-1-5-21-209834852-2542712019-429283644-1001LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Microsoft Office: ========================= Error: (08/11/2015 08:36:07 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: avscan.exe15.0.12.402131001d0d457aae1f0ea60000C:\Program Files (x86)\Avira\Antivirus\avscan.exea955b757-4057-11e5-8265-f0761c85b295 Error: (08/11/2015 08:00:18 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: BackgroundAgent.exe1.0.1.755b09eeaMSVCR90.dll9.0.30729.838751ea24a5c000000500056b1de1801d0d4563406f586C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exeC:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.8387_none_5094ca96bcb6b2bb\MSVCR90.dlld2ae2afe-4052-11e5-8265-f0761c85b295 Error: (08/11/2015 06:51:12 PM) (Source: Windows Search Service) (EventID: 7010) (User: ) Description: Details: Das angegebene Objekt wurde nicht gefunden. Geben Sie den Namen eines vorhandenen Objekts an. (HRESULT : 0x80040d06) (0x80040d06) Error: (08/11/2015 06:51:12 PM) (Source: Windows Search Service) (EventID: 3058) (User: ) Description: Kontext: Windows Anwendung Details: Das angegebene Objekt wurde nicht gefunden. Geben Sie den Namen eines vorhandenen Objekts an. (HRESULT : 0x80040d06) (0x80040d06) Error: (08/11/2015 06:51:12 PM) (Source: Windows Search Service) (EventID: 3028) (User: ) Description: Kontext: Windows Anwendung, SystemIndex Katalog Details: Das angegebene Objekt wurde nicht gefunden. Geben Sie den Namen eines vorhandenen Objekts an. (HRESULT : 0x80040d06) (0x80040d06) Error: (08/11/2015 06:51:12 PM) (Source: Windows Search Service) (EventID: 3029) (User: ) Description: Kontext: Windows Anwendung, SystemIndex Katalog Details: Das angegebene Objekt wurde nicht gefunden. Geben Sie den Namen eines vorhandenen Objekts an. (HRESULT : 0x80040d06) (0x80040d06) Search.TripoliIndexer Error: (08/11/2015 06:51:11 PM) (Source: Windows Search Service) (EventID: 3057) (User: ) Description: Kontext: Windows Anwendung Details: (HRESULT : 0x8e5e0210) (0x8e5e0210) Search.TripoliIndexer Error: (08/11/2015 06:51:10 PM) (Source: Windows Search Service) (EventID: 7042) (User: ) Description: Details: Der Inhaltsindexkatalog ist fehlerhaft. 0xc0041801 (0xc0041801) The catalog is corrupt Error: (08/11/2015 06:51:10 PM) (Source: Windows Search Service) (EventID: 7040) (User: ) Description: Details: 0x8e5e0210 (0x8e5e0210) 4810 - enduser\mssearch2\search\ytrip\common\util\jetutil.cpp (167) Error: (08/11/2015 06:51:09 PM) (Source: ESENT) (EventID: 455) (User: ) Description: SearchIndexer4484Windows: C:\ProgramData\Microsoft\Search\Data\Applications\Windows\edb00024.log-1811 (0xfffff8ed) CodeIntegrity: =================================== Date: 2015-08-11 16:48:13.836 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpx.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-08-11 16:48:13.789 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\AVG\AVG PC TuneUp\avgdumpa.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Speicherinformationen =========================== Processor: Intel(R) Core(TM) i5-5200U CPU @ 2.20GHz Prozentuale Nutzung des RAM: 62% Installierter physikalischer RAM: 4010.33 MB Verfügbarer physikalischer RAM: 1498.03 MB Summe virtueller Speicher: 5418.33 MB Verfügbarer virtueller Speicher: 2341.05 MB ==================== Laufwerke ================================ Drive c: (Acer) (Fixed) (Total:913.48 GB) (Free:876.47 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 1874674C) Partition: GPT. ==================== Ende von Ergebnis ============================ |
12.08.2015, 11:31 | #4 |
/// the machine /// TB-Ausbilder | pua/DownProt.I - Virus/Malware Fehlt noch die FRST.txt
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
12.08.2015, 15:34 | #5 |
| pua/DownProt.I - Virus/Malware hatte ich den nicht oben gepostet, in meiner zweiten email, nach der Sendung des avira reports? hier ist das was mir der frst Editor anzeigt Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:11-08-2015 durchgeführt von Giovanni (Administrator) auf BIG_LEBOWSKI (11-08-2015 20:34:34) Gestartet von C:\Users\Giovanni\Downloads Geladene Profile: Giovanni (Verfügbare Profile: Giovanni) Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: IE) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe (Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe () C:\Windows\System32\DnsBlockUpdateSvc.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\CSP\1.3.374.0\McCSPServiceHost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMLockHandler.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe () C:\Program Files (x86)\DnsBlock\DnsBlockTray.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe (WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe (Acer Cloud Technology) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Pokki) C:\Users\Giovanni\AppData\Local\Pokki\Engine\HostAppServiceUpdater.exe (acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe (Pokki) C:\Users\Giovanni\AppData\Local\Pokki\Engine\HostAppService.exe (Pokki) C:\Users\Giovanni\AppData\Local\Pokki\Engine\HostAppService.exe (Pokki) C:\Users\Giovanni\AppData\Local\Pokki\Engine\StartMenuIndexer.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avscan.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avscan.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe ==================== Registry (Nicht auf der Ausnahmeliste) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13674712 2014-07-16] (Realtek Semiconductor) HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe [643064 2015-02-09] (McAfee, Inc.) HKLM-x32\...\Run: [DnsBlock] => C:\Program Files (x86)\DnsBlock\DnsBlockTray.exe [788000 2015-08-11] () HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [782008 2015-07-15] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe [134368 2015-07-02] (Avira Operations GmbH & Co. KG) HKU\S-1-5-21-209834852-2542712019-429283644-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd) HKU\S-1-5-18\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe [1769312 2015-07-27] () ShellIconOverlayIdentifiers: [ACloudSyncedRF] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [2014-08-22] (Acer Incorporated) ShellIconOverlayIdentifiers: [ACloudSyncedSF] -> {5D5F18B7-D59B-4B18-A3E9-0A4BDCCCB699} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [2014-08-22] (Acer Incorporated) ShellIconOverlayIdentifiers: [ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [2014-08-22] (Acer Incorporated) ShellIconOverlayIdentifiers: [ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [2014-08-22] (Acer Incorporated) GroupPolicy: Gruppenrichtline auf Chrome erkannt <======= ACHTUNG CHR HKLM\SOFTWARE\Policies\Google: Richtlinienbeschränkung <======= ACHTUNG ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.mystartsearch.com/?type=hp&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.mystartsearch.com/?type=hp&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.mystartsearch.com/web/?type=ds&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.mystartsearch.com/web/?type=ds&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.mystartsearch.com/?type=hp&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.mystartsearch.com/?type=hp&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.mystartsearch.com/web/?type=ds&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.mystartsearch.com/web/?type=ds&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&q={searchTerms} HKU\S-1-5-21-209834852-2542712019-429283644-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.mystartsearch.com/?type=hp&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322 HKU\S-1-5-21-209834852-2542712019-429283644-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.mystartsearch.com/?type=hp&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322 SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKLM -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKLM-x32 -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms} SearchScopes: HKU\S-1-5-21-209834852-2542712019-429283644-1001 -> DefaultScope {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cvs2&utm_campaign=install_ie&utm_content=ds&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&ts=1439303470&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-209834852-2542712019-429283644-1001 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cvs2&utm_campaign=install_ie&utm_content=ds&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&ts=1439303470&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-209834852-2542712019-429283644-1001 -> {A10C7ADD-0879-4FE3-A6F6-BAF40D086928} URL = hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cvs2&utm_campaign=install_ie&utm_content=ds&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&ts=1439303470&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-209834852-2542712019-429283644-1001 -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cvs2&utm_campaign=install_ie&utm_content=ds&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&ts=1439303470&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-209834852-2542712019-429283644-1001 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cvs2&utm_campaign=install_ie&utm_content=ds&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&ts=1439303470&type=default&q={searchTerms} BHO: DownloadProtect Extension -> {C654F3FE-8E84-4BB7-87CF-8D9171FC3C73} -> C:\Program Files\{76154017-8D4D-4B56-BCC4-4DFA00C42C48}\{07340D6B-A4CD-45D3-961A-C71A7E10E279}.bin [2015-08-11] (Download Protect) BHO-x32: GoodTab Class -> {1F91A9A1-01BA-4c81-863D-3BA0751E1419} -> C:\Program Files (x86)\MiuiTab\SupTab.dll Keine Datei BHO-x32: DownloadProtect Extension -> {C654F3FE-8E84-4BB7-87CF-8D9171FC3C73} -> C:\Program Files (x86)\{0D2D1149-2B55-4691-99AE-D7BD6F4DE966}\{D1E3F980-5796-44D0-B817-AA313F45F001}.bin [2015-08-11] (Download Protect) Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2013-08-09] (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2013-08-09] (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2013-08-09] (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2013-08-09] (McAfee, Inc.) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2015-02-27] (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2015-02-27] (McAfee, Inc.) Winsock: Catalog5 05 C:\Windows\SysWOW64\DnsBlockA.dll [343584 2015-08-11] (DnsBlock) Winsock: Catalog5 09 C:\Windows\SysWOW64\DnsBlockB.dll [343584 2015-08-11] (DnsBlock) Winsock: Catalog5-x64 05 C:\Windows\system32\DnsBlockA.dll [434208 2015-08-11] (DnsBlock) Winsock: Catalog5-x64 09 C:\Windows\system32\DnsBlockB.dll [433696 2015-08-11] (DnsBlock) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{60AEE4C0-106E-46AB-B671-A79DCFD9F58A}: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2015-02-27] () FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] () FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-09-03] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-09-03] (Intel Corporation) FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2015-02-27] () FF Plugin-x32: @mcafee.com/SAFFPlugin -> C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll [2013-08-09] (McAfee, Inc.) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2013-08-06] () FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2014-10-27] FF HKLM-x32\...\Firefox\Extensions: [{75206EC8-B084-4E08-BDD4-36F4583F0F1B}] - C:\Windows\Installer\{3AE7A6E7-6DED-4209-A4EA-0FC3C61B02B4}\{75206EC8-B084-4E08-BDD4-36F4583F0F1B}.xpi FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2014-10-27] Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2013-08-09] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [887128 2015-07-15] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [461672 2015-07-15] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [461672 2015-07-15] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1213072 2015-07-15] (Avira Operations GmbH & Co. KG) R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [218816 2015-07-02] (Avira Operations GmbH & Co. KG) R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2858336 2015-07-23] (Acer Incorporated) R2 DnsBlockUpdateSvc; C:\Windows\system32\DnsBlockUpdateSvc.exe [149024 2015-08-11] () R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573032 2014-07-22] (Acer Incorporated) R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2014-04-24] (WildTangent) R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.) R2 iBtSiva; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [121288 2014-06-05] (Intel Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344168 2014-12-22] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-09-03] (Intel Corporation) R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [455912 2014-12-30] (Acer Incorporate) R2 McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [562200 2015-02-27] (McAfee, Inc.) S3 McAWFwk; c:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334608 2013-07-30] (McAfee, Inc.) R2 mcbootdelaystartsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.) R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.3.374.0\McCSPServiceHost.exe [422632 2015-01-22] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.) S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [601864 2015-02-27] (McAfee, Inc.) S4 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.) R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1050952 2014-11-06] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [221832 2014-10-01] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [189920 2014-10-01] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [284912 2014-05-29] () R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [458984 2014-10-17] (Acer Incorporate) R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] () R3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768 2014-10-17] (Acer Incorporate) R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [234240 2014-07-15] (acer) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3816176 2014-05-29] (Intel® Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [137288 2015-07-15] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [148632 2015-07-15] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2015-07-15] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [43576 2015-07-15] (Avira Operations GmbH & Co. KG) S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation) S3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [140600 2014-03-26] (Motorola Solutions, Inc.) R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1424184 2014-04-22] (Motorola Solutions, Inc.) R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [72136 2014-10-01] (McAfee, Inc.) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.) R3 iaLPSS_GPIO; C:\Windows\System32\drivers\iaLPSS_GPIO.sys [35832 2014-06-10] (Intel Corporation) R3 iaLPSS_I2C; C:\Windows\System32\drivers\iaLPSS_I2C.sys [120312 2014-06-10] (Intel Corporation) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [199624 2014-06-05] (Intel Corporation) R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [126976 2014-09-03] (Intel Corporation) R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [181584 2014-10-01] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [313680 2014-10-01] (McAfee, Inc.) S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [70608 2014-10-01] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [526360 2014-10-01] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [786304 2014-10-01] (McAfee, Inc.) R3 mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [447440 2014-09-19] (McAfee, Inc.) S3 mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [96600 2014-09-19] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [348560 2014-10-01] (McAfee, Inc.) R3 NETwNb64; C:\Windows\system32\DRIVERS\Netwbw02.sys [3446240 2014-06-18] (Intel Corporation) R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated) R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [506072 2014-06-20] (Realsil Semiconductor Corporation) R3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [42224 2014-02-19] (Synaptics Incorporated) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Vorlagen 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Startmenü 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Programme 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\ProgramData\Vorlagen 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\ProgramData\Startmenü 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\ProgramData\Dokumente 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Dokumente und Einstellungen 2015-08-11 20:34 - 2015-08-11 20:35 - 00024204 _____ C:\Users\Giovanni\Downloads\FRST.txt 2015-08-11 20:33 - 2015-08-11 20:34 - 00000000 ____D C:\FRST 2015-08-11 20:33 - 2015-08-11 20:33 - 02172416 _____ (Farbar) C:\Users\Giovanni\Downloads\FRST64.exe 2015-08-11 20:14 - 2015-08-11 20:14 - 00003712 _____ C:\Users\Giovanni\Documents\Ereignisse.txt 2015-08-11 20:00 - 2015-08-11 20:00 - 00000000 _____ C:\Windows\setuperr.log 2015-08-11 20:00 - 2015-08-11 20:00 - 00000000 _____ C:\Windows\setupact.log 2015-08-11 19:58 - 2015-08-11 19:58 - 00059360 _____ C:\Users\Giovanni\Documents\AVSCAN-20150811-190341-72E69B44.LOG 2015-08-11 18:56 - 2015-08-11 18:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee 2015-08-11 18:55 - 2015-08-11 18:55 - 00003264 _____ C:\Windows\System32\Tasks\Pokki 2015-08-11 18:51 - 2015-08-11 18:51 - 00000000 ____D C:\Program Files\{76154017-8D4D-4B56-BCC4-4DFA00C42C48} 2015-08-11 18:51 - 2015-08-11 18:51 - 00000000 ____D C:\Program Files (x86)\{0D2D1149-2B55-4691-99AE-D7BD6F4DE966} 2015-08-11 18:49 - 2015-08-11 18:49 - 00346960 _____ C:\Windows\system32\FNTCACHE.DAT 2015-08-11 18:43 - 2015-08-11 18:43 - 00002804 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2015-08-11 18:43 - 2015-08-11 18:43 - 00000838 _____ C:\Users\Public\Desktop\CCleaner.lnk 2015-08-11 18:43 - 2015-08-11 18:43 - 00000000 ____D C:\Program Files\CCleaner 2015-08-11 18:40 - 2015-08-11 18:40 - 05375464 _____ (Piriform Ltd) C:\Users\Giovanni\Downloads\ccsetup508_slim.exe 2015-08-11 18:34 - 2015-08-11 18:34 - 04721376 _____ (Avira Operations GmbH & Co. KG) C:\Users\Giovanni\Desktop\avira_de_av_55ca065f34e17__bng.exe 2015-08-11 17:53 - 2015-08-11 20:02 - 00000000 ____D C:\Users\Giovanni\AppData\Local\CrashDumps 2015-08-11 17:38 - 2015-08-11 17:38 - 00000000 ____D C:\Users\Giovanni\AppData\Local\Acer Aspire R7 Tutorial 2015-08-11 17:33 - 2015-08-11 17:33 - 00002005 _____ C:\Users\Public\Desktop\abPhoto.lnk 2015-08-11 17:28 - 2015-08-11 17:28 - 00000000 ____D C:\Program Files\{B2211D4B-2893-4575-A920-C79F7FEAB5B0} 2015-08-11 17:28 - 2015-08-11 17:28 - 00000000 ____D C:\Program Files (x86)\{6E037BB9-2A20-472C-892A-FE60D1682A8F} 2015-08-11 17:22 - 2015-08-11 17:22 - 00002001 _____ C:\Users\Public\Desktop\abMedia.lnk 2015-08-11 17:19 - 2015-08-11 17:20 - 00001140 _____ C:\Users\Public\Desktop\Avira.lnk 2015-08-11 17:18 - 2015-08-11 17:18 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Avira 2015-08-11 16:53 - 2015-08-11 17:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2015-08-11 16:53 - 2015-08-11 17:19 - 00000000 ____D C:\ProgramData\Avira 2015-08-11 16:53 - 2015-08-11 17:19 - 00000000 ____D C:\Program Files (x86)\Avira 2015-08-11 16:53 - 2015-07-15 08:37 - 00148632 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2015-08-11 16:53 - 2015-07-15 08:37 - 00137288 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2015-08-11 16:53 - 2015-07-15 08:37 - 00043576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2015-08-11 16:53 - 2015-07-15 08:37 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2015-08-11 16:47 - 2013-09-23 13:49 - 00197704 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\HipShieldK.sys 2015-08-11 16:42 - 2015-08-11 16:42 - 00000000 ____D C:\Program Files\Common Files\AV 2015-08-11 16:41 - 2015-08-11 16:41 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\dlg 2015-08-11 16:39 - 2015-08-11 16:39 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\AVG 2015-08-11 16:39 - 2015-08-11 16:39 - 00000000 ____D C:\Users\Giovanni\AppData\Local\Avg 2015-08-11 16:38 - 2015-08-11 16:40 - 00000000 ____D C:\ProgramData\AVG 2015-08-11 16:32 - 2015-08-11 18:51 - 00000306 __RSH C:\ProgramData\ntuser.pol 2015-08-11 16:31 - 2015-08-11 16:31 - 00471968 _____ C:\Windows\SysWOW64\dns.block 2015-08-11 16:31 - 2015-08-11 16:31 - 00471968 _____ C:\Windows\system32\dns.block 2015-08-11 16:31 - 2015-08-11 16:31 - 00434208 _____ (DnsBlock) C:\Windows\system32\DnsBlockA.dll 2015-08-11 16:31 - 2015-08-11 16:31 - 00433696 _____ (DnsBlock) C:\Windows\system32\DnsBlockB.dll 2015-08-11 16:31 - 2015-08-11 16:31 - 00343584 _____ (DnsBlock) C:\Windows\SysWOW64\DnsBlockB.dll 2015-08-11 16:31 - 2015-08-11 16:31 - 00343584 _____ (DnsBlock) C:\Windows\SysWOW64\DnsBlockA.dll 2015-08-11 16:31 - 2015-08-11 16:31 - 00149024 _____ C:\Windows\system32\DnsBlockUpdateSvc.exe 2015-08-11 16:31 - 2015-08-11 16:31 - 00000000 ____D C:\Users\Giovanni\AppData\Local\DnsBlock 2015-08-11 16:31 - 2015-08-11 16:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WaInternetEn 2015-08-11 16:31 - 2015-08-11 16:31 - 00000000 ____D C:\Program Files\WaInternetEn 2015-08-11 16:31 - 2015-08-11 16:31 - 00000000 ____D C:\Program Files (x86)\DnsBlock 2015-08-11 16:30 - 2015-08-11 16:32 - 00000000 ____D C:\ProgramData\SWinManProS 2015-08-11 16:29 - 2015-08-11 18:51 - 00000398 _____ C:\Windows\Tasks\EDZSD1.job 2015-08-11 16:29 - 2015-08-11 16:29 - 00002912 _____ C:\Windows\System32\Tasks\EDZSD1 2015-08-11 16:29 - 2015-08-11 16:29 - 00000000 ____D C:\ProgramData\7b24ec7cc000461ebe26d116b88142c8 2015-08-11 16:27 - 2015-08-11 16:27 - 00003958 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{FE0F8107-04D4-4B03-8F58-39703C9DC7FC} 2015-08-11 16:27 - 2015-08-11 16:27 - 00000000 __SHD C:\Users\Giovanni\AppData\Local\EmieUserList 2015-08-11 16:27 - 2015-08-11 16:27 - 00000000 __SHD C:\Users\Giovanni\AppData\Local\EmieSiteList 2015-08-11 16:27 - 2015-08-11 16:27 - 00000000 __SHD C:\Users\Giovanni\AppData\Local\EmieBrowserModeList 2015-08-11 16:26 - 2015-08-11 16:26 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2015-08-11 16:23 - 2015-08-11 16:23 - 00000000 ____D C:\Users\Giovanni\AppData\Local\GWX 2015-08-11 16:22 - 2015-08-11 20:00 - 00000000 ____D C:\Users\Giovanni\OneDrive 2015-08-11 16:21 - 2015-08-11 16:21 - 00001969 _____ C:\Users\Public\Desktop\abDocs.lnk 2015-08-11 16:20 - 2015-08-11 20:05 - 00003594 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-209834852-2542712019-429283644-1001 2015-08-11 16:20 - 2015-08-11 16:20 - 00003352 _____ C:\Windows\System32\Tasks\BacKGroundAgent 2015-08-11 16:20 - 2015-08-11 16:20 - 00000000 ____D C:\Users\Public\Pokki 2015-08-11 16:19 - 2015-08-11 20:00 - 00002322 _____ C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk 2015-08-11 16:19 - 2015-08-11 17:32 - 00002168 _____ C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokki Start Menu.lnk 2015-08-11 16:16 - 2015-08-11 17:30 - 00000000 ____D C:\Users\Giovanni\AppData\Local\clear.fi 2015-08-11 16:16 - 2015-08-11 16:16 - 00001276 _____ C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HD Audio-Manager.lnk 2015-08-11 16:16 - 2015-08-11 16:16 - 00000000 ____D C:\Users\Giovanni\PicStream 2015-08-11 16:16 - 2015-08-11 16:16 - 00000000 ____D C:\Users\Giovanni\Documents\Meine empfangenen Dateien 2015-08-11 16:16 - 2015-08-11 16:16 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Macromedia 2015-08-11 16:16 - 2015-08-11 16:16 - 00000000 ____D C:\Users\Giovanni\AppData\Local\iGware 2015-08-11 16:16 - 2015-08-11 16:16 - 00000000 ____D C:\Users\Giovanni\AppData\Local\AOP SDK 2015-08-11 16:15 - 2015-08-11 16:15 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2015-08-11 16:15 - 2015-08-11 16:15 - 00000000 ____D C:\Program Files (x86)\OEM 2015-08-11 16:14 - 2015-08-11 16:44 - 00000000 ____D C:\Users\Giovanni\AppData\Local\Packages 2015-08-11 16:14 - 2015-08-11 16:14 - 00001454 _____ C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-08-11 16:14 - 2015-08-11 16:14 - 00000118 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2015-08-11 16:14 - 2015-08-11 16:14 - 00000000 ____D C:\Windows\oem 2015-08-11 16:14 - 2015-08-11 16:14 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Adobe 2015-08-11 16:14 - 2015-08-11 16:14 - 00000000 ____D C:\Users\Giovanni\AppData\Local\VirtualStore 2015-08-11 16:14 - 2015-08-11 16:14 - 00000000 ____D C:\Users\Giovanni\AppData\Local\OEM 2015-08-11 16:14 - 2015-08-11 16:14 - 00000000 ____D C:\ProgramData\OEM_YAHOO 2015-08-11 16:14 - 2015-08-11 16:14 - 00000000 ____D C:\Program Files\Accessory Store 2015-08-11 16:13 - 2015-08-11 16:13 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Intel 2015-08-11 16:12 - 2015-08-11 16:21 - 00000000 ___SD C:\Windows\system32\GWX 2015-08-11 16:12 - 2015-08-11 16:12 - 00000000 ___SD C:\Windows\SysWOW64\GWX 2015-08-11 16:11 - 2015-08-11 18:55 - 00000000 ____D C:\Users\Giovanni\AppData\Local\Pokki 2015-08-11 16:11 - 2015-08-11 17:25 - 00000000 ____D C:\Users\Giovanni 2015-08-11 16:11 - 2015-08-11 16:11 - 00000020 ___SH C:\Users\Giovanni\ntuser.ini 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Vorlagen 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Startmenü 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Netzwerkumgebung 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Lokale Einstellungen 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Eigene Dateien 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Druckumgebung 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Documents\Eigene Musik 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Documents\Eigene Bilder 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\AppData\Local\Verlauf 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\AppData\Local\Anwendungsdaten 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Anwendungsdaten 2015-08-11 16:11 - 2015-04-03 13:37 - 00000000 ___RD C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-08-11 16:11 - 2014-10-27 18:49 - 00000000 ___RD C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-11 16:11 - 2014-03-18 12:13 - 00000369 _____ C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2015-08-11 16:11 - 2014-03-18 12:13 - 00000369 _____ C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2015-08-11 16:11 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-11 16:11 - 2013-08-22 17:36 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-08-11 15:57 - 2015-07-09 21:51 - 00136904 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-08-11 15:57 - 2015-07-09 20:48 - 02758128 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2015-08-11 15:57 - 2015-07-09 20:48 - 00131712 _____ (Microsoft Corporation) C:\Windows\system32\RestoreOptIn.exe 2015-08-11 15:57 - 2015-07-09 20:40 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-08-11 15:57 - 2015-07-09 19:59 - 02412576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2015-08-11 15:57 - 2015-07-09 19:59 - 00112624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RestoreOptIn.exe 2015-08-11 15:57 - 2015-07-09 18:03 - 03701760 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-08-11 15:57 - 2015-07-09 17:54 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-08-11 15:57 - 2015-07-09 17:53 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-08-11 15:57 - 2015-07-09 17:50 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll 2015-08-11 15:57 - 2015-07-09 17:50 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-08-11 15:57 - 2015-07-09 17:48 - 00891904 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-08-11 15:57 - 2015-07-09 17:46 - 02229248 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-08-11 15:57 - 2015-07-09 17:38 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-08-11 15:57 - 2015-07-09 17:37 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-08-11 15:57 - 2015-07-09 17:35 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-08-11 15:57 - 2015-07-09 17:34 - 00721920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-08-11 15:57 - 2015-06-27 05:08 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-08-11 15:57 - 2015-06-27 05:08 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-08-11 15:57 - 2015-06-27 04:14 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-08-11 15:57 - 2015-03-14 03:51 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2015-08-11 15:57 - 2014-10-18 08:50 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wuaext.dll 2015-08-11 15:56 - 2015-08-11 20:20 - 01908949 _____ C:\Windows\WindowsUpdate.log ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-11 21:58 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache 2015-08-11 21:57 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows NT 2015-08-11 21:57 - 2013-08-22 15:36 - 00000000 __RHD C:\Users\Default 2015-08-11 20:00 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sru 2015-08-11 18:53 - 2015-04-03 14:06 - 00006469 _____ C:\Windows\SysWOW64\Gms.log 2015-08-11 18:49 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-08-11 18:44 - 2014-10-27 19:22 - 00000000 ____D C:\Windows\Panther 2015-08-11 17:39 - 2014-10-27 19:09 - 00000000 ____D C:\Windows\System32\Tasks\Recovery Management 2015-08-11 17:33 - 2014-10-27 19:04 - 00000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer 2015-08-11 17:26 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI 2015-08-11 17:20 - 2014-10-27 19:11 - 00000000 ____D C:\ProgramData\Package Cache 2015-08-11 17:17 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\ELAM 2015-08-11 17:16 - 2014-10-27 19:12 - 00000000 ____D C:\Program Files (x86)\McAfee 2015-08-11 16:48 - 2014-10-27 19:12 - 00000000 ____D C:\ProgramData\McAfee 2015-08-11 16:46 - 2014-10-27 19:12 - 00000000 ____D C:\Program Files\Common Files\mcafee 2015-08-11 16:46 - 2013-08-22 17:36 - 00000000 ___HD C:\Windows\ELAMBKUP 2015-08-11 16:44 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness 2015-08-11 16:32 - 2013-08-22 17:36 - 00000000 ___HD C:\Windows\system32\GroupPolicy 2015-08-11 16:29 - 2014-10-27 19:21 - 00000000 ___HD C:\OEM 2015-08-11 16:29 - 2014-10-27 19:04 - 00000000 ____D C:\ProgramData\Acer 2015-08-11 16:25 - 2015-04-03 14:16 - 00002904 _____ C:\Windows\System32\Tasks\Launch Manager 2015-08-11 16:24 - 2014-10-27 19:04 - 00000000 ____D C:\ProgramData\OEM 2015-08-11 16:21 - 2014-10-27 19:04 - 00000000 ____D C:\Program Files (x86)\Acer 2015-08-11 16:20 - 2015-04-03 22:40 - 00765582 _____ C:\Windows\system32\perfh007.dat 2015-08-11 16:20 - 2015-04-03 22:40 - 00159366 _____ C:\Windows\system32\perfc007.dat 2015-08-11 16:20 - 2014-03-18 12:03 - 01776918 _____ C:\Windows\system32\PerfStringBackup.INI 2015-08-11 15:58 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp 2015-08-11 15:58 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\system32\AdvancedInstallers 2015-08-11 15:57 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\restore ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-04-03 13:59 - 2015-04-03 13:59 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Einige Dateien in TEMP: ==================== C:\Users\Giovanni\AppData\Local\Temp\avgnt.exe C:\Users\Giovanni\AppData\Local\Temp\DseShExt-x64.dll C:\Users\Giovanni\AppData\Local\Temp\DseShExt-x86.dll C:\Users\Giovanni\AppData\Local\Temp\oct797A.tmp.exe C:\Users\Giovanni\AppData\Local\Temp\SDShelEx-win32.dll C:\Users\Giovanni\AppData\Local\Temp\SDShelEx-x64.dll ==================== Bamital & volsnap Check ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2014-10-27 18:23 ==================== Ende von Ergebnis ============================ danke war das jetzt der richtige FRST-Log? |
13.08.2015, 07:30 | #6 |
/// the machine /// TB-Ausbilder | pua/DownProt.I - Virus/Malware Lade Dir bitte von hier Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
Deaktiviere bitte dein Antivirenprogramm, da es die Entfernung von DownloadProtect blockieren kann. Bitte downloade DownloadProtectCleaner und speichere die Datei auf dem Desktop.
Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ --> pua/DownProt.I - Virus/Malware |
13.08.2015, 12:31 | #7 |
| pua/DownProt.I - Virus/Malware ok, bin jetzt bei dem Malwarebytes Anti-Malware -Schritt. Bevor ich das Protokoll-txt einsehen kann, fragt er mich allerdings um die Erlaubnis einen Neustart durchzuführen, um den Entfernungsvorgang abzuschließen (Dialogfenster, blockiert alle anderen Anwendungen). Wie soll ich da vorgehen? habe den Neustart gemacht, die Funde hat das Progr selbst unter Quarantäne genommen. Hier das Anti-Malwareprotokoll. Mache jetzt die ADW Cleaner SChritte und Junk... und melde mich dann wieder. Danke Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 13.08.2015 Suchlaufzeit: 11:07 Protokolldatei: anti-malware protokoll.txt Administrator: Ja Version: 2.1.8.1057 Malware-Datenbank: v2015.08.13.03 Rootkit-Datenbank: v2015.08.06.01 Lizenz: Testversion Malware-Schutz: Aktiviert Schutz vor bösartigen Websites: Aktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 8.1 CPU: x64 Dateisystem: NTFS Benutzer: Giovanni Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 345040 Abgelaufene Zeit: 14 Min., 3 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (keine bösartigen Elemente erkannt) Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 10 PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{1F91A9A1-01BA-4c81-863D-3BA0751E1419}, In Quarantäne, [93c441c7a4e7d363d3ea7d13ad55f60a], PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{1F91A9A1-01BA-4C81-863D-3BA0751E1419}, In Quarantäne, [93c441c7a4e7d363d3ea7d13ad55f60a], PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{1F91A9A1-01BA-4C81-863D-3BA0751E1419}, In Quarantäne, [93c441c7a4e7d363d3ea7d13ad55f60a], PUP.Optional.SupTab.A, HKU\S-1-5-21-209834852-2542712019-429283644-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{1F91A9A1-01BA-4C81-863D-3BA0751E1419}, In Quarantäne, [93c441c7a4e7d363d3ea7d13ad55f60a], PUP.Optional.SupTab.A, HKU\S-1-5-21-209834852-2542712019-429283644-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{1F91A9A1-01BA-4C81-863D-3BA0751E1419}, In Quarantäne, [93c441c7a4e7d363d3ea7d13ad55f60a], PUP.Optional.SecurityUtility.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\EDZSD1, Löschen bei Neustart, [1e3972969cef6ec86200cae826dee51b], PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-209834852-2542712019-429283644-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}, In Quarantäne, [d285c1470f7cbb7b0e3f9a7fbb481be5], PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-209834852-2542712019-429283644-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{A10C7ADD-0879-4FE3-A6F6-BAF40D086928}, In Quarantäne, [95c29f69a5e68fa78dc0b0694ab953ad], PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-209834852-2542712019-429283644-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{AA9A4890-4262-4441-8977-E2FFCBFB706C}, In Quarantäne, [b5a233d5cebd2f07e26b0f0a1ee50000], PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-209834852-2542712019-429283644-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{E733165D-CBCF-4FDA-883E-ADEF965B476C}, In Quarantäne, [3a1dac5ce4a72a0ce568170241c2db25], Registrierungswerte: 5 PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-209834852-2542712019-429283644-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}|URL, hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cvs2&utm_campaign=install_ie&utm_content=ds&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&ts=1439303470&type=default&q={searchTerms}, In Quarantäne, [d285c1470f7cbb7b0e3f9a7fbb481be5] PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-209834852-2542712019-429283644-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}|FaviconURL, hxxp://www.mystartsearch.com//favicon.ico, In Quarantäne, [292e39cf0e7d3105f35ab267db287f81] PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-209834852-2542712019-429283644-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{A10C7ADD-0879-4FE3-A6F6-BAF40D086928}|URL, hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cvs2&utm_campaign=install_ie&utm_content=ds&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&ts=1439303470&type=default&q={searchTerms}, In Quarantäne, [95c29f69a5e68fa78dc0b0694ab953ad] PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-209834852-2542712019-429283644-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{AA9A4890-4262-4441-8977-E2FFCBFB706C}|URL, hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cvs2&utm_campaign=install_ie&utm_content=ds&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&ts=1439303470&type=default&q={searchTerms}, In Quarantäne, [b5a233d5cebd2f07e26b0f0a1ee50000] PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-209834852-2542712019-429283644-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{E733165D-CBCF-4FDA-883E-ADEF965B476C}|URL, hxxp://www.mystartsearch.com/web/?utm_source=b&utm_medium=cvs2&utm_campaign=install_ie&utm_content=ds&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&ts=1439303470&type=default&q={searchTerms}, In Quarantäne, [3a1dac5ce4a72a0ce568170241c2db25] Registrierungsdaten: 12 PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://www.mystartsearch.com/web/?type=ds&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://www.mystartsearch.com/web/?type=ds&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&q={searchTerms}),Ersetzt,[a1b6b652cac1a591be0770d456af54ac] PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://www.mystartsearch.com/?type=hp&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322, Gut: (www.google.com), Schlecht: (hxxp://www.mystartsearch.com/?type=hp&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322),Ersetzt,[e7706f991a712e080db882c285804eb2] PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://www.mystartsearch.com/?type=hp&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322, Gut: (www.google.com), Schlecht: (hxxp://www.mystartsearch.com/?type=hp&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322),Ersetzt,[85d2c64226657db9ab1ab78d36cf4eb2] PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://www.mystartsearch.com/web/?type=ds&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://www.mystartsearch.com/web/?type=ds&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&q={searchTerms}),Ersetzt,[9abd3ecad7b4e056467f3113f015ae52] PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[b6a10bfd711aca6cc376be92b94c48b8] PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://www.mystartsearch.com/web/?type=ds&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://www.mystartsearch.com/web/?type=ds&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&q={searchTerms}),Ersetzt,[a9ae64a456352b0be7def94b976e956b] PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://www.mystartsearch.com/?type=hp&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322, Gut: (www.google.com), Schlecht: (hxxp://www.mystartsearch.com/?type=hp&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322),Ersetzt,[f95ed038b1da30064382370daf56936d] PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://www.mystartsearch.com/?type=hp&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322, Gut: (www.google.com), Schlecht: (hxxp://www.mystartsearch.com/?type=hp&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322),Ersetzt,[0255bc4cdbb064d2d3f250f4c540c937] PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://www.mystartsearch.com/web/?type=ds&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://www.mystartsearch.com/web/?type=ds&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322&q={searchTerms}),Ersetzt,[2a2def19632831059b2a63e17f86768a] PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[7bdcf513aae174c2f445420ee32257a9] PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-209834852-2542712019-429283644-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://www.mystartsearch.com/?type=hp&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322, Gut: (www.google.com), Schlecht: (hxxp://www.mystartsearch.com/?type=hp&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322),Ersetzt,[dd7aed1be3a870c6dde9f64ea85d46ba] PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-209834852-2542712019-429283644-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://www.mystartsearch.com/?type=hp&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322, Gut: (www.google.com), Schlecht: (hxxp://www.mystartsearch.com/?type=hp&ts=1439303425&z=0cd8fcd15d726340bef4aa6g4z9c3t7c2eac6cdz4z&from=cvs2&uid=ST1000LM024XHN-M101MBB_S31QJ9FFC00322),Ersetzt,[3324dc2c1c6f58de2c9adf653ec7e917] Ordner: 4 PUP.Optional.DownloadProtect.A, C:\Windows\Installer\{18048F5B-FD5A-4161-A5F6-257A6E39EB65}, In Quarantäne, [3d1a000892f9f14521ed67b20ef5f50b], PUP.Optional.DownloadProtect.A, C:\Windows\Installer\{F1666B91-A21A-4998-8A76-E29FC2506D7A}, In Quarantäne, [aea98781830867cf49c5a07951b20df3], PUP.Optional.ProtectWindowsManager.F, C:\ProgramData\SWinManProS, In Quarantäne, [2b2c0ff9e1aa39fd74481cf8897af10f], PUP.Optional.ProtectWindowsManager.F, C:\ProgramData\SWinManProS\update, In Quarantäne, [2b2c0ff9e1aa39fd74481cf8897af10f], Dateien: 8 PUP.Optional.WProtectManager.A, C:\ProgramData\SWinManProS\ProtectWindowsManager.exe, In Quarantäne, [a5b224e4f79495a15f6f9de718ed0cf4], PUP.Optional.DownloadProtect.A, C:\Windows\Installer\{18048F5B-FD5A-4161-A5F6-257A6E39EB65}\cimbckgnmfipmjlogpnglffblichdbilmrx, In Quarantäne, [3d1a000892f9f14521ed67b20ef5f50b], PUP.Optional.DownloadProtect.A, C:\Windows\Installer\{18048F5B-FD5A-4161-A5F6-257A6E39EB65}\ximbckgnmfipmjlogpnglffblichdbilmml, In Quarantäne, [3d1a000892f9f14521ed67b20ef5f50b], PUP.Optional.DownloadProtect.A, C:\Windows\Installer\{F1666B91-A21A-4998-8A76-E29FC2506D7A}\ckjocjbpocibgcgjfmemmgojckfhplhlprx, In Quarantäne, [aea98781830867cf49c5a07951b20df3], PUP.Optional.DownloadProtect.A, C:\Windows\Installer\{F1666B91-A21A-4998-8A76-E29FC2506D7A}\xkjocjbpocibgcgjfmemmgojckfhplhlpml, In Quarantäne, [aea98781830867cf49c5a07951b20df3], PUP.Optional.SecurityUtility.A, C:\Windows\System32\Tasks\EDZSD1, In Quarantäne, [6ee97296a5e668cea8b8cee4b94bfd03], PUP.Optional.SecurityUtility.A, C:\Windows\Tasks\EDZSD1.job, In Quarantäne, [1f3812f60c7f2c0a0a57842e9d67f30d], PUP.Optional.ProtectWindowsManager.F, C:\ProgramData\SWinManProS\updateconf, In Quarantäne, [2b2c0ff9e1aa39fd74481cf8897af10f], Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter # AdwCleaner v4.208 - Bericht erstellt 13/08/2015 um 11:53:13 # Aktualisiert 09/07/2015 von Xplode # Datenbank : 2015-08-12.1 [Server] # Betriebssystem : Windows 8.1 (x64) # Benutzername : Giovanni - BIG_LEBOWSKI # Gestarted von : C:\Users\Giovanni\Desktop\AdwCleaner_4.208.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\pokki Ordner Gelöscht : C:\Users\Giovanni\AppData\Local\pokki Datei Gelöscht : C:\Users\Giovanni\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Pokki Start Menu.lnk Datei Gelöscht : C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokki Start Menu.lnk ***** [ Geplante Tasks ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKCU\Software\Classes\pokki Schlüssel Gelöscht : HKCU\Software\Classes\AllFileSystemObjects\shell\pokki Schlüssel Gelöscht : HKCU\Software\Classes\Directory\shell\pokki Schlüssel Gelöscht : HKCU\Software\Classes\Drive\shell\pokki Schlüssel Gelöscht : HKCU\Software\Classes\lnkfile\shell\pokki Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki_Start_Menu Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AA9A4890-4262-4441-8977-E2FFCBFB706C} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AA9A4890-4262-4441-8977-E2FFCBFB706C} Schlüssel Gelöscht : HKCU\Software\Pokki Schlüssel Gelöscht : HKCU\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\{3BDFD1D7-7A9B-4D29-80B3-D00E66E62885} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\SecurityUtility Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\mystartsearch.com Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.mystartsearch.com ***** [ Internetbrowser ] ***** -\\ Internet Explorer v11.0.9600.17416 ************************* AdwCleaner[R0].txt - [8906 Bytes] - [13/08/2015 08:42:11] AdwCleaner[R1].txt - [2707 Bytes] - [13/08/2015 11:49:43] AdwCleaner[S0].txt - [2272 Bytes] - [13/08/2015 11:53:13] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2331 Bytes] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 7.5.6 (08.10.2015:1) OS: Windows 8.1 x64 Ran by Giovanni on 13.08.2015 at 12:09:18,79 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Tasks ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders Successfully deleted: [Folder] C:\ProgramData\7b24ec7cc000461ebe26d116b88142c8 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 13.08.2015 at 12:11:34,81 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:12-08-2015 durchgeführt von Giovanni (Administrator) auf BIG_LEBOWSKI (13-08-2015 12:16:40) Gestartet von C:\Users\Giovanni\Downloads Geladene Profile: Giovanni (Verfügbare Profile: Giovanni) Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: IE) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfemms.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\CSP\1.5.495.0\McCSPServiceHost.exe (McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17246_none_fa4ae8e99b1f603c\TiWorker.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20573_x64__8wekyb3d8bbwe\livecomm.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\WinSxS\wow64_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_11.0.9600.17416_none_a6be6b1cc529b8b5\iexplore.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe (Microsoft Corporation) C:\Windows\WinSxS\wow64_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_11.0.9600.17416_none_a6be6b1cc529b8b5\iexplore.exe ==================== Registry (Nicht auf der Ausnahmeliste) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13674712 2014-07-16] (Realtek Semiconductor) HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe [719272 2015-04-02] (McAfee, Inc.) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [782008 2015-07-15] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe [134368 2015-07-02] (Avira Operations GmbH & Co. KG) HKU\S-1-5-21-209834852-2542712019-429283644-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd) HKU\S-1-5-18\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe [1769312 2015-07-27] () ShellIconOverlayIdentifiers: [ACloudSyncedRF] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [2014-08-22] (Acer Incorporated) ShellIconOverlayIdentifiers: [ACloudSyncedSF] -> {5D5F18B7-D59B-4B18-A3E9-0A4BDCCCB699} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [2014-08-22] (Acer Incorporated) ShellIconOverlayIdentifiers: [ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [2014-08-22] (Acer Incorporated) ShellIconOverlayIdentifiers: [ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\Acer Portal\x64\shellext_win.dll [2014-08-22] (Acer Incorporated) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-08-04] (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-08-04] (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-08-04] (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-08-04] (McAfee, Inc.) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2015-04-07] (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2015-04-07] (McAfee, Inc.) Tcpip\Parameters: [DhcpNameServer] 129.206.100.126 129.206.210.127 Tcpip\..\Interfaces\{60AEE4C0-106E-46AB-B671-A79DCFD9F58A}: [DhcpNameServer] 129.206.100.126 129.206.210.127 FireFox: ======== FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2015-04-07] () FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] () FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-09-03] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-09-03] (Intel Corporation) FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2015-04-07] () FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2013-08-06] () FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2014-10-27] FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2014-10-27] Chrome: ======= CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-08-13] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-08-13] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [887128 2015-07-15] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [461672 2015-07-15] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [461672 2015-07-15] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1213072 2015-07-15] (Avira Operations GmbH & Co. KG) R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [218816 2015-07-02] (Avira Operations GmbH & Co. KG) S2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2858336 2015-07-23] (Acer Incorporated) S3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573032 2014-07-22] (Acer Incorporated) S2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2014-04-24] (WildTangent) R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.) S2 iBtSiva; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [121288 2014-06-05] (Intel Corporation) S2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344168 2014-12-22] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation) S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-09-03] (Intel Corporation) R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [455912 2014-12-30] (Acer Incorporate) S2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) S2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [155368 2015-08-04] (McAfee, Inc.) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [753768 2015-04-07] (McAfee, Inc.) S3 McAWFwk; c:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334608 2013-07-30] (McAfee, Inc.) R2 mcbootdelaystartsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.) R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.5.495.0\McCSPServiceHost.exe [207344 2015-06-04] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.) S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [612688 2015-04-09] (McAfee, Inc.) S4 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232656 2015-02-17] (McAfee, Inc.) R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [372144 2015-04-06] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [250672 2015-02-17] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [284912 2014-05-29] () S3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [458984 2014-10-17] (Acer Incorporate) S2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] () S3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768 2014-10-17] (Acer Incorporate) S3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [234240 2014-07-15] (acer) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation) S2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3816176 2014-05-29] (Intel® Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [137288 2015-07-15] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [148632 2015-07-15] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2015-07-15] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [43576 2015-07-15] (Avira Operations GmbH & Co. KG) S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation) S3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [140600 2014-03-26] (Motorola Solutions, Inc.) R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1424184 2014-04-22] (Motorola Solutions, Inc.) R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [68784 2015-02-17] (McAfee, Inc.) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.) R3 iaLPSS_GPIO; C:\Windows\System32\drivers\iaLPSS_GPIO.sys [35832 2014-06-10] (Intel Corporation) R3 iaLPSS_I2C; C:\Windows\System32\drivers\iaLPSS_I2C.sys [120312 2014-06-10] (Intel Corporation) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [199624 2014-06-05] (Intel Corporation) R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [113880 2015-08-13] (Malwarebytes Corporation) R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [126976 2014-09-03] (Intel Corporation) R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [401736 2015-02-17] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [337888 2015-02-17] (McAfee, Inc.) R0 mfedisk; C:\Windows\System32\DRIVERS\mfedisk.sys [101872 2015-02-17] (McAfee, Inc.) S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [80160 2015-02-13] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [488000 2015-02-17] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [864072 2015-02-17] (McAfee, Inc.) R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [482600 2015-01-16] (McAfee, Inc.) S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [100720 2015-01-16] (McAfee, Inc.) R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [37960 2015-08-04] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [340448 2015-02-17] (McAfee, Inc.) R3 NETwNb64; C:\Windows\system32\DRIVERS\Netwbw02.sys [3446240 2014-06-18] (Intel Corporation) R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated) R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [506072 2014-06-20] (Realsil Semiconductor Corporation) R3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [42224 2014-02-19] (Synaptics Incorporated) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-13 12:16 - 2015-08-13 12:16 - 00000000 ____D C:\Users\Giovanni\Downloads\FRST-OlderVersion 2015-08-13 12:14 - 2015-08-13 12:14 - 00000679 _____ C:\Users\Giovanni\Documents\JRT Text vom 13-15-08.txt 2015-08-13 12:11 - 2015-08-13 12:11 - 00000679 _____ C:\Users\Giovanni\Desktop\JRT.txt 2015-08-13 12:08 - 2015-08-13 12:08 - 01791580 _____ (Malwarebytes Corporation) C:\Users\Giovanni\Downloads\JRT.exe 2015-08-13 12:03 - 2015-08-13 12:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee 2015-08-13 11:48 - 2015-08-13 11:48 - 02248704 _____ C:\Users\Giovanni\Desktop\AdwCleaner_4.208.exe 2015-08-13 11:44 - 2015-08-13 11:44 - 00012440 _____ C:\Users\Giovanni\Desktop\anti-malware protokoll.txt 2015-08-13 11:03 - 2015-08-13 11:58 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-08-13 11:03 - 2015-08-13 11:03 - 00001118 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-08-13 11:03 - 2015-08-13 11:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-08-13 11:03 - 2015-08-13 11:03 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-08-13 11:03 - 2015-08-13 11:03 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-08-13 11:03 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-08-13 11:03 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-08-13 11:03 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2015-08-13 11:01 - 2015-08-13 11:01 - 24345872 _____ (Malwarebytes Corporation ) C:\Users\Giovanni\Desktop\mbam-setup-2.1.8.1057.exe 2015-08-13 10:46 - 2015-08-13 11:57 - 00006158 _____ C:\Windows\PFRO.log 2015-08-13 10:40 - 2015-08-13 10:40 - 00326656 _____ C:\Users\Giovanni\Desktop\DownloadProtectCleaner.exe 2015-08-13 10:39 - 2015-08-13 10:43 - 00226304 _____ C:\Users\Giovanni\Desktop\DownloadProtectCleaner-reboot.exe 2015-08-13 10:21 - 2015-08-13 10:21 - 00001284 _____ C:\Users\Giovanni\Desktop\Revo Uninstaller.lnk 2015-08-13 10:21 - 2015-08-13 10:21 - 00000000 ____D C:\Program Files (x86)\VS Revo Group 2015-08-13 08:43 - 2015-08-13 08:43 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Foxit Software 2015-08-13 08:41 - 2015-08-13 11:53 - 00000000 ____D C:\AdwCleaner 2015-08-12 20:52 - 2013-09-23 13:49 - 00197704 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\HipShieldK.sys 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Vorlagen 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Startmenü 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Programme 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\ProgramData\Vorlagen 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\ProgramData\Startmenü 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\ProgramData\Dokumente 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Dokumente und Einstellungen 2015-08-11 20:35 - 2015-08-11 20:36 - 00033204 _____ C:\Users\Giovanni\Downloads\Addition.txt 2015-08-11 20:34 - 2015-08-13 12:16 - 00017649 _____ C:\Users\Giovanni\Downloads\FRST.txt 2015-08-11 20:33 - 2015-08-13 12:16 - 02173952 _____ (Farbar) C:\Users\Giovanni\Downloads\FRST64.exe 2015-08-11 20:33 - 2015-08-13 12:16 - 00000000 ____D C:\FRST 2015-08-11 20:14 - 2015-08-11 20:14 - 00003712 _____ C:\Users\Giovanni\Documents\Ereignisse.txt 2015-08-11 20:00 - 2015-08-11 20:00 - 00000000 _____ C:\Windows\setuperr.log 2015-08-11 20:00 - 2015-08-11 20:00 - 00000000 _____ C:\Windows\setupact.log 2015-08-11 19:58 - 2015-08-11 19:58 - 00059360 _____ C:\Users\Giovanni\Documents\AVSCAN-20150811-190341-72E69B44.LOG 2015-08-11 18:55 - 2015-08-11 18:55 - 00003264 _____ C:\Windows\System32\Tasks\Pokki 2015-08-11 18:49 - 2015-08-11 18:49 - 00346960 _____ C:\Windows\system32\FNTCACHE.DAT 2015-08-11 18:43 - 2015-08-11 18:43 - 00002804 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2015-08-11 18:43 - 2015-08-11 18:43 - 00000838 _____ C:\Users\Public\Desktop\CCleaner.lnk 2015-08-11 18:43 - 2015-08-11 18:43 - 00000000 ____D C:\Program Files\CCleaner 2015-08-11 18:40 - 2015-08-11 18:40 - 05375464 _____ (Piriform Ltd) C:\Users\Giovanni\Downloads\ccsetup508_slim.exe 2015-08-11 18:34 - 2015-08-11 18:34 - 04721376 _____ (Avira Operations GmbH & Co. KG) C:\Users\Giovanni\Desktop\avira_de_av_55ca065f34e17__bng.exe 2015-08-11 17:53 - 2015-08-13 11:40 - 00000000 ____D C:\Users\Giovanni\AppData\Local\CrashDumps 2015-08-11 17:38 - 2015-08-11 17:38 - 00000000 ____D C:\Users\Giovanni\AppData\Local\Acer Aspire R7 Tutorial 2015-08-11 17:33 - 2015-08-11 17:33 - 00002005 _____ C:\Users\Public\Desktop\abPhoto.lnk 2015-08-11 17:22 - 2015-08-11 17:22 - 00002001 _____ C:\Users\Public\Desktop\abMedia.lnk 2015-08-11 17:19 - 2015-08-11 17:20 - 00001140 _____ C:\Users\Public\Desktop\Avira.lnk 2015-08-11 17:18 - 2015-08-11 17:18 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Avira 2015-08-11 16:53 - 2015-08-11 17:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2015-08-11 16:53 - 2015-08-11 17:19 - 00000000 ____D C:\ProgramData\Avira 2015-08-11 16:53 - 2015-08-11 17:19 - 00000000 ____D C:\Program Files (x86)\Avira 2015-08-11 16:53 - 2015-07-15 08:37 - 00148632 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2015-08-11 16:53 - 2015-07-15 08:37 - 00137288 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2015-08-11 16:53 - 2015-07-15 08:37 - 00043576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2015-08-11 16:53 - 2015-07-15 08:37 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2015-08-11 16:42 - 2015-08-11 16:42 - 00000000 ____D C:\Program Files\Common Files\AV 2015-08-11 16:41 - 2015-08-11 16:41 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\dlg 2015-08-11 16:39 - 2015-08-11 16:39 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\AVG 2015-08-11 16:39 - 2015-08-11 16:39 - 00000000 ____D C:\Users\Giovanni\AppData\Local\Avg 2015-08-11 16:38 - 2015-08-11 16:40 - 00000000 ____D C:\ProgramData\AVG 2015-08-11 16:27 - 2015-08-13 08:02 - 00003958 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{FE0F8107-04D4-4B03-8F58-39703C9DC7FC} 2015-08-11 16:27 - 2015-08-11 16:27 - 00000000 __SHD C:\Users\Giovanni\AppData\Local\EmieUserList 2015-08-11 16:27 - 2015-08-11 16:27 - 00000000 __SHD C:\Users\Giovanni\AppData\Local\EmieSiteList 2015-08-11 16:27 - 2015-08-11 16:27 - 00000000 __SHD C:\Users\Giovanni\AppData\Local\EmieBrowserModeList 2015-08-11 16:26 - 2015-08-11 16:26 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2015-08-11 16:23 - 2015-08-11 16:23 - 00000000 ____D C:\Users\Giovanni\AppData\Local\GWX 2015-08-11 16:22 - 2015-08-13 11:59 - 00000000 ____D C:\Users\Giovanni\OneDrive 2015-08-11 16:21 - 2015-08-11 16:21 - 00001969 _____ C:\Users\Public\Desktop\abDocs.lnk 2015-08-11 16:20 - 2015-08-13 12:04 - 00003594 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-209834852-2542712019-429283644-1001 2015-08-11 16:20 - 2015-08-11 16:20 - 00003352 _____ C:\Windows\System32\Tasks\BacKGroundAgent 2015-08-11 16:20 - 2015-08-11 16:20 - 00000000 ____D C:\Users\Public\Pokki 2015-08-11 16:19 - 2015-08-11 20:00 - 00002322 _____ C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk 2015-08-11 16:16 - 2015-08-11 17:30 - 00000000 ____D C:\Users\Giovanni\AppData\Local\clear.fi 2015-08-11 16:16 - 2015-08-11 16:16 - 00001276 _____ C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HD Audio-Manager.lnk 2015-08-11 16:16 - 2015-08-11 16:16 - 00000000 ____D C:\Users\Giovanni\PicStream 2015-08-11 16:16 - 2015-08-11 16:16 - 00000000 ____D C:\Users\Giovanni\Documents\Meine empfangenen Dateien 2015-08-11 16:16 - 2015-08-11 16:16 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Macromedia 2015-08-11 16:16 - 2015-08-11 16:16 - 00000000 ____D C:\Users\Giovanni\AppData\Local\iGware 2015-08-11 16:16 - 2015-08-11 16:16 - 00000000 ____D C:\Users\Giovanni\AppData\Local\AOP SDK 2015-08-11 16:15 - 2015-08-11 16:15 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2015-08-11 16:15 - 2015-08-11 16:15 - 00000000 ____D C:\Program Files (x86)\OEM 2015-08-11 16:14 - 2015-08-11 16:44 - 00000000 ____D C:\Users\Giovanni\AppData\Local\Packages 2015-08-11 16:14 - 2015-08-11 16:14 - 00001454 _____ C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-08-11 16:14 - 2015-08-11 16:14 - 00000118 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2015-08-11 16:14 - 2015-08-11 16:14 - 00000000 ____D C:\Windows\oem 2015-08-11 16:14 - 2015-08-11 16:14 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Adobe 2015-08-11 16:14 - 2015-08-11 16:14 - 00000000 ____D C:\Users\Giovanni\AppData\Local\VirtualStore 2015-08-11 16:14 - 2015-08-11 16:14 - 00000000 ____D C:\Users\Giovanni\AppData\Local\OEM 2015-08-11 16:14 - 2015-08-11 16:14 - 00000000 ____D C:\ProgramData\OEM_YAHOO 2015-08-11 16:14 - 2015-08-11 16:14 - 00000000 ____D C:\Program Files\Accessory Store 2015-08-11 16:13 - 2015-08-11 16:13 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Intel 2015-08-11 16:12 - 2015-08-11 16:21 - 00000000 ___SD C:\Windows\system32\GWX 2015-08-11 16:12 - 2015-08-11 16:12 - 00000000 ___SD C:\Windows\SysWOW64\GWX 2015-08-11 16:11 - 2015-08-11 17:25 - 00000000 ____D C:\Users\Giovanni 2015-08-11 16:11 - 2015-08-11 16:11 - 00000020 ___SH C:\Users\Giovanni\ntuser.ini 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Vorlagen 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Startmenü 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Netzwerkumgebung 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Lokale Einstellungen 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Eigene Dateien 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Druckumgebung 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Documents\Eigene Musik 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Documents\Eigene Bilder 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\AppData\Local\Verlauf 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\AppData\Local\Anwendungsdaten 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Anwendungsdaten 2015-08-11 16:11 - 2015-04-03 13:37 - 00000000 ___RD C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-08-11 16:11 - 2014-10-27 18:49 - 00000000 ___RD C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-11 16:11 - 2014-03-18 12:13 - 00000369 _____ C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2015-08-11 16:11 - 2014-03-18 12:13 - 00000369 _____ C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2015-08-11 16:11 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-11 16:11 - 2013-08-22 17:36 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-08-11 15:57 - 2015-07-09 21:51 - 00136904 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-08-11 15:57 - 2015-07-09 20:48 - 02758128 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2015-08-11 15:57 - 2015-07-09 20:48 - 00131712 _____ (Microsoft Corporation) C:\Windows\system32\RestoreOptIn.exe 2015-08-11 15:57 - 2015-07-09 20:40 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-08-11 15:57 - 2015-07-09 19:59 - 02412576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2015-08-11 15:57 - 2015-07-09 19:59 - 00112624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RestoreOptIn.exe 2015-08-11 15:57 - 2015-07-09 18:03 - 03701760 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-08-11 15:57 - 2015-07-09 17:54 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-08-11 15:57 - 2015-07-09 17:53 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-08-11 15:57 - 2015-07-09 17:50 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll 2015-08-11 15:57 - 2015-07-09 17:50 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-08-11 15:57 - 2015-07-09 17:48 - 00891904 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-08-11 15:57 - 2015-07-09 17:46 - 02229248 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-08-11 15:57 - 2015-07-09 17:38 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-08-11 15:57 - 2015-07-09 17:37 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-08-11 15:57 - 2015-07-09 17:35 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-08-11 15:57 - 2015-07-09 17:34 - 00721920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-08-11 15:57 - 2015-06-27 05:08 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-08-11 15:57 - 2015-06-27 05:08 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-08-11 15:57 - 2015-06-27 04:14 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-08-11 15:57 - 2015-03-14 03:51 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2015-08-11 15:57 - 2014-10-18 08:50 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wuaext.dll 2015-08-11 15:56 - 2015-08-13 12:01 - 01089849 _____ C:\Windows\WindowsUpdate.log ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-13 12:16 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp 2015-08-13 12:00 - 2015-04-03 14:06 - 00006469 _____ C:\Windows\SysWOW64\Gms.log 2015-08-13 12:00 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sru 2015-08-13 11:57 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-08-13 11:56 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI 2015-08-13 11:36 - 2014-10-27 19:12 - 00000000 ____D C:\Program Files (x86)\McAfee 2015-08-13 10:43 - 2013-08-22 17:36 - 00000000 ___HD C:\Windows\system32\GroupPolicy 2015-08-12 20:51 - 2014-10-27 19:12 - 00000000 ____D C:\Program Files\Common Files\mcafee 2015-08-12 20:51 - 2013-08-22 17:36 - 00000000 ___HD C:\Windows\ELAMBKUP 2015-08-12 20:51 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\ELAM 2015-08-11 21:58 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache 2015-08-11 21:57 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows NT 2015-08-11 21:57 - 2013-08-22 15:36 - 00000000 __RHD C:\Users\Default 2015-08-11 18:44 - 2014-10-27 19:22 - 00000000 ____D C:\Windows\Panther 2015-08-11 17:39 - 2014-10-27 19:09 - 00000000 ____D C:\Windows\System32\Tasks\Recovery Management 2015-08-11 17:33 - 2014-10-27 19:04 - 00000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer 2015-08-11 17:20 - 2014-10-27 19:11 - 00000000 ____D C:\ProgramData\Package Cache 2015-08-11 16:48 - 2014-10-27 19:12 - 00000000 ____D C:\ProgramData\McAfee 2015-08-11 16:44 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness 2015-08-11 16:29 - 2014-10-27 19:21 - 00000000 ___HD C:\OEM 2015-08-11 16:29 - 2014-10-27 19:04 - 00000000 ____D C:\ProgramData\Acer 2015-08-11 16:25 - 2015-04-03 14:16 - 00002904 _____ C:\Windows\System32\Tasks\Launch Manager 2015-08-11 16:24 - 2014-10-27 19:04 - 00000000 ____D C:\ProgramData\OEM 2015-08-11 16:21 - 2014-10-27 19:04 - 00000000 ____D C:\Program Files (x86)\Acer 2015-08-11 16:20 - 2015-04-03 22:40 - 00765582 _____ C:\Windows\system32\perfh007.dat 2015-08-11 16:20 - 2015-04-03 22:40 - 00159366 _____ C:\Windows\system32\perfc007.dat 2015-08-11 16:20 - 2014-03-18 12:03 - 01776918 _____ C:\Windows\system32\PerfStringBackup.INI 2015-08-11 15:58 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\system32\AdvancedInstallers 2015-08-11 15:57 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\restore ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-04-03 13:59 - 2015-04-03 13:59 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Einige Dateien in TEMP: ==================== C:\Users\Giovanni\AppData\Local\Temp\avgnt.exe C:\Users\Giovanni\AppData\Local\Temp\DseShExt-x64.dll C:\Users\Giovanni\AppData\Local\Temp\DseShExt-x86.dll C:\Users\Giovanni\AppData\Local\Temp\oct797A.tmp.exe C:\Users\Giovanni\AppData\Local\Temp\Quarantine.exe C:\Users\Giovanni\AppData\Local\Temp\SDShelEx-win32.dll C:\Users\Giovanni\AppData\Local\Temp\SDShelEx-x64.dll C:\Users\Giovanni\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2014-10-27 18:23 ==================== Ende von Ergebnis ============================ Hier der AVSCAN Bericht Code:
ATTFilter Free Antivirus Erstellungsdatum der Reportdatei: Donnerstag, 13. August 2015 12:22 Das Programm läuft als uneingeschränkte Vollversion. Online-Dienste stehen zur Verfügung. Lizenznehmer : Free Seriennummer : 0000149996-AVHOE-0000001 Plattform : Windows 8.1 Windowsversion : (plain) [6.3.9600] Boot Modus : Normal gebootet Benutzername : SYSTEM Computername : BIG_LEBOWSKI Versionsinformationen: BUILD.DAT : 15.0.12.408 93846 Bytes 15.07.2015 08:38:00 AVSCAN.EXE : 15.0.12.402 1171384 Bytes 15.07.2015 06:37:55 AVSCANRC.DLL : 15.0.12.380 67688 Bytes 15.07.2015 06:37:55 LUKE.DLL : 15.0.12.398 69248 Bytes 15.07.2015 06:38:20 AVSCPLR.DLL : 15.0.12.398 106352 Bytes 15.07.2015 06:37:55 REPAIR.DLL : 15.0.12.402 516304 Bytes 15.07.2015 06:37:54 REPAIR.RDF : 1.0.9.74 1055360 Bytes 11.08.2015 15:31:45 AVREG.DLL : 15.0.12.398 318008 Bytes 15.07.2015 06:37:54 AVLODE.DLL : 15.0.12.402 634712 Bytes 15.07.2015 06:37:53 AVLODE.RDF : 14.0.4.72 79262 Bytes 15.07.2015 06:37:53 XBV00024.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00025.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00026.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00027.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00028.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00029.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00030.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00031.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00032.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00033.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00034.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00035.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00036.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00037.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00038.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00039.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00040.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00041.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00111.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00112.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00113.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00114.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00115.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00116.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00117.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00118.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00119.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00120.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00121.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00122.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00123.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00124.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00125.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00126.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00127.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00128.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00129.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00130.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00131.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00132.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00133.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00134.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00135.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00136.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00137.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00138.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00139.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00140.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00141.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00142.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00143.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00144.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00145.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00146.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00147.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00148.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00149.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00150.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00151.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00152.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00153.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00154.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00155.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00156.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00157.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00158.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00159.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00160.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00161.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00162.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00163.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00164.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00165.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00166.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00167.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00168.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00169.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00170.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00171.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00172.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00173.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00174.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00175.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00176.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00177.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00178.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00179.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00180.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00181.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00182.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00183.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00184.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00185.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00186.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00187.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00188.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00189.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00190.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00191.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00192.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00193.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00194.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00195.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00196.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00197.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00198.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00199.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00200.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00201.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00202.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00203.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00204.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00205.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00206.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00207.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00208.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00209.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00210.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00211.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00212.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00213.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00214.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00215.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00216.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00217.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00218.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00219.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00220.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00221.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00222.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00223.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00224.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00225.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00226.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00227.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00228.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00229.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00230.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00231.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00232.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00233.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00234.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00235.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00236.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00237.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00238.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00239.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00240.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00241.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00242.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00243.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:43 XBV00244.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:44 XBV00245.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:44 XBV00246.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:44 XBV00247.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00248.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00249.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00250.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00251.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00252.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00253.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00254.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00255.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00000.VDF : 7.11.70.0 66736640 Bytes 04.04.2013 06:38:40 XBV00001.VDF : 7.11.74.226 2201600 Bytes 30.04.2013 06:38:40 XBV00002.VDF : 7.11.80.60 2751488 Bytes 28.05.2013 06:38:40 XBV00003.VDF : 7.11.85.214 2162688 Bytes 21.06.2013 06:38:40 XBV00004.VDF : 7.11.91.176 3903488 Bytes 23.07.2013 06:38:40 XBV00005.VDF : 7.11.98.186 6822912 Bytes 29.08.2013 06:38:40 XBV00006.VDF : 7.11.139.38 15708672 Bytes 27.03.2014 06:38:40 XBV00007.VDF : 7.11.152.100 4193792 Bytes 02.06.2014 06:38:40 XBV00008.VDF : 8.11.165.192 4251136 Bytes 07.08.2014 06:38:40 XBV00009.VDF : 8.11.172.30 2094080 Bytes 15.09.2014 06:38:40 XBV00010.VDF : 8.11.178.32 1581056 Bytes 14.10.2014 06:38:40 XBV00011.VDF : 8.11.184.50 2178560 Bytes 11.11.2014 06:38:40 XBV00012.VDF : 8.11.190.32 1876992 Bytes 03.12.2014 06:38:40 XBV00013.VDF : 8.11.201.28 2973696 Bytes 14.01.2015 06:38:40 XBV00014.VDF : 8.11.206.252 2695680 Bytes 04.02.2015 06:38:40 XBV00015.VDF : 8.11.213.84 3175936 Bytes 03.03.2015 06:38:40 XBV00016.VDF : 8.11.213.176 212480 Bytes 05.03.2015 06:38:40 XBV00017.VDF : 8.11.219.166 2033664 Bytes 25.03.2015 06:38:40 XBV00018.VDF : 8.11.225.88 2367488 Bytes 22.04.2015 06:38:40 XBV00019.VDF : 8.11.230.186 1674752 Bytes 13.05.2015 06:38:40 XBV00020.VDF : 8.11.237.30 4711936 Bytes 02.06.2015 06:38:40 XBV00021.VDF : 8.11.243.12 2747904 Bytes 26.06.2015 06:38:40 XBV00022.VDF : 8.11.248.172 2350592 Bytes 17.07.2015 15:31:23 XBV00023.VDF : 8.11.254.112 2570752 Bytes 07.08.2015 15:31:24 XBV00042.VDF : 8.11.254.114 5632 Bytes 07.08.2015 15:31:24 XBV00043.VDF : 8.11.254.116 9216 Bytes 07.08.2015 15:31:24 XBV00044.VDF : 8.11.254.120 40960 Bytes 07.08.2015 15:31:24 XBV00045.VDF : 8.11.254.122 13824 Bytes 07.08.2015 15:31:24 XBV00046.VDF : 8.11.254.126 30720 Bytes 07.08.2015 15:31:24 XBV00047.VDF : 8.11.254.128 10240 Bytes 07.08.2015 15:31:25 XBV00048.VDF : 8.11.254.130 2048 Bytes 07.08.2015 15:31:25 XBV00049.VDF : 8.11.254.132 17920 Bytes 07.08.2015 15:31:25 XBV00050.VDF : 8.11.254.146 8704 Bytes 07.08.2015 15:31:25 XBV00051.VDF : 8.11.254.162 54784 Bytes 08.08.2015 15:31:25 XBV00052.VDF : 8.11.254.176 2048 Bytes 08.08.2015 15:31:25 XBV00053.VDF : 8.11.254.190 9728 Bytes 08.08.2015 15:31:25 XBV00054.VDF : 8.11.254.204 32768 Bytes 08.08.2015 15:31:25 XBV00055.VDF : 8.11.254.206 99328 Bytes 09.08.2015 15:31:25 XBV00056.VDF : 8.11.254.220 14336 Bytes 09.08.2015 15:31:25 XBV00057.VDF : 8.11.254.232 2048 Bytes 09.08.2015 15:31:25 XBV00058.VDF : 8.11.254.244 28160 Bytes 09.08.2015 15:31:25 XBV00059.VDF : 8.11.255.2 3584 Bytes 09.08.2015 15:31:25 XBV00060.VDF : 8.11.255.4 95232 Bytes 10.08.2015 15:31:25 XBV00061.VDF : 8.11.255.6 4608 Bytes 10.08.2015 15:31:26 XBV00062.VDF : 8.11.255.8 8192 Bytes 10.08.2015 15:31:26 XBV00063.VDF : 8.11.255.20 6656 Bytes 10.08.2015 15:31:26 XBV00064.VDF : 8.11.255.32 22016 Bytes 10.08.2015 15:31:26 XBV00065.VDF : 8.11.255.44 2048 Bytes 10.08.2015 15:31:26 XBV00066.VDF : 8.11.255.56 7680 Bytes 10.08.2015 15:31:26 XBV00067.VDF : 8.11.255.58 7680 Bytes 10.08.2015 15:31:26 XBV00068.VDF : 8.11.255.60 37888 Bytes 10.08.2015 15:31:26 XBV00069.VDF : 8.11.255.62 19456 Bytes 10.08.2015 15:31:26 XBV00070.VDF : 8.11.255.64 5120 Bytes 10.08.2015 15:31:26 XBV00071.VDF : 8.11.255.66 10240 Bytes 10.08.2015 15:31:26 XBV00072.VDF : 8.11.255.68 24576 Bytes 10.08.2015 15:31:26 XBV00073.VDF : 8.11.255.74 30208 Bytes 10.08.2015 15:31:26 XBV00074.VDF : 8.11.255.86 7680 Bytes 10.08.2015 15:31:26 XBV00075.VDF : 8.11.255.96 9216 Bytes 10.08.2015 15:31:26 XBV00076.VDF : 8.11.255.106 8192 Bytes 10.08.2015 15:31:27 XBV00077.VDF : 8.11.255.116 5632 Bytes 10.08.2015 15:31:27 XBV00078.VDF : 8.11.255.120 26112 Bytes 11.08.2015 15:31:36 XBV00079.VDF : 8.11.255.122 2048 Bytes 11.08.2015 15:31:36 XBV00080.VDF : 8.11.255.124 24064 Bytes 11.08.2015 15:31:36 XBV00081.VDF : 8.11.255.126 7168 Bytes 11.08.2015 15:31:36 XBV00082.VDF : 8.11.255.128 9728 Bytes 11.08.2015 15:31:36 XBV00083.VDF : 8.11.255.130 7680 Bytes 11.08.2015 19:19:11 XBV00084.VDF : 8.11.255.132 8192 Bytes 11.08.2015 19:19:12 XBV00085.VDF : 8.11.255.136 64000 Bytes 11.08.2015 19:19:12 XBV00086.VDF : 8.11.255.146 2560 Bytes 11.08.2015 19:19:12 XBV00087.VDF : 8.11.255.156 25600 Bytes 11.08.2015 19:19:12 XBV00088.VDF : 8.11.255.166 18944 Bytes 11.08.2015 07:59:32 XBV00089.VDF : 8.11.255.176 22528 Bytes 11.08.2015 07:59:32 XBV00090.VDF : 8.11.255.184 51200 Bytes 12.08.2015 07:59:32 XBV00091.VDF : 8.11.255.186 6144 Bytes 12.08.2015 07:59:32 XBV00092.VDF : 8.11.255.188 9728 Bytes 12.08.2015 07:59:32 XBV00093.VDF : 8.11.255.190 13312 Bytes 12.08.2015 07:59:32 XBV00094.VDF : 8.11.255.200 5120 Bytes 12.08.2015 11:19:23 XBV00095.VDF : 8.11.255.208 5632 Bytes 12.08.2015 11:19:23 XBV00096.VDF : 8.11.255.220 36864 Bytes 12.08.2015 19:01:08 XBV00097.VDF : 8.11.255.228 2048 Bytes 12.08.2015 19:01:08 XBV00098.VDF : 8.11.255.236 19456 Bytes 12.08.2015 19:01:08 XBV00099.VDF : 8.11.255.238 13312 Bytes 12.08.2015 19:01:08 XBV00100.VDF : 8.11.255.240 10752 Bytes 12.08.2015 09:33:23 XBV00101.VDF : 8.11.255.242 12800 Bytes 12.08.2015 09:33:23 XBV00102.VDF : 8.11.255.244 5632 Bytes 12.08.2015 09:33:23 XBV00103.VDF : 8.11.255.246 9216 Bytes 12.08.2015 09:33:23 XBV00104.VDF : 8.11.255.248 5632 Bytes 12.08.2015 09:33:23 XBV00105.VDF : 8.11.255.254 9216 Bytes 13.08.2015 09:33:23 XBV00106.VDF : 8.12.0.0 48640 Bytes 13.08.2015 09:33:23 XBV00107.VDF : 8.12.0.8 6144 Bytes 13.08.2015 09:33:23 XBV00108.VDF : 8.12.0.16 4096 Bytes 13.08.2015 09:33:23 XBV00109.VDF : 8.12.0.24 3584 Bytes 13.08.2015 09:33:23 XBV00110.VDF : 8.12.0.32 7680 Bytes 13.08.2015 09:33:23 LOCAL001.VDF : 8.12.0.32 134835200 Bytes 13.08.2015 09:33:51 Engineversion : 8.3.32.38 AEBB.DLL : 8.1.2.0 60448 Bytes 15.07.2015 06:37:47 AECORE.DLL : 8.3.7.2 249920 Bytes 15.07.2015 06:37:47 AEDROID.DLL : 8.4.3.324 1540160 Bytes 11.08.2015 15:31:22 AEEMU.DLL : 8.1.3.4 399264 Bytes 15.07.2015 06:37:47 AEEXP.DLL : 8.4.2.116 269168 Bytes 11.08.2015 15:31:22 AEGEN.DLL : 8.1.7.48 460704 Bytes 11.08.2015 15:31:15 AEHELP.DLL : 8.3.2.2 281456 Bytes 15.07.2015 06:37:47 AEHEUR.DLL : 8.1.4.1826 8615848 Bytes 11.08.2015 15:31:21 AEMOBILE.DLL : 8.1.8.2 303168 Bytes 15.07.2015 06:37:47 AEOFFICE.DLL : 8.3.1.44 404608 Bytes 15.07.2015 06:37:47 AEPACK.DLL : 8.4.0.90 793456 Bytes 11.08.2015 15:31:21 AERDL.DLL : 8.2.1.30 805736 Bytes 11.08.2015 15:31:22 AESBX.DLL : 8.2.21.0 1622072 Bytes 15.07.2015 06:37:47 AESCN.DLL : 8.3.2.10 142456 Bytes 15.07.2015 06:37:47 AESCRIPT.DLL : 8.2.2.90 534440 Bytes 11.08.2015 15:31:22 AEVDF.DLL : 8.3.1.6 133992 Bytes 15.07.2015 06:37:47 AVWINLL.DLL : 15.0.12.380 29600 Bytes 15.07.2015 06:37:58 AVPREF.DLL : 15.0.12.380 55864 Bytes 15.07.2015 06:37:54 AVREP.DLL : 15.0.12.380 225320 Bytes 15.07.2015 06:37:54 AVARKT.DLL : 15.0.12.380 232000 Bytes 15.07.2015 06:37:48 AVEVTLOG.DLL : 15.0.12.398 202112 Bytes 15.07.2015 06:37:50 SQLITE3.DLL : 15.0.12.380 461672 Bytes 15.07.2015 06:38:34 AVSMTP.DLL : 15.0.12.380 82120 Bytes 15.07.2015 06:37:56 NETNT.DLL : 15.0.12.380 18792 Bytes 15.07.2015 06:38:23 CommonImageRc.dll: 15.0.12.380 4308216 Bytes 15.07.2015 06:38:24 CommonTextRc.dll: 15.0.12.386 69248 Bytes 15.07.2015 06:38:24 Konfiguration für den aktuellen Suchlauf: Job Name..............................: Vollständige Prüfung Konfigurationsdatei...................: C:\program files (x86)\avira\antivirus\sysscan.avp Protokollierung.......................: standard Primäre Aktion........................: Interaktiv Sekundäre Aktion......................: Ignorieren Durchsuche Masterbootsektoren.........: ein Durchsuche Bootsektoren...............: ein Bootsektoren..........................: C:, Durchsuche aktive Programme...........: ein Laufende Programme erweitert..........: ein Durchsuche Registrierung..............: ein Suche nach Rootkits...................: ein Integritätsprüfung von Systemdateien..: aus Prüfe alle Dateien....................: Alle Dateien Durchsuche Archive....................: ein Rekursionstiefe einschränken..........: 20 Archiv Smart Extensions...............: ein Makrovirenheuristik...................: ein Dateiheuristik........................: erweitert Beginn des Suchlaufs: Donnerstag, 13. August 2015 12:22 Der Suchlauf über die Bootsektoren wird begonnen: Bootsektor 'HDD0(C:)' [INFO] Es wurde kein Virus gefunden! Der Suchlauf nach versteckten Objekten wird begonnen. Fehler in der ARK Library Der Suchlauf über gestartete Prozesse wird begonnen: Durchsuche Prozess 'svchost.exe' - '47' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '95' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '181' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '51' Modul(e) wurden durchsucht Durchsuche Prozess 'dwm.exe' - '41' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '115' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '71' Modul(e) wurden durchsucht Durchsuche Prozess 'spoolsv.exe' - '68' Modul(e) wurden durchsucht Durchsuche Prozess 'sched.exe' - '98' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '77' Modul(e) wurden durchsucht Durchsuche Prozess 'avguard.exe' - '102' Modul(e) wurden durchsucht Durchsuche Prozess 'LMSvc.exe' - '32' Modul(e) wurden durchsucht Durchsuche Prozess 'mfemms.exe' - '23' Modul(e) wurden durchsucht Durchsuche Prozess 'mfevtps.exe' - '18' Modul(e) wurden durchsucht Durchsuche Prozess 'mfevtps.exe' - '36' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '23' Modul(e) wurden durchsucht Durchsuche Prozess 'wmiprvse.exe' - '47' Modul(e) wurden durchsucht Durchsuche Prozess 'mfefire.exe' - '35' Modul(e) wurden durchsucht Durchsuche Prozess 'McSvHost.exe' - '143' Modul(e) wurden durchsucht Durchsuche Prozess 'mfefire.exe' - '15' Modul(e) wurden durchsucht Durchsuche Prozess 'avshadow.exe' - '29' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '61' Modul(e) wurden durchsucht Durchsuche Prozess 'Explorer.EXE' - '241' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'McCSPServiceHost.exe' - '59' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchIndexer.exe' - '61' Modul(e) wurden durchsucht Durchsuche Prozess 'McAPExe.exe' - '36' Modul(e) wurden durchsucht Durchsuche Prozess 'mcshield.exe' - '71' Modul(e) wurden durchsucht Durchsuche Prozess 'devmonsrv.exe' - '45' Modul(e) wurden durchsucht Durchsuche Prozess 'McUICnt.exe' - '109' Modul(e) wurden durchsucht Durchsuche Prozess 'avgnt.exe' - '116' Modul(e) wurden durchsucht Durchsuche Prozess 'CCleaner64.exe' - '57' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'LMS.exe' - '60' Modul(e) wurden durchsucht Durchsuche Prozess 'dashost.exe' - '22' Modul(e) wurden durchsucht Durchsuche Prozess 'PresentationFontCache.exe' - '36' Modul(e) wurden durchsucht Durchsuche Prozess 'Avira.ServiceHost.exe' - '107' Modul(e) wurden durchsucht Durchsuche Prozess 'TrustedInstaller.exe' - '22' Modul(e) wurden durchsucht Durchsuche Prozess 'TiWorker.exe' - '56' Modul(e) wurden durchsucht Durchsuche Prozess 'wmpnetwk.exe' - '73' Modul(e) wurden durchsucht Durchsuche Prozess 'iexplore.exe' - '102' Modul(e) wurden durchsucht Durchsuche Prozess 'DllHost.exe' - '34' Modul(e) wurden durchsucht Durchsuche Prozess 'IEXPLORE.EXE' - '116' Modul(e) wurden durchsucht Durchsuche Prozess 'RuntimeBroker.exe' - '34' Modul(e) wurden durchsucht Durchsuche Prozess 'SettingSyncHost.exe' - '82' Modul(e) wurden durchsucht Durchsuche Prozess 'taskhost.exe' - '56' Modul(e) wurden durchsucht Durchsuche Prozess 'FlashUtil_ActiveX.exe' - '62' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchProtocolHost.exe' - '39' Modul(e) wurden durchsucht Durchsuche Prozess 'avcenter.exe' - '143' Modul(e) wurden durchsucht Durchsuche Prozess 'wmiprvse.exe' - '34' Modul(e) wurden durchsucht Durchsuche Prozess 'avscan.exe' - '115' Modul(e) wurden durchsucht Durchsuche Prozess 'vssvc.exe' - '39' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '30' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchProtocolHost.exe' - '41' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchFilterHost.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'wininit.exe' - '15' Modul(e) wurden durchsucht Durchsuche Prozess 'winlogon.exe' - '28' Modul(e) wurden durchsucht Durchsuche Prozess 'lsass.exe' - '62' Modul(e) wurden durchsucht Der Suchlauf auf Verweise zu ausführbaren Dateien (Registry) wird begonnen: Die Registry wurde durchsucht ( '1316' Dateien ). Der Suchlauf über die ausgewählten Dateien wird begonnen: Beginne mit der Suche in 'C:\' <Acer> C:\swapfile.sys [WARNUNG] Die Datei konnte nicht geöffnet werden! C:\$Recycle.Bin\S-1-5-21-209834852-2542712019-429283644-1001\$RRFTNTZ\WaInternetEnlibs\llmte.bnk [FUND] Enthält Erkennungsmuster der Adware ADWARE/Wajam.Gen C:\$Recycle.Bin\S-1-5-21-209834852-2542712019-429283644-1001\$RRFTNTZ\WaInternetEnlibs\wjlzs.tbx [FUND] Enthält Erkennungsmuster der Adware ADWARE/Wajam.Gen Beginne mit der Desinfektion: C:\$Recycle.Bin\S-1-5-21-209834852-2542712019-429283644-1001\$RRFTNTZ\WaInternetEnlibs\wjlzs.tbx [FUND] Enthält Erkennungsmuster der Adware ADWARE/Wajam.Gen [HINWEIS] Die Datei wurde ins Quarantäneverzeichnis unter dem Namen '506fd0c4.qua' verschoben! C:\$Recycle.Bin\S-1-5-21-209834852-2542712019-429283644-1001\$RRFTNTZ\WaInternetEnlibs\llmte.bnk [FUND] Enthält Erkennungsmuster der Adware ADWARE/Wajam.Gen [HINWEIS] Die Datei wurde ins Quarantäneverzeichnis unter dem Namen '48f9ff5b.qua' verschoben! Ende des Suchlaufs: Donnerstag, 13. August 2015 13:28 Benötigte Zeit: 1:05:10 Stunde(n) Der Suchlauf wurde vollständig durchgeführt. 37359 Verzeichnisse wurden überprüft 675841 Dateien wurden geprüft 2 Viren bzw. unerwünschte Programme wurden gefunden 0 Dateien wurden als verdächtig eingestuft 0 Dateien wurden gelöscht 0 Viren bzw. unerwünschte Programme wurden repariert 2 Dateien wurden in die Quarantäne verschoben 0 Dateien wurden umbenannt 1 Dateien konnten nicht durchsucht werden 675838 Dateien ohne Befall 3141 Archive wurden durchsucht 1 Warnungen 2 Hinweise 1442 Objekte wurden beim Rootkitscan durchsucht 0 Versteckte Objekte wurden gefunden |
14.08.2015, 08:41 | #8 |
/// the machine /// TB-Ausbilder | pua/DownProt.I - Virus/MalwareESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
14.08.2015, 11:25 | #9 |
| pua/DownProt.I - Virus/Malware Rückfrage: das mit den externen DAtenträgern (USB oder ext FP) habe ich nicht verstanden bzw. ich befürchte, dass - wenn sich doch noch malware auf meinem Laptop befindet - die Daten dort auch noch beschädigt werden. Oder ist diese Befürchtung unnötig? Bitte um kurze Rückmeldung. DANKE Was mich zu meiner Paranoia bewegt ist, dass ich bei den letzten Avira Scans, zwar nur noch Adware gefunden habe (die ich dann in Quarantäne und über entfernen scheinbar erfolgreich gelöscht habe). Doch findet das Programm immer wieder eine Datei, die "Warnung" auslöst. Hier der Log. Code:
ATTFilter Free Antivirus Erstellungsdatum der Reportdatei: Freitag, 14. August 2015 08:57 Das Programm läuft als uneingeschränkte Vollversion. Online-Dienste stehen zur Verfügung. Lizenznehmer : Free Seriennummer : 0000149996-AVHOE-0000001 Plattform : Windows 8.1 Windowsversion : (plain) [6.3.9600] Boot Modus : Normal gebootet Benutzername : SYSTEM Computername : BIG_LEBOWSKI Versionsinformationen: BUILD.DAT : 15.0.12.408 93846 Bytes 15.07.2015 08:38:00 AVSCAN.EXE : 15.0.12.402 1171384 Bytes 15.07.2015 06:37:55 AVSCANRC.DLL : 15.0.12.380 67688 Bytes 15.07.2015 06:37:55 LUKE.DLL : 15.0.12.398 69248 Bytes 15.07.2015 06:38:20 AVSCPLR.DLL : 15.0.12.398 106352 Bytes 15.07.2015 06:37:55 REPAIR.DLL : 15.0.12.402 516304 Bytes 15.07.2015 06:37:54 REPAIR.RDF : 1.0.9.74 1055360 Bytes 11.08.2015 15:31:45 AVREG.DLL : 15.0.12.398 318008 Bytes 15.07.2015 06:37:54 AVLODE.DLL : 15.0.12.402 634712 Bytes 15.07.2015 06:37:53 AVLODE.RDF : 14.0.4.72 79262 Bytes 15.07.2015 06:37:53 XBV00024.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00025.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00026.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00027.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00028.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00029.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00030.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00031.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00032.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00033.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00034.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00035.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00036.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00037.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00038.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00039.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00040.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00041.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00117.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00118.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00119.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00120.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00121.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00122.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00123.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00124.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00125.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00126.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00127.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00128.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00129.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00130.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00131.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00132.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00133.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00134.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00135.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00136.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00137.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00138.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00139.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00140.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00141.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00142.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00143.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:38 XBV00144.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00145.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00146.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00147.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00148.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00149.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00150.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00151.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00152.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00153.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00154.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00155.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00156.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00157.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00158.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00159.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00160.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00161.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00162.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00163.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00164.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00165.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00166.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00167.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00168.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00169.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00170.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00171.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00172.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00173.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00174.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00175.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:39 XBV00176.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00177.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00178.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00179.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00180.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00181.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00182.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00183.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00184.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00185.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00186.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00187.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00188.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00189.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00190.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00191.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00192.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00193.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00194.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00195.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00196.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00197.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00198.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00199.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00200.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00201.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00202.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00203.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00204.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00205.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00206.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00207.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00208.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00209.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00210.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00211.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00212.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00213.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00214.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00215.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00216.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00217.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00218.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00219.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00220.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00221.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00222.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00223.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00224.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00225.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00226.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00227.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00228.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00229.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00230.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00231.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00232.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00233.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00234.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00235.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00236.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00237.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00238.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00239.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00240.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00241.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00242.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00243.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:43 XBV00244.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:44 XBV00245.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:44 XBV00246.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:44 XBV00247.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00248.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00249.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00250.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00251.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00252.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00253.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00254.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00255.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00000.VDF : 7.11.70.0 66736640 Bytes 04.04.2013 06:38:40 XBV00001.VDF : 7.11.74.226 2201600 Bytes 30.04.2013 06:38:40 XBV00002.VDF : 7.11.80.60 2751488 Bytes 28.05.2013 06:38:40 XBV00003.VDF : 7.11.85.214 2162688 Bytes 21.06.2013 06:38:40 XBV00004.VDF : 7.11.91.176 3903488 Bytes 23.07.2013 06:38:40 XBV00005.VDF : 7.11.98.186 6822912 Bytes 29.08.2013 06:38:40 XBV00006.VDF : 7.11.139.38 15708672 Bytes 27.03.2014 06:38:40 XBV00007.VDF : 7.11.152.100 4193792 Bytes 02.06.2014 06:38:40 XBV00008.VDF : 8.11.165.192 4251136 Bytes 07.08.2014 06:38:40 XBV00009.VDF : 8.11.172.30 2094080 Bytes 15.09.2014 06:38:40 XBV00010.VDF : 8.11.178.32 1581056 Bytes 14.10.2014 06:38:40 XBV00011.VDF : 8.11.184.50 2178560 Bytes 11.11.2014 06:38:40 XBV00012.VDF : 8.11.190.32 1876992 Bytes 03.12.2014 06:38:40 XBV00013.VDF : 8.11.201.28 2973696 Bytes 14.01.2015 06:38:40 XBV00014.VDF : 8.11.206.252 2695680 Bytes 04.02.2015 06:38:40 XBV00015.VDF : 8.11.213.84 3175936 Bytes 03.03.2015 06:38:40 XBV00016.VDF : 8.11.213.176 212480 Bytes 05.03.2015 06:38:40 XBV00017.VDF : 8.11.219.166 2033664 Bytes 25.03.2015 06:38:40 XBV00018.VDF : 8.11.225.88 2367488 Bytes 22.04.2015 06:38:40 XBV00019.VDF : 8.11.230.186 1674752 Bytes 13.05.2015 06:38:40 XBV00020.VDF : 8.11.237.30 4711936 Bytes 02.06.2015 06:38:40 XBV00021.VDF : 8.11.243.12 2747904 Bytes 26.06.2015 06:38:40 XBV00022.VDF : 8.11.248.172 2350592 Bytes 17.07.2015 15:31:23 XBV00023.VDF : 8.11.254.112 2570752 Bytes 07.08.2015 15:31:24 XBV00042.VDF : 8.11.254.114 5632 Bytes 07.08.2015 15:31:24 XBV00043.VDF : 8.11.254.116 9216 Bytes 07.08.2015 15:31:24 XBV00044.VDF : 8.11.254.120 40960 Bytes 07.08.2015 15:31:24 XBV00045.VDF : 8.11.254.122 13824 Bytes 07.08.2015 15:31:24 XBV00046.VDF : 8.11.254.126 30720 Bytes 07.08.2015 15:31:24 XBV00047.VDF : 8.11.254.128 10240 Bytes 07.08.2015 15:31:25 XBV00048.VDF : 8.11.254.130 2048 Bytes 07.08.2015 15:31:25 XBV00049.VDF : 8.11.254.132 17920 Bytes 07.08.2015 15:31:25 XBV00050.VDF : 8.11.254.146 8704 Bytes 07.08.2015 15:31:25 XBV00051.VDF : 8.11.254.162 54784 Bytes 08.08.2015 15:31:25 XBV00052.VDF : 8.11.254.176 2048 Bytes 08.08.2015 15:31:25 XBV00053.VDF : 8.11.254.190 9728 Bytes 08.08.2015 15:31:25 XBV00054.VDF : 8.11.254.204 32768 Bytes 08.08.2015 15:31:25 XBV00055.VDF : 8.11.254.206 99328 Bytes 09.08.2015 15:31:25 XBV00056.VDF : 8.11.254.220 14336 Bytes 09.08.2015 15:31:25 XBV00057.VDF : 8.11.254.232 2048 Bytes 09.08.2015 15:31:25 XBV00058.VDF : 8.11.254.244 28160 Bytes 09.08.2015 15:31:25 XBV00059.VDF : 8.11.255.2 3584 Bytes 09.08.2015 15:31:25 XBV00060.VDF : 8.11.255.4 95232 Bytes 10.08.2015 15:31:25 XBV00061.VDF : 8.11.255.6 4608 Bytes 10.08.2015 15:31:26 XBV00062.VDF : 8.11.255.8 8192 Bytes 10.08.2015 15:31:26 XBV00063.VDF : 8.11.255.20 6656 Bytes 10.08.2015 15:31:26 XBV00064.VDF : 8.11.255.32 22016 Bytes 10.08.2015 15:31:26 XBV00065.VDF : 8.11.255.44 2048 Bytes 10.08.2015 15:31:26 XBV00066.VDF : 8.11.255.56 7680 Bytes 10.08.2015 15:31:26 XBV00067.VDF : 8.11.255.58 7680 Bytes 10.08.2015 15:31:26 XBV00068.VDF : 8.11.255.60 37888 Bytes 10.08.2015 15:31:26 XBV00069.VDF : 8.11.255.62 19456 Bytes 10.08.2015 15:31:26 XBV00070.VDF : 8.11.255.64 5120 Bytes 10.08.2015 15:31:26 XBV00071.VDF : 8.11.255.66 10240 Bytes 10.08.2015 15:31:26 XBV00072.VDF : 8.11.255.68 24576 Bytes 10.08.2015 15:31:26 XBV00073.VDF : 8.11.255.74 30208 Bytes 10.08.2015 15:31:26 XBV00074.VDF : 8.11.255.86 7680 Bytes 10.08.2015 15:31:26 XBV00075.VDF : 8.11.255.96 9216 Bytes 10.08.2015 15:31:26 XBV00076.VDF : 8.11.255.106 8192 Bytes 10.08.2015 15:31:27 XBV00077.VDF : 8.11.255.116 5632 Bytes 10.08.2015 15:31:27 XBV00078.VDF : 8.11.255.120 26112 Bytes 11.08.2015 15:31:36 XBV00079.VDF : 8.11.255.122 2048 Bytes 11.08.2015 15:31:36 XBV00080.VDF : 8.11.255.124 24064 Bytes 11.08.2015 15:31:36 XBV00081.VDF : 8.11.255.126 7168 Bytes 11.08.2015 15:31:36 XBV00082.VDF : 8.11.255.128 9728 Bytes 11.08.2015 15:31:36 XBV00083.VDF : 8.11.255.130 7680 Bytes 11.08.2015 19:19:11 XBV00084.VDF : 8.11.255.132 8192 Bytes 11.08.2015 19:19:12 XBV00085.VDF : 8.11.255.136 64000 Bytes 11.08.2015 19:19:12 XBV00086.VDF : 8.11.255.146 2560 Bytes 11.08.2015 19:19:12 XBV00087.VDF : 8.11.255.156 25600 Bytes 11.08.2015 19:19:12 XBV00088.VDF : 8.11.255.166 18944 Bytes 11.08.2015 07:59:32 XBV00089.VDF : 8.11.255.176 22528 Bytes 11.08.2015 07:59:32 XBV00090.VDF : 8.11.255.184 51200 Bytes 12.08.2015 07:59:32 XBV00091.VDF : 8.11.255.186 6144 Bytes 12.08.2015 07:59:32 XBV00092.VDF : 8.11.255.188 9728 Bytes 12.08.2015 07:59:32 XBV00093.VDF : 8.11.255.190 13312 Bytes 12.08.2015 07:59:32 XBV00094.VDF : 8.11.255.200 5120 Bytes 12.08.2015 11:19:23 XBV00095.VDF : 8.11.255.208 5632 Bytes 12.08.2015 11:19:23 XBV00096.VDF : 8.11.255.220 36864 Bytes 12.08.2015 19:01:08 XBV00097.VDF : 8.11.255.228 2048 Bytes 12.08.2015 19:01:08 XBV00098.VDF : 8.11.255.236 19456 Bytes 12.08.2015 19:01:08 XBV00099.VDF : 8.11.255.238 13312 Bytes 12.08.2015 19:01:08 XBV00100.VDF : 8.11.255.240 10752 Bytes 12.08.2015 09:33:23 XBV00101.VDF : 8.11.255.242 12800 Bytes 12.08.2015 09:33:23 XBV00102.VDF : 8.11.255.244 5632 Bytes 12.08.2015 09:33:23 XBV00103.VDF : 8.11.255.246 9216 Bytes 12.08.2015 09:33:23 XBV00104.VDF : 8.11.255.248 5632 Bytes 12.08.2015 09:33:23 XBV00105.VDF : 8.11.255.254 9216 Bytes 13.08.2015 09:33:23 XBV00106.VDF : 8.12.0.0 48640 Bytes 13.08.2015 09:33:23 XBV00107.VDF : 8.12.0.8 6144 Bytes 13.08.2015 09:33:23 XBV00108.VDF : 8.12.0.16 4096 Bytes 13.08.2015 09:33:23 XBV00109.VDF : 8.12.0.24 3584 Bytes 13.08.2015 09:33:23 XBV00110.VDF : 8.12.0.32 7680 Bytes 13.08.2015 09:33:23 XBV00111.VDF : 8.12.0.38 35328 Bytes 13.08.2015 06:17:09 XBV00112.VDF : 8.12.0.40 10752 Bytes 13.08.2015 06:17:09 XBV00113.VDF : 8.12.0.42 7168 Bytes 13.08.2015 06:17:09 XBV00114.VDF : 8.12.0.46 24576 Bytes 13.08.2015 06:17:09 XBV00115.VDF : 8.12.0.48 7168 Bytes 13.08.2015 06:17:09 XBV00116.VDF : 8.12.0.50 8704 Bytes 13.08.2015 06:17:09 LOCAL000.VDF : 8.12.0.50 134918656 Bytes 13.08.2015 06:17:39 Engineversion : 8.3.32.46 AEBB.DLL : 8.1.2.0 60448 Bytes 15.07.2015 06:37:47 AECORE.DLL : 8.3.7.2 249920 Bytes 15.07.2015 06:37:47 AEDROID.DLL : 8.4.3.324 1540160 Bytes 11.08.2015 15:31:22 AEEMU.DLL : 8.1.3.4 399264 Bytes 15.07.2015 06:37:47 AEEXP.DLL : 8.4.2.116 269168 Bytes 11.08.2015 15:31:22 AEGEN.DLL : 8.1.7.48 460704 Bytes 11.08.2015 15:31:15 AEHELP.DLL : 8.3.2.2 281456 Bytes 15.07.2015 06:37:47 AEHEUR.DLL : 8.1.4.1860 8625280 Bytes 13.08.2015 13:33:51 AEMOBILE.DLL : 8.1.8.2 303168 Bytes 15.07.2015 06:37:47 AEOFFICE.DLL : 8.3.1.44 404608 Bytes 15.07.2015 06:37:47 AEPACK.DLL : 8.4.1.8 793728 Bytes 13.08.2015 13:33:51 AERDL.DLL : 8.2.1.32 804768 Bytes 13.08.2015 13:33:52 AESBX.DLL : 8.2.21.0 1622072 Bytes 15.07.2015 06:37:47 AESCN.DLL : 8.3.2.10 142456 Bytes 15.07.2015 06:37:47 AESCRIPT.DLL : 8.2.2.90 534440 Bytes 11.08.2015 15:31:22 AEVDF.DLL : 8.3.1.6 133992 Bytes 15.07.2015 06:37:47 AVWINLL.DLL : 15.0.12.380 29600 Bytes 15.07.2015 06:37:58 AVPREF.DLL : 15.0.12.380 55864 Bytes 15.07.2015 06:37:54 AVREP.DLL : 15.0.12.380 225320 Bytes 15.07.2015 06:37:54 AVARKT.DLL : 15.0.12.380 232000 Bytes 15.07.2015 06:37:48 AVEVTLOG.DLL : 15.0.12.398 202112 Bytes 15.07.2015 06:37:50 SQLITE3.DLL : 15.0.12.380 461672 Bytes 15.07.2015 06:38:34 AVSMTP.DLL : 15.0.12.380 82120 Bytes 15.07.2015 06:37:56 NETNT.DLL : 15.0.12.380 18792 Bytes 15.07.2015 06:38:23 CommonImageRc.dll: 15.0.12.380 4308216 Bytes 15.07.2015 06:38:24 CommonTextRc.dll: 15.0.12.386 69248 Bytes 15.07.2015 06:38:24 Konfiguration für den aktuellen Suchlauf: Job Name..............................: Vollständige Prüfung Konfigurationsdatei...................: C:\Program Files (x86)\Avira\Antivirus\sysscan.avp Protokollierung.......................: standard Primäre Aktion........................: Interaktiv Sekundäre Aktion......................: Ignorieren Durchsuche Masterbootsektoren.........: ein Durchsuche Bootsektoren...............: ein Bootsektoren..........................: C:, Durchsuche aktive Programme...........: ein Laufende Programme erweitert..........: ein Durchsuche Registrierung..............: ein Suche nach Rootkits...................: ein Integritätsprüfung von Systemdateien..: aus Prüfe alle Dateien....................: Alle Dateien Durchsuche Archive....................: ein Rekursionstiefe einschränken..........: 20 Archiv Smart Extensions...............: ein Makrovirenheuristik...................: ein Dateiheuristik........................: erweitert Beginn des Suchlaufs: Freitag, 14. August 2015 08:57 Der Suchlauf über die Bootsektoren wird begonnen: Bootsektor 'HDD0(C:)' [INFO] Es wurde kein Virus gefunden! Der Suchlauf nach versteckten Objekten wird begonnen. Fehler in der ARK Library Der Suchlauf über gestartete Prozesse wird begonnen: Durchsuche Prozess 'svchost.exe' - '47' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '28' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '105' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '183' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '69' Modul(e) wurden durchsucht Durchsuche Prozess 'igfxCUIService.exe' - '40' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '128' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '73' Modul(e) wurden durchsucht Durchsuche Prozess 'WLANExt.exe' - '76' Modul(e) wurden durchsucht Durchsuche Prozess 'conhost.exe' - '12' Modul(e) wurden durchsucht Durchsuche Prozess 'sched.exe' - '99' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '80' Modul(e) wurden durchsucht Durchsuche Prozess 'armsvc.exe' - '27' Modul(e) wurden durchsucht Durchsuche Prozess 'avguard.exe' - '103' Modul(e) wurden durchsucht Durchsuche Prozess 'CCDMonitorService.exe' - '37' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '54' Modul(e) wurden durchsucht Durchsuche Prozess 'dashost.exe' - '56' Modul(e) wurden durchsucht Durchsuche Prozess 'EvtEng.exe' - '61' Modul(e) wurden durchsucht Durchsuche Prozess 'ibtsiva.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'LMSvc.exe' - '32' Modul(e) wurden durchsucht Durchsuche Prozess 'mbamscheduler.exe' - '48' Modul(e) wurden durchsucht Durchsuche Prozess 'mbamservice.exe' - '55' Modul(e) wurden durchsucht Durchsuche Prozess 'RegSrvc.exe' - '36' Modul(e) wurden durchsucht Durchsuche Prozess 'RichVideo.exe' - '27' Modul(e) wurden durchsucht Durchsuche Prozess 'ZeroConfigService.exe' - '84' Modul(e) wurden durchsucht Durchsuche Prozess 'Avira.ServiceHost.exe' - '111' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '23' Modul(e) wurden durchsucht Durchsuche Prozess 'wmiprvse.exe' - '47' Modul(e) wurden durchsucht Durchsuche Prozess 'avshadow.exe' - '29' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '71' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '51' Modul(e) wurden durchsucht Durchsuche Prozess 'McSACore.exe' - '66' Modul(e) wurden durchsucht Durchsuche Prozess 'DllHost.exe' - '28' Modul(e) wurden durchsucht Durchsuche Prozess 'devmonsrv.exe' - '45' Modul(e) wurden durchsucht Durchsuche Prozess 'obexsrv.exe' - '41' Modul(e) wurden durchsucht Durchsuche Prozess 'GamesAppIntegrationService.exe' - '32' Modul(e) wurden durchsucht Durchsuche Prozess 'jhi_service.exe' - '28' Modul(e) wurden durchsucht Durchsuche Prozess 'LMS.exe' - '60' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchIndexer.exe' - '60' Modul(e) wurden durchsucht Durchsuche Prozess 'wmpnetwk.exe' - '76' Modul(e) wurden durchsucht Durchsuche Prozess 'PresentationFontCache.exe' - '41' Modul(e) wurden durchsucht Durchsuche Prozess 'QASvc.exe' - '21' Modul(e) wurden durchsucht Durchsuche Prozess 'ePowerSvc.exe' - '52' Modul(e) wurden durchsucht Durchsuche Prozess 'RMSvc.exe' - '36' Modul(e) wurden durchsucht Durchsuche Prozess 'ccd.exe' - '71' Modul(e) wurden durchsucht Durchsuche Prozess 'conhost.exe' - '12' Modul(e) wurden durchsucht Durchsuche Prozess 'UBTService.exe' - '41' Modul(e) wurden durchsucht Durchsuche Prozess 'taskhost.exe' - '88' Modul(e) wurden durchsucht Durchsuche Prozess 'spoolsv.exe' - '111' Modul(e) wurden durchsucht Durchsuche Prozess 'dwm.exe' - '56' Modul(e) wurden durchsucht Durchsuche Prozess 'igfxEM.exe' - '59' Modul(e) wurden durchsucht Durchsuche Prozess 'igfxHK.exe' - '43' Modul(e) wurden durchsucht Durchsuche Prozess 'igfxTray.exe' - '56' Modul(e) wurden durchsucht Durchsuche Prozess 'mbam.exe' - '97' Modul(e) wurden durchsucht Durchsuche Prozess 'taskhostex.exe' - '50' Modul(e) wurden durchsucht Durchsuche Prozess 'skydrive.exe' - '102' Modul(e) wurden durchsucht Durchsuche Prozess 'LMEvent.exe' - '51' Modul(e) wurden durchsucht Durchsuche Prozess 'LMLockHandler.exe' - '35' Modul(e) wurden durchsucht Durchsuche Prozess 'QAEvent.exe' - '68' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '43' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '43' Modul(e) wurden durchsucht Durchsuche Prozess 'GWX.exe' - '56' Modul(e) wurden durchsucht Durchsuche Prozess 'QAMsg.exe' - '36' Modul(e) wurden durchsucht Durchsuche Prozess 'LMTray.exe' - '32' Modul(e) wurden durchsucht Durchsuche Prozess 'rundll32.exe' - '54' Modul(e) wurden durchsucht Durchsuche Prozess 'RAVCpl64.exe' - '47' Modul(e) wurden durchsucht Durchsuche Prozess 'ePowerTray.exe' - '64' Modul(e) wurden durchsucht Durchsuche Prozess 'igfxext.exe' - '56' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '43' Modul(e) wurden durchsucht Durchsuche Prozess 'ePowerEvent.exe' - '32' Modul(e) wurden durchsucht Durchsuche Prozess 'ePowerWinMonitor.exe' - '22' Modul(e) wurden durchsucht Durchsuche Prozess 'avgnt.exe' - '110' Modul(e) wurden durchsucht Durchsuche Prozess 'acrotray.exe' - '66' Modul(e) wurden durchsucht Durchsuche Prozess 'CCleaner64.exe' - '63' Modul(e) wurden durchsucht Durchsuche Prozess 'Avira.Systray.exe' - '112' Modul(e) wurden durchsucht Durchsuche Prozess 'FNPLicensingService.exe' - '21' Modul(e) wurden durchsucht Durchsuche Prozess 'BackgroundAgent.exe' - '104' Modul(e) wurden durchsucht Durchsuche Prozess 'CompatTelRunner.exe' - '94' Modul(e) wurden durchsucht Durchsuche Prozess 'conhost.exe' - '12' Modul(e) wurden durchsucht Durchsuche Prozess 'SettingSyncHost.exe' - '101' Modul(e) wurden durchsucht Durchsuche Prozess 'firefox.exe' - '141' Modul(e) wurden durchsucht Durchsuche Prozess 'explorer.exe' - '204' Modul(e) wurden durchsucht Durchsuche Prozess 'AcerPortal.exe' - '118' Modul(e) wurden durchsucht Durchsuche Prozess 'FMAPP.exe' - '48' Modul(e) wurden durchsucht Durchsuche Prozess 'McCSPServiceHost.exe' - '77' Modul(e) wurden durchsucht Durchsuche Prozess 'mfemms.exe' - '24' Modul(e) wurden durchsucht Durchsuche Prozess 'mfevtps.exe' - '36' Modul(e) wurden durchsucht Durchsuche Prozess 'mfevtps.exe' - '18' Modul(e) wurden durchsucht Durchsuche Prozess 'McAPExe.exe' - '40' Modul(e) wurden durchsucht Durchsuche Prozess 'mfefire.exe' - '36' Modul(e) wurden durchsucht Durchsuche Prozess 'mfefire.exe' - '15' Modul(e) wurden durchsucht Durchsuche Prozess 'mcshield.exe' - '81' Modul(e) wurden durchsucht Durchsuche Prozess 'mcuicnt.exe' - '117' Modul(e) wurden durchsucht Durchsuche Prozess 'McSvHost.exe' - '147' Modul(e) wurden durchsucht Durchsuche Prozess 'avcenter.exe' - '115' Modul(e) wurden durchsucht Durchsuche Prozess 'avscan.exe' - '115' Modul(e) wurden durchsucht Durchsuche Prozess 'wmiprvse.exe' - '32' Modul(e) wurden durchsucht Durchsuche Prozess 'vssvc.exe' - '39' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '30' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchProtocolHost.exe' - '41' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchFilterHost.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'wininit.exe' - '17' Modul(e) wurden durchsucht Durchsuche Prozess 'lsass.exe' - '66' Modul(e) wurden durchsucht Durchsuche Prozess 'WinLogon.exe' - '25' Modul(e) wurden durchsucht Der Suchlauf auf Verweise zu ausführbaren Dateien (Registry) wird begonnen: Die Registry wurde durchsucht ( '1375' Dateien ). Der Suchlauf über die ausgewählten Dateien wird begonnen: Beginne mit der Suche in 'C:\' <Acer> C:\swapfile.sys [WARNUNG] Die Datei konnte nicht geöffnet werden! Ende des Suchlaufs: Freitag, 14. August 2015 10:19 Benötigte Zeit: 1:21:09 Stunde(n) Der Suchlauf wurde abgebrochen! 22025 Verzeichnisse wurden überprüft 730182 Dateien wurden geprüft 0 Viren bzw. unerwünschte Programme wurden gefunden 0 Dateien wurden als verdächtig eingestuft 0 Dateien wurden gelöscht 0 Viren bzw. unerwünschte Programme wurden repariert 0 Dateien wurden in die Quarantäne verschoben 0 Dateien wurden umbenannt 1 Dateien konnten nicht durchsucht werden 730181 Dateien ohne Befall 6425 Archive wurden durchsucht 1 Warnungen 0 Hinweise 1948 Objekte wurden beim Rootkitscan durchsucht 0 Versteckte Objekte wurden gefunden Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=5be342027b804c408153f61c5bd6bc1c # end=init # utc_time=2015-08-14 08:22:59 # local_time=2015-08-14 10:22:59 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.2.9200 NT Update Init Update Download Update Finalize Updated modules version: 25271 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=5be342027b804c408153f61c5bd6bc1c # end=updated # utc_time=2015-08-14 08:26:30 # local_time=2015-08-14 10:26:30 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.2.9200 NT # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7777 # api_version=3.1.1 # EOSSerial=5be342027b804c408153f61c5bd6bc1c # engine=25271 # end=finished # remove_checked=true # archives_checked=false # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2015-08-14 09:46:29 # local_time=2015-08-14 11:46:29 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1031 # osver=6.2.9200 NT # compatibility_mode_1='*McAfee*' # compatibility_mode=5131 16777214 100 97 11519 63031029 0 0 # compatibility_mode_1='' # compatibility_mode=5893 16776574 100 94 63934 30454696 0 0 # scanned=329124 # found=2 # cleaned=2 # scan_time=4797 sh=2BBD0A6AFAE1E13810ADD622C0D06097B8FCB6A5 ft=1 fh=566619329f8bba30 vn="Variante von Win32/Wajam.U evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\$Recycle.Bin\S-1-5-21-209834852-2542712019-429283644-1001\$RRFTNTZ\wajam.exe" sh=215CD6F4AC9413F33F0BEFDB6C04C03819D4179A ft=1 fh=29fce727b325fdd6 vn="Win32/Wajam.Q evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\$Recycle.Bin\S-1-5-21-209834852-2542712019-429283644-1001\$RRFTNTZ\WWE_uninstall.exe" Code:
ATTFilter Results of screen317's Security Check version 1.006 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Avira Antivirus Windows Defender McAfee Anti-Virus und Anti-Spyware Antivirus up to date! (On Access scanning disabled!) `````````Anti-malware/Other Utilities Check:````````` Mozilla Firefox (40.0) ````````Process Check: objlist.exe by Laurent```````` Malwarebytes Anti-Malware mbamservice.exe Malwarebytes Anti-Malware mbam.exe Avira Antivir avgnt.exe Avira Antivir avguard.exe Avira Antivirus sched.exe Avira Antivirus avshadow.exe Malwarebytes Anti-Malware mbamscheduler.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: % ````````````````````End of Log`````````````````````` (1) Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:12-08-2015 durchgeführt von Giovanni (Administrator) auf BIG_LEBOWSKI (14-08-2015 12:14:08) Gestartet von C:\Users\Giovanni\Desktop Geladene Profile: Giovanni & (Verfügbare Profile: Giovanni) Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe (Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe (Acer Cloud Technology) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe (acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMLockHandler.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe (Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\acrotray.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe konnte nicht auf den Prozess zugreifen -> update.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Macrovision Europe Ltd.) C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Acer) C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\CSP\1.6.1008.0\McCSPServiceHost.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfemms.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\Core\mchost.exe () C:\Program Files\Realtek\Audio\HDA\FMAPP.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe ==================== Registry (Nicht auf der Ausnahmeliste) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13674712 2014-07-16] (Realtek Semiconductor) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [782008 2015-07-15] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe [134368 2015-07-02] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe [620152 2006-10-22] (Adobe Systems Inc.) HKLM-x32\...\Run: [] => [X] HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe [1769312 2015-07-27] () HKU\S-1-5-21-209834852-2542712019-429283644-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd) HKU\S-1-5-21-209834852-2542712019-429283644-1001\...\Run: [AcerPortal] => C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe [2674528 2015-07-23] (Acer) HKU\S-1-5-21-209834852-2542712019-429283644-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd) HKU\S-1-5-18\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe [1769312 2015-07-27] () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Acrobat - Schnellstart.lnk [2015-08-13] ShortcutTarget: Adobe Acrobat - Schnellstart.lnk -> C:\Windows\Installer\{AC76BA86-1033-F400-7760-000000000003}\_SC_Acrobat.exe () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Synchronizer.lnk [2015-08-13] ShortcutTarget: Adobe Reader Synchronizer.lnk -> C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AdobeCollabSync.exe () ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2015-07-23] (Acer Incorporated) ShellIconOverlayIdentifiers: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2015-07-23] (Acer Incorporated) ShellIconOverlayIdentifiers: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2015-07-23] (Acer Incorporated) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== Code:
ATTFilter (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe (Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe (Acer Cloud Technology) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe (acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMLockHandler.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe (Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\acrotray.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe konnte nicht auf den Prozess zugreifen -> update.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Macrovision Europe Ltd.) C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Acer) C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\CSP\1.6.1008.0\McCSPServiceHost.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfemms.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\Core\mchost.exe () C:\Program Files\Realtek\Audio\HDA\FMAPP.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe ==================== Registry (Nicht auf der Ausnahmeliste) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13674712 2014-07-16] (Realtek Semiconductor) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [782008 2015-07-15] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe [134368 2015-07-02] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe [620152 2006-10-22] (Adobe Systems Inc.) HKLM-x32\...\Run: [] => [X] HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe [1769312 2015-07-27] () HKU\S-1-5-21-209834852-2542712019-429283644-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd) HKU\S-1-5-21-209834852-2542712019-429283644-1001\...\Run: [AcerPortal] => C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe [2674528 2015-07-23] (Acer) HKU\S-1-5-21-209834852-2542712019-429283644-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd) HKU\S-1-5-18\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe [1769312 2015-07-27] () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Acrobat - Schnellstart.lnk [2015-08-13] ShortcutTarget: Adobe Acrobat - Schnellstart.lnk -> C:\Windows\Installer\{AC76BA86-1033-F400-7760-000000000003}\_SC_Acrobat.exe () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Synchronizer.lnk [2015-08-13] ShortcutTarget: Adobe Reader Synchronizer.lnk -> C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AdobeCollabSync.exe () ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2015-07-23] (Acer Incorporated) ShellIconOverlayIdentifiers: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2015-07-23] (Acer Incorporated) ShellIconOverlayIdentifiers: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2015-07-23] (Acer Incorporated) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKU\S-1-5-21-209834852-2542712019-429283644-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKU\S-1-5-21-209834852-2542712019-429283644-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKU\S-1-5-21-209834852-2542712019-429283644-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKU\S-1-5-21-209834852-2542712019-429283644-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKU\S-1-5-21-209834852-2542712019-429283644-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKU\S-1-5-21-209834852-2542712019-429283644-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKU\S-1-5-21-209834852-2542712019-429283644-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKU\S-1-5-21-209834852-2542712019-429283644-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/#web/result?source=repair&q= SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-02-10] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-01-21] (Microsoft Corporation) BHO-x32: Adobe PDF Reader -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22] (Adobe Systems Incorporated) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-02-10] (Microsoft Corporation) BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll [2006-10-22] (Adobe Systems Incorporated) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-01-21] (Microsoft Corporation) Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll [2006-10-22] (Adobe Systems Incorporated) Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-08-04] (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-08-04] (McAfee, Inc.) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2015-02-17] (Microsoft Corporation) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-08-04] (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-08-04] (McAfee, Inc.) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2015-07-21] (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2015-07-21] (McAfee, Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{60AEE4C0-106E-46AB-B671-A79DCFD9F58A}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{88FCFF4C-CDDF-4709-B999-68CF527CAEFC}: [NameServer] 129.206.100.126,129.206.210.127 FireFox: ======== FF ProfilePath: C:\Users\Giovanni\AppData\Roaming\Mozilla\Firefox\Profiles\o3vts2lv.default FF Homepage: www.google.de FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2015-07-21] () FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] () FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-14] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-09-03] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-09-03] (Intel Corporation) FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2015-07-21] () FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2014-05-21] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2013-08-06] () FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-07-03] (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2014-05-21] (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2015-07-03] (Adobe Systems Inc.) FF Extension: McAfee WebAdvisor - C:\Users\Giovanni\AppData\Roaming\Mozilla\Firefox\Profiles\o3vts2lv.default\Extensions\{4ED1F68A-5463-4931-9384-8FFF5ED91D92}.xpi [2015-08-13] FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2014-10-27] Chrome: ======= CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-08-13] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-08-13] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 0136141439533551mcinstcleanup; C:\Windows\TEMP\013614~1.EXE [882000 2015-06-18] (McAfee, Inc.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [887128 2015-07-15] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [461672 2015-07-15] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [461672 2015-07-15] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1213072 2015-07-15] (Avira Operations GmbH & Co. KG) R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [218816 2015-07-02] (Avira Operations GmbH & Co. KG) S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation) R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2858336 2015-07-23] (Acer Incorporated) R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573032 2014-07-22] (Acer Incorporated) R3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [654848 2015-08-13] (Macrovision Europe Ltd.) [Datei ist nicht signiert] R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2014-04-24] (WildTangent) R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [368048 2015-07-21] (McAfee, Inc.) R2 iBtSiva; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [121288 2014-06-05] (Intel Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344168 2014-12-22] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-09-03] (Intel Corporation) R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [455912 2014-12-30] (Acer Incorporate) R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [155368 2015-08-04] (McAfee, Inc.) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [782608 2015-07-21] (McAfee, Inc.) S3 McAWFwk; c:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334608 2013-07-30] (McAfee, Inc.) R2 mcbootdelaystartsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [368048 2015-07-21] (McAfee, Inc.) R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.6.1008.0\McCSPServiceHost.exe [1694152 2015-07-23] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [368048 2015-07-21] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [368048 2015-07-21] (McAfee, Inc.) S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [639456 2015-07-17] (McAfee, Inc.) S4 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [368048 2015-07-21] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [368048 2015-07-21] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [368048 2015-07-21] (McAfee, Inc.) R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232656 2015-06-29] (McAfee, Inc.) R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [373704 2015-07-15] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [254792 2015-06-29] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [368048 2015-07-21] (McAfee, Inc.) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [284912 2014-05-29] () S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [50688 2013-11-14] (Hewlett-Packard) [Datei ist nicht signiert] S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [66048 2013-11-14] (Hewlett-Packard) [Datei ist nicht signiert] R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [458984 2014-10-17] (Acer Incorporate) R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] () R3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768 2014-10-17] (Acer Incorporate) R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [234240 2014-07-15] (acer) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3816176 2014-05-29] (Intel® Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [137288 2015-07-15] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [148632 2015-07-15] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2015-07-15] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [43576 2015-07-15] (Avira Operations GmbH & Co. KG) S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation) S3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [140600 2014-03-26] (Motorola Solutions, Inc.) R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1424184 2014-04-22] (Motorola Solutions, Inc.) R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [77536 2015-07-02] (McAfee, Inc.) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [207208 2015-05-19] (McAfee, Inc.) R3 iaLPSS_GPIO; C:\Windows\System32\drivers\iaLPSS_GPIO.sys [35832 2014-06-10] (Intel Corporation) R3 iaLPSS_I2C; C:\Windows\System32\drivers\iaLPSS_I2C.sys [120312 2014-06-10] (Intel Corporation) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [199624 2014-06-05] (Intel Corporation) R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [113880 2015-08-14] (Malwarebytes Corporation) R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [126976 2014-09-03] (Intel Corporation) R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [412440 2015-07-02] (McAfee, Inc.) U3 mfeaack01; kein ImagePath R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [347800 2015-07-02] (McAfee, Inc.) U3 mfeavfk01; kein ImagePath S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [80920 2015-07-02] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [496888 2015-07-02] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [875928 2015-07-02] (McAfee, Inc.) U3 mfehidk01; kein ImagePath R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [529080 2015-06-28] (McAfee, Inc.) U3 mfencbdc01; kein ImagePath S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [109728 2015-06-28] (McAfee, Inc.) R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [37960 2015-08-04] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [344704 2015-07-02] (McAfee, Inc.) R3 NETwNb64; C:\Windows\system32\DRIVERS\Netwbw02.sys [3446240 2014-06-18] (Intel Corporation) R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated) R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [506072 2014-06-20] (Realsil Semiconductor Corporation) R3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [42224 2014-02-19] (Synaptics Incorporated) R4 mfedisk; system32\DRIVERS\mfedisk.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Code:
ATTFilter ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-14 12:14 - 2015-08-14 12:14 - 00026890 _____ C:\Users\Giovanni\Desktop\FRST.txt 2015-08-14 12:04 - 2015-08-14 12:04 - 00852684 _____ C:\Users\Giovanni\Desktop\SecurityCheck.exe 2015-08-14 10:22 - 2015-08-14 10:22 - 02870984 _____ (ESET) C:\Users\Giovanni\Downloads\esetsmartinstaller_deu.exe 2015-08-14 08:38 - 2015-08-14 08:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee 2015-08-14 08:37 - 2015-08-14 08:37 - 00000000 ____D C:\Users\Giovanni\abBox 2015-08-14 08:36 - 2015-08-14 08:36 - 00000000 ____D C:\Users\Giovanni\AppData\Local\acer 2015-08-14 08:28 - 2015-08-14 08:28 - 00000000 ____D C:\Windows\System32\Tasks\McAfee 2015-08-14 08:25 - 2015-08-14 08:25 - 00003334 _____ C:\Windows\System32\Tasks\AcerCloud 2015-08-14 08:24 - 2015-08-14 08:24 - 00002102 _____ C:\Users\Public\Desktop\Acer Portal.lnk 2015-08-13 20:45 - 2015-08-13 20:45 - 00000000 ____D C:\Users\Giovanni\Documents\Updater5 2015-08-13 20:43 - 2015-08-13 20:43 - 00000000 ____D C:\ProgramData\FLEXnet 2015-08-13 20:28 - 2015-08-13 20:28 - 00002481 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Distiller 8.lnk 2015-08-13 20:28 - 2015-08-13 20:28 - 00002469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat 8 Professional.lnk 2015-08-13 20:28 - 2015-08-13 20:28 - 00002195 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe LiveCycle Designer 8.0.lnk 2015-08-13 20:28 - 2015-08-13 20:28 - 00002045 _____ C:\Users\Public\Desktop\Adobe Acrobat 8 Professional.lnk 2015-08-13 20:26 - 2015-08-13 20:26 - 00000000 ____D C:\Windows\SysWOW64\spool 2015-08-13 18:00 - 2015-08-13 18:00 - 00000000 ____D C:\Windows\system32\appraiser 2015-08-13 17:48 - 2015-07-30 16:04 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2015-08-13 17:48 - 2015-07-30 15:48 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-08-13 17:10 - 2015-08-13 17:10 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help 2015-08-13 17:10 - 2015-08-13 17:10 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help 2015-08-13 15:39 - 2015-08-14 09:06 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2015-08-13 15:38 - 2015-08-13 15:38 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2015-08-13 15:38 - 2015-08-13 15:38 - 00002071 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk 2015-08-13 15:37 - 2015-08-13 20:26 - 00000000 ____D C:\Program Files (x86)\Adobe 2015-08-13 15:36 - 2015-08-14 09:05 - 00000000 ____D C:\ProgramData\Adobe 2015-08-13 15:36 - 2015-08-13 20:45 - 00000000 ____D C:\Users\Giovanni\AppData\Local\Adobe 2015-08-13 15:31 - 2015-08-13 15:58 - 00000000 ____D C:\Users\Giovanni\AppData\Local\Mozilla 2015-08-13 15:31 - 2015-08-13 15:31 - 00001175 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-08-13 15:31 - 2015-08-13 15:31 - 00001163 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2015-08-13 15:31 - 2015-08-13 15:31 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Mozilla 2015-08-13 15:31 - 2015-08-13 15:31 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-08-13 15:30 - 2015-08-13 15:30 - 00242880 _____ C:\Users\Giovanni\Downloads\Firefox Setup Stub 40.0.exe 2015-08-13 15:27 - 2015-08-13 15:28 - 00002161 _____ C:\Windows\epplauncher.mif 2015-08-13 15:26 - 2015-08-13 15:26 - 26660864 _____ C:\Users\Giovanni\Downloads\SW_DVD5_SysCtr_2012_w_SP1_Endpoint_Protection_for_Windows_-MultiLang_X18-77595.ISO 2015-08-13 15:23 - 2015-08-13 15:23 - 00000000 ____D C:\ProgramData\Hewlett-Packard 2015-08-13 15:22 - 2015-08-13 15:22 - 00000000 _____ C:\Windows\HPMProp.INI 2015-08-13 15:21 - 2013-12-04 00:14 - 00601376 _____ (HP) C:\Windows\SysWOW64\hpcdmc32.dll 2015-08-13 15:21 - 2013-12-04 00:14 - 00237344 _____ (Hewlett-Packard Company) C:\Windows\system32\hpmlm135.dll 2015-08-13 15:21 - 2013-12-04 00:13 - 00217376 _____ (Hewlett-Packard) C:\Windows\system32\hpmml160.dll 2015-08-13 15:21 - 2013-12-04 00:13 - 00189728 _____ (Hewlett-Packard) C:\Windows\system32\hpmpm081.dll 2015-08-13 15:21 - 2013-12-04 00:13 - 00162080 _____ (Hewlett-Packard) C:\Windows\system32\hpmtp160.dll 2015-08-13 15:21 - 2013-12-04 00:13 - 00074016 _____ (Hewlett-Packard) C:\Windows\system32\hpmpw081.dll 2015-08-13 15:21 - 2013-12-04 00:12 - 00199968 _____ (Hewlett-Packard) C:\Windows\system32\hpmja160.dll 2015-08-13 15:21 - 2013-12-04 00:11 - 00447264 _____ (Hewlett-Packard Corporation) C:\Windows\system32\hpcpn160.dll 2015-08-13 15:21 - 2013-12-04 00:11 - 00140064 _____ (Hewlett-Packard) C:\Windows\system32\hpcjpm.dll 2015-08-13 15:21 - 2013-12-04 00:07 - 00446240 _____ (Hewlett Packard Corporation) C:\Windows\SysWOW64\hpcc3160.dll 2015-08-13 15:21 - 2011-02-11 14:23 - 00193592 _____ (Hewlett-Packard) C:\Windows\system32\hppdcompio.dll 2015-08-13 15:21 - 2011-02-11 14:23 - 00167480 _____ (Hewlett-Packard) C:\Windows\SysWOW64\hppccompio.dll 2015-08-13 15:21 - 2009-02-25 16:32 - 00060440 _____ (Hewlett-Packard) C:\Windows\system32\FxCompChannel_x64.dll 2015-08-13 15:12 - 2015-08-13 17:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2015-08-13 15:11 - 2015-08-13 15:11 - 00000000 ____D C:\Program Files\Common Files\DESIGNER 2015-08-13 15:10 - 2015-08-13 15:10 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2015-08-13 15:09 - 2015-08-13 15:31 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-08-13 15:09 - 2015-08-13 15:09 - 00000000 ____D C:\Windows\PCHEALTH 2015-08-13 15:09 - 2015-08-13 15:09 - 00000000 ____D C:\Program Files\Microsoft SQL Server 2015-08-13 15:07 - 2015-08-13 15:07 - 00000000 ____D C:\Users\Giovanni\AppData\Local\Microsoft Help 2015-08-13 15:07 - 2015-08-13 15:07 - 00000000 ____D C:\Program Files\Microsoft Analysis Services 2015-08-13 15:07 - 2015-08-13 15:07 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2015-08-13 15:06 - 2015-08-13 17:47 - 00000000 ____D C:\ProgramData\Microsoft Help 2015-08-13 15:06 - 2015-08-13 15:09 - 00000000 ____D C:\Program Files\Microsoft Office 2015-08-13 15:06 - 2015-08-13 15:06 - 00000000 __RHD C:\MSOCache 2015-08-13 15:02 - 2015-05-25 15:23 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll 2015-08-13 15:02 - 2015-05-25 15:07 - 01430528 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll 2015-08-13 14:58 - 2012-11-13 07:49 - 00000000 ____D C:\Users\Giovanni\Downloads\Office_Professional_Plus_2013-x64-de 2015-08-13 14:57 - 2015-08-13 14:58 - 745507764 _____ (Igor Pavlov) C:\Users\Giovanni\Downloads\Office_Pro_Plus_2013-x64-de.exe 2015-08-13 14:39 - 2015-08-08 15:55 - 00794088 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-08-13 14:39 - 2015-08-08 15:55 - 00179688 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-08-13 14:38 - 2015-08-13 14:39 - 00000324 ____N C:\Windows\DtcInstall.log 2015-08-13 14:25 - 2015-08-13 18:00 - 00000000 ___SD C:\Windows\system32\CompatTel 2015-08-13 14:22 - 2015-08-13 14:24 - 00000000 ____D C:\Windows\system32\MRT 2015-08-13 14:22 - 2015-07-28 10:59 - 132483416 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-08-13 14:21 - 2015-06-09 20:27 - 00411133 _____ C:\Windows\system32\ApnDatabase.xml 2015-08-13 14:21 - 2015-05-07 19:50 - 22292672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2015-08-13 14:21 - 2015-05-07 19:00 - 03109376 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2015-08-13 14:21 - 2015-05-07 18:53 - 19734960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2015-08-13 14:21 - 2015-05-07 18:12 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2015-08-13 14:21 - 2015-05-07 17:21 - 00522240 _____ (Microsoft Corporation) C:\Windows\system32\GeofenceMonitorService.dll 2015-08-13 14:21 - 2015-05-07 17:05 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GeofenceMonitorService.dll 2015-08-13 14:21 - 2015-05-03 02:39 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2015-08-13 14:21 - 2015-04-10 02:34 - 02256896 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2015-08-13 14:21 - 2015-04-10 02:11 - 01943040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2015-08-13 14:21 - 2015-03-14 10:20 - 01385256 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2015-08-13 14:21 - 2015-03-14 10:13 - 01124352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll 2015-08-13 14:21 - 2015-03-09 04:02 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthhfenum.sys 2015-08-13 14:21 - 2015-01-29 03:58 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll 2015-08-13 14:21 - 2015-01-29 03:29 - 00290816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\photowiz.dll 2015-08-13 14:21 - 2014-12-19 10:57 - 00788680 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2015-08-13 14:21 - 2014-12-19 10:25 - 00602776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2015-08-13 14:20 - 2015-07-29 01:24 - 00025776 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2015-08-13 14:20 - 2015-07-28 16:24 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2015-08-13 14:20 - 2015-07-28 16:24 - 01116160 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2015-08-13 14:20 - 2015-07-28 16:24 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2015-08-13 14:20 - 2015-07-28 16:24 - 00743424 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2015-08-13 14:20 - 2015-07-28 16:24 - 00437248 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2015-08-13 14:20 - 2015-07-28 16:24 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2015-08-13 14:20 - 2015-07-14 23:59 - 01113944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2015-08-13 14:20 - 2015-07-14 23:59 - 00487256 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll 2015-08-13 14:20 - 2015-07-14 23:59 - 00393560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll 2015-08-13 14:20 - 2015-07-07 11:40 - 00270168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2015-08-13 14:20 - 2015-07-07 11:40 - 00114520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys 2015-08-13 14:20 - 2015-07-07 11:40 - 00044560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2015-08-13 14:20 - 2015-06-27 01:21 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2015-08-13 14:20 - 2015-06-12 19:03 - 18823680 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2015-08-13 14:20 - 2015-06-12 18:36 - 15159296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2015-08-13 14:20 - 2015-05-21 15:08 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2015-08-13 14:20 - 2015-05-11 20:17 - 01201664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys 2015-08-13 14:20 - 2015-05-03 17:09 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-08-13 14:20 - 2015-05-03 16:58 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-08-13 14:20 - 2015-05-03 16:55 - 00971776 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2015-08-13 14:20 - 2015-05-03 16:49 - 00811008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2015-08-13 14:20 - 2015-04-25 04:25 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2015-08-13 14:20 - 2015-04-16 08:17 - 00325464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS 2015-08-13 14:20 - 2015-04-14 00:37 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\authz.dll 2015-08-13 14:20 - 2015-04-14 00:34 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authz.dll 2015-08-13 14:20 - 2015-04-10 02:40 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll 2015-08-13 14:20 - 2015-04-10 02:17 - 01018880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll 2015-08-13 14:20 - 2015-04-09 00:41 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rgb9rast.dll 2015-08-13 14:20 - 2015-04-03 02:35 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\PhotoMetadataHandler.dll 2015-08-13 14:20 - 2015-04-03 02:14 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoMetadataHandler.dll 2015-08-13 14:20 - 2015-04-02 00:22 - 02985984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll 2015-08-13 14:20 - 2015-04-02 00:20 - 04417536 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll 2015-08-13 14:20 - 2015-04-01 05:45 - 01491456 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll 2015-08-13 14:20 - 2015-04-01 04:31 - 01207296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbghelp.dll 2015-08-13 14:20 - 2015-03-20 05:49 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll 2015-08-13 14:20 - 2015-03-20 05:08 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll 2015-08-13 14:20 - 2015-03-20 04:37 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll 2015-08-13 14:20 - 2015-03-20 04:07 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2015-08-13 14:20 - 2015-03-20 03:56 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys 2015-08-13 14:20 - 2015-03-13 04:02 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys 2015-08-13 14:20 - 2015-03-13 03:11 - 02162176 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll 2015-08-13 14:20 - 2015-03-13 02:39 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll 2015-08-13 14:20 - 2015-03-06 04:47 - 01696256 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll 2015-08-13 14:20 - 2015-03-04 03:32 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll 2015-08-13 14:20 - 2015-03-04 03:12 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll 2015-08-13 14:20 - 2015-03-02 03:43 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\rastapi.dll 2015-08-13 14:20 - 2015-03-02 03:21 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastapi.dll 2015-08-13 14:20 - 2015-02-03 02:03 - 03551744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll 2015-08-13 14:20 - 2015-02-03 02:02 - 04298240 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll 2015-08-13 14:20 - 2015-02-03 01:53 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll 2015-08-13 14:20 - 2015-02-03 01:53 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll 2015-08-13 14:20 - 2015-01-30 05:01 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys 2015-08-13 14:20 - 2015-01-30 05:00 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rfcomm.sys 2015-08-13 14:20 - 2015-01-30 04:03 - 01488896 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll 2015-08-13 14:20 - 2015-01-30 04:03 - 01464832 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll 2015-08-13 14:20 - 2015-01-30 03:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll 2015-08-13 14:20 - 2015-01-30 03:42 - 01204224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll 2015-08-13 14:20 - 2015-01-30 03:29 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atlthunk.dll 2015-08-13 14:20 - 2015-01-30 02:53 - 02819584 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll 2015-08-13 14:20 - 2015-01-29 03:04 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2015-08-13 14:20 - 2015-01-28 04:24 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\StorageContextHandler.dll 2015-08-13 14:20 - 2015-01-28 03:47 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorageContextHandler.dll 2015-08-13 14:20 - 2015-01-19 20:42 - 01487976 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll 2015-08-13 14:20 - 2014-11-14 08:58 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsDatabase.dll 2015-08-13 14:20 - 2014-11-04 21:25 - 00059712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdclass.sys 2015-08-13 14:20 - 2014-11-04 21:25 - 00051008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouclass.sys 2015-08-13 14:20 - 2014-11-04 08:55 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sermouse.sys 2015-08-13 14:20 - 2014-11-04 08:54 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\i8042prt.sys 2015-08-13 14:20 - 2014-11-04 08:54 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys 2015-08-13 14:20 - 2014-11-04 08:54 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouhid.sys 2015-08-13 14:19 - 2015-06-11 22:12 - 02476376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2015-08-13 14:19 - 2015-06-11 22:12 - 00428888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2015-08-13 14:19 - 2015-05-12 15:19 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll 2015-08-13 14:19 - 2015-05-11 18:34 - 00332800 _____ (Microsoft Corporation) C:\Windows\system32\fhcpl.dll 2015-08-13 14:19 - 2015-05-03 17:07 - 07784448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll 2015-08-13 14:19 - 2015-05-03 16:57 - 05264384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll 2015-08-13 14:19 - 2015-04-28 15:13 - 00513480 _____ C:\Windows\SysWOW64\locale.nls 2015-08-13 14:19 - 2015-04-28 15:13 - 00513480 _____ C:\Windows\system32\locale.nls 2015-08-13 14:19 - 2015-04-23 17:47 - 03084288 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll 2015-08-13 14:19 - 2015-04-23 17:16 - 02471424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll 2015-08-13 14:19 - 2015-04-01 06:21 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe 2015-08-13 14:19 - 2015-04-01 06:18 - 00468480 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll 2015-08-13 14:19 - 2015-04-01 06:17 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll 2015-08-13 14:19 - 2015-04-01 06:08 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll 2015-08-13 14:19 - 2015-04-01 05:46 - 03633664 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2015-08-13 14:19 - 2015-04-01 05:17 - 02551808 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2015-08-13 14:19 - 2015-04-01 05:17 - 00903168 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2015-08-13 14:19 - 2015-04-01 04:53 - 00391680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll 2015-08-13 14:19 - 2015-04-01 04:53 - 00272896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe 2015-08-13 14:19 - 2015-04-01 04:45 - 02749952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll 2015-08-13 14:19 - 2015-04-01 04:45 - 00699392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll 2015-08-13 14:19 - 2015-04-01 04:14 - 01920000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll 2015-08-13 14:19 - 2015-04-01 04:12 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe 2015-08-13 14:19 - 2015-03-13 06:03 - 00239424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2015-08-13 14:19 - 2015-03-13 06:03 - 00154432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2015-08-13 14:19 - 2015-03-06 05:08 - 02067968 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll 2015-08-13 14:19 - 2015-03-06 04:43 - 01969664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll 2015-08-13 14:19 - 2015-02-18 01:19 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll 2015-08-13 14:19 - 2015-02-08 01:57 - 01090048 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll 2015-08-13 14:19 - 2015-02-08 01:49 - 00791040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll 2015-08-13 14:19 - 2015-01-30 04:02 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll 2015-08-13 14:19 - 2015-01-30 03:40 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll 2015-08-13 14:19 - 2015-01-30 03:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll 2015-08-13 14:19 - 2015-01-30 03:24 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll 2015-08-13 14:19 - 2015-01-30 03:24 - 00250880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll 2015-08-13 14:19 - 2015-01-30 03:16 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll 2015-08-13 14:19 - 2015-01-30 03:08 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll 2015-08-13 14:19 - 2015-01-30 03:06 - 00278016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll 2015-08-13 14:19 - 2014-12-11 07:36 - 00046456 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentServer.exe 2015-08-13 13:53 - 2014-12-09 05:45 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll 2015-08-13 13:53 - 2014-12-09 03:56 - 00538624 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll 2015-08-13 13:52 - 2014-10-31 00:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2015-08-13 13:52 - 2014-10-31 00:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2015-08-13 13:40 - 2015-07-16 02:29 - 07458648 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-08-13 13:40 - 2015-07-16 02:29 - 01735000 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-08-13 13:40 - 2015-07-16 02:29 - 00101720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys 2015-08-13 13:40 - 2015-07-16 02:28 - 01499920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2015-08-13 13:40 - 2015-07-10 19:54 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll 2015-08-13 13:32 - 2015-07-19 03:58 - 00136904 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-08-13 13:32 - 2015-07-18 20:51 - 03704320 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-08-13 13:32 - 2015-07-18 20:31 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-08-13 13:32 - 2015-07-18 20:31 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-08-13 13:32 - 2015-07-18 20:31 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-08-13 13:32 - 2015-07-18 20:29 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll 2015-08-13 13:32 - 2015-07-18 20:29 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-08-13 13:32 - 2015-07-18 20:29 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-08-13 13:32 - 2015-07-18 20:28 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-08-13 13:32 - 2015-07-18 20:12 - 02228736 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-08-13 13:32 - 2015-07-18 20:10 - 00891904 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-08-13 13:32 - 2015-07-18 20:09 - 00721920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-08-13 12:21 - 2015-06-16 00:41 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe 2015-08-13 12:21 - 2015-06-16 00:24 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-08-13 12:21 - 2015-06-15 23:16 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe 2015-08-13 12:21 - 2015-06-15 23:09 - 03607552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2015-08-13 12:21 - 2015-06-15 22:50 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-08-13 12:21 - 2015-06-15 21:57 - 02460160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2015-08-13 12:16 - 2015-08-13 12:16 - 00000000 ____D C:\Users\Giovanni\Downloads\FRST-OlderVersion 2015-08-13 12:16 - 2015-07-16 21:45 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-08-13 12:16 - 2015-07-16 21:13 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2015-08-13 12:16 - 2015-07-16 20:37 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-08-13 12:16 - 2015-06-15 23:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-08-13 12:16 - 2015-06-15 22:44 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-08-13 12:16 - 2015-06-15 22:30 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-08-13 12:15 - 2015-07-16 23:14 - 25192448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-08-13 12:15 - 2015-07-16 22:36 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-08-13 12:15 - 2015-07-16 22:35 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-08-13 12:15 - 2015-07-16 22:26 - 05923328 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-08-13 12:15 - 2015-07-16 22:23 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-08-13 12:15 - 2015-07-16 22:21 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-08-13 12:15 - 2015-07-16 22:20 - 19870208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-08-13 12:15 - 2015-07-16 21:53 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2015-08-13 12:15 - 2015-07-16 21:51 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-08-13 12:15 - 2015-07-16 21:50 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-08-13 12:15 - 2015-07-16 21:45 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2015-08-13 12:15 - 2015-07-16 21:41 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-08-13 12:15 - 2015-07-16 21:39 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-08-13 12:15 - 2015-07-16 21:38 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2015-08-13 12:15 - 2015-07-16 21:36 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-08-13 12:15 - 2015-07-16 21:34 - 14451200 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-08-13 12:15 - 2015-07-16 21:12 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-08-13 12:15 - 2015-07-16 21:12 - 02427904 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-08-13 12:15 - 2015-07-16 21:10 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-08-13 12:15 - 2015-07-16 21:06 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-08-13 12:15 - 2015-07-16 20:52 - 01048576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll 2015-08-13 12:15 - 2015-07-16 20:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-08-13 12:15 - 2015-07-16 20:42 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-08-13 12:15 - 2015-07-16 20:38 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-08-13 12:15 - 2015-06-16 00:38 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-08-13 12:15 - 2015-06-16 00:02 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2015-08-13 12:15 - 2015-06-15 23:58 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-08-13 12:15 - 2015-06-15 23:57 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-08-13 12:15 - 2015-06-15 23:55 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-08-13 12:15 - 2015-06-15 22:47 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2015-08-13 12:15 - 2015-06-15 22:43 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-08-13 12:15 - 2015-06-15 22:42 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2015-08-13 12:15 - 2015-06-15 22:41 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-08-13 12:15 - 2015-06-15 22:32 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2015-08-13 12:15 - 2015-06-15 22:30 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-08-13 12:15 - 2015-05-23 05:04 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-08-13 12:15 - 2015-05-22 20:47 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-08-13 12:15 - 2015-05-22 20:08 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-08-13 12:15 - 2015-04-21 18:13 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2015-08-13 12:15 - 2015-04-21 17:49 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-08-13 12:15 - 2015-01-12 04:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-08-13 12:15 - 2015-01-12 03:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-08-13 12:14 - 2015-08-13 12:14 - 00000679 _____ C:\Users\Giovanni\Documents\JRT Text vom 13-15-08.txt 2015-08-13 12:14 - 2015-07-16 22:36 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-08-13 12:14 - 2015-07-16 21:32 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-08-13 12:14 - 2015-07-16 21:14 - 02880000 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2015-08-13 12:14 - 2015-07-16 21:01 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-08-13 12:12 - 2015-06-28 07:06 - 00332120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2015-08-13 12:12 - 2015-06-27 18:42 - 00747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-08-13 12:12 - 2015-06-27 03:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2015-08-13 12:12 - 2015-06-27 03:26 - 00802816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-08-13 12:11 - 2015-08-13 12:11 - 00000679 _____ C:\Users\Giovanni\Desktop\JRT.txt 2015-08-13 12:11 - 2015-06-28 07:07 - 00442712 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-08-13 12:11 - 2015-06-28 07:07 - 00178008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-08-13 12:11 - 2015-06-28 07:06 - 01311960 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-08-13 12:11 - 2015-06-27 05:13 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-08-13 12:11 - 2015-06-27 05:12 - 00401408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-08-13 12:11 - 2015-06-27 05:12 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-08-13 12:11 - 2015-06-27 04:40 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2015-08-13 12:11 - 2015-06-27 04:05 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-08-13 12:11 - 2015-06-27 04:00 - 00989184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-08-13 12:11 - 2015-05-30 23:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll 2015-08-13 12:11 - 2015-05-30 21:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll 2015-08-13 12:11 - 2015-05-30 21:35 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2015-08-13 12:11 - 2015-05-01 01:05 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-08-13 12:11 - 2015-05-01 00:48 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-08-13 12:11 - 2015-03-30 07:47 - 00561928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2015-08-13 12:11 - 2014-12-08 21:42 - 00535640 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2015-08-13 12:11 - 2014-12-08 21:42 - 00531616 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll 2015-08-13 12:11 - 2014-12-08 21:42 - 00448792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2015-08-13 12:11 - 2014-12-08 21:42 - 00413248 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll 2015-08-13 12:11 - 2014-12-08 21:42 - 00372408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll 2015-08-13 12:11 - 2014-12-08 21:42 - 00108944 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll 2015-08-13 12:11 - 2014-12-08 21:42 - 00038264 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe 2015-08-13 12:11 - 2014-12-08 21:42 - 00033584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe 2015-08-13 12:08 - 2015-08-13 12:08 - 01791580 _____ (Malwarebytes Corporation) C:\Users\Giovanni\Downloads\JRT.exe 2015-08-13 11:48 - 2015-08-13 11:48 - 02248704 _____ C:\Users\Giovanni\Desktop\AdwCleaner_4.208.exe 2015-08-13 11:44 - 2015-08-13 11:44 - 00012440 _____ C:\Users\Giovanni\Desktop\anti-malware protokoll.txt 2015-08-13 11:03 - 2015-08-14 10:45 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-08-13 11:03 - 2015-08-13 11:03 - 00001118 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-08-13 11:03 - 2015-08-13 11:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-08-13 11:03 - 2015-08-13 11:03 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-08-13 11:03 - 2015-08-13 11:03 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-08-13 11:03 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-08-13 11:03 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-08-13 11:03 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2015-08-13 11:01 - 2015-08-13 11:01 - 24345872 _____ (Malwarebytes Corporation ) C:\Users\Giovanni\Desktop\mbam-setup-2.1.8.1057.exe 2015-08-13 10:46 - 2015-08-13 20:05 - 00015742 _____ C:\Windows\PFRO.log 2015-08-13 10:40 - 2015-08-13 10:40 - 00326656 _____ C:\Users\Giovanni\Desktop\DownloadProtectCleaner.exe 2015-08-13 10:39 - 2015-08-13 10:43 - 00226304 _____ C:\Users\Giovanni\Desktop\DownloadProtectCleaner-reboot.exe 2015-08-13 10:33 - 2014-10-31 06:50 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\BulkOperationHost.exe 2015-08-13 10:33 - 2014-10-31 05:30 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll 2015-08-13 10:33 - 2014-10-31 05:23 - 00733696 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll 2015-08-13 10:33 - 2014-10-31 05:22 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll 2015-08-13 10:33 - 2014-10-31 05:18 - 04840960 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2015-08-13 10:33 - 2014-10-31 05:09 - 01154048 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe 2015-08-13 10:33 - 2014-10-31 04:12 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll 2015-08-13 10:21 - 2015-08-13 10:21 - 00001284 _____ C:\Users\Giovanni\Desktop\Revo Uninstaller.lnk 2015-08-13 10:21 - 2015-08-13 10:21 - 00000000 ____D C:\Program Files (x86)\VS Revo Group 2015-08-13 10:21 - 2014-10-29 05:59 - 03460472 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll 2015-08-13 10:21 - 2014-10-29 03:02 - 14354944 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2015-08-13 10:21 - 2014-10-29 02:52 - 15432704 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2015-08-13 10:21 - 2014-10-29 02:46 - 09530368 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll 2015-08-13 10:21 - 2014-10-29 02:45 - 13318144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2015-08-13 10:20 - 2014-10-29 06:00 - 02314952 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2015-08-13 10:20 - 2014-10-29 06:00 - 02229168 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll 2015-08-13 10:20 - 2014-10-29 05:59 - 00014144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\swenum.sys 2015-08-13 10:20 - 2014-10-29 05:57 - 03138720 _____ (Microsoft Corporation) C:\Windows\system32\WMVCORE.DLL 2015-08-13 10:20 - 2014-10-29 05:57 - 03118096 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe 2015-08-13 10:20 - 2014-10-29 05:57 - 01286048 _____ (Microsoft Corporation) C:\Windows\system32\MSAudDecMFT.dll 2015-08-13 10:20 - 2014-10-29 05:55 - 02174976 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll 2015-08-13 10:20 - 2014-10-29 05:52 - 02334080 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2015-08-13 10:20 - 2014-10-29 05:11 - 02689392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVCORE.DLL 2015-08-13 10:20 - 2014-10-29 05:07 - 02324208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2015-08-13 10:20 - 2014-10-29 04:29 - 04483072 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll 2015-08-13 10:20 - 2014-10-29 03:56 - 03754496 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll 2015-08-13 10:20 - 2014-10-29 03:51 - 00941056 _____ (Microsoft Corporation) C:\Windows\system32\XpsFilt.dll 2015-08-13 10:20 - 2014-10-29 03:45 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\rdpinput.exe 2015-08-13 10:20 - 2014-10-29 03:43 - 07075328 _____ (Microsoft Corporation) C:\Windows\system32\glcndFilter.dll 2015-08-13 10:20 - 2014-10-29 03:40 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe 2015-08-13 10:20 - 2014-10-29 03:39 - 02896384 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll 2015-08-13 10:20 - 2014-10-29 03:38 - 04690432 _____ (Microsoft Corporation) C:\Windows\system32\xpsrchvw.exe 2015-08-13 10:20 - 2014-10-29 03:35 - 04709888 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2015-08-13 10:20 - 2014-10-29 03:35 - 03256320 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2015-08-13 10:20 - 2014-10-29 03:28 - 03820544 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll 2015-08-13 10:20 - 2014-10-29 03:28 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\atlthunk.dll 2015-08-13 10:20 - 2014-10-29 03:26 - 03561984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbon.dll 2015-08-13 10:20 - 2014-10-29 03:24 - 02464768 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2015-08-13 10:20 - 2014-10-29 03:16 - 05267968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glcndFilter.dll 2015-08-13 10:20 - 2014-10-29 03:08 - 02608640 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll 2015-08-13 10:20 - 2014-10-29 03:08 - 02542080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll 2015-08-13 10:20 - 2014-10-29 03:05 - 03273216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll 2015-08-13 10:20 - 2014-10-29 03:03 - 04067840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2015-08-13 10:20 - 2014-10-29 02:50 - 12749824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2015-08-13 10:20 - 2014-10-29 02:48 - 03056128 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll 2015-08-13 10:20 - 2014-10-29 02:37 - 06386176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll 2015-08-13 10:20 - 2014-10-07 08:45 - 03307112 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2015-08-13 10:20 - 2014-10-07 05:44 - 02890296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2015-08-13 10:19 - 2014-10-29 06:10 - 01816008 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll 2015-08-13 10:19 - 2014-10-29 05:58 - 00014528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys 2015-08-13 10:19 - 2014-10-29 05:57 - 02745160 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2015-08-13 10:19 - 2014-10-29 05:57 - 02450216 _____ (Microsoft Corporation) C:\Windows\system32\WMVENCOD.DLL 2015-08-13 10:19 - 2014-10-29 05:55 - 01543768 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll 2015-08-13 10:19 - 2014-10-29 05:52 - 01518504 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll 2015-08-13 10:19 - 2014-10-29 05:52 - 01509688 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll 2015-08-13 10:19 - 2014-10-29 05:52 - 01288096 _____ (Microsoft Corporation) C:\Windows\system32\mfnetsrc.dll 2015-08-13 10:19 - 2014-10-29 05:52 - 01165744 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll 2015-08-13 10:19 - 2014-10-29 05:12 - 01946144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2015-08-13 10:19 - 2014-10-29 05:12 - 01907384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll 2015-08-13 10:19 - 2014-10-29 05:11 - 02528760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2015-08-13 10:19 - 2014-10-29 05:11 - 02447104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVENCOD.DLL 2015-08-13 10:19 - 2014-10-29 05:11 - 01024200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAudDecMFT.dll 2015-08-13 10:19 - 2014-10-29 05:10 - 01564464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll 2015-08-13 10:19 - 2014-10-29 04:25 - 00785920 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll 2015-08-13 10:19 - 2014-10-29 03:57 - 02924032 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll 2015-08-13 10:19 - 2014-10-29 03:47 - 02072064 _____ (Microsoft Corporation) C:\Windows\system32\OpcServices.dll 2015-08-13 10:19 - 2014-10-29 03:31 - 02941952 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll 2015-08-13 10:19 - 2014-10-29 03:24 - 02364928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcndmgr.dll 2015-08-13 10:19 - 2014-10-29 03:23 - 01500672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll 2015-08-13 10:19 - 2014-10-29 03:18 - 01753600 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2015-08-13 10:19 - 2014-10-29 03:17 - 01360896 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll 2015-08-13 10:19 - 2014-10-29 03:11 - 01639424 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll 2015-08-13 10:19 - 2014-10-29 03:10 - 02469888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2015-08-13 10:19 - 2014-10-29 03:08 - 02174976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2015-08-13 10:19 - 2014-10-29 03:08 - 01822720 _____ (Microsoft Corporation) C:\Windows\system32\dui70.dll 2015-08-13 10:19 - 2014-10-29 03:03 - 02635264 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll 2015-08-13 10:19 - 2014-10-29 02:59 - 01490944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2015-08-13 10:19 - 2014-10-29 02:52 - 02170368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll 2015-08-13 10:19 - 2014-10-29 02:52 - 01461248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dui70.dll 2015-08-13 10:19 - 2014-10-29 02:52 - 01275904 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll 2015-08-13 10:19 - 2014-10-29 02:50 - 02317824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll 2015-08-13 10:19 - 2014-10-29 02:46 - 01919488 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2015-08-13 10:19 - 2014-10-29 02:46 - 01348096 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll 2015-08-13 10:19 - 2014-10-29 02:45 - 01725952 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll 2015-08-13 10:19 - 2014-10-29 02:42 - 01221120 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll 2015-08-13 10:19 - 2014-10-29 02:35 - 01668096 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll 2015-08-13 10:19 - 2014-10-29 02:34 - 01544192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll 2015-08-13 10:19 - 2014-10-15 10:32 - 02025792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2015-08-13 10:19 - 2014-09-25 05:42 - 00373568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2015-08-13 10:18 - 2014-10-29 06:04 - 01969912 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2015-08-13 10:18 - 2014-10-29 05:52 - 01064720 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll 2015-08-13 10:18 - 2014-10-29 05:52 - 00988544 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll 2015-08-13 10:18 - 2014-10-29 05:52 - 00952384 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll 2015-08-13 10:18 - 2014-10-29 05:15 - 01612480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2015-08-13 10:18 - 2014-10-29 05:10 - 01178104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webservices.dll 2015-08-13 10:18 - 2014-10-29 05:07 - 01321192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll 2015-08-13 10:18 - 2014-10-29 05:07 - 01115104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll 2015-08-13 10:18 - 2014-10-29 05:07 - 00959112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll 2015-08-13 10:18 - 2014-10-29 04:28 - 01502208 _____ (Microsoft Corporation) C:\Windows\system32\xpssvcs.dll 2015-08-13 10:18 - 2014-10-29 04:17 - 02003456 _____ (Microsoft Corporation) C:\Windows\system32\mmc.exe 2015-08-13 10:18 - 2014-10-29 04:08 - 01540096 _____ (Microsoft Corporation) C:\Windows\system32\diagperf.dll 2015-08-13 10:18 - 2014-10-29 03:55 - 01697280 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll 2015-08-13 10:18 - 2014-10-29 03:48 - 01080832 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll 2015-08-13 10:18 - 2014-10-29 03:45 - 00618496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll 2015-08-13 10:18 - 2014-10-29 03:22 - 02410496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll 2015-08-13 10:18 - 2014-10-29 03:22 - 01084416 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2015-08-13 10:18 - 2014-10-29 03:19 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll 2015-08-13 10:18 - 2014-10-29 03:14 - 03553280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsrchvw.exe 2015-08-13 10:18 - 2014-10-29 03:00 - 01705984 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll 2015-08-13 10:18 - 2014-10-29 02:56 - 01337344 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll 2015-08-13 10:18 - 2014-10-29 02:56 - 01028608 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll 2015-08-13 10:18 - 2014-10-29 02:47 - 02090496 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll 2015-08-13 10:18 - 2014-10-29 02:41 - 02880000 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll 2015-08-13 10:18 - 2014-10-29 02:41 - 01317376 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll 2015-08-13 10:18 - 2014-10-29 02:40 - 02104832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsservices.dll 2015-08-13 10:18 - 2014-10-29 02:39 - 01000448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll 2015-08-13 10:18 - 2014-10-29 02:36 - 00954880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll 2015-08-13 10:17 - 2014-10-29 03:56 - 01526784 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll 2015-08-13 10:17 - 2014-10-29 03:50 - 01289216 _____ (Microsoft Corporation) C:\Windows\system32\WMNetMgr.dll 2015-08-13 10:17 - 2014-10-29 03:42 - 03724800 _____ (Microsoft Corporation) C:\Windows\system32\WinSAT.exe 2015-08-13 10:17 - 2014-10-29 03:17 - 01402368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpcServices.dll 2015-08-13 10:17 - 2014-10-29 03:03 - 02487296 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll 2015-08-13 10:16 - 2014-10-29 05:52 - 00821696 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll 2015-08-13 10:16 - 2014-10-29 05:07 - 00857384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll 2015-08-13 10:16 - 2014-10-29 05:07 - 00785568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll 2015-08-13 10:16 - 2014-10-29 04:31 - 00971264 _____ (Microsoft Corporation) C:\Windows\system32\sqlceqp40.dll 2015-08-13 10:16 - 2014-10-29 03:32 - 01843712 _____ (Microsoft Corporation) C:\Windows\system32\WMPDMC.exe 2015-08-13 10:16 - 2014-10-29 03:06 - 00747520 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll 2015-08-13 10:16 - 2014-10-29 02:56 - 01001984 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.dll 2015-08-13 10:06 - 2014-10-29 05:57 - 01576312 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll 2015-08-13 10:06 - 2014-10-29 05:55 - 01133200 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2015-08-13 10:06 - 2014-10-29 05:52 - 00962216 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2015-08-13 10:06 - 2014-10-29 05:52 - 00850656 _____ (Microsoft Corporation) C:\Windows\system32\mfnetcore.dll 2015-08-13 10:06 - 2014-10-29 05:18 - 00016504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psapi.dll 2015-08-13 10:06 - 2014-10-29 05:05 - 00890128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll 2015-08-13 10:06 - 2014-10-29 04:50 - 01192960 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2015-08-13 10:06 - 2014-10-29 03:43 - 00933376 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll 2015-08-13 10:06 - 2014-10-29 03:37 - 01563136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmc.exe 2015-08-13 10:06 - 2014-10-29 03:34 - 01114624 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2015-08-13 10:06 - 2014-10-29 03:33 - 01056768 _____ (Microsoft Corporation) C:\Windows\system32\WebcamUi.dll 2015-08-13 10:06 - 2014-10-29 03:25 - 01534464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pla.dll 2015-08-13 10:06 - 2014-10-29 03:09 - 01335296 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll 2015-08-13 10:06 - 2014-10-29 03:07 - 01247232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Http.dll 2015-08-13 10:06 - 2014-10-29 03:03 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll 2015-08-13 10:06 - 2014-10-29 03:01 - 01710592 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll 2015-08-13 10:06 - 2014-10-29 02:59 - 01454080 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe 2015-08-13 10:06 - 2014-10-29 02:56 - 01248256 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll 2015-08-13 10:06 - 2014-10-29 02:45 - 00887296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll 2015-08-13 10:06 - 2014-10-29 02:33 - 01102848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll 2015-08-13 10:05 - 2014-10-29 06:09 - 01950280 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll 2015-08-13 10:05 - 2014-10-29 06:00 - 01540696 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2015-08-13 10:05 - 2014-10-29 05:57 - 01210176 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL |
14.08.2015, 11:28 | #10 |
| pua/DownProt.I - Virus/Malware FRST Log (4) Code:
ATTFilter 2015-08-13 10:05 - 2014-10-29 05:57 - 00723072 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll 2015-08-13 10:05 - 2014-10-29 05:52 - 00734448 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll 2015-08-13 10:05 - 2014-10-29 05:52 - 00634768 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2015-08-13 10:05 - 2014-10-29 05:52 - 00580024 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmdev.dll 2015-08-13 10:05 - 2014-10-29 05:18 - 01782912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupapi.dll 2015-08-13 10:05 - 2014-10-29 05:18 - 00848568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskschd.dll 2015-08-13 10:05 - 2014-10-29 05:11 - 01037656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOD.DLL 2015-08-13 10:05 - 2014-10-29 05:10 - 01287112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll 2015-08-13 10:05 - 2014-10-29 05:10 - 00560392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll 2015-08-13 10:05 - 2014-10-29 05:07 - 00801584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll 2015-08-13 10:05 - 2014-10-29 05:07 - 00705008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll 2015-08-13 10:05 - 2014-10-29 05:07 - 00700328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll 2015-08-13 10:05 - 2014-10-29 05:07 - 00584120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll 2015-08-13 10:05 - 2014-10-29 05:07 - 00551064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll 2015-08-13 10:05 - 2014-10-29 05:07 - 00482360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmdev.dll 2015-08-13 10:05 - 2014-10-29 04:56 - 01164288 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL 2015-08-13 10:05 - 2014-10-29 04:43 - 00685056 _____ (Microsoft Corporation) C:\Windows\system32\riched20.dll 2015-08-13 10:05 - 2014-10-29 04:29 - 01246720 _____ (Microsoft Corporation) C:\Windows\system32\ogldrv.dll 2015-08-13 10:05 - 2014-10-29 04:26 - 00771584 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll 2015-08-13 10:05 - 2014-10-29 04:07 - 06692352 _____ (Microsoft Corporation) C:\Windows\system32\mspaint.exe 2015-08-13 10:05 - 2014-10-29 04:03 - 00862720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2015-08-13 10:05 - 2014-10-29 03:56 - 00603648 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll 2015-08-13 10:05 - 2014-10-29 03:53 - 01065984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8.dll 2015-08-13 10:05 - 2014-10-29 03:53 - 00881152 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelinesvc.exe 2015-08-13 10:05 - 2014-10-29 03:49 - 00742400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlceqp40.dll 2015-08-13 10:05 - 2014-10-29 03:47 - 01096192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ogldrv.dll 2015-08-13 10:05 - 2014-10-29 03:46 - 01497600 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe 2015-08-13 10:05 - 2014-10-29 03:45 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll 2015-08-13 10:05 - 2014-10-29 03:43 - 01092608 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll 2015-08-13 10:05 - 2014-10-29 03:39 - 00898048 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll 2015-08-13 10:05 - 2014-10-29 03:37 - 01436160 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll 2015-08-13 10:05 - 2014-10-29 03:34 - 01037824 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2015-08-13 10:05 - 2014-10-29 03:30 - 00657920 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2015-08-13 10:05 - 2014-10-29 03:27 - 01200128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll 2015-08-13 10:05 - 2014-10-29 03:19 - 00713216 _____ (Microsoft Corporation) C:\Windows\system32\WinSync.dll 2015-08-13 10:05 - 2014-10-29 03:18 - 01050624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMNetMgr.dll 2015-08-13 10:05 - 2014-10-29 03:17 - 00829952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll 2015-08-13 10:05 - 2014-10-29 03:14 - 00802816 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll 2015-08-13 10:05 - 2014-10-29 03:14 - 00737280 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll 2015-08-13 10:05 - 2014-10-29 03:14 - 00609280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll 2015-08-13 10:05 - 2014-10-29 03:12 - 00645120 _____ (Microsoft Corporation) C:\Windows\system32\msTextPrediction.dll 2015-08-13 10:05 - 2014-10-29 03:09 - 00658944 _____ (Microsoft Corporation) C:\Windows\system32\duser.dll 2015-08-13 10:05 - 2014-10-29 03:08 - 01478144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPDMC.exe 2015-08-13 10:05 - 2014-10-29 03:08 - 00881664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebcamUi.dll 2015-08-13 10:05 - 2014-10-29 03:07 - 01396736 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2015-08-13 10:05 - 2014-10-29 03:07 - 00657920 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll 2015-08-13 10:05 - 2014-10-29 03:04 - 00868352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll 2015-08-13 10:05 - 2014-10-29 03:03 - 00740352 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll 2015-08-13 10:05 - 2014-10-29 03:01 - 00843776 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll 2015-08-13 10:05 - 2014-10-29 02:59 - 01636864 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll 2015-08-13 10:05 - 2014-10-29 02:56 - 00653312 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe 2015-08-13 10:05 - 2014-10-29 02:56 - 00631808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll 2015-08-13 10:05 - 2014-10-29 02:53 - 01063424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll 2015-08-13 10:05 - 2014-10-29 02:52 - 01265152 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll 2015-08-13 10:05 - 2014-10-29 02:52 - 00801792 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll 2015-08-13 10:05 - 2014-10-29 02:51 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll 2015-08-13 10:05 - 2014-10-29 02:50 - 01482752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll 2015-08-13 10:05 - 2014-10-29 02:48 - 01344000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll 2015-08-13 10:05 - 2014-10-29 02:48 - 00949760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2015-08-13 10:05 - 2014-10-29 02:46 - 01265152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RacEngn.dll 2015-08-13 10:05 - 2014-10-29 02:46 - 01015808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll 2015-08-13 10:05 - 2014-10-29 02:45 - 00918016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NaturalLanguage6.dll 2015-08-13 10:05 - 2014-10-29 02:42 - 00841728 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll 2015-08-13 10:05 - 2014-10-29 02:38 - 01262080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2015-08-13 10:05 - 2014-10-29 02:37 - 00724480 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe 2015-08-13 10:05 - 2014-10-29 02:36 - 00955392 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll 2015-08-13 10:05 - 2014-10-29 02:35 - 00772096 _____ (Microsoft Corporation) C:\Windows\system32\MrmIndexer.dll 2015-08-13 10:05 - 2014-10-29 02:31 - 00626176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe 2015-08-13 10:04 - 2014-10-29 06:09 - 01239576 _____ (Microsoft Corporation) C:\Windows\system32\Taskmgr.exe 2015-08-13 10:04 - 2014-10-29 06:00 - 00740664 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2015-08-13 10:04 - 2014-10-29 06:00 - 00544408 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2015-08-13 10:04 - 2014-10-29 06:00 - 00379568 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll 2015-08-13 10:04 - 2014-10-29 05:57 - 01552704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2015-08-13 10:04 - 2014-10-29 05:57 - 00643064 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll 2015-08-13 10:04 - 2014-10-29 05:57 - 00557832 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL 2015-08-13 10:04 - 2014-10-29 05:55 - 01063432 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll 2015-08-13 10:04 - 2014-10-29 05:55 - 00730824 _____ (Microsoft Corporation) C:\Windows\system32\clbcatq.dll 2015-08-13 10:04 - 2014-10-29 05:52 - 00500016 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2015-08-13 10:04 - 2014-10-29 05:52 - 00497936 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll 2015-08-13 10:04 - 2014-10-29 05:52 - 00444728 _____ (Microsoft Corporation) C:\Windows\system32\MMDevAPI.dll 2015-08-13 10:04 - 2014-10-29 05:52 - 00405456 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll 2015-08-13 10:04 - 2014-10-29 05:18 - 01103768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Taskmgr.exe 2015-08-13 10:04 - 2014-10-29 05:12 - 00616704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2015-08-13 10:04 - 2014-10-29 05:11 - 00914648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOE.DLL 2015-08-13 10:04 - 2014-10-29 05:10 - 00492232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll 2015-08-13 10:04 - 2014-10-29 05:07 - 00409040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll 2015-08-13 10:04 - 2014-10-29 04:48 - 00925696 _____ (Microsoft Corporation) C:\Windows\system32\autoconv.exe 2015-08-13 10:04 - 2014-10-29 04:48 - 00636416 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx02000.dll 2015-08-13 10:04 - 2014-10-29 04:36 - 00546304 _____ (Microsoft Corporation) C:\Windows\system32\sqlcese40.dll 2015-08-13 10:04 - 2014-10-29 04:33 - 00799744 _____ (Microsoft Corporation) C:\Windows\system32\sqlsrv32.dll 2015-08-13 10:04 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\Windows\system32\MSWB70804.dll 2015-08-13 10:04 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\Windows\system32\MSWB70404.dll 2015-08-13 10:04 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\Windows\system32\MSWB7001E.dll 2015-08-13 10:04 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\Windows\system32\MSWB70011.dll 2015-08-13 10:04 - 2014-10-29 04:29 - 00620544 _____ (Microsoft Corporation) C:\Windows\system32\dsound.dll 2015-08-13 10:04 - 2014-10-29 04:27 - 00899584 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll 2015-08-13 10:04 - 2014-10-29 04:27 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll 2015-08-13 10:04 - 2014-10-29 04:22 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2015-08-13 10:04 - 2014-10-29 04:11 - 01070080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMPEG2ENC.DLL 2015-08-13 10:04 - 2014-10-29 04:09 - 00632320 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll 2015-08-13 10:04 - 2014-10-29 04:08 - 00858624 _____ (Microsoft Corporation) C:\Windows\system32\comuid.dll 2015-08-13 10:04 - 2014-10-29 04:08 - 00670208 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2015-08-13 10:04 - 2014-10-29 04:08 - 00458752 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmnet.dll 2015-08-13 10:04 - 2014-10-29 04:07 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2015-08-13 10:04 - 2014-10-29 04:06 - 00980480 _____ (Microsoft Corporation) C:\Windows\system32\imapi2fs.dll 2015-08-13 10:04 - 2014-10-29 04:04 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\WavDest.dll 2015-08-13 10:04 - 2014-10-29 04:03 - 00832000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoconv.exe 2015-08-13 10:04 - 2014-10-29 03:59 - 00670720 _____ (Microsoft Corporation) C:\Windows\system32\wiaservc.dll 2015-08-13 10:04 - 2014-10-29 03:59 - 00564224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\riched20.dll 2015-08-13 10:04 - 2014-10-29 03:57 - 01038336 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll 2015-08-13 10:04 - 2014-10-29 03:50 - 00711680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlsrv32.dll 2015-08-13 10:04 - 2014-10-29 03:47 - 00982016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpssvcs.dll 2015-08-13 10:04 - 2014-10-29 03:45 - 00672768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbc32.dll 2015-08-13 10:04 - 2014-10-29 03:42 - 00852480 _____ (Microsoft Corporation) C:\Windows\system32\PurchaseWindowsLicense.dll 2015-08-13 10:04 - 2014-10-29 03:39 - 01571328 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe 2015-08-13 10:04 - 2014-10-29 03:36 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll 2015-08-13 10:04 - 2014-10-29 03:36 - 01252864 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll 2015-08-13 10:04 - 2014-10-29 03:36 - 00609792 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll 2015-08-13 10:04 - 2014-10-29 03:35 - 00532480 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2015-08-13 10:04 - 2014-10-29 03:32 - 00654848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comuid.dll 2015-08-13 10:04 - 2014-10-29 03:32 - 00391680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmnet.dll 2015-08-13 10:04 - 2014-10-29 03:31 - 01278464 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll 2015-08-13 10:04 - 2014-10-29 03:31 - 00561664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2015-08-13 10:04 - 2014-10-29 03:30 - 06465536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspaint.exe 2015-08-13 10:04 - 2014-10-29 03:29 - 00833536 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll 2015-08-13 10:04 - 2014-10-29 03:26 - 00838656 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll 2015-08-13 10:04 - 2014-10-29 03:24 - 00845312 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2015-08-13 10:04 - 2014-10-29 03:23 - 00484352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll 2015-08-13 10:04 - 2014-10-29 03:14 - 00854528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll 2015-08-13 10:04 - 2014-10-29 03:12 - 00702976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll 2015-08-13 10:04 - 2014-10-29 03:12 - 00524288 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll 2015-08-13 10:04 - 2014-10-29 03:12 - 00516608 _____ (Microsoft Corporation) C:\Windows\system32\es.dll 2015-08-13 10:04 - 2014-10-29 03:11 - 01323008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdc.dll 2015-08-13 10:04 - 2014-10-29 03:10 - 00516096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll 2015-08-13 10:04 - 2014-10-29 03:09 - 00873984 _____ (Microsoft Corporation) C:\Windows\system32\provcore.dll 2015-08-13 10:04 - 2014-10-29 03:09 - 00809984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2015-08-13 10:04 - 2014-10-29 03:09 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll 2015-08-13 10:04 - 2014-10-29 03:07 - 01060352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2015-08-13 10:04 - 2014-10-29 03:07 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll 2015-08-13 10:04 - 2014-10-29 03:06 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll 2015-08-13 10:04 - 2014-10-29 03:05 - 00606720 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll 2015-08-13 10:04 - 2014-10-29 03:04 - 00903168 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SmartCards.dll 2015-08-13 10:04 - 2014-10-29 03:02 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll 2015-08-13 10:04 - 2014-10-29 03:01 - 01145856 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll 2015-08-13 10:04 - 2014-10-29 03:00 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll 2015-08-13 10:04 - 2014-10-29 03:00 - 00591360 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll 2015-08-13 10:04 - 2014-10-29 02:59 - 01010688 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL 2015-08-13 10:04 - 2014-10-29 02:59 - 00578048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSync.dll 2015-08-13 10:04 - 2014-10-29 02:58 - 00926208 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2015-08-13 10:04 - 2014-10-29 02:56 - 00702464 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll 2015-08-13 10:04 - 2014-10-29 02:55 - 00719360 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceApi.dll 2015-08-13 10:04 - 2014-10-29 02:54 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe 2015-08-13 10:04 - 2014-10-29 02:52 - 00870912 _____ (Microsoft Corporation) C:\Windows\system32\msdtcprx.dll 2015-08-13 10:04 - 2014-10-29 02:52 - 00827392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Http.dll 2015-08-13 10:04 - 2014-10-29 02:52 - 00555008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSDApi.dll 2015-08-13 10:04 - 2014-10-29 02:51 - 00506880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\duser.dll 2015-08-13 10:04 - 2014-10-29 02:50 - 00589824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll 2015-08-13 10:04 - 2014-10-29 02:48 - 01142272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vssapi.dll 2015-08-13 10:04 - 2014-10-29 02:48 - 00562688 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll 2015-08-13 10:04 - 2014-10-29 02:47 - 00887296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOD.DLL 2015-08-13 10:04 - 2014-10-29 02:47 - 00783872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.dll 2015-08-13 10:04 - 2014-10-29 02:45 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsSpellCheckingFacility.dll 2015-08-13 10:04 - 2014-10-29 02:45 - 00573952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceApi.dll 2015-08-13 10:04 - 2014-10-29 02:45 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe 2015-08-13 10:04 - 2014-10-29 02:43 - 00720896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdtcprx.dll 2015-08-13 10:04 - 2014-10-29 02:42 - 01207808 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll 2015-08-13 10:04 - 2014-10-29 02:42 - 00654848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.dll 2015-08-13 10:04 - 2014-10-29 02:42 - 00608256 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll 2015-08-13 10:04 - 2014-10-29 02:40 - 00651264 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll 2015-08-13 10:04 - 2014-10-29 02:35 - 01085952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.dll 2015-08-13 10:04 - 2014-10-29 02:35 - 00667648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll 2015-08-13 10:04 - 2014-10-29 02:35 - 00529920 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll 2015-08-13 10:04 - 2014-10-29 02:30 - 00602624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmIndexer.dll 2015-08-13 10:03 - 2014-10-29 06:10 - 00430728 _____ (Microsoft Corporation) C:\Windows\system32\wevtapi.dll 2015-08-13 10:03 - 2014-10-29 06:09 - 01309744 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2015-08-13 10:03 - 2014-10-29 05:57 - 01150208 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOE.DLL 2015-08-13 10:03 - 2014-10-29 05:57 - 00662120 _____ (Microsoft Corporation) C:\Windows\system32\DMRServer.exe 2015-08-13 10:03 - 2014-10-29 05:57 - 00389952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2015-08-13 10:03 - 2014-10-29 05:55 - 00426120 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll 2015-08-13 10:03 - 2014-10-29 05:54 - 00685408 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2015-08-13 10:03 - 2014-10-29 05:52 - 00394120 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2015-08-13 10:03 - 2014-10-29 05:52 - 00356936 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll 2015-08-13 10:03 - 2014-10-29 05:52 - 00020160 _____ (Microsoft Corporation) C:\Windows\system32\CompPkgSup.dll 2015-08-13 10:03 - 2014-10-29 05:12 - 00430176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2015-08-13 10:03 - 2014-10-29 05:11 - 00492704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSDECD.DLL 2015-08-13 10:03 - 2014-10-29 05:11 - 00488064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpeffects.dll 2015-08-13 10:03 - 2014-10-29 05:10 - 00569128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clbcatq.dll 2015-08-13 10:03 - 2014-10-29 05:10 - 00367248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll 2015-08-13 10:03 - 2014-10-29 05:07 - 00399752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll 2015-08-13 10:03 - 2014-10-29 05:07 - 00370424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll 2015-08-13 10:03 - 2014-10-29 05:07 - 00344536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll 2015-08-13 10:03 - 2014-10-29 05:07 - 00331048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll 2015-08-13 10:03 - 2014-10-29 05:06 - 00507152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2015-08-13 10:03 - 2014-10-29 04:42 - 01091584 _____ (Microsoft Corporation) C:\Windows\system32\opengl32.dll 2015-08-13 10:03 - 2014-10-29 04:40 - 00610816 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll 2015-08-13 10:03 - 2014-10-29 04:33 - 07558144 _____ (Microsoft Corporation) C:\Windows\system32\NL7Data0011.dll 2015-08-13 10:03 - 2014-10-29 04:31 - 00590848 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll 2015-08-13 10:03 - 2014-10-29 04:26 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\SmartCardSimulator.dll 2015-08-13 10:03 - 2014-10-29 04:25 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\sdohlp.dll 2015-08-13 10:03 - 2014-10-29 04:18 - 04616704 _____ (Microsoft Corporation) C:\Windows\system32\NlsData001d.dll 2015-08-13 10:03 - 2014-10-29 04:18 - 00784384 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe 2015-08-13 10:03 - 2014-10-29 04:17 - 04621312 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0414.dll 2015-08-13 10:03 - 2014-10-29 04:17 - 04620288 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0816.dll 2015-08-13 10:03 - 2014-10-29 04:16 - 04621312 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0010.dll 2015-08-13 10:03 - 2014-10-29 04:16 - 04616704 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0416.dll 2015-08-13 10:03 - 2014-10-29 04:11 - 00435712 _____ (Microsoft Corporation) C:\Windows\system32\mswmdm.dll 2015-08-13 10:03 - 2014-10-29 04:10 - 00933376 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe 2015-08-13 10:03 - 2014-10-29 04:08 - 00390656 _____ (Microsoft Corporation) C:\Windows\system32\difxapi.dll 2015-08-13 10:03 - 2014-10-29 04:06 - 02902016 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll 2015-08-13 10:03 - 2014-10-29 04:06 - 01313792 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe 2015-08-13 10:03 - 2014-10-29 04:06 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\MSAC3ENC.DLL 2015-08-13 10:03 - 2014-10-29 04:05 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\wiaaut.dll 2015-08-13 10:03 - 2014-10-29 04:03 - 02334720 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll 2015-08-13 10:03 - 2014-10-29 04:00 - 01861632 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll 2015-08-13 10:03 - 2014-10-29 03:57 - 02592256 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll 2015-08-13 10:03 - 2014-10-29 03:57 - 00777728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\opengl32.dll 2015-08-13 10:03 - 2014-10-29 03:56 - 00499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxs.dll 2015-08-13 10:03 - 2014-10-29 03:54 - 00432640 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll 2015-08-13 10:03 - 2014-10-29 03:54 - 00366080 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe 2015-08-13 10:03 - 2014-10-29 03:53 - 00433152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlcese40.dll 2015-08-13 10:03 - 2014-10-29 03:52 - 02829312 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll 2015-08-13 10:03 - 2014-10-29 03:52 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Usb.dll 2015-08-13 10:03 - 2014-10-29 03:49 - 02236416 _____ (Microsoft Corporation) C:\Windows\system32\certmgr.dll 2015-08-13 10:03 - 2014-10-29 03:48 - 00524800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSWB70804.dll 2015-08-13 10:03 - 2014-10-29 03:48 - 00524800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSWB70404.dll 2015-08-13 10:03 - 2014-10-29 03:48 - 00524800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSWB7001E.dll 2015-08-13 10:03 - 2014-10-29 03:48 - 00524800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSWB70011.dll 2015-08-13 10:03 - 2014-10-29 03:47 - 00616960 _____ (Microsoft Corporation) C:\Windows\system32\msra.exe 2015-08-13 10:03 - 2014-10-29 03:47 - 00517120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsound.dll 2015-08-13 10:03 - 2014-10-29 03:46 - 01001472 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe 2015-08-13 10:03 - 2014-10-29 03:45 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2015-08-13 10:03 - 2014-10-29 03:36 - 00787456 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll 2015-08-13 10:03 - 2014-10-29 03:33 - 01291776 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2015-08-13 10:03 - 2014-10-29 03:32 - 00512512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll 2015-08-13 10:03 - 2014-10-29 03:31 - 00761344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2fs.dll 2015-08-13 10:03 - 2014-10-29 03:30 - 00358400 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll 2015-08-13 10:03 - 2014-10-29 03:29 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2015-08-13 10:03 - 2014-10-29 03:28 - 02213888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncCenter.dll 2015-08-13 10:03 - 2014-10-29 03:27 - 00557568 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll 2015-08-13 10:03 - 2014-10-29 03:25 - 01058816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpedit.dll 2015-08-13 10:03 - 2014-10-29 03:24 - 00902144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll 2015-08-13 10:03 - 2014-10-29 03:22 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll 2015-08-13 10:03 - 2014-10-29 03:21 - 00482304 _____ (Microsoft Corporation) C:\Windows\system32\tpmvsc.dll 2015-08-13 10:03 - 2014-10-29 03:20 - 00524800 _____ (Microsoft Corporation) C:\Windows\system32\AppxApplicabilityEngine.dll 2015-08-13 10:03 - 2014-10-29 03:20 - 00517120 _____ (Microsoft Corporation) C:\Windows\system32\wbemcomn.dll 2015-08-13 10:03 - 2014-10-29 03:20 - 00510464 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll 2015-08-13 10:03 - 2014-10-29 03:19 - 00754176 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll 2015-08-13 10:03 - 2014-10-29 03:19 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll 2015-08-13 10:03 - 2014-10-29 03:18 - 01984000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certmgr.dll 2015-08-13 10:03 - 2014-10-29 03:17 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll 2015-08-13 10:03 - 2014-10-29 03:16 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2015-08-13 10:03 - 2014-10-29 03:16 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2015-08-13 10:03 - 2014-10-29 03:16 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2015-08-13 10:03 - 2014-10-29 03:16 - 00332288 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2015-08-13 10:03 - 2014-10-29 03:11 - 02597376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll 2015-08-13 10:03 - 2014-10-29 03:10 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll 2015-08-13 10:03 - 2014-10-29 03:07 - 01197056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll 2015-08-13 10:03 - 2014-10-29 03:07 - 00594944 _____ (Microsoft Corporation) C:\Windows\system32\ddraw.dll 2015-08-13 10:03 - 2014-10-29 03:07 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll 2015-08-13 10:03 - 2014-10-29 03:06 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2015-08-13 10:03 - 2014-10-29 03:05 - 00534016 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.dll 2015-08-13 10:03 - 2014-10-29 03:04 - 01376256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll 2015-08-13 10:03 - 2014-10-29 03:04 - 00506880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll 2015-08-13 10:03 - 2014-10-29 03:03 - 00781824 _____ (Microsoft Corporation) C:\Windows\system32\wlidcli.dll 2015-08-13 10:03 - 2014-10-29 03:03 - 00474112 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll 2015-08-13 10:03 - 2014-10-29 03:02 - 00695296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll 2015-08-13 10:03 - 2014-10-29 03:01 - 00706048 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll 2015-08-13 10:03 - 2014-10-29 03:01 - 00573952 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2015-08-13 10:03 - 2014-10-29 02:59 - 00649216 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll 2015-08-13 10:03 - 2014-10-29 02:57 - 01065472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2015-08-13 10:03 - 2014-10-29 02:57 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2015-08-13 10:03 - 2014-10-29 02:57 - 00346624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2015-08-13 10:03 - 2014-10-29 02:56 - 00512512 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2015-08-13 10:03 - 2014-10-29 02:55 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\es.dll 2015-08-13 10:03 - 2014-10-29 02:54 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\hgcpl.dll 2015-08-13 10:03 - 2014-10-29 02:52 - 01054208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2015-08-13 10:03 - 2014-10-29 02:52 - 00544256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddraw.dll 2015-08-13 10:03 - 2014-10-29 02:51 - 00569856 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll 2015-08-13 10:03 - 2014-10-29 02:51 - 00457728 _____ (Microsoft Corporation) C:\Windows\system32\upnphost.dll 2015-08-13 10:03 - 2014-10-29 02:50 - 00430592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll 2015-08-13 10:03 - 2014-10-29 02:48 - 00543232 _____ (Microsoft Corporation) C:\Windows\system32\hnetcfg.dll 2015-08-13 10:03 - 2014-10-29 02:48 - 00454144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2015-08-13 10:03 - 2014-10-29 02:47 - 00527872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll 2015-08-13 10:03 - 2014-10-29 02:47 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\catsrv.dll 2015-08-13 10:03 - 2014-10-29 02:47 - 00451584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll 2015-08-13 10:03 - 2014-10-29 02:44 - 00522240 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll 2015-08-13 10:03 - 2014-10-29 02:43 - 00624640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll 2015-08-13 10:03 - 2014-10-29 02:42 - 00539648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hgcpl.dll 2015-08-13 10:03 - 2014-10-29 02:39 - 00565248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.dll 2015-08-13 10:03 - 2014-10-29 02:37 - 00414208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll 2015-08-13 10:03 - 2014-10-29 02:32 - 00515584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll 2015-08-13 10:03 - 2014-10-08 09:33 - 00678400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2015-08-13 10:03 - 2014-10-07 08:44 - 00533824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys 2015-08-13 10:03 - 2014-09-10 08:25 - 00474432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2015-08-13 10:02 - 2014-10-29 06:04 - 00324864 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2015-08-13 10:02 - 2014-10-29 05:59 - 00520536 _____ (Microsoft Corporation) C:\Windows\system32\WWanAPI.dll 2015-08-13 10:02 - 2014-10-29 05:57 - 00725672 _____ (Microsoft Corporation) C:\Windows\system32\wmpeffects.dll 2015-08-13 10:02 - 2014-10-29 05:55 - 00019264 _____ (Microsoft Corporation) C:\Windows\system32\dllhost.exe 2015-08-13 10:02 - 2014-10-29 05:52 - 00482872 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2015-08-13 10:02 - 2014-10-29 05:52 - 00272248 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe 2015-08-13 10:02 - 2014-10-29 05:18 - 00320736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wevtapi.dll 2015-08-13 10:02 - 2014-10-29 05:15 - 00245296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2015-08-13 10:02 - 2014-10-29 05:10 - 00547992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll 2015-08-13 10:02 - 2014-10-29 05:07 - 00320256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll 2015-08-13 10:02 - 2014-10-29 04:45 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\glmf32.dll 2015-08-13 10:02 - 2014-10-29 04:45 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2015-08-13 10:02 - 2014-10-29 04:37 - 02329088 _____ (Microsoft Corporation) C:\Windows\system32\NL7Data0404.dll 2015-08-13 10:02 - 2014-10-29 04:34 - 03438592 _____ (Microsoft Corporation) C:\Windows\system32\NL7Data0804.dll 2015-08-13 10:02 - 2014-10-29 04:31 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax 2015-08-13 10:02 - 2014-10-29 04:28 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\wisp.dll 2015-08-13 10:02 - 2014-10-29 04:25 - 00995328 _____ (Microsoft Corporation) C:\Windows\system32\tapi3.dll 2015-08-13 10:02 - 2014-10-29 04:25 - 00289792 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax 2015-08-13 10:02 - 2014-10-29 04:24 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\MSNP.ax 2015-08-13 10:02 - 2014-10-29 04:23 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\offfilt.dll 2015-08-13 10:02 - 2014-10-29 04:21 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\iassdo.dll 2015-08-13 10:02 - 2014-10-29 04:20 - 00397312 _____ (Microsoft Corporation) C:\Windows\system32\upnp.dll 2015-08-13 10:02 - 2014-10-29 04:19 - 09732096 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000a.dll 2015-08-13 10:02 - 2014-10-29 04:18 - 06259712 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0009.dll 2015-08-13 10:02 - 2014-10-29 04:18 - 02403328 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000c.dll 2015-08-13 10:02 - 2014-10-29 04:18 - 02140672 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0007.dll 2015-08-13 10:02 - 2014-10-29 04:17 - 02480128 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000d.dll 2015-08-13 10:02 - 2014-10-29 04:16 - 00546816 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.PointOfService.dll 2015-08-13 10:02 - 2014-10-29 04:11 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\imapi2.dll 2015-08-13 10:02 - 2014-10-29 04:11 - 00478720 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx 2015-08-13 10:02 - 2014-10-29 04:08 - 00920064 _____ (Microsoft Corporation) C:\Windows\system32\azroles.dll 2015-08-13 10:02 - 2014-10-29 04:01 - 00270336 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll 2015-08-13 10:02 - 2014-10-29 04:00 - 00652800 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll 2015-08-13 10:02 - 2014-10-29 03:59 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll 2015-08-13 10:02 - 2014-10-29 03:59 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\SyncInfrastructure.dll 2015-08-13 10:02 - 2014-10-29 03:59 - 00280576 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll 2015-08-13 10:02 - 2014-10-29 03:58 - 01040384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2015-08-13 10:02 - 2014-10-29 03:57 - 01479168 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll 2015-08-13 10:02 - 2014-10-29 03:56 - 00589312 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr 2015-08-13 10:02 - 2014-10-29 03:55 - 00669184 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx 2015-08-13 10:02 - 2014-10-29 03:54 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll 2015-08-13 10:02 - 2014-10-29 03:52 - 00809984 _____ (Microsoft Corporation) C:\Windows\system32\fvewiz.dll 2015-08-13 10:02 - 2014-10-29 03:52 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2015-08-13 10:02 - 2014-10-29 03:52 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\rdvvmtransport.dll 2015-08-13 10:02 - 2014-10-29 03:51 - 07331840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NL7Data0011.dll 2015-08-13 10:02 - 2014-10-29 03:49 - 00479744 _____ (Microsoft Corporation) C:\Windows\system32\StikyNot.exe 2015-08-13 10:02 - 2014-10-29 03:48 - 00557056 _____ (Microsoft Corporation) C:\Windows\system32\ipsmsnap.dll 2015-08-13 10:02 - 2014-10-29 03:46 - 00148480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsRasterService.dll 2015-08-13 10:02 - 2014-10-29 03:44 - 00872960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapi3.dll 2015-08-13 10:02 - 2014-10-29 03:42 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\vmrdvcore.dll 2015-08-13 10:02 - 2014-10-29 03:42 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2015-08-13 10:02 - 2014-10-29 03:41 - 01411584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOE.DLL 2015-08-13 10:02 - 2014-10-29 03:41 - 00327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnp.dll 2015-08-13 10:02 - 2014-10-29 03:38 - 04945920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0009.dll 2015-08-13 10:02 - 2014-10-29 03:36 - 00943616 _____ (Microsoft Corporation) C:\Windows\system32\WFS.exe 2015-08-13 10:02 - 2014-10-29 03:36 - 00585728 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs.dll 2015-08-13 10:02 - 2014-10-29 03:34 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysmon.ocx 2015-08-13 10:02 - 2014-10-29 03:34 - 00353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswmdm.dll 2015-08-13 10:02 - 2014-10-29 03:33 - 00816128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe 2015-08-13 10:02 - 2014-10-29 03:32 - 00794624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\azroles.dll 2015-08-13 10:02 - 2014-10-29 03:31 - 00342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2015-08-13 10:02 - 2014-10-29 03:30 - 01171456 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2015-08-13 10:02 - 2014-10-29 03:30 - 00642560 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe 2015-08-13 10:02 - 2014-10-29 03:30 - 00579584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiaaut.dll 2015-08-13 10:02 - 2014-10-29 03:30 - 00297472 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll 2015-08-13 10:02 - 2014-10-29 03:30 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAC3ENC.DLL 2015-08-13 10:02 - 2014-10-29 03:29 - 02848768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll 2015-08-13 10:02 - 2014-10-29 03:29 - 00365056 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll 2015-08-13 10:02 - 2014-10-29 03:27 - 00397312 _____ (Microsoft Corporation) C:\Windows\system32\BCP47Langs.dll 2015-08-13 10:02 - 2014-10-29 03:26 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\w32time.dll 2015-08-13 10:02 - 2014-10-29 03:24 - 01335296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll 2015-08-13 10:02 - 2014-10-29 03:23 - 01826304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll 2015-08-13 10:02 - 2014-10-29 03:23 - 00376320 _____ (Microsoft Corporation) C:\Windows\system32\livessp.dll 2015-08-13 10:02 - 2014-10-29 03:22 - 02551808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themecpl.dll 2015-08-13 10:02 - 2014-10-29 03:22 - 00536576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhctrl.ocx 2015-08-13 10:02 - 2014-10-29 03:22 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\wbiosrvc.dll 2015-08-13 10:02 - 2014-10-29 03:21 - 00349696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll 2015-08-13 10:02 - 2014-10-29 03:19 - 02714624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netshell.dll 2015-08-13 10:02 - 2014-10-29 03:18 - 00286720 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2015-08-13 10:02 - 2014-10-29 03:17 - 00981504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdt.exe 2015-08-13 10:02 - 2014-10-29 03:17 - 00439296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ipsmsnap.dll 2015-08-13 10:02 - 2014-10-29 03:16 - 01242112 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2015-08-13 10:02 - 2014-10-29 03:16 - 00348672 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll 2015-08-13 10:02 - 2014-10-29 03:15 - 00809472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll 2015-08-13 10:02 - 2014-10-29 03:15 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2015-08-13 10:02 - 2014-10-29 03:15 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Proximity.dll 2015-08-13 10:02 - 2014-10-29 03:12 - 00393728 _____ (Microsoft Corporation) C:\Windows\system32\ninput.dll 2015-08-13 10:02 - 2014-10-29 03:11 - 00584704 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll 2015-08-13 10:02 - 2014-10-29 03:09 - 00633344 _____ (Microsoft Corporation) C:\Windows\system32\UserLanguagesCpl.dll 2015-08-13 10:02 - 2014-10-29 03:06 - 01086976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2015-08-13 10:02 - 2014-10-29 03:06 - 00325632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll 2015-08-13 10:02 - 2014-10-29 03:06 - 00298496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.dll 2015-08-13 10:02 - 2014-10-29 03:06 - 00286208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2015-08-13 10:02 - 2014-10-29 03:04 - 00640000 _____ (Microsoft Corporation) C:\Windows\system32\shsvcs.dll 2015-08-13 10:02 - 2014-10-29 03:04 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll 2015-08-13 10:02 - 2014-10-29 03:04 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll 2015-08-13 10:02 - 2014-10-29 03:03 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll Code:
ATTFilter 2015-08-13 10:02 - 2014-10-29 03:03 - 00174592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll 2015-08-13 10:02 - 2014-10-29 03:01 - 00361472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll 2015-08-13 10:02 - 2014-10-29 03:01 - 00278528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsku.dll 2015-08-13 10:02 - 2014-10-29 03:00 - 00401408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wbemcomn.dll 2015-08-13 10:02 - 2014-10-29 03:00 - 00251904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll 2015-08-13 10:02 - 2014-10-29 02:59 - 00603648 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 2015-08-13 10:02 - 2014-10-29 02:59 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll 2015-08-13 10:02 - 2014-10-29 02:59 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxApplicabilityEngine.dll 2015-08-13 10:02 - 2014-10-29 02:59 - 00413696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll 2015-08-13 10:02 - 2014-10-29 02:58 - 00746496 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll 2015-08-13 10:02 - 2014-10-29 02:58 - 00543232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll 2015-08-13 10:02 - 2014-10-29 02:58 - 00306688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll 2015-08-13 10:02 - 2014-10-29 02:57 - 00562688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2015-08-13 10:02 - 2014-10-29 02:57 - 00543744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2015-08-13 10:02 - 2014-10-29 02:57 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2015-08-13 10:02 - 2014-10-29 02:56 - 00232960 _____ (Microsoft Corporation) C:\Windows\system32\DscCore.dll 2015-08-13 10:02 - 2014-10-29 02:55 - 00887808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dim700.dll 2015-08-13 10:02 - 2014-10-29 02:55 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll 2015-08-13 10:02 - 2014-10-29 02:55 - 00304128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ninput.dll 2015-08-13 10:02 - 2014-10-29 02:53 - 00612352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\provcore.dll 2015-08-13 10:02 - 2014-10-29 02:53 - 00464896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll 2015-08-13 10:02 - 2014-10-29 02:51 - 00445952 _____ (Microsoft Corporation) C:\Windows\system32\provsvc.dll 2015-08-13 10:02 - 2014-10-29 02:51 - 00375296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll 2015-08-13 10:02 - 2014-10-29 02:50 - 00624128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SmartCards.dll 2015-08-13 10:02 - 2014-10-29 02:50 - 00399360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll 2015-08-13 10:02 - 2014-10-29 02:47 - 00470016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll 2015-08-13 10:02 - 2014-10-29 02:47 - 00339968 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll 2015-08-13 10:02 - 2014-10-29 02:45 - 00397824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv 2015-08-13 10:02 - 2014-10-29 02:44 - 00677376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll 2015-08-13 10:02 - 2014-10-29 02:42 - 00497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll 2015-08-13 10:02 - 2014-10-29 02:42 - 00366080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\provsvc.dll 2015-08-13 10:02 - 2014-10-29 02:42 - 00331776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnphost.dll 2015-08-13 10:02 - 2014-10-29 02:40 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll 2015-08-13 10:02 - 2014-10-29 02:39 - 00454144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hnetcfg.dll 2015-08-13 10:02 - 2014-10-29 02:39 - 00401408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrv.dll 2015-08-13 10:02 - 2014-10-29 02:35 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2015-08-13 10:01 - 2014-10-29 06:04 - 00397192 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll 2015-08-13 10:01 - 2014-10-29 05:59 - 00415040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys 2015-08-13 10:01 - 2014-10-29 05:59 - 00230816 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll 2015-08-13 10:01 - 2014-10-29 05:57 - 00295432 _____ (Microsoft Corporation) C:\Windows\system32\WMASF.DLL 2015-08-13 10:01 - 2014-10-29 05:57 - 00256744 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MediaControl.dll 2015-08-13 10:01 - 2014-10-29 05:55 - 00359496 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll 2015-08-13 10:01 - 2014-10-29 05:53 - 00687496 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll 2015-08-13 10:01 - 2014-10-29 05:52 - 00311448 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll 2015-08-13 10:01 - 2014-10-29 05:52 - 00225696 _____ (Microsoft Corporation) C:\Windows\system32\mftranscode.dll 2015-08-13 10:01 - 2014-10-29 05:51 - 00363080 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll 2015-08-13 10:01 - 2014-10-29 05:12 - 00416760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWanAPI.dll 2015-08-13 10:01 - 2014-10-29 05:11 - 00463744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP4SDECD.DLL 2015-08-13 10:01 - 2014-10-29 05:11 - 00245296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMASF.DLL 2015-08-13 10:01 - 2014-10-29 05:07 - 00424544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll 2015-08-13 10:01 - 2014-10-29 05:07 - 00336680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll 2015-08-13 10:01 - 2014-10-29 05:07 - 00202440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mftranscode.dll 2015-08-13 10:01 - 2014-10-29 05:06 - 00800008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll 2015-08-13 10:01 - 2014-10-29 05:05 - 00321248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll 2015-08-13 10:01 - 2014-10-29 04:49 - 00604672 _____ (Microsoft Corporation) C:\Windows\system32\msvcp60.dll 2015-08-13 10:01 - 2014-10-29 04:27 - 00342528 _____ (Microsoft Corporation) C:\Windows\system32\diskraid.exe 2015-08-13 10:01 - 2014-10-29 04:27 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\qdv.dll 2015-08-13 10:01 - 2014-10-29 04:27 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\mfdvdec.dll 2015-08-13 10:01 - 2014-10-29 04:26 - 00431104 _____ (Microsoft Corporation) C:\Windows\system32\termmgr.dll 2015-08-13 10:01 - 2014-10-29 04:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll 2015-08-13 10:01 - 2014-10-29 04:24 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\WmpDui.dll 2015-08-13 10:01 - 2014-10-29 04:22 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\sti.dll 2015-08-13 10:01 - 2014-10-29 04:21 - 01664000 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOE.DLL 2015-08-13 10:01 - 2014-10-29 04:19 - 00451072 _____ (Microsoft Corporation) C:\Windows\system32\WMVSENCD.DLL 2015-08-13 10:01 - 2014-10-29 04:18 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\mscandui.dll 2015-08-13 10:01 - 2014-10-29 04:18 - 00272896 _____ (Microsoft Corporation) C:\Windows\system32\rasppp.dll 2015-08-13 10:01 - 2014-10-29 04:17 - 03231232 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004b.dll 2015-08-13 10:01 - 2014-10-29 04:17 - 01926144 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0022.dll 2015-08-13 10:01 - 2014-10-29 04:16 - 03235840 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0039.dll 2015-08-13 10:01 - 2014-10-29 04:16 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004a.dll 2015-08-13 10:01 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004e.dll 2015-08-13 10:01 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0049.dll 2015-08-13 10:01 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0047.dll 2015-08-13 10:01 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0046.dll 2015-08-13 10:01 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0020.dll 2015-08-13 10:01 - 2014-10-29 04:15 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0026.dll 2015-08-13 10:01 - 2014-10-29 04:15 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0024.dll 2015-08-13 10:01 - 2014-10-29 04:15 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData001b.dll 2015-08-13 10:01 - 2014-10-29 04:15 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0002.dll 2015-08-13 10:01 - 2014-10-29 04:15 - 01904640 _____ (Microsoft Corporation) C:\Windows\system32\NlsData002a.dll 2015-08-13 10:01 - 2014-10-29 04:14 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004c.dll 2015-08-13 10:01 - 2014-10-29 04:14 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0045.dll 2015-08-13 10:01 - 2014-10-29 04:14 - 02075136 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0027.dll 2015-08-13 10:01 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0c1a.dll 2015-08-13 10:01 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData081a.dll 2015-08-13 10:01 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData001a.dll 2015-08-13 10:01 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0018.dll 2015-08-13 10:01 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000f.dll 2015-08-13 10:01 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0003.dll 2015-08-13 10:01 - 2014-10-29 04:14 - 01904640 _____ (Microsoft Corporation) C:\Windows\system32\NlsData003e.dll 2015-08-13 10:01 - 2014-10-29 04:14 - 01904640 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0021.dll 2015-08-13 10:01 - 2014-10-29 04:12 - 00422400 _____ (Microsoft Corporation) C:\Windows\system32\efscore.dll 2015-08-13 10:01 - 2014-10-29 04:11 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\sensrsvc.dll 2015-08-13 10:01 - 2014-10-29 04:04 - 00612864 _____ (Microsoft Corporation) C:\Windows\system32\IasMigPlugin.dll 2015-08-13 10:01 - 2014-10-29 04:04 - 00587264 _____ (Microsoft Corporation) C:\Windows\system32\filemgmt.dll 2015-08-13 10:01 - 2014-10-29 04:04 - 00471040 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2015-08-13 10:01 - 2014-10-29 04:03 - 00489472 _____ (Microsoft Corporation) C:\Windows\system32\dlnashext.dll 2015-08-13 10:01 - 2014-10-29 04:02 - 00476672 _____ (Microsoft Corporation) C:\Windows\system32\xwizards.dll 2015-08-13 10:01 - 2014-10-29 04:01 - 00453632 _____ (Microsoft Corporation) C:\Windows\system32\azroleui.dll 2015-08-13 10:01 - 2014-10-29 04:00 - 00435200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glmf32.dll 2015-08-13 10:01 - 2014-10-29 04:00 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2015-08-13 10:01 - 2014-10-29 03:57 - 01431552 _____ (Microsoft Corporation) C:\Windows\system32\DxpTaskSync.dll 2015-08-13 10:01 - 2014-10-29 03:56 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\WPDSp.dll 2015-08-13 10:01 - 2014-10-29 03:54 - 00408576 _____ (Microsoft Corporation) C:\Windows\system32\DfpCommon.dll 2015-08-13 10:01 - 2014-10-29 03:52 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\netdiagfx.dll 2015-08-13 10:01 - 2014-10-29 03:50 - 00521728 _____ (Microsoft Corporation) C:\Windows\system32\msdri.dll 2015-08-13 10:01 - 2014-10-29 03:49 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wvc.dll 2015-08-13 10:01 - 2014-10-29 03:49 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\sharemediacpl.dll 2015-08-13 10:01 - 2014-10-29 03:49 - 00233984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax 2015-08-13 10:01 - 2014-10-29 03:49 - 00207360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmime.dll 2015-08-13 10:01 - 2014-10-29 03:47 - 01041920 _____ (Microsoft Corporation) C:\Windows\system32\msdt.exe 2015-08-13 10:01 - 2014-10-29 03:47 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wisp.dll 2015-08-13 10:01 - 2014-10-29 03:46 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdv.dll 2015-08-13 10:01 - 2014-10-29 03:46 - 00150016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfdvdec.dll 2015-08-13 10:01 - 2014-10-29 03:45 - 00429568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdohlp.dll 2015-08-13 10:01 - 2014-10-29 03:45 - 00336896 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll 2015-08-13 10:01 - 2014-10-29 03:44 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\DXP.dll 2015-08-13 10:01 - 2014-10-29 03:44 - 00245760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax 2015-08-13 10:01 - 2014-10-29 03:43 - 00960000 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll 2015-08-13 10:01 - 2014-10-29 03:43 - 00736256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVXENCD.DLL 2015-08-13 10:01 - 2014-10-29 03:43 - 00524800 _____ (Microsoft Corporation) C:\Windows\system32\icsvc.dll 2015-08-13 10:01 - 2014-10-29 03:43 - 00228864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSNP.ax 2015-08-13 10:01 - 2014-10-29 03:43 - 00225792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offfilt.dll 2015-08-13 10:01 - 2014-10-29 03:42 - 00712192 _____ (Microsoft Corporation) C:\Windows\system32\fhcfg.dll 2015-08-13 10:01 - 2014-10-29 03:40 - 02036224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0007.dll 2015-08-13 10:01 - 2014-10-29 03:39 - 09604608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData000a.dll 2015-08-13 10:01 - 2014-10-29 03:39 - 04531712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0416.dll 2015-08-13 10:01 - 2014-10-29 03:39 - 04530688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData001d.dll 2015-08-13 10:01 - 2014-10-29 03:38 - 04530176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0414.dll 2015-08-13 10:01 - 2014-10-29 03:38 - 00430592 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMPOSE.dll 2015-08-13 10:01 - 2014-10-29 03:38 - 00363008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.PointOfService.dll 2015-08-13 10:01 - 2014-10-29 03:36 - 01008128 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll 2015-08-13 10:01 - 2014-10-29 03:34 - 00473600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnfldr.dll 2015-08-13 10:01 - 2014-10-29 03:34 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2.dll 2015-08-13 10:01 - 2014-10-29 03:33 - 00963072 _____ (Microsoft Corporation) C:\Windows\system32\rasgcw.dll 2015-08-13 10:01 - 2014-10-29 03:33 - 00505856 _____ (Microsoft Corporation) C:\Windows\system32\WLanConn.dll 2015-08-13 10:01 - 2014-10-29 03:29 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\filemgmt.dll 2015-08-13 10:01 - 2014-10-29 03:29 - 00350720 _____ (Microsoft Corporation) C:\Windows\system32\ncryptprov.dll 2015-08-13 10:01 - 2014-10-29 03:29 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2015-08-13 10:01 - 2014-10-29 03:27 - 00422912 _____ (Microsoft Corporation) C:\Windows\system32\PCPTpm12.dll 2015-08-13 10:01 - 2014-10-29 03:27 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll 2015-08-13 10:01 - 2014-10-29 03:26 - 00542208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSCOMEX.dll 2015-08-13 10:01 - 2014-10-29 03:26 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll 2015-08-13 10:01 - 2014-10-29 03:25 - 00336896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\azroleui.dll 2015-08-13 10:01 - 2014-10-29 03:25 - 00335872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncInfrastructure.dll 2015-08-13 10:01 - 2014-10-29 03:24 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoScreensaver.scr 2015-08-13 10:01 - 2014-10-29 03:24 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\wincorlib.dll 2015-08-13 10:01 - 2014-10-29 03:23 - 00445952 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll 2015-08-13 10:01 - 2014-10-29 03:23 - 00332800 _____ (Microsoft Corporation) C:\Windows\system32\winsku.dll 2015-08-13 10:01 - 2014-10-29 03:22 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2015-08-13 10:01 - 2014-10-29 03:22 - 00499200 _____ (Microsoft Corporation) C:\Windows\system32\msdelta.dll 2015-08-13 10:01 - 2014-10-29 03:21 - 00320512 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll 2015-08-13 10:01 - 2014-10-29 03:21 - 00306176 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2015-08-13 10:01 - 2014-10-29 03:21 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll 2015-08-13 10:01 - 2014-10-29 03:20 - 00770048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ipsecsnp.dll 2015-08-13 10:01 - 2014-10-29 03:20 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll 2015-08-13 10:01 - 2014-10-29 03:20 - 00310272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Usb.dll 2015-08-13 10:01 - 2014-10-29 03:20 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\TimeBrokerServer.dll 2015-08-13 10:01 - 2014-10-29 03:20 - 00238592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll 2015-08-13 10:01 - 2014-10-29 03:19 - 00621568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsFilt.dll 2015-08-13 10:01 - 2014-10-29 03:19 - 00388608 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2015-08-13 10:01 - 2014-10-29 03:19 - 00349184 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2015-08-13 10:01 - 2014-10-29 03:18 - 00743936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFWMAAEC.DLL 2015-08-13 10:01 - 2014-10-29 03:18 - 00329216 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll 2015-08-13 10:01 - 2014-10-29 03:17 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\P2PGraph.dll 2015-08-13 10:01 - 2014-10-29 03:17 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll 2015-08-13 10:01 - 2014-10-29 03:16 - 00795136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdlg.dll 2015-08-13 10:01 - 2014-10-29 03:14 - 00494592 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2015-08-13 10:01 - 2014-10-29 03:14 - 00493568 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2015-08-13 10:01 - 2014-10-29 03:14 - 00422400 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2015-08-13 10:01 - 2014-10-29 03:13 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll 2015-08-13 10:01 - 2014-10-29 03:10 - 00516096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll 2015-08-13 10:01 - 2014-10-29 03:10 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\ssdpsrv.dll 2015-08-13 10:01 - 2014-10-29 03:09 - 00508416 _____ (Microsoft Corporation) C:\Windows\system32\wmicmiplugin.dll 2015-08-13 10:01 - 2014-10-29 03:09 - 00345088 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll 2015-08-13 10:01 - 2014-10-29 03:08 - 00412672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WLanConn.dll 2015-08-13 10:01 - 2014-10-29 03:07 - 00856064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasgcw.dll 2015-08-13 10:01 - 2014-10-29 03:06 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptprov.dll 2015-08-13 10:01 - 2014-10-29 03:05 - 00380416 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll 2015-08-13 10:01 - 2014-10-29 03:05 - 00292864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll 2015-08-13 10:01 - 2014-10-29 03:05 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll 2015-08-13 10:01 - 2014-10-29 03:03 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll 2015-08-13 10:01 - 2014-10-29 03:03 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Vpn.dll 2015-08-13 10:01 - 2014-10-29 02:59 - 00302080 _____ (Microsoft Corporation) C:\Windows\system32\pcsvDevice.dll 2015-08-13 10:01 - 2014-10-29 02:59 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netprofm.dll 2015-08-13 10:01 - 2014-10-29 02:58 - 00370176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.dll 2015-08-13 10:01 - 2014-10-29 02:58 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\TetheringMgr.dll 2015-08-13 10:01 - 2014-10-29 02:58 - 00246272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2015-08-13 10:01 - 2014-10-29 02:57 - 00325632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Proximity.dll 2015-08-13 10:01 - 2014-10-29 02:55 - 00795648 _____ (Microsoft Corporation) C:\Windows\system32\wlanpref.dll 2015-08-13 10:01 - 2014-10-29 02:55 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll 2015-08-13 10:01 - 2014-10-29 02:54 - 00560640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll 2015-08-13 10:01 - 2014-10-29 02:54 - 00348672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprapi.dll 2015-08-13 10:01 - 2014-10-29 02:54 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Profile.HardwareId.dll 2015-08-13 10:01 - 2014-10-29 02:53 - 00550400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserLanguagesCpl.dll 2015-08-13 10:01 - 2014-10-29 02:52 - 00336384 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll 2015-08-13 10:01 - 2014-10-29 02:50 - 00468480 _____ (Microsoft Corporation) C:\Windows\system32\taskeng.exe 2015-08-13 10:01 - 2014-10-29 02:49 - 00576512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsvcs.dll 2015-08-13 10:01 - 2014-10-29 02:49 - 00559104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcli.dll 2015-08-13 10:01 - 2014-10-29 02:49 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll 2015-08-13 10:01 - 2014-10-29 02:47 - 00628224 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll 2015-08-13 10:01 - 2014-10-29 02:46 - 00455680 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll 2015-08-13 10:01 - 2014-10-29 02:44 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskcomp.dll 2015-08-13 10:01 - 2014-10-29 02:43 - 00322048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSATAPI.dll 2015-08-13 10:01 - 2014-10-29 02:43 - 00181248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Profile.HardwareId.dll 2015-08-13 10:01 - 2014-10-15 10:32 - 00551232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys 2015-08-13 10:01 - 2014-10-15 10:32 - 00337728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys 2015-08-13 10:00 - 2014-10-29 06:09 - 00315576 _____ (Microsoft Corporation) C:\Windows\system32\cfgmgr32.dll 2015-08-13 10:00 - 2014-10-29 06:09 - 00294880 _____ (Microsoft Corporation) C:\Windows\system32\bdeunlock.exe 2015-08-13 10:00 - 2014-10-29 06:04 - 00217912 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll 2015-08-13 10:00 - 2014-10-29 05:58 - 01797944 _____ (Microsoft Corporation) C:\Windows\system32\WMALFXGFXDSP.dll 2015-08-13 10:00 - 2014-10-29 05:57 - 01913128 _____ (Microsoft Corporation) C:\Windows\system32\DisplaySwitch.exe 2015-08-13 10:00 - 2014-10-29 05:57 - 00767504 _____ (Microsoft Corporation) C:\Windows\system32\iuilp.dll 2015-08-13 10:00 - 2014-10-29 05:57 - 00629576 _____ (Microsoft Corporation) C:\Windows\system32\MP4SDECD.DLL 2015-08-13 10:00 - 2014-10-29 05:57 - 00339312 _____ (Microsoft Corporation) C:\Windows\system32\shlwapi.dll 2015-08-13 10:00 - 2014-10-29 05:57 - 00271152 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe 2015-08-13 10:00 - 2014-10-29 05:57 - 00217432 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll 2015-08-13 10:00 - 2014-10-29 05:57 - 00031496 _____ (Microsoft Corporation) C:\Windows\system32\CameraSettingsUIHost.exe 2015-08-13 10:00 - 2014-10-29 05:57 - 00027360 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsRemoveDevice.exe 2015-08-13 10:00 - 2014-10-29 05:55 - 00305192 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp.dll 2015-08-13 10:00 - 2014-10-29 05:52 - 00387872 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll 2015-08-13 10:00 - 2014-10-29 05:51 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2015-08-13 10:00 - 2014-10-29 05:15 - 00340848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll 2015-08-13 10:00 - 2014-10-29 05:15 - 00192096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll 2015-08-13 10:00 - 2014-10-29 05:13 - 00185880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll 2015-08-13 10:00 - 2014-10-29 05:11 - 00191104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.MediaControl.dll 2015-08-13 10:00 - 2014-10-29 05:10 - 01906872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplaySwitch.exe 2015-08-13 10:00 - 2014-10-29 05:10 - 00278352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shlwapi.dll 2015-08-13 10:00 - 2014-10-29 05:10 - 00276816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll 2015-08-13 10:00 - 2014-10-29 05:07 - 00260800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll 2015-08-13 10:00 - 2014-10-29 05:07 - 00019096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksuser.dll 2015-08-13 10:00 - 2014-10-29 04:56 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\mfh264enc.dll 2015-08-13 10:00 - 2014-10-29 04:42 - 00480256 _____ (Microsoft Corporation) C:\Windows\system32\msutb.dll 2015-08-13 10:00 - 2014-10-29 04:41 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll 2015-08-13 10:00 - 2014-10-29 04:41 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2015-08-13 10:00 - 2014-10-29 04:36 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\prncache.dll 2015-08-13 10:00 - 2014-10-29 04:35 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\adsldp.dll 2015-08-13 10:00 - 2014-10-29 04:33 - 00860672 _____ (Microsoft Corporation) C:\Windows\system32\NL7Data001E.dll 2015-08-13 10:00 - 2014-10-29 04:32 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\sqlceoledb40.dll 2015-08-13 10:00 - 2014-10-29 04:30 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\SensorsClassExtension.dll 2015-08-13 10:00 - 2014-10-29 04:29 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\fhengine.dll 2015-08-13 10:00 - 2014-10-29 04:27 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\mssha.dll 2015-08-13 10:00 - 2014-10-29 04:27 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\wmvdspa.dll 2015-08-13 10:00 - 2014-10-29 04:26 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2015-08-13 10:00 - 2014-10-29 04:25 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll 2015-08-13 10:00 - 2014-10-29 04:24 - 00644608 _____ (Microsoft Corporation) C:\Windows\system32\WMVXENCD.DLL 2015-08-13 10:00 - 2014-10-29 04:20 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\QAGENTRT.DLL 2015-08-13 10:00 - 2014-10-29 04:16 - 00297472 _____ (Microsoft Corporation) C:\Windows\system32\comsnap.dll 2015-08-13 10:00 - 2014-10-29 04:16 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\lltdapi.dll 2015-08-13 10:00 - 2014-10-29 04:13 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\prnfldr.dll 2015-08-13 10:00 - 2014-10-29 04:12 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\fhcat.dll 2015-08-13 10:00 - 2014-10-29 04:11 - 00240128 _____ (Microsoft Corporation) C:\Windows\system32\hgprint.dll 2015-08-13 10:00 - 2014-10-29 04:10 - 00515072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfh264enc.dll 2015-08-13 10:00 - 2014-10-29 04:09 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\lltdsvc.dll 2015-08-13 10:00 - 2014-10-29 04:08 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\fdprint.dll 2015-08-13 10:00 - 2014-10-29 04:04 - 00517632 _____ (Microsoft Corporation) C:\Windows\system32\devmgr.dll 2015-08-13 10:00 - 2014-10-29 04:04 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\dmvdsitf.dll 2015-08-13 10:00 - 2014-10-29 04:02 - 00520704 _____ (Microsoft Corporation) C:\Windows\system32\localsec.dll 2015-08-13 10:00 - 2014-10-29 04:02 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll 2015-08-13 10:00 - 2014-10-29 04:01 - 00819200 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl 2015-08-13 10:00 - 2014-10-29 04:01 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll 2015-08-13 10:00 - 2014-10-29 03:58 - 00894976 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll 2015-08-13 10:00 - 2014-10-29 03:58 - 00423424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msutb.dll 2015-08-13 10:00 - 2014-10-29 03:54 - 00833536 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2015-08-13 10:00 - 2014-10-29 03:54 - 00401408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dim.dll 2015-08-13 10:00 - 2014-10-29 03:53 - 02238464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NL7Data0404.dll 2015-08-13 10:00 - 2014-10-29 03:53 - 00924672 _____ (Microsoft Corporation) C:\Windows\system32\nettrace.dll 2015-08-13 10:00 - 2014-10-29 03:52 - 03355136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NL7Data0804.dll 2015-08-13 10:00 - 2014-10-29 03:52 - 00846848 _____ (Microsoft Corporation) C:\Windows\system32\ipsecsnp.dll 2015-08-13 10:00 - 2014-10-29 03:52 - 00224768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsldp.dll 2015-08-13 10:00 - 2014-10-29 03:49 - 00771584 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl 2015-08-13 10:00 - 2014-10-29 03:48 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Dxpserver.exe 2015-08-13 10:00 - 2014-10-29 03:46 - 00284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskraid.exe 2015-08-13 10:00 - 2014-10-29 03:46 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\msoeacct.dll 2015-08-13 10:00 - 2014-10-29 03:46 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmvdspa.dll 2015-08-13 10:00 - 2014-10-29 03:45 - 00378880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\termmgr.dll 2015-08-13 10:00 - 2014-10-29 03:44 - 00229376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll 2015-08-13 10:00 - 2014-10-29 03:43 - 00289792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WmpDui.dll 2015-08-13 10:00 - 2014-10-29 03:43 - 00235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sti.dll 2015-08-13 10:00 - 2014-10-29 03:41 - 00381952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iassdo.dll 2015-08-13 10:00 - 2014-10-29 03:39 - 00402432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSENCD.DLL 2015-08-13 10:00 - 2014-10-29 03:39 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscandui.dll 2015-08-13 10:00 - 2014-10-29 03:38 - 04530688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0010.dll 2015-08-13 10:00 - 2014-10-29 03:38 - 04529664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0816.dll 2015-08-13 10:00 - 2014-10-29 03:38 - 02387456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData000d.dll 2015-08-13 10:00 - 2014-10-29 03:38 - 02307072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData000c.dll 2015-08-13 10:00 - 2014-10-29 03:38 - 02012160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0026.dll 2015-08-13 10:00 - 2014-10-29 03:38 - 02012160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData000f.dll 2015-08-13 10:00 - 2014-10-29 03:36 - 01999360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0027.dll 2015-08-13 10:00 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0c1a.dll 2015-08-13 10:00 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData081a.dll 2015-08-13 10:00 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0024.dll 2015-08-13 10:00 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData001b.dll 2015-08-13 10:00 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData001a.dll 2015-08-13 10:00 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0018.dll 2015-08-13 10:00 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0003.dll 2015-08-13 10:00 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0002.dll 2015-08-13 10:00 - 2014-10-29 03:35 - 00315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll 2015-08-13 10:00 - 2014-10-29 03:34 - 00321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efscore.dll 2015-08-13 10:00 - 2014-10-29 03:31 - 00318464 _____ (Microsoft Corporation) C:\Windows\system32\netjoin.dll 2015-08-13 10:00 - 2014-10-29 03:29 - 00465920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devmgr.dll 2015-08-13 10:00 - 2014-10-29 03:29 - 00434176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dlnashext.dll 2015-08-13 10:00 - 2014-10-29 03:28 - 00357376 _____ (Microsoft Corporation) C:\Windows\system32\cmd.exe 2015-08-13 10:00 - 2014-10-29 03:28 - 00320512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll 2015-08-13 10:00 - 2014-10-29 03:28 - 00214528 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2015-08-13 10:00 - 2014-10-29 03:28 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\rasman.dll 2015-08-13 10:00 - 2014-10-29 03:27 - 00763392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl 2015-08-13 10:00 - 2014-10-29 03:27 - 00397824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xwizards.dll 2015-08-13 10:00 - 2014-10-29 03:27 - 00380416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwizeng.dll 2015-08-13 10:00 - 2014-10-29 03:25 - 00316416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certreq.exe 2015-08-13 10:00 - 2014-10-29 03:25 - 00236544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll 2015-08-13 10:00 - 2014-10-29 03:24 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DxpTaskSync.dll 2015-08-13 10:00 - 2014-10-29 03:24 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Geolocation.dll 2015-08-13 10:00 - 2014-10-29 03:24 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll 2015-08-13 10:00 - 2014-10-29 03:23 - 00312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WPDSp.dll 2015-08-13 10:00 - 2014-10-29 03:23 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll 2015-08-13 10:00 - 2014-10-29 03:22 - 00839680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll 2015-08-13 10:00 - 2014-10-29 03:22 - 00229376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qasf.dll 2015-08-13 10:00 - 2014-10-29 03:21 - 00361472 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2015-08-13 10:00 - 2014-10-29 03:21 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\CryptoWinRT.dll 2015-08-13 10:00 - 2014-10-29 03:20 - 00558080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll 2015-08-13 10:00 - 2014-10-29 03:20 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\wdscore.dll 2015-08-13 10:00 - 2014-10-29 03:19 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl 2015-08-13 10:00 - 2014-10-29 03:17 - 00471552 _____ (Microsoft Corporation) C:\Windows\system32\energy.dll 2015-08-13 10:00 - 2014-10-29 03:17 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll 2015-08-13 10:00 - 2014-10-29 03:16 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\authfwcfg.dll 2015-08-13 10:00 - 2014-10-29 03:16 - 00283136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll 2015-08-13 10:00 - 2014-10-29 03:16 - 00198144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msoeacct.dll 2015-08-13 10:00 - 2014-10-29 03:13 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll 2015-08-13 10:00 - 2014-10-29 03:13 - 00260608 _____ (Microsoft Corporation) C:\Windows\system32\vaultsvc.dll 2015-08-13 10:00 - 2014-10-29 03:12 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\mprapi.dll 2015-08-13 10:00 - 2014-10-29 03:12 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\mbsmsapi.dll 2015-08-13 10:00 - 2014-10-29 03:10 - 00361472 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll 2015-08-13 10:00 - 2014-10-29 03:10 - 00302080 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll 2015-08-13 10:00 - 2014-10-29 03:05 - 00309248 _____ (Microsoft Corporation) C:\Windows\system32\TtlsCfg.dll 2015-08-13 10:00 - 2014-10-29 03:04 - 00364032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PCPTpm12.dll 2015-08-13 10:00 - 2014-10-29 03:04 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BCP47Langs.dll 2015-08-13 10:00 - 2014-10-29 03:04 - 00279552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netjoin.dll 2015-08-13 10:00 - 2014-10-29 03:04 - 00262144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll 2015-08-13 10:00 - 2014-10-29 03:03 - 00608256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvstore.dll 2015-08-13 10:00 - 2014-10-29 03:01 - 00397824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdelta.dll 2015-08-13 10:00 - 2014-10-29 03:01 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scecli.dll 2015-08-13 10:00 - 2014-10-29 03:00 - 00352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2015-08-13 10:00 - 2014-10-29 03:00 - 00252416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll 2015-08-13 10:00 - 2014-10-29 02:59 - 00316928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2015-08-13 10:00 - 2014-10-29 02:59 - 00286720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll 2015-08-13 10:00 - 2014-10-29 02:58 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll 2015-08-13 10:00 - 2014-10-29 02:57 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2PGraph.dll 2015-08-13 10:00 - 2014-10-29 02:57 - 00297472 _____ (Microsoft Corporation) C:\Windows\system32\wlidcredprov.dll 2015-08-13 10:00 - 2014-10-29 02:56 - 00483328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2015-08-13 10:00 - 2014-10-29 02:56 - 00482304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2015-08-13 10:00 - 2014-10-29 02:56 - 00278528 _____ (Microsoft Corporation) C:\Windows\system32\activeds.dll 2015-08-13 10:00 - 2014-10-29 02:55 - 00331264 _____ (Microsoft Corporation) C:\Windows\system32\DaOtpCredentialProvider.dll 2015-08-13 10:00 - 2014-10-29 02:55 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\PackageStateRoaming.dll 2015-08-13 10:00 - 2014-10-29 02:55 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll 2015-08-13 10:00 - 2014-10-29 02:54 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll 2015-08-13 10:00 - 2014-10-29 02:53 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\msctfuimanager.dll 2015-08-13 10:00 - 2014-10-29 02:53 - 00381952 _____ (Microsoft Corporation) C:\Windows\system32\WinSATAPI.dll 2015-08-13 10:00 - 2014-10-29 02:53 - 00347648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_8.dll 2015-08-13 10:00 - 2014-10-29 02:52 - 01024512 _____ (Microsoft Corporation) C:\Windows\system32\WlanMM.dll 2015-08-13 10:00 - 2014-10-29 02:52 - 00522240 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll 2015-08-13 10:00 - 2014-10-29 02:52 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll 2015-08-13 10:00 - 2014-10-29 02:52 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.SpeechSynthesis.dll 2015-08-13 10:00 - 2014-10-29 02:51 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.dll 2015-08-13 10:00 - 2014-10-29 02:50 - 00920064 _____ (Microsoft Corporation) C:\Windows\system32\FirewallControlPanel.dll 2015-08-13 10:00 - 2014-10-29 02:49 - 00304128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll 2015-08-13 10:00 - 2014-10-29 02:49 - 00300032 _____ (Microsoft Corporation) C:\Windows\system32\umrdp.dll 2015-08-13 10:00 - 2014-10-29 02:48 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\InputSwitch.dll 2015-08-13 10:00 - 2014-10-29 02:46 - 01305088 _____ (Microsoft Corporation) C:\Windows\system32\wcnwiz.dll 2015-08-13 10:00 - 2014-10-29 02:46 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.dll 2015-08-13 10:00 - 2014-10-29 02:45 - 00225792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\activeds.dll 2015-08-13 10:00 - 2014-10-29 02:44 - 00732672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanpref.dll 2015-08-13 10:00 - 2014-10-29 02:44 - 00561152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2015-08-13 10:00 - 2014-10-29 02:43 - 00957952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WlanMM.dll 2015-08-13 10:00 - 2014-10-29 02:42 - 00865280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallControlPanel.dll 2015-08-13 10:00 - 2014-10-29 02:41 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll 2015-08-13 10:00 - 2014-10-29 02:35 - 00289792 _____ (Microsoft Corporation) C:\Windows\system32\PlayToDevice.dll 2015-08-13 10:00 - 2014-10-29 02:30 - 00215552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToDevice.dll 2015-08-13 10:00 - 2014-08-26 05:30 - 00354112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys 2015-08-13 09:59 - 2014-10-29 06:09 - 00233448 _____ (Microsoft Corporation) C:\Windows\system32\ProximityUxHost.exe 2015-08-13 09:59 - 2014-10-29 06:09 - 00214360 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.ApplicationData.dll 2015-08-13 09:59 - 2014-10-29 06:04 - 00181816 _____ (Microsoft Corporation) C:\Windows\system32\AuthHost.exe 2015-08-13 09:59 - 2014-10-29 06:04 - 00136912 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2015-08-13 09:59 - 2014-10-29 06:00 - 00297512 _____ (Microsoft Corporation) C:\Windows\system32\sqmapi.dll 2015-08-13 09:59 - 2014-10-29 06:00 - 00142000 _____ (Microsoft Corporation) C:\Windows\system32\dxva2.dll 2015-08-13 09:59 - 2014-10-29 05:57 - 00034568 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountBroker.exe 2015-08-13 09:59 - 2014-10-29 05:57 - 00029408 _____ (Microsoft Corporation) C:\Windows\system32\PickerHost.exe 2015-08-13 09:59 - 2014-10-29 05:57 - 00018584 _____ (Microsoft Corporation) C:\Windows\system32\SlideToShutDown.exe 2015-08-13 09:59 - 2014-10-29 05:52 - 00244272 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2015-08-13 09:59 - 2014-10-29 05:51 - 00179736 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2015-08-13 09:59 - 2014-10-29 05:18 - 00241168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll 2015-08-13 09:59 - 2014-10-29 05:12 - 00241680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqmapi.dll 2015-08-13 09:59 - 2014-10-29 05:11 - 00187488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVideoDSP.dll 2015-08-13 09:59 - 2014-10-29 05:10 - 00272648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp.dll 2015-08-13 09:59 - 2014-10-29 04:45 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\WwaApi.dll 2015-08-13 09:59 - 2014-10-29 04:42 - 00214528 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll 2015-08-13 09:59 - 2014-10-29 04:41 - 00154624 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll 2015-08-13 09:59 - 2014-10-29 04:40 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\dinput8.dll 2015-08-13 09:59 - 2014-10-29 04:35 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\MSWB7.dll 2015-08-13 09:59 - 2014-10-29 04:33 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\scrobj.dll 2015-08-13 09:59 - 2014-10-29 04:32 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\migflt.dll 2015-08-13 09:59 - 2014-10-29 04:31 - 00269824 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll 2015-08-13 09:59 - 2014-10-29 04:31 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\WinSyncMetastore.dll 2015-08-13 09:59 - 2014-10-29 04:29 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\diskpart.exe 2015-08-13 09:59 - 2014-10-29 04:27 - 00354816 _____ (Microsoft Corporation) C:\Windows\system32\adsnt.dll 2015-08-13 09:59 - 2014-10-29 04:27 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dmdskmgr.dll 2015-08-13 09:59 - 2014-10-29 04:27 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\iasnap.dll 2015-08-13 09:59 - 2014-10-29 04:26 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\gpresult.exe 2015-08-13 09:59 - 2014-10-29 04:22 - 00200192 _____ (Microsoft Corporation) C:\Windows\system32\iasrecst.dll 2015-08-13 09:59 - 2014-10-29 04:21 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\iassam.dll 2015-08-13 09:59 - 2014-10-29 04:20 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll 2015-08-13 09:59 - 2014-10-29 04:18 - 01609216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0000.dll 2015-08-13 09:59 - 2014-10-29 04:13 - 00263680 _____ (Microsoft Corporation) C:\Windows\system32\wavemsp.dll 2015-08-13 09:59 - 2014-10-29 04:05 - 00370176 _____ (Microsoft Corporation) C:\Windows\system32\srchadmin.dll 2015-08-13 09:59 - 2014-10-29 04:03 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\xwtpdui.dll 2015-08-13 09:59 - 2014-10-29 04:02 - 00306176 _____ (Microsoft Corporation) C:\Windows\system32\rasmontr.dll 2015-08-13 09:59 - 2014-10-29 04:02 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax 2015-08-13 09:59 - 2014-10-29 04:00 - 03814400 _____ (Microsoft Corporation) C:\Windows\system32\accessibilitycpl.dll 2015-08-13 09:59 - 2014-10-29 04:00 - 00371200 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe 2015-08-13 09:59 - 2014-10-29 04:00 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\riched32.dll 2015-08-13 09:59 - 2014-10-29 03:58 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\msrdc.dll 2015-08-13 09:59 - 2014-10-29 03:57 - 00515072 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll 2015-08-13 09:59 - 2014-10-29 03:57 - 00169984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll 2015-08-13 09:59 - 2014-10-29 03:57 - 00161280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2015-08-13 09:59 - 2014-10-29 03:56 - 00796160 _____ (Microsoft Corporation) C:\Windows\system32\mblctr.exe 2015-08-13 09:59 - 2014-10-29 03:56 - 00317440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll 2015-08-13 09:59 - 2014-10-29 03:52 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll 2015-08-13 09:59 - 2014-10-29 03:51 - 00782848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NL7Data001E.dll 2015-08-13 09:59 - 2014-10-29 03:51 - 00285184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtrmgr.dll 2015-08-13 09:59 - 2014-10-29 03:51 - 00189440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrobj.dll 2015-08-13 09:59 - 2014-10-29 03:50 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlceoledb40.dll 2015-08-13 09:59 - 2014-10-29 03:49 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2015-08-13 09:59 - 2014-10-29 03:49 - 00234496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll 2015-08-13 09:59 - 2014-10-29 03:48 - 01364992 _____ (Microsoft Corporation) C:\Windows\system32\connect.dll 2015-08-13 09:59 - 2014-10-29 03:48 - 00211968 _____ (Microsoft Corporation) C:\Windows\system32\deviceregistration.dll 2015-08-13 09:59 - 2014-10-29 03:47 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll 2015-08-13 09:59 - 2014-10-29 03:46 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2015-08-13 09:59 - 2014-10-29 03:46 - 00339968 _____ (Microsoft Corporation) C:\Windows\system32\RADCUI.dll 2015-08-13 09:59 - 2014-10-29 03:46 - 00292352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsnt.dll 2015-08-13 09:59 - 2014-10-29 03:46 - 00227328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmdskmgr.dll 2015-08-13 09:59 - 2014-10-29 03:45 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\rasdlg.dll 2015-08-13 09:59 - 2014-10-29 03:45 - 00738816 _____ (Microsoft Corporation) C:\Windows\system32\Vault.dll 2015-08-13 09:59 - 2014-10-29 03:45 - 00658944 _____ (Microsoft Corporation) C:\Windows\system32\FXSSVC.exe 2015-08-13 09:59 - 2014-10-29 03:45 - 00192512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpresult.exe 2015-08-13 09:59 - 2014-10-29 03:41 - 00267264 _____ (Microsoft Corporation) C:\Windows\system32\apds.dll 2015-08-13 09:59 - 2014-10-29 03:40 - 00380928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshipsec.dll 2015-08-13 09:59 - 2014-10-29 03:40 - 00224256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll 2015-08-13 09:59 - 2014-10-29 03:37 - 03149824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0039.dll 2015-08-13 09:59 - 2014-10-29 03:37 - 01829376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData002a.dll 2015-08-13 09:59 - 2014-10-29 03:37 - 00236032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsnap.dll 2015-08-13 09:59 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData004e.dll 2015-08-13 09:59 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData004c.dll 2015-08-13 09:59 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData004b.dll 2015-08-13 09:59 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData004a.dll 2015-08-13 09:59 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0049.dll 2015-08-13 09:59 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0047.dll 2015-08-13 09:59 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0046.dll 2015-08-13 09:59 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0045.dll 2015-08-13 09:59 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0020.dll 2015-08-13 09:59 - 2014-10-29 03:36 - 01829376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData003e.dll 2015-08-13 09:59 - 2014-10-29 03:36 - 01829376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0022.dll 2015-08-13 09:59 - 2014-10-29 03:36 - 01829376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0021.dll 2015-08-13 09:59 - 2014-10-29 03:36 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\sbeio.dll 2015-08-13 09:59 - 2014-10-29 03:34 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapisrv.dll 2015-08-13 09:59 - 2014-10-29 03:31 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdprint.dll 2015-08-13 09:59 - 2014-10-29 03:30 - 00484352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmdial32.dll 2015-08-13 09:59 - 2014-10-29 03:29 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IasMigPlugin.dll 2015-08-13 09:59 - 2014-10-29 03:29 - 00324608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srchadmin.dll 2015-08-13 09:59 - 2014-10-29 03:29 - 00154624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmvdsitf.dll 2015-08-13 09:59 - 2014-10-29 03:28 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2015-08-13 09:59 - 2014-10-29 03:28 - 00177664 _____ (Microsoft Corporation) C:\Windows\system32\ulib.dll 2015-08-13 09:59 - 2014-10-29 03:27 - 00306176 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll 2015-08-13 09:59 - 2014-10-29 03:27 - 00248320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasmontr.dll 2015-08-13 09:59 - 2014-10-29 03:25 - 00333824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinfo32.exe 2015-08-13 09:59 - 2014-10-29 03:25 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\mibincodec.dll 2015-08-13 09:59 - 2014-10-29 03:24 - 00487424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceCenter.dll 2015-08-13 09:59 - 2014-10-29 03:22 - 00517120 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe 2015-08-13 09:59 - 2014-10-29 03:21 - 00755712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2015-08-13 09:59 - 2014-10-29 03:21 - 00250368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSAPI.dll 2015-08-13 09:59 - 2014-10-29 03:20 - 00272384 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll 2015-08-13 09:59 - 2014-10-29 03:20 - 00234496 _____ (Microsoft Corporation) C:\Windows\system32\miutils.dll 2015-08-13 09:59 - 2014-10-29 03:20 - 00229376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netdiagfx.dll 2015-08-13 09:59 - 2014-10-29 03:19 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\srumsvc.dll 2015-08-13 09:59 - 2014-10-29 03:18 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll 2015-08-13 09:59 - 2014-10-29 03:18 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\IDStore.dll 2015-08-13 09:59 - 2014-10-29 03:17 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\wevtutil.exe 2015-08-13 09:59 - 2014-10-29 03:16 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll 2015-08-13 09:59 - 2014-10-29 03:14 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\ProximityService.dll 2015-08-13 09:59 - 2014-10-29 03:12 - 00280576 _____ (Microsoft Corporation) C:\Windows\system32\hotspotauth.dll 2015-08-13 09:59 - 2014-10-29 03:12 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.HumanInterfaceDevice.dll 2015-08-13 09:59 - 2014-10-29 03:11 - 00672768 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll 2015-08-13 09:59 - 2014-10-29 03:11 - 00373248 _____ (Microsoft Corporation) C:\Windows\system32\msdtckrm.dll 2015-08-13 09:59 - 2014-10-29 03:10 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wdmaud.drv 2015-08-13 09:59 - 2014-10-29 03:10 - 00155648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbeio.dll 2015-08-13 09:59 - 2014-10-29 03:08 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\wecsvc.dll 2015-08-13 09:59 - 2014-10-29 03:05 - 00315392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe 2015-08-13 09:59 - 2014-10-29 03:05 - 00193024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2015-08-13 09:59 - 2014-10-29 03:05 - 00143360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ulib.dll 2015-08-13 09:59 - 2014-10-29 03:05 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2015-08-13 09:59 - 2014-10-29 03:04 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll 2015-08-13 09:59 - 2014-10-29 03:04 - 00201216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ifsutil.dll 2015-08-13 09:59 - 2014-10-29 03:03 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll 2015-08-13 09:59 - 2014-10-29 03:02 - 00217600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Geolocation.dll 2015-08-13 09:59 - 2014-10-29 03:00 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll 2015-08-13 09:59 - 2014-10-29 03:00 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll 2015-08-13 09:59 - 2014-10-29 03:00 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll 2015-08-13 09:59 - 2014-10-29 03:00 - 00200192 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\DscCoreConfProv.dll 2015-08-13 09:59 - 2014-10-29 02:59 - 00188928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\miutils.dll 2015-08-13 09:59 - 2014-10-29 02:58 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceaccess.dll 2015-08-13 09:59 - 2014-10-29 02:57 - 00364032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authfwcfg.dll 2015-08-13 09:59 - 2014-10-29 02:57 - 00177664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wevtutil.exe 2015-08-13 09:59 - 2014-10-29 02:56 - 00624640 _____ (Microsoft Corporation) C:\Windows\system32\rdbui.dll 2015-08-13 09:59 - 2014-10-29 02:56 - 00272384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2015-08-13 09:59 - 2014-10-29 02:56 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll 2015-08-13 09:59 - 2014-10-29 02:55 - 00223744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll 2015-08-13 09:59 - 2014-10-29 02:55 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll 2015-08-13 09:59 - 2014-10-29 02:54 - 00713216 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2015-08-13 09:59 - 2014-10-29 02:54 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\NAPMONTR.DLL 2015-08-13 09:59 - 2014-10-29 02:54 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\ListSvc.dll 2015-08-13 09:59 - 2014-10-29 02:54 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceTypes.dll 2015-08-13 09:59 - 2014-10-29 02:54 - 00178688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSSync.dll 2015-08-13 09:59 - 2014-10-29 02:53 - 01156608 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll 2015-08-13 09:59 - 2014-10-29 02:53 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll 2015-08-13 09:59 - 2014-10-29 02:53 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\msdtcuiu.dll 2015-08-13 09:59 - 2014-10-29 02:53 - 00269824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll 2015-08-13 09:59 - 2014-10-29 02:53 - 00238080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll 2015-08-13 09:59 - 2014-10-29 02:53 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll 2015-08-13 09:59 - 2014-10-29 02:52 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\p2psvc.dll 2015-08-13 09:59 - 2014-10-29 02:51 - 00236032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll 2015-08-13 09:59 - 2014-10-29 02:44 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PackageStateRoaming.dll 2015-08-13 09:59 - 2014-10-29 02:43 - 00724480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfuimanager.dll 2015-08-13 09:59 - 2014-10-29 02:43 - 00461312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll 2015-08-13 09:59 - 2014-10-29 02:43 - 00255488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NAPMONTR.DLL 2015-08-13 09:59 - 2014-10-29 02:43 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdtcuiu.dll 2015-08-13 09:59 - 2014-10-29 02:41 - 00359936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskeng.exe 2015-08-13 09:59 - 2014-10-29 02:38 - 01232896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcnwiz.dll 2015-08-13 09:59 - 2014-10-29 02:38 - 00565760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll 2015-08-13 09:59 - 2014-10-08 11:24 - 00467776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS 2015-08-13 09:58 - 2014-10-29 06:09 - 00371304 _____ (Microsoft Corporation) C:\Windows\system32\verifier.dll 2015-08-13 09:58 - 2014-10-29 06:09 - 00155456 _____ (Microsoft Corporation) C:\Windows\system32\devobj.dll 2015-08-13 09:58 - 2014-10-29 06:09 - 00145144 _____ (Microsoft Corporation) C:\Windows\system32\cabinet.dll 2015-08-13 09:58 - 2014-10-29 06:09 - 00017560 _____ (Microsoft Corporation) C:\Windows\system32\psapi.dll 2015-08-13 09:58 - 2014-10-29 06:04 - 00196264 _____ (Microsoft Corporation) C:\Windows\system32\ntmarta.dll 2015-08-13 09:58 - 2014-10-29 06:04 - 00120384 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll 2015-08-13 09:58 - 2014-10-29 05:57 - 00447256 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll 2015-08-13 09:58 - 2014-10-29 05:57 - 00250488 _____ (Microsoft Corporation) C:\Windows\system32\MPG4DECD.DLL 2015-08-13 09:58 - 2014-10-29 05:57 - 00248408 _____ (Microsoft Corporation) C:\Windows\system32\MP43DECD.DLL 2015-08-13 09:58 - 2014-10-29 05:57 - 00216920 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe 2015-08-13 09:58 - 2014-10-29 05:57 - 00022208 _____ (Microsoft Corporation) C:\Windows\system32\PurchaseWindowsLicense.exe 2015-08-13 09:58 - 2014-10-29 05:55 - 00278392 _____ (Microsoft Corporation) C:\Windows\system32\wkspbroker.exe 2015-08-13 09:58 - 2014-10-29 05:52 - 00161120 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll 2015-08-13 09:58 - 2014-10-29 05:52 - 00132232 _____ (Microsoft Corporation) C:\Windows\system32\RTWorkQ.dll 2015-08-13 09:58 - 2014-10-29 05:51 - 00159112 _____ (Microsoft Corporation) C:\Windows\system32\IPHLPAPI.DLL 2015-08-13 09:58 - 2014-10-29 05:18 - 00348048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\verifier.dll 2015-08-13 09:58 - 2014-10-29 05:18 - 00164264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.ApplicationData.dll 2015-08-13 09:58 - 2014-10-29 05:15 - 00154392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntmarta.dll 2015-08-13 09:58 - 2014-10-29 05:15 - 00119800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2015-08-13 09:58 - 2014-10-29 05:12 - 00413136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe 2015-08-13 09:58 - 2014-10-29 05:12 - 00116696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxva2.dll 2015-08-13 09:58 - 2014-10-29 05:11 - 00275280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MPG4DECD.DLL 2015-08-13 09:58 - 2014-10-29 05:11 - 00274256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP43DECD.DLL 2015-08-13 09:58 - 2014-10-29 05:11 - 00190048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe 2015-08-13 09:58 - 2014-10-29 05:11 - 00184888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\COLORCNV.DLL 2015-08-13 09:58 - 2014-10-29 05:11 - 00183832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VIDRESZR.DLL 2015-08-13 09:58 - 2014-10-29 05:07 - 00134280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmmbase.dll 2015-08-13 09:58 - 2014-10-29 05:06 - 00111064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RTWorkQ.dll 2015-08-13 09:58 - 2014-10-29 04:44 - 00107008 _____ (Microsoft Corporation) C:\Windows\system32\SPInf.dll 2015-08-13 09:58 - 2014-10-29 04:42 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\uudf.dll 2015-08-13 09:58 - 2014-10-29 04:41 - 00281088 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe 2015-08-13 09:58 - 2014-10-29 04:37 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\msctfui.dll 2015-08-13 09:58 - 2014-10-29 04:36 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\cic.dll 2015-08-13 09:58 - 2014-10-29 04:35 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll 2015-08-13 09:58 - 2014-10-29 04:29 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\dmusic.dll 2015-08-13 09:58 - 2014-10-29 04:28 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe 2015-08-13 09:58 - 2014-10-29 04:28 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\prntvpt.dll 2015-08-13 09:58 - 2014-10-29 04:27 - 00313344 _____ (Microsoft Corporation) C:\Windows\system32\NAPSTAT.EXE 2015-08-13 09:58 - 2014-10-29 04:27 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\iasrad.dll 2015-08-13 09:58 - 2014-10-29 04:27 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\sdiageng.dll 2015-08-13 09:58 - 2014-10-29 04:27 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Workplace.WorkplaceSettings.dll 2015-08-13 09:58 - 2014-10-29 04:25 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\DevPropMgr.dll 2015-08-13 09:58 - 2014-10-29 04:23 - 00280576 _____ (Microsoft Corporation) C:\Windows\system32\dot3gpui.dll 2015-08-13 09:58 - 2014-10-29 04:23 - 00240128 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2015-08-13 09:58 - 2014-10-29 04:22 - 00585728 _____ (Microsoft Corporation) C:\Windows\system32\recimg.exe 2015-08-13 09:58 - 2014-10-29 04:19 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\dxdiag.exe 2015-08-13 09:58 - 2014-10-29 04:19 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\dskquoui.dll 2015-08-13 09:58 - 2014-10-29 04:19 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\softkbd.dll 2015-08-13 09:58 - 2014-10-29 04:18 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\bitsadmin.exe 2015-08-13 09:58 - 2014-10-29 04:17 - 00205312 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll 2015-08-13 09:58 - 2014-10-29 04:17 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\WinSyncProviders.dll 2015-08-13 09:58 - 2014-10-29 04:14 - 00378880 _____ (Microsoft Corporation) C:\Windows\system32\SysFxUI.dll 2015-08-13 09:58 - 2014-10-29 04:13 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\scansetting.dll 2015-08-13 09:58 - 2014-10-29 04:12 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll 2015-08-13 09:58 - 2014-10-29 04:12 - 00313344 _____ (Microsoft Corporation) C:\Windows\system32\tapisrv.dll 2015-08-13 09:58 - 2014-10-29 04:11 - 00475648 _____ (Microsoft Corporation) C:\Windows\system32\SnippingTool.exe 2015-08-13 09:58 - 2014-10-29 04:09 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceSyncProvider.dll 2015-08-13 09:58 - 2014-10-29 04:09 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax 2015-08-13 09:58 - 2014-10-29 04:06 - 02134528 _____ (Microsoft Corporation) C:\Windows\system32\SensorsCpl.dll 2015-08-13 09:58 - 2014-10-29 04:04 - 00445440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp60.dll 2015-08-13 09:58 - 2014-10-29 04:04 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll 2015-08-13 09:58 - 2014-10-29 04:03 - 00849408 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll 2015-08-13 09:58 - 2014-10-29 04:02 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\schtasks.exe 2015-08-13 09:58 - 2014-10-29 04:01 - 00774656 _____ (Microsoft Corporation) C:\Windows\system32\TabletPC.cpl 2015-08-13 09:58 - 2014-10-29 04:00 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\nlhtml.dll 2015-08-13 09:58 - 2014-10-29 04:00 - 00153088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WwaApi.dll 2015-08-13 09:58 - 2014-10-29 03:59 - 00384000 _____ (Microsoft Corporation) C:\Windows\system32\certreq.exe 2015-08-13 09:58 - 2014-10-29 03:59 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\QAGENT.DLL |
14.08.2015, 11:35 | #11 |
| pua/DownProt.I - Virus/Malware FRST Log (6) Code:
ATTFilter 2015-08-13 09:58 - 2014-10-29 03:58 - 00846848 _____ (Microsoft Corporation) C:\Windows\system32\Magnify.exe 2015-08-13 09:58 - 2014-10-29 03:58 - 00211968 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL 2015-08-13 09:58 - 2014-10-29 03:58 - 00140800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uudf.dll 2015-08-13 09:58 - 2014-10-29 03:57 - 01047040 _____ (Microsoft Corporation) C:\Windows\system32\DiagCpl.dll 2015-08-13 09:58 - 2014-10-29 03:57 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe 2015-08-13 09:58 - 2014-10-29 03:57 - 00248320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcbuilder.exe 2015-08-13 09:58 - 2014-10-29 03:56 - 00161280 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceWiaCompat.dll 2015-08-13 09:58 - 2014-10-29 03:55 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll 2015-08-13 09:58 - 2014-10-29 03:55 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dinput8.dll 2015-08-13 09:58 - 2014-10-29 03:54 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\wmidx.dll 2015-08-13 09:58 - 2014-10-29 03:53 - 00449024 _____ (Microsoft Corporation) C:\Windows\system32\shwebsvc.dll 2015-08-13 09:58 - 2014-10-29 03:52 - 00514048 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll 2015-08-13 09:58 - 2014-10-29 03:51 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\IdListen.dll 2015-08-13 09:58 - 2014-10-29 03:51 - 00122368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmstyle.dll 2015-08-13 09:58 - 2014-10-29 03:49 - 00468480 _____ (Microsoft Corporation) C:\Windows\system32\MFWMAAEC.DLL 2015-08-13 09:58 - 2014-10-29 03:49 - 00189440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSyncMetastore.dll 2015-08-13 09:58 - 2014-10-29 03:48 - 00144896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prntvpt.dll 2015-08-13 09:58 - 2014-10-29 03:47 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskpart.exe 2015-08-13 09:58 - 2014-10-29 03:46 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll 2015-08-13 09:58 - 2014-10-29 03:46 - 00185856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdiageng.dll 2015-08-13 09:58 - 2014-10-29 03:46 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll 2015-08-13 09:58 - 2014-10-29 03:42 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapi32.dll 2015-08-13 09:58 - 2014-10-29 03:42 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrecst.dll 2015-08-13 09:58 - 2014-10-29 03:41 - 00222208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iassam.dll 2015-08-13 09:58 - 2014-10-29 03:40 - 00288768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxdiag.exe 2015-08-13 09:58 - 2014-10-29 03:38 - 01548800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0000.dll 2015-08-13 09:58 - 2014-10-29 03:38 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\CertEnrollUI.dll 2015-08-13 09:58 - 2014-10-29 03:38 - 00165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itircl.dll 2015-08-13 09:58 - 2014-10-29 03:35 - 00253440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scansetting.dll 2015-08-13 09:58 - 2014-10-29 03:35 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wavemsp.dll 2015-08-13 09:58 - 2014-10-29 03:34 - 00414720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmdlgs.dll 2015-08-13 09:58 - 2014-10-29 03:32 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psr.exe 2015-08-13 09:58 - 2014-10-29 03:32 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax 2015-08-13 09:58 - 2014-10-29 03:30 - 02118144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsCpl.dll 2015-08-13 09:58 - 2014-10-29 03:28 - 00812032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontext.dll 2015-08-13 09:58 - 2014-10-29 03:28 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\localsec.dll 2015-08-13 09:58 - 2014-10-29 03:28 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiadefui.dll 2015-08-13 09:58 - 2014-10-29 03:28 - 00402944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsquery.dll 2015-08-13 09:58 - 2014-10-29 03:28 - 00241664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\audiodev.dll 2015-08-13 09:58 - 2014-10-29 03:28 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xwtpdui.dll 2015-08-13 09:58 - 2014-10-29 03:26 - 03788288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\accessibilitycpl.dll 2015-08-13 09:58 - 2014-10-29 03:26 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll 2015-08-13 09:58 - 2014-10-29 03:26 - 00309248 _____ (Microsoft Corporation) C:\Windows\system32\provthrd.dll 2015-08-13 09:58 - 2014-10-29 03:26 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\ifsutil.dll 2015-08-13 09:58 - 2014-10-29 03:26 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\ufat.dll 2015-08-13 09:58 - 2014-10-29 03:25 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrdc.dll 2015-08-13 09:58 - 2014-10-29 03:25 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll 2015-08-13 09:58 - 2014-10-29 03:25 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll 2015-08-13 09:58 - 2014-10-29 03:24 - 00779776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Magnify.exe 2015-08-13 09:58 - 2014-10-29 03:23 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itss.dll 2015-08-13 09:58 - 2014-10-29 03:22 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\sstpsvc.dll 2015-08-13 09:58 - 2014-10-29 03:21 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2015-08-13 09:58 - 2014-10-29 03:21 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.Compression.dll 2015-08-13 09:58 - 2014-10-29 03:21 - 00150016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmidx.dll 2015-08-13 09:58 - 2014-10-29 03:20 - 00264192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxdiagn.dll 2015-08-13 09:58 - 2014-10-29 03:20 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\biwinrt.dll 2015-08-13 09:58 - 2014-10-29 03:19 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\wmitomi.dll 2015-08-13 09:58 - 2014-10-29 03:19 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\msched.dll 2015-08-13 09:58 - 2014-10-29 03:18 - 00281088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2015-08-13 09:58 - 2014-10-29 03:18 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\fundisc.dll 2015-08-13 09:58 - 2014-10-29 03:17 - 01296896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\connect.dll 2015-08-13 09:58 - 2014-10-29 03:17 - 00201728 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Enumeration.dll 2015-08-13 09:58 - 2014-10-29 03:16 - 00363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanui.dll 2015-08-13 09:58 - 2014-10-29 03:16 - 00291840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RADCUI.dll 2015-08-13 09:58 - 2014-10-29 03:16 - 00113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll 2015-08-13 09:58 - 2014-10-29 03:12 - 00407040 _____ (Microsoft Corporation) C:\Windows\system32\das.dll 2015-08-13 09:58 - 2014-10-29 03:12 - 00284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnrollUI.dll 2015-08-13 09:58 - 2014-10-29 03:12 - 00270336 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll 2015-08-13 09:58 - 2014-10-29 03:12 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\windows.immersiveshell.serviceprovider.dll 2015-08-13 09:58 - 2014-10-29 03:10 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_8.dll 2015-08-13 09:58 - 2014-10-29 03:06 - 00245248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll 2015-08-13 09:58 - 2014-10-29 03:04 - 00272896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esentutl.exe 2015-08-13 09:58 - 2014-10-29 03:04 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ufat.dll 2015-08-13 09:58 - 2014-10-29 03:03 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\provthrd.dll 2015-08-13 09:58 - 2014-10-29 03:02 - 00267776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincorlib.dll 2015-08-13 09:58 - 2014-10-29 03:02 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mibincodec.dll 2015-08-13 09:58 - 2014-10-29 03:01 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\DAFWSD.dll 2015-08-13 09:58 - 2014-10-29 03:00 - 01207296 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe 2015-08-13 09:58 - 2014-10-29 03:00 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdscore.dll 2015-08-13 09:58 - 2014-10-29 03:00 - 00166400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CryptoWinRT.dll 2015-08-13 09:58 - 2014-10-29 02:59 - 00150016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srumsvc.dll 2015-08-13 09:58 - 2014-10-29 02:58 - 00115200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IDStore.dll 2015-08-13 09:58 - 2014-10-29 02:58 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\NetworkStatus.dll 2015-08-13 09:58 - 2014-10-29 02:57 - 00261632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qwave.dll 2015-08-13 09:58 - 2014-10-29 02:57 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\tcpmon.dll 2015-08-13 09:58 - 2014-10-29 02:57 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.DeviceEncryptionHandlers.dll 2015-08-13 09:58 - 2014-10-29 02:55 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\WSClient.dll 2015-08-13 09:58 - 2014-10-29 02:55 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll 2015-08-13 09:58 - 2014-10-29 02:54 - 00347648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxclu.dll 2015-08-13 09:58 - 2014-10-29 02:53 - 00425472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\raschap.dll 2015-08-13 09:58 - 2014-10-29 02:53 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdmaud.drv 2015-08-13 09:58 - 2014-10-29 02:51 - 00266752 _____ (Microsoft Corporation) C:\Windows\system32\netman.dll 2015-08-13 09:58 - 2014-10-29 02:51 - 00236032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TtlsCfg.dll 2015-08-13 09:58 - 2014-10-29 02:51 - 00169472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiohlp.dll 2015-08-13 09:58 - 2014-10-29 02:49 - 00831488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certca.dll 2015-08-13 09:58 - 2014-10-29 02:47 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\SettingMonitor.dll 2015-08-13 09:58 - 2014-10-29 02:47 - 00155648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll 2015-08-13 09:58 - 2014-10-29 02:45 - 00196096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcredprov.dll 2015-08-13 09:58 - 2014-10-29 02:45 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rascfg.dll 2015-08-13 09:58 - 2014-10-29 02:44 - 00274432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DaOtpCredentialProvider.dll 2015-08-13 09:58 - 2014-10-29 02:44 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSClient.dll 2015-08-13 09:58 - 2014-10-29 02:44 - 00128512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\thumbcache.dll 2015-08-13 09:58 - 2014-10-29 02:43 - 00165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceTypes.dll 2015-08-13 09:58 - 2014-10-29 02:43 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll 2015-08-13 09:58 - 2014-10-29 02:43 - 00148480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shacct.dll 2015-08-13 09:58 - 2014-10-29 02:42 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.SpeechSynthesis.dll 2015-08-13 09:58 - 2014-10-29 02:42 - 00160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlancfg.dll 2015-08-13 09:58 - 2014-10-29 02:42 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\efswrt.dll 2015-08-13 09:58 - 2014-10-29 02:41 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll 2015-08-13 09:58 - 2014-10-29 02:39 - 00205312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputSwitch.dll 2015-08-13 09:58 - 2014-10-29 02:39 - 00140800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingMonitor.dll 2015-08-13 09:58 - 2014-10-29 02:37 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\CloudStorageWizard.exe 2015-08-13 09:57 - 2014-10-29 06:10 - 00177688 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll 2015-08-13 09:57 - 2014-10-29 06:10 - 00089344 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe 2015-08-13 09:57 - 2014-10-29 06:04 - 00153336 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll 2015-08-13 09:57 - 2014-10-29 06:04 - 00135304 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll 2015-08-13 09:57 - 2014-10-29 06:04 - 00105872 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll 2015-08-13 09:57 - 2014-10-29 06:00 - 00465320 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe 2015-08-13 09:57 - 2014-10-29 06:00 - 00210744 _____ (Microsoft Corporation) C:\Windows\system32\imm32.dll 2015-08-13 09:57 - 2014-10-29 06:00 - 00125504 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll 2015-08-13 09:57 - 2014-10-29 05:59 - 00105944 _____ (Microsoft Corporation) C:\Windows\system32\mpr.dll 2015-08-13 09:57 - 2014-10-29 05:57 - 00299048 _____ (Microsoft Corporation) C:\Windows\system32\VIDRESZR.DLL 2015-08-13 09:57 - 2014-10-29 05:57 - 00246832 _____ (Microsoft Corporation) C:\Windows\system32\RESAMPLEDMO.DLL 2015-08-13 09:57 - 2014-10-29 05:57 - 00203504 _____ (Microsoft Corporation) C:\Windows\system32\COLORCNV.DLL 2015-08-13 09:57 - 2014-10-29 05:18 - 00148728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll 2015-08-13 09:57 - 2014-10-29 05:18 - 00127552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll 2015-08-13 09:57 - 2014-10-29 05:18 - 00120352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cabinet.dll 2015-08-13 09:57 - 2014-10-29 05:15 - 00115672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll 2015-08-13 09:57 - 2014-10-29 05:15 - 00098152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll 2015-08-13 09:57 - 2014-10-29 05:12 - 00102728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll 2015-08-13 09:57 - 2014-10-29 05:12 - 00087224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpr.dll 2015-08-13 09:57 - 2014-10-29 05:11 - 00229248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RESAMPLEDMO.DLL 2015-08-13 09:57 - 2014-10-29 05:07 - 00136840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll 2015-08-13 09:57 - 2014-10-29 05:05 - 00120864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IPHLPAPI.DLL 2015-08-13 09:57 - 2014-10-29 04:48 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\SSShim.dll 2015-08-13 09:57 - 2014-10-29 04:46 - 00272384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2015-08-13 09:57 - 2014-10-29 04:46 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2015-08-13 09:57 - 2014-10-29 04:42 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\dbnetlib.dll 2015-08-13 09:57 - 2014-10-29 04:41 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\drt.dll 2015-08-13 09:57 - 2014-10-29 04:41 - 00251392 _____ (Microsoft Corporation) C:\Windows\system32\adsldpc.dll 2015-08-13 09:57 - 2014-10-29 04:39 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\wevtfwd.dll 2015-08-13 09:57 - 2014-10-29 04:37 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\dinput.dll 2015-08-13 09:57 - 2014-10-29 04:36 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\chartv.dll 2015-08-13 09:57 - 2014-10-29 04:34 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\vdsdyn.dll 2015-08-13 09:57 - 2014-10-29 04:34 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll 2015-08-13 09:57 - 2014-10-29 04:34 - 00189440 _____ (Microsoft Corporation) C:\Windows\system32\rgb9rast.dll 2015-08-13 09:57 - 2014-10-29 04:33 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2015-08-13 09:57 - 2014-10-29 04:33 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\atl.dll 2015-08-13 09:57 - 2014-10-29 04:32 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\SCardSvr.dll 2015-08-13 09:57 - 2014-10-29 04:32 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\sqlcecompact40.dll 2015-08-13 09:57 - 2014-10-29 04:32 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\amstream.dll 2015-08-13 09:57 - 2014-10-29 04:31 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\WSTPager.ax 2015-08-13 09:57 - 2014-10-29 04:31 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\cca.dll 2015-08-13 09:57 - 2014-10-29 04:30 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\msaatext.dll 2015-08-13 09:57 - 2014-10-29 04:29 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\mmcbase.dll 2015-08-13 09:57 - 2014-10-29 04:29 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\iassvcs.dll 2015-08-13 09:57 - 2014-10-29 04:27 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\mycomput.dll 2015-08-13 09:57 - 2014-10-29 04:27 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\tpmvscmgr.exe 2015-08-13 09:57 - 2014-10-29 04:27 - 00137216 _____ (Microsoft Corporation) C:\Windows\system32\Kswdmcap.ax 2015-08-13 09:57 - 2014-10-29 04:26 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\Mpeg2Data.ax 2015-08-13 09:57 - 2014-10-29 04:26 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\MSDvbNP.ax 2015-08-13 09:57 - 2014-10-29 04:24 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll 2015-08-13 09:57 - 2014-10-29 04:24 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\bdaplgin.ax 2015-08-13 09:57 - 2014-10-29 04:23 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\ssText3d.scr 2015-08-13 09:57 - 2014-10-29 04:23 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\Tabbtn.dll 2015-08-13 09:57 - 2014-10-29 04:20 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\easwrt.dll 2015-08-13 09:57 - 2014-10-29 04:19 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\auditcse.dll 2015-08-13 09:57 - 2014-10-29 04:18 - 00440320 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll 2015-08-13 09:57 - 2014-10-29 04:18 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\unattend.dll 2015-08-13 09:57 - 2014-10-29 04:17 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\imapi.dll 2015-08-13 09:57 - 2014-10-29 04:12 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\fhshl.dll 2015-08-13 09:57 - 2014-10-29 04:10 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\dsprop.dll 2015-08-13 09:57 - 2014-10-29 04:09 - 00601600 _____ (Microsoft Corporation) C:\Windows\system32\psr.exe 2015-08-13 09:57 - 2014-10-29 04:09 - 00153600 _____ (Microsoft Corporation) C:\Windows\system32\twext.dll 2015-08-13 09:57 - 2014-10-29 04:08 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContent.dll 2015-08-13 09:57 - 2014-10-29 04:07 - 00239104 _____ (Microsoft Corporation) C:\Windows\system32\els.dll 2015-08-13 09:57 - 2014-10-29 04:07 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\rshx32.dll 2015-08-13 09:57 - 2014-10-29 04:06 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\vssadmin.exe 2015-08-13 09:57 - 2014-10-29 04:04 - 00460288 _____ (Microsoft Corporation) C:\Windows\system32\wiadefui.dll 2015-08-13 09:57 - 2014-10-29 04:03 - 00433152 _____ (Microsoft Corporation) C:\Windows\system32\dsquery.dll 2015-08-13 09:57 - 2014-10-29 04:03 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\xwtpw32.dll 2015-08-13 09:57 - 2014-10-29 04:02 - 00483328 _____ (Microsoft Corporation) C:\Windows\system32\powercpl.dll 2015-08-13 09:57 - 2014-10-29 04:00 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\fveui.dll 2015-08-13 09:57 - 2014-10-29 03:59 - 00286720 _____ (Microsoft Corporation) C:\Windows\system32\wbadmin.exe 2015-08-13 09:57 - 2014-10-29 03:59 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imm32.dll 2015-08-13 09:57 - 2014-10-29 03:58 - 00112640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbnetlib.dll 2015-08-13 09:57 - 2014-10-29 03:57 - 00324608 _____ (Microsoft Corporation) C:\Windows\system32\BthHFSrv.dll 2015-08-13 09:57 - 2014-10-29 03:57 - 00228352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drt.dll 2015-08-13 09:57 - 2014-10-29 03:57 - 00200704 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceWMDRM.dll 2015-08-13 09:57 - 2014-10-29 03:55 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dinput.dll 2015-08-13 09:57 - 2014-10-29 03:54 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\WPDShServiceObj.dll 2015-08-13 09:57 - 2014-10-29 03:54 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfui.dll 2015-08-13 09:57 - 2014-10-29 03:53 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll 2015-08-13 09:57 - 2014-10-29 03:53 - 00163328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cic.dll 2015-08-13 09:57 - 2014-10-29 03:52 - 00181248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSWB7.dll 2015-08-13 09:57 - 2014-10-29 03:51 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\SpaceControl.dll 2015-08-13 09:57 - 2014-10-29 03:51 - 00168448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2015-08-13 09:57 - 2014-10-29 03:51 - 00087552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atl.dll 2015-08-13 09:57 - 2014-10-29 03:51 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmcompos.dll 2015-08-13 09:57 - 2014-10-29 03:50 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\tcpipcfg.dll 2015-08-13 09:57 - 2014-10-29 03:50 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll 2015-08-13 09:57 - 2014-10-29 03:49 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2015-08-13 09:57 - 2014-10-29 03:49 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\immersivetpmvscmgrsvr.exe 2015-08-13 09:57 - 2014-10-29 03:49 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\tpmvscmgrsvr.exe 2015-08-13 09:57 - 2014-10-29 03:49 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\rmttpmvscmgrsvr.exe 2015-08-13 09:57 - 2014-10-29 03:49 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSTPager.ax 2015-08-13 09:57 - 2014-10-29 03:49 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\amstream.dll 2015-08-13 09:57 - 2014-10-29 03:48 - 00111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmusic.dll 2015-08-13 09:57 - 2014-10-29 03:46 - 00407552 _____ (Microsoft Corporation) C:\Windows\system32\wlanui.dll 2015-08-13 09:57 - 2014-10-29 03:46 - 00203264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrad.dll 2015-08-13 09:57 - 2014-10-29 03:46 - 00188416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssha.dll 2015-08-13 09:57 - 2014-10-29 03:46 - 00183296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprdim.dll 2015-08-13 09:57 - 2014-10-29 03:46 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasnap.dll 2015-08-13 09:57 - 2014-10-29 03:46 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Management.Workplace.WorkplaceSettings.dll 2015-08-13 09:57 - 2014-10-29 03:45 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\prnntfy.dll 2015-08-13 09:57 - 2014-10-29 03:43 - 00242176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3gpui.dll 2015-08-13 09:57 - 2014-10-29 03:43 - 00196096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2015-08-13 09:57 - 2014-10-29 03:43 - 00191488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ssText3d.scr 2015-08-13 09:57 - 2014-10-29 03:41 - 00147968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\easwrt.dll 2015-08-13 09:57 - 2014-10-29 03:40 - 00184320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dskquoui.dll 2015-08-13 09:57 - 2014-10-29 03:40 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\softkbd.dll 2015-08-13 09:57 - 2014-10-29 03:40 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olethk32.dll 2015-08-13 09:57 - 2014-10-29 03:39 - 00382976 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe 2015-08-13 09:57 - 2014-10-29 03:39 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsadmin.exe 2015-08-13 09:57 - 2014-10-29 03:39 - 00185856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasppp.dll 2015-08-13 09:57 - 2014-10-29 03:38 - 00404480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\zipfldr.dll 2015-08-13 09:57 - 2014-10-29 03:38 - 00148992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2015-08-13 09:57 - 2014-10-29 03:38 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2015-08-13 09:57 - 2014-10-29 03:38 - 00119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi.dll 2015-08-13 09:57 - 2014-10-29 03:38 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSyncProviders.dll 2015-08-13 09:57 - 2014-10-29 03:34 - 00339968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\difxapi.dll 2015-08-13 09:57 - 2014-10-29 03:34 - 00295424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eudcedit.exe 2015-08-13 09:57 - 2014-10-29 03:34 - 00134144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regedit.exe 2015-08-13 09:57 - 2014-10-29 03:32 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsprop.dll 2015-08-13 09:57 - 2014-10-29 03:32 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceSyncProvider.dll 2015-08-13 09:57 - 2014-10-29 03:31 - 00392704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl 2015-08-13 09:57 - 2014-10-29 03:31 - 00113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rshx32.dll 2015-08-13 09:57 - 2014-10-29 03:30 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\wmpdxm.dll 2015-08-13 09:57 - 2014-10-29 03:30 - 00184832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\els.dll 2015-08-13 09:57 - 2014-10-29 03:28 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2015-08-13 09:57 - 2014-10-29 03:28 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schtasks.exe 2015-08-13 09:57 - 2014-10-29 03:27 - 00458752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercpl.dll 2015-08-13 09:57 - 2014-10-29 03:27 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\BrokerLib.dll 2015-08-13 09:57 - 2014-10-29 03:27 - 00131072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VBICodec.ax 2015-08-13 09:57 - 2014-10-29 03:26 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\esentutl.exe 2015-08-13 09:57 - 2014-10-29 03:26 - 00184832 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupApi.dll 2015-08-13 09:57 - 2014-10-29 03:26 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\mimofcodec.dll 2015-08-13 09:57 - 2014-10-29 03:26 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerDeviceEncryption.exe 2015-08-13 09:57 - 2014-10-29 03:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlhtml.dll 2015-08-13 09:57 - 2014-10-29 03:25 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\negoexts.dll 2015-08-13 09:57 - 2014-10-29 03:21 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\Winlangdb.dll 2015-08-13 09:57 - 2014-10-29 03:21 - 00174080 _____ (Microsoft Corporation) C:\Windows\system32\dps.dll 2015-08-13 09:57 - 2014-10-29 03:21 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\AppxSip.dll 2015-08-13 09:57 - 2014-10-29 03:21 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2015-08-13 09:57 - 2014-10-29 03:20 - 00425984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shwebsvc.dll 2015-08-13 09:57 - 2014-10-29 03:20 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\wmidcom.dll 2015-08-13 09:57 - 2014-10-29 03:20 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\globinputhost.dll 2015-08-13 09:57 - 2014-10-29 03:20 - 00125440 _____ (Microsoft Corporation) C:\Windows\system32\httpprxm.dll 2015-08-13 09:57 - 2014-10-29 03:20 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\comrepl.dll 2015-08-13 09:57 - 2014-10-29 03:20 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll 2015-08-13 09:57 - 2014-10-29 03:19 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairing.dll 2015-08-13 09:57 - 2014-10-29 03:19 - 00181760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpipcfg.dll 2015-08-13 09:57 - 2014-10-29 03:19 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll 2015-08-13 09:57 - 2014-10-29 03:19 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.NetworkOperators.HotspotAuthentication.dll 2015-08-13 09:57 - 2014-10-29 03:19 - 00125440 _____ (Microsoft Corporation) C:\Windows\system32\txflog.dll 2015-08-13 09:57 - 2014-10-29 03:16 - 00675328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Vault.dll 2015-08-13 09:57 - 2014-10-29 03:16 - 00238592 _____ (Microsoft Corporation) C:\Windows\system32\mlang.dll 2015-08-13 09:57 - 2014-10-29 03:16 - 00173568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll 2015-08-13 09:57 - 2014-10-29 03:16 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\ncbservice.dll 2015-08-13 09:57 - 2014-10-29 03:16 - 00143360 _____ (Microsoft Corporation) C:\Windows\system32\mtstocom.exe 2015-08-13 09:57 - 2014-10-29 03:15 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnntfy.dll 2015-08-13 09:57 - 2014-10-29 03:13 - 00219648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apds.dll 2015-08-13 09:57 - 2014-10-29 03:12 - 00221696 _____ (Microsoft Corporation) C:\Windows\system32\TtlsAuth.dll 2015-08-13 09:57 - 2014-10-29 03:11 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\wscinterop.dll 2015-08-13 09:57 - 2014-10-29 03:10 - 00396288 _____ (Microsoft Corporation) C:\Windows\system32\mtxclu.dll 2015-08-13 09:57 - 2014-10-29 03:10 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\WSSync.dll 2015-08-13 09:57 - 2014-10-29 03:08 - 00397312 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL 2015-08-13 09:57 - 2014-10-29 03:08 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\fdWSD.dll 2015-08-13 09:57 - 2014-10-29 03:06 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\netiohlp.dll 2015-08-13 09:57 - 2014-10-29 03:06 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpdxm.dll 2015-08-13 09:57 - 2014-10-29 03:05 - 00228864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2015-08-13 09:57 - 2014-10-29 03:03 - 00290304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\polstore.dll 2015-08-13 09:57 - 2014-10-29 03:03 - 00211456 _____ (Microsoft Corporation) C:\Windows\system32\TetheringStation.dll 2015-08-13 09:57 - 2014-10-29 03:03 - 00178688 _____ (Microsoft Corporation) C:\Windows\system32\SimCfg.dll 2015-08-13 09:57 - 2014-10-29 03:03 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasman.dll 2015-08-13 09:57 - 2014-10-29 03:03 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\dwm.exe 2015-08-13 09:57 - 2014-10-29 03:03 - 00108544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\negoexts.dll 2015-08-13 09:57 - 2014-10-29 03:02 - 00143360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll 2015-08-13 09:57 - 2014-10-29 03:01 - 00239104 _____ (Microsoft Corporation) C:\Windows\system32\windowslivelogin.dll 2015-08-13 09:57 - 2014-10-29 03:00 - 00108544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\biwinrt.dll 2015-08-13 09:57 - 2014-10-29 02:59 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmitomi.dll 2015-08-13 09:57 - 2014-10-29 02:58 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Enumeration.dll 2015-08-13 09:57 - 2014-10-29 02:58 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fundisc.dll 2015-08-13 09:57 - 2014-10-29 02:58 - 00102400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\txflog.dll 2015-08-13 09:57 - 2014-10-29 02:57 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\ndfapi.dll 2015-08-13 09:57 - 2014-10-29 02:57 - 00192512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mlang.dll 2015-08-13 09:57 - 2014-10-29 02:57 - 00124416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtstocom.exe 2015-08-13 09:57 - 2014-10-29 02:57 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\ConfigureExpandedStorage.dll 2015-08-13 09:57 - 2014-10-29 02:55 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\fdeploy.dll 2015-08-13 09:57 - 2014-10-29 02:55 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\profsvcext.dll 2015-08-13 09:57 - 2014-10-29 02:54 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\BioCredProv.dll 2015-08-13 09:57 - 2014-10-29 02:54 - 00111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscinterop.dll 2015-08-13 09:57 - 2014-10-29 02:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\AltTab.dll 2015-08-13 09:57 - 2014-10-29 02:52 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWSD.dll 2015-08-13 09:57 - 2014-10-29 02:51 - 03317248 _____ (Microsoft Corporation) C:\Windows\system32\bootux.dll 2015-08-13 09:57 - 2014-10-29 02:45 - 01197568 _____ (Microsoft Corporation) C:\Windows\system32\netcenter.dll 2015-08-13 09:57 - 2014-10-29 02:45 - 00219648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstask.dll 2015-08-13 09:57 - 2014-10-29 02:37 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcenter.dll 2015-08-13 09:57 - 2014-10-29 02:35 - 00234496 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll 2015-08-13 09:57 - 2014-10-29 02:35 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll 2015-08-13 09:57 - 2014-10-29 02:35 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll 2015-08-13 09:57 - 2014-10-29 02:35 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efswrt.dll 2015-08-13 09:57 - 2014-10-29 02:31 - 00116224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudStorageWizard.exe 2015-08-13 09:56 - 2014-10-29 06:10 - 00084184 _____ (Microsoft Corporation) C:\Windows\system32\taskhostex.exe 2015-08-13 09:56 - 2014-10-29 06:09 - 00191032 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe 2015-08-13 09:56 - 2014-10-29 06:04 - 00224600 _____ (Microsoft Corporation) C:\Windows\system32\ntasn1.dll 2015-08-13 09:56 - 2014-10-29 06:04 - 00097608 _____ (Microsoft Corporation) C:\Windows\system32\cryptdll.dll 2015-08-13 09:56 - 2014-10-29 06:04 - 00093000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Credentials.UI.CredentialPicker.dll 2015-08-13 09:56 - 2014-10-29 06:04 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\msasn1.dll 2015-08-13 09:56 - 2014-10-29 05:57 - 00116696 _____ (Microsoft Corporation) C:\Windows\system32\MP3DMOD.DLL 2015-08-13 09:56 - 2014-10-29 05:57 - 00089816 _____ (Microsoft Corporation) C:\Windows\system32\mfvdsp.dll 2015-08-13 09:56 - 2014-10-29 05:53 - 00080528 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2015-08-13 09:56 - 2014-10-29 05:52 - 00126056 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll 2015-08-13 09:56 - 2014-10-29 05:52 - 00100672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2015-08-13 09:56 - 2014-10-29 05:52 - 00090880 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll 2015-08-13 09:56 - 2014-10-29 05:18 - 00255136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powrprof.dll 2015-08-13 09:56 - 2014-10-29 05:15 - 00165728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntasn1.dll 2015-08-13 09:56 - 2014-10-29 05:15 - 00156992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dssenh.dll 2015-08-13 09:56 - 2014-10-29 05:15 - 00089856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll 2015-08-13 09:56 - 2014-10-29 05:15 - 00073840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Credentials.UI.CredentialPicker.dll 2015-08-13 09:56 - 2014-10-29 05:11 - 00099104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP3DMOD.DLL 2015-08-13 09:56 - 2014-10-29 05:11 - 00076912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfvdsp.dll 2015-08-13 09:56 - 2014-10-29 05:09 - 00017216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe 2015-08-13 09:56 - 2014-10-29 05:07 - 00089816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msacm32.dll 2015-08-13 09:56 - 2014-10-29 05:07 - 00081008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devenum.dll 2015-08-13 09:56 - 2014-10-29 05:06 - 00074824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2015-08-13 09:56 - 2014-10-29 04:45 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2015-08-13 09:56 - 2014-10-29 04:45 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2015-08-13 09:56 - 2014-10-29 04:44 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\spoolss.dll 2015-08-13 09:56 - 2014-10-29 04:34 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\fms.dll 2015-08-13 09:56 - 2014-10-29 04:33 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll 2015-08-13 09:56 - 2014-10-29 04:33 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll 2015-08-13 09:56 - 2014-10-29 04:32 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\avifil32.dll 2015-08-13 09:56 - 2014-10-29 04:29 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\fhsvc.dll 2015-08-13 09:56 - 2014-10-29 04:28 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\adsmsext.dll 2015-08-13 09:56 - 2014-10-29 04:27 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\discan.dll 2015-08-13 09:56 - 2014-10-29 04:27 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TabbtnEx.dll 2015-08-13 09:56 - 2014-10-29 04:26 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\ksxbar.ax 2015-08-13 09:56 - 2014-10-29 04:25 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\fvenotify.exe 2015-08-13 09:56 - 2014-10-29 04:22 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe 2015-08-13 09:56 - 2014-10-29 04:22 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\advpack.dll 2015-08-13 09:56 - 2014-10-29 04:22 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\fdWCN.dll 2015-08-13 09:56 - 2014-10-29 04:21 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\kstvtune.ax 2015-08-13 09:56 - 2014-10-29 04:20 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\desk.cpl 2015-08-13 09:56 - 2014-10-29 04:19 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\icsigd.dll 2015-08-13 09:56 - 2014-10-29 04:19 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\WinMsoIrmProtector.dll 2015-08-13 09:56 - 2014-10-29 04:19 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\WinOpcIrmProtector.dll 2015-08-13 09:56 - 2014-10-29 04:17 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\nlmgp.dll 2015-08-13 09:56 - 2014-10-29 04:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2015-08-13 09:56 - 2014-10-29 04:17 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\fde.dll 2015-08-13 09:56 - 2014-10-29 04:17 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2015-08-13 09:56 - 2014-10-29 04:17 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\ndfhcdiscovery.dll 2015-08-13 09:56 - 2014-10-29 04:17 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\XPSSHHDR.dll 2015-08-13 09:56 - 2014-10-29 04:16 - 00342528 _____ (Microsoft Corporation) C:\Windows\system32\eudcedit.exe 2015-08-13 09:56 - 2014-10-29 04:16 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\ndfetw.dll 2015-08-13 09:56 - 2014-10-29 04:13 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfgLib.dll 2015-08-13 09:56 - 2014-10-29 04:12 - 00441344 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceStatus.dll 2015-08-13 09:56 - 2014-10-29 04:11 - 00469504 _____ (Microsoft Corporation) C:\Windows\system32\dmdlgs.dll 2015-08-13 09:56 - 2014-10-29 04:10 - 00468480 _____ (Microsoft Corporation) C:\Windows\system32\RASMM.dll 2015-08-13 09:56 - 2014-10-29 04:09 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\RstrtMgr.dll 2015-08-13 09:56 - 2014-10-29 04:09 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\dskquota.dll 2015-08-13 09:56 - 2014-10-29 04:08 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl 2015-08-13 09:56 - 2014-10-29 04:08 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\sdiagprv.dll 2015-08-13 09:56 - 2014-10-29 04:08 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\wiadss.dll 2015-08-13 09:56 - 2014-10-29 04:07 - 00426496 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl 2015-08-13 09:56 - 2014-10-29 04:07 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\EhStorShell.dll 2015-08-13 09:56 - 2014-10-29 04:06 - 00617984 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll 2015-08-13 09:56 - 2014-10-29 04:06 - 00517120 _____ (Microsoft Corporation) C:\Windows\system32\cmdial32.dll 2015-08-13 09:56 - 2014-10-29 04:06 - 00113664 _____ (Microsoft) C:\Windows\system32\SMBHelperClass.dll 2015-08-13 09:56 - 2014-10-29 04:06 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\ndishc.dll 2015-08-13 09:56 - 2014-10-29 04:04 - 00546304 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenterCPL.dll 2015-08-13 09:56 - 2014-10-29 04:04 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\taskkill.exe 2015-08-13 09:56 - 2014-10-29 04:03 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\remotepg.dll 2015-08-13 09:56 - 2014-10-29 04:03 - 00143360 _____ (Microsoft Corporation) C:\Windows\system32\SoundRecorder.exe 2015-08-13 09:56 - 2014-10-29 04:03 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SSShim.dll 2015-08-13 09:56 - 2014-10-29 04:01 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\p2pnetsh.dll 2015-08-13 09:56 - 2014-10-29 04:01 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\dnshc.dll 2015-08-13 09:56 - 2014-10-29 04:00 - 00214528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2015-08-13 09:56 - 2014-10-29 03:59 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\oleprn.dll 2015-08-13 09:56 - 2014-10-29 03:58 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\QSVRMGMT.DLL 2015-08-13 09:56 - 2014-10-29 03:58 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\radardt.dll 2015-08-13 09:56 - 2014-10-29 03:57 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsldpc.dll 2015-08-13 09:56 - 2014-10-29 03:57 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtm.dll 2015-08-13 09:56 - 2014-10-29 03:57 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\raserver.exe 2015-08-13 09:56 - 2014-10-29 03:57 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ssdpapi.dll 2015-08-13 09:56 - 2014-10-29 03:56 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\wiashext.dll 2015-08-13 09:56 - 2014-10-29 03:56 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\wkspbrokerAx.dll 2015-08-13 09:56 - 2014-10-29 03:55 - 00142848 _____ C:\Windows\system32\OEMLicense.dll 2015-08-13 09:56 - 2014-10-29 03:55 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\rekeywiz.exe 2015-08-13 09:56 - 2014-10-29 03:54 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\WLanHC.dll 2015-08-13 09:56 - 2014-10-29 03:54 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\DeviceMetadataRetrievalClient.dll 2015-08-13 09:56 - 2014-10-29 03:53 - 00134656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prncache.dll 2015-08-13 09:56 - 2014-10-29 03:53 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chartv.dll 2015-08-13 09:56 - 2014-10-29 03:52 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\msrahc.dll 2015-08-13 09:56 - 2014-10-29 03:52 - 00097792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fms.dll 2015-08-13 09:56 - 2014-10-29 03:51 - 00123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvfw32.dll 2015-08-13 09:56 - 2014-10-29 03:51 - 00105984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oledlg.dll 2015-08-13 09:56 - 2014-10-29 03:51 - 00095744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmscript.dll 2015-08-13 09:56 - 2014-10-29 03:51 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll 2015-08-13 09:56 - 2014-10-29 03:51 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll 2015-08-13 09:56 - 2014-10-29 03:50 - 00119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlcecompact40.dll 2015-08-13 09:56 - 2014-10-29 03:50 - 00101376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscript.ocx 2015-08-13 09:56 - 2014-10-29 03:50 - 00096256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\avifil32.dll 2015-08-13 09:56 - 2014-10-29 03:49 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\wpd_ci.dll 2015-08-13 09:56 - 2014-10-29 03:49 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cca.dll 2015-08-13 09:56 - 2014-10-29 03:48 - 00311296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcbase.dll 2015-08-13 09:56 - 2014-10-29 03:48 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\verifier.exe 2015-08-13 09:56 - 2014-10-29 03:48 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaatext.dll 2015-08-13 09:56 - 2014-10-29 03:47 - 00135680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iassvcs.dll 2015-08-13 09:56 - 2014-10-29 03:47 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsmsext.dll 2015-08-13 09:56 - 2014-10-29 03:46 - 00243712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mycomput.dll 2015-08-13 09:56 - 2014-10-29 03:46 - 00116224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Kswdmcap.ax 2015-08-13 09:56 - 2014-10-29 03:46 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll 2015-08-13 09:56 - 2014-10-29 03:45 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\dsuiext.dll 2015-08-13 09:56 - 2014-10-29 03:45 - 00273408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NAPSTAT.EXE 2015-08-13 09:56 - 2014-10-29 03:45 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mpeg2Data.ax 2015-08-13 09:56 - 2014-10-29 03:45 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSDvbNP.ax 2015-08-13 09:56 - 2014-10-29 03:44 - 00400384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasplap.dll 2015-08-13 09:56 - 2014-10-29 03:43 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\msoert2.dll 2015-08-13 09:56 - 2014-10-29 03:43 - 00111104 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll 2015-08-13 09:56 - 2014-10-29 03:43 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Credentials.UI.UserConsentVerifier.dll 2015-08-13 09:56 - 2014-10-29 03:43 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bdaplgin.ax 2015-08-13 09:56 - 2014-10-29 03:42 - 00112640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advpack.dll 2015-08-13 09:56 - 2014-10-29 03:41 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsicpl.dll 2015-08-13 09:56 - 2014-10-29 03:41 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kstvtune.ax 2015-08-13 09:56 - 2014-10-29 03:40 - 00292352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3ui.dll 2015-08-13 09:56 - 2014-10-29 03:38 - 00898048 _____ (Microsoft Corporation) C:\Windows\system32\sdclt.exe 2015-08-13 09:56 - 2014-10-29 03:38 - 00157184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlmgp.dll 2015-08-13 09:56 - 2014-10-29 03:38 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fde.dll 2015-08-13 09:56 - 2014-10-29 03:34 - 00644608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dccw.exe 2015-08-13 09:56 - 2014-10-29 03:34 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsetup.dll 2015-08-13 09:56 - 2014-10-29 03:32 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twext.dll 2015-08-13 09:56 - 2014-10-29 03:32 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dskquota.dll 2015-08-13 09:56 - 2014-10-29 03:31 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll 2015-08-13 09:56 - 2014-10-29 03:31 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl 2015-08-13 09:56 - 2014-10-29 03:31 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdiagprv.dll 2015-08-13 09:56 - 2014-10-29 03:31 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiadss.dll 2015-08-13 09:56 - 2014-10-29 03:30 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sud.dll 2015-08-13 09:56 - 2014-10-29 03:29 - 00528896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenterCPL.dll 2015-08-13 09:56 - 2014-10-29 03:29 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2015-08-13 09:56 - 2014-10-29 03:28 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remotepg.dll 2015-08-13 09:56 - 2014-10-29 03:28 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xwtpw32.dll 2015-08-13 09:56 - 2014-10-29 03:27 - 00362496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptuiwizard.dll 2015-08-13 09:56 - 2014-10-29 03:27 - 00307200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\newdev.dll 2015-08-13 09:56 - 2014-10-29 03:27 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll 2015-08-13 09:56 - 2014-10-29 03:27 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2015-08-13 09:56 - 2014-10-29 03:27 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\CallButtons.dll 2015-08-13 09:56 - 2014-10-29 03:27 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\devrtl.dll 2015-08-13 09:56 - 2014-10-29 03:26 - 00182784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\p2pnetsh.dll 2015-08-13 09:56 - 2014-10-29 03:26 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QAGENT.DLL 2015-08-13 09:56 - 2014-10-29 03:26 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\uexfat.dll 2015-08-13 09:56 - 2014-10-29 03:26 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\wecapi.dll 2015-08-13 09:56 - 2014-10-29 03:25 - 00155648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSHVHOST.DLL 2015-08-13 09:56 - 2014-10-29 03:25 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleprn.dll 2015-08-13 09:56 - 2014-10-29 03:24 - 00446976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiashext.dll 2015-08-13 09:56 - 2014-10-29 03:24 - 00178176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceWMDRM.dll 2015-08-13 09:56 - 2014-10-29 03:24 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountTokenProvider.dll 2015-08-13 09:56 - 2014-10-29 03:24 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceWiaCompat.dll 2015-08-13 09:56 - 2014-10-29 03:23 - 00107008 _____ C:\Windows\SysWOW64\OEMLicense.dll 2015-08-13 09:56 - 2014-10-29 03:23 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wkspbrokerAx.dll 2015-08-13 09:56 - 2014-10-29 03:22 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2015-08-13 09:56 - 2014-10-29 03:22 - 00119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rekeywiz.exe 2015-08-13 09:56 - 2014-10-29 03:22 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WPDShServiceObj.dll 2015-08-13 09:56 - 2014-10-29 03:21 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.HostName.dll 2015-08-13 09:56 - 2014-10-29 03:21 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll 2015-08-13 09:56 - 2014-10-29 03:21 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\trkwks.dll 2015-08-13 09:56 - 2014-10-29 03:21 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\WinRtTracing.dll 2015-08-13 09:56 - 2014-10-29 03:21 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll 2015-08-13 09:56 - 2014-10-29 03:21 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\bcdprov.dll 2015-08-13 09:56 - 2014-10-29 03:21 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Sockets.PushEnabledApplication.dll 2015-08-13 09:56 - 2014-10-29 03:21 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\ddrawex.dll 2015-08-13 09:56 - 2014-10-29 03:20 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\ProximityCommon.dll 2015-08-13 09:56 - 2014-10-29 03:20 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\vaultcli.dll 2015-08-13 09:56 - 2014-10-29 03:20 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\ELSCore.dll 2015-08-13 09:56 - 2014-10-29 03:19 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\smbwmiv2.dll 2015-08-13 09:56 - 2014-10-29 03:19 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\msdtclog.dll 2015-08-13 09:56 - 2014-10-29 03:19 - 00092672 _____ (Microsoft) C:\Windows\system32\VaultRoaming.dll 2015-08-13 09:56 - 2014-10-29 03:17 - 00303104 _____ (Microsoft Corporation) C:\Windows\system32\qwave.dll Code:
ATTFilter 2015-08-13 09:56 - 2014-10-29 03:17 - 00287232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysdm.cpl 2015-08-13 09:56 - 2014-10-29 03:17 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\cryptcatsvc.dll 2015-08-13 09:56 - 2014-10-29 03:16 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\cmifw.dll 2015-08-13 09:56 - 2014-10-29 03:15 - 00671744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsuiext.dll 2015-08-13 09:56 - 2014-10-29 03:14 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll 2015-08-13 09:56 - 2014-10-29 03:14 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\eapsvc.dll 2015-08-13 09:56 - 2014-10-29 03:14 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msoert2.dll 2015-08-13 09:56 - 2014-10-29 03:12 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll 2015-08-13 09:56 - 2014-10-29 03:10 - 00465408 _____ (Microsoft Corporation) C:\Windows\system32\raschap.dll 2015-08-13 09:56 - 2014-10-29 03:10 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\dafBth.dll 2015-08-13 09:56 - 2014-10-29 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\dafupnp.dll 2015-08-13 09:56 - 2014-10-29 03:07 - 00192512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unregmp2.exe 2015-08-13 09:56 - 2014-10-29 03:06 - 00104960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2015-08-13 09:56 - 2014-10-29 03:05 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupManager.dll 2015-08-13 09:56 - 2014-10-29 03:05 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logoncli.dll 2015-08-13 09:56 - 2014-10-29 03:05 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\loadperf.dll 2015-08-13 09:56 - 2014-10-29 03:04 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\net1.exe 2015-08-13 09:56 - 2014-10-29 03:04 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uexfat.dll 2015-08-13 09:56 - 2014-10-29 03:03 - 00968192 _____ (Microsoft Corporation) C:\Windows\system32\certca.dll 2015-08-13 09:56 - 2014-10-29 03:00 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\P2P.dll 2015-08-13 09:56 - 2014-10-29 03:00 - 00126464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.Compression.dll 2015-08-13 09:56 - 2014-10-29 03:00 - 00098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxSip.dll 2015-08-13 09:56 - 2014-10-29 03:00 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dllhst3g.exe 2015-08-13 09:56 - 2014-10-29 02:59 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmidcom.dll 2015-08-13 09:56 - 2014-10-29 02:59 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll 2015-08-13 09:56 - 2014-10-29 02:59 - 00102400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.NetworkOperators.HotspotAuthentication.dll 2015-08-13 09:56 - 2014-10-29 02:59 - 00098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comrepl.dll 2015-08-13 09:56 - 2014-10-29 02:58 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2015-08-13 09:56 - 2014-10-29 02:58 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFiDirect.dll 2015-08-13 09:56 - 2014-10-29 02:57 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdSSDP.dll 2015-08-13 09:56 - 2014-10-29 02:57 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmifw.dll 2015-08-13 09:56 - 2014-10-29 02:56 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\mstask.dll 2015-08-13 09:56 - 2014-10-29 02:56 - 00200192 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe 2015-08-13 09:56 - 2014-10-29 02:56 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\AepRoam.dll 2015-08-13 09:56 - 2014-10-29 02:55 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll 2015-08-13 09:56 - 2014-10-29 02:55 - 00162816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TtlsAuth.dll 2015-08-13 09:56 - 2014-10-29 02:54 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\icfupgd.dll 2015-08-13 09:56 - 2014-10-29 02:53 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceClassExtension.dll 2015-08-13 09:56 - 2014-10-29 02:51 - 00518144 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl 2015-08-13 09:56 - 2014-10-29 02:51 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\wlancfg.dll 2015-08-13 09:56 - 2014-10-29 02:49 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SimCfg.dll 2015-08-13 09:56 - 2014-10-29 02:48 - 00178176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windowslivelogin.dll 2015-08-13 09:56 - 2014-10-29 02:47 - 00177664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2P.dll 2015-08-13 09:56 - 2014-10-29 02:46 - 00605184 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll 2015-08-13 09:56 - 2014-10-29 02:46 - 00306176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll 2015-08-13 09:56 - 2014-10-29 02:45 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndfapi.dll 2015-08-13 09:56 - 2014-10-29 02:45 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\IdCtrls.dll 2015-08-13 09:56 - 2014-10-29 02:44 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll 2015-08-13 09:56 - 2014-10-29 02:44 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdeploy.dll 2015-08-13 09:56 - 2014-10-29 02:43 - 00264192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BioCredProv.dll 2015-08-13 09:56 - 2014-10-29 02:42 - 00196608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl 2015-08-13 09:56 - 2014-10-29 02:41 - 00472064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl 2015-08-13 09:56 - 2014-10-29 02:40 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\AuthBroker.dll 2015-08-13 09:56 - 2014-10-29 02:34 - 00104448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthBroker.dll 2015-08-13 09:56 - 2014-10-29 02:30 - 00221696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVolSSO.dll 2015-08-13 09:56 - 2014-10-15 10:32 - 00088896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys 2015-08-13 09:56 - 2014-08-31 02:17 - 00148800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2015-08-13 09:55 - 2014-10-29 06:09 - 00277368 _____ (Microsoft Corporation) C:\Windows\system32\powrprof.dll 2015-08-13 09:55 - 2014-10-29 06:04 - 00197832 _____ (Microsoft Corporation) C:\Windows\system32\dssenh.dll 2015-08-13 09:55 - 2014-10-29 06:04 - 00122912 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll 2015-08-13 09:55 - 2014-10-29 06:03 - 00196928 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll 2015-08-13 09:55 - 2014-10-29 06:03 - 00116032 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2015-08-13 09:55 - 2014-10-29 06:00 - 00030472 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogHost.exe 2015-08-13 09:55 - 2014-10-29 05:59 - 00136512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys 2015-08-13 09:55 - 2014-10-29 05:57 - 00098664 _____ (Microsoft Corporation) C:\Windows\system32\OpenWith.exe 2015-08-13 09:55 - 2014-10-29 05:55 - 00076432 _____ (Microsoft Corporation) C:\Windows\system32\sessionmsg.exe 2015-08-13 09:55 - 2014-10-29 05:52 - 00106384 _____ (Microsoft Corporation) C:\Windows\system32\msacm32.dll 2015-08-13 09:55 - 2014-10-29 05:52 - 00101736 _____ (Microsoft Corporation) C:\Windows\system32\mfAACEnc.dll 2015-08-13 09:55 - 2014-10-29 05:51 - 00070288 _____ (Microsoft Corporation) C:\Windows\system32\profapi.dll 2015-08-13 09:55 - 2014-10-29 05:15 - 00168256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll 2015-08-13 09:55 - 2014-10-29 05:15 - 00099104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptxml.dll 2015-08-13 09:55 - 2014-10-29 05:15 - 00096032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll 2015-08-13 09:55 - 2014-10-29 05:15 - 00074352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdll.dll 2015-08-13 09:55 - 2014-10-29 05:15 - 00051608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msasn1.dll 2015-08-13 09:55 - 2014-10-29 05:10 - 00091936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpenWith.exe 2015-08-13 09:55 - 2014-10-29 05:07 - 00110512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll 2015-08-13 09:55 - 2014-10-29 05:07 - 00018040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CompPkgSup.dll 2015-08-13 09:55 - 2014-10-29 05:06 - 00090368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfAACEnc.dll 2015-08-13 09:55 - 2014-10-29 05:05 - 00052152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profapi.dll 2015-08-13 09:55 - 2014-10-29 04:46 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2015-08-13 09:55 - 2014-10-29 04:45 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys 2015-08-13 09:55 - 2014-10-29 04:45 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys 2015-08-13 09:55 - 2014-10-29 04:45 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys 2015-08-13 09:55 - 2014-10-29 04:45 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rassstp.sys 2015-08-13 09:55 - 2014-10-29 04:45 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2015-08-13 09:55 - 2014-10-29 04:45 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\sfc_os.dll 2015-08-13 09:55 - 2014-10-29 04:44 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\glu32.dll 2015-08-13 09:55 - 2014-10-29 04:43 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\fmapi.dll 2015-08-13 09:55 - 2014-10-29 04:42 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\rtm.dll 2015-08-13 09:55 - 2014-10-29 04:41 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\ssdpapi.dll 2015-08-13 09:55 - 2014-10-29 04:40 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll 2015-08-13 09:55 - 2014-10-29 04:39 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe 2015-08-13 09:55 - 2014-10-29 04:36 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp 2015-08-13 09:55 - 2014-10-29 04:35 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\CertPolEng.dll 2015-08-13 09:55 - 2014-10-29 04:34 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2015-08-13 09:55 - 2014-10-29 04:34 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2015-08-13 09:55 - 2014-10-29 04:34 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll 2015-08-13 09:55 - 2014-10-29 04:34 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\iasdatastore.dll 2015-08-13 09:55 - 2014-10-29 04:34 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\netprovisionsp.dll 2015-08-13 09:55 - 2014-10-29 04:34 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\bitsigd.dll 2015-08-13 09:55 - 2014-10-29 04:33 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\dsdmo.dll 2015-08-13 09:55 - 2014-10-29 04:33 - 00154624 _____ (Microsoft Corporation) C:\Windows\system32\usbceip.dll 2015-08-13 09:55 - 2014-10-29 04:33 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\oledlg.dll 2015-08-13 09:55 - 2014-10-29 04:33 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\KMSVC.DLL 2015-08-13 09:55 - 2014-10-29 04:32 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\g711codc.ax 2015-08-13 09:55 - 2014-10-29 04:31 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\PkgMgr.exe 2015-08-13 09:55 - 2014-10-29 04:31 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\dmview.ocx 2015-08-13 09:55 - 2014-10-29 04:31 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\fhsrchph.dll 2015-08-13 09:55 - 2014-10-29 04:31 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\gacinstall.dll 2015-08-13 09:55 - 2014-10-29 04:30 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Syncreg.dll 2015-08-13 09:55 - 2014-10-29 04:29 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\verifier.exe 2015-08-13 09:55 - 2014-10-29 04:29 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\fhsrchapi.dll 2015-08-13 09:55 - 2014-10-29 04:27 - 00138752 _____ (Microsoft Corporation) C:\Windows\system32\mfmjpegdec.dll 2015-08-13 09:55 - 2014-10-29 04:27 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\setupugc.exe 2015-08-13 09:55 - 2014-10-29 04:27 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\iasacct.dll 2015-08-13 09:55 - 2014-10-29 04:27 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\iasads.dll 2015-08-13 09:55 - 2014-10-29 04:26 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll 2015-08-13 09:55 - 2014-10-29 04:26 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\NdisImPlatform.dll 2015-08-13 09:55 - 2014-10-29 04:26 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\QUTIL.DLL 2015-08-13 09:55 - 2014-10-29 04:26 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\nlahc.dll 2015-08-13 09:55 - 2014-10-29 04:26 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\BthRadioMedia.dll 2015-08-13 09:55 - 2014-10-29 04:26 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\vbisurf.ax 2015-08-13 09:55 - 2014-10-29 04:25 - 00427520 _____ (Microsoft Corporation) C:\Windows\system32\rasplap.dll 2015-08-13 09:55 - 2014-10-29 04:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll 2015-08-13 09:55 - 2014-10-29 04:25 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\Ribbons.scr 2015-08-13 09:55 - 2014-10-29 04:25 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\iashlpr.dll 2015-08-13 09:55 - 2014-10-29 04:25 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\QCLIPROV.DLL 2015-08-13 09:55 - 2014-10-29 04:24 - 00788480 _____ (Microsoft Corporation) C:\Windows\system32\Bubbles.scr 2015-08-13 09:55 - 2014-10-29 04:24 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\Mystify.scr 2015-08-13 09:55 - 2014-10-29 04:24 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\fphc.dll 2015-08-13 09:55 - 2014-10-29 04:23 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\tapi32.dll 2015-08-13 09:55 - 2014-10-29 04:23 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\dot3mm.dll 2015-08-13 09:55 - 2014-10-29 04:23 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\scripto.dll 2015-08-13 09:55 - 2014-10-29 04:22 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\igdDiag.dll 2015-08-13 09:55 - 2014-10-29 04:20 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\nshipsec.dll 2015-08-13 09:55 - 2014-10-29 04:20 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll 2015-08-13 09:55 - 2014-10-29 04:19 - 00320000 _____ (Microsoft Corporation) C:\Windows\system32\dot3ui.dll 2015-08-13 09:55 - 2014-10-29 04:19 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\uxlib.dll 2015-08-13 09:55 - 2014-10-29 04:18 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll 2015-08-13 09:55 - 2014-10-29 04:18 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\DAMM.dll 2015-08-13 09:55 - 2014-10-29 04:17 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\SNTSearch.dll 2015-08-13 09:55 - 2014-10-29 04:17 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2015-08-13 09:55 - 2014-10-29 04:17 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\msdart.dll 2015-08-13 09:55 - 2014-10-29 04:17 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll 2015-08-13 09:55 - 2014-10-29 04:17 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll 2015-08-13 09:55 - 2014-10-29 04:17 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\correngine.dll 2015-08-13 09:55 - 2014-10-29 04:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\dot3hc.dll 2015-08-13 09:55 - 2014-10-29 04:17 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\playlistfolder.dll 2015-08-13 09:55 - 2014-10-29 04:17 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersGPExt.dll 2015-08-13 09:55 - 2014-10-29 04:16 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\msconfig.exe 2015-08-13 09:55 - 2014-10-29 04:13 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll 2015-08-13 09:55 - 2014-10-29 04:12 - 00660480 _____ (Microsoft Corporation) C:\Windows\system32\dccw.exe 2015-08-13 09:55 - 2014-10-29 04:12 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\EhStorAPI.dll 2015-08-13 09:55 - 2014-10-29 04:12 - 00096256 _____ C:\Windows\system32\BthpanContextHandler.dll 2015-08-13 09:55 - 2014-10-29 04:12 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\WABSyncProvider.dll 2015-08-13 09:55 - 2014-10-29 04:11 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2015-08-13 09:55 - 2014-10-29 04:11 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\profprov.dll 2015-08-13 09:55 - 2014-10-29 04:10 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\winsockhc.dll 2015-08-13 09:55 - 2014-10-29 04:09 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\cttune.exe 2015-08-13 09:55 - 2014-10-29 04:09 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\input.dll 2015-08-13 09:55 - 2014-10-29 04:06 - 00205312 _____ (Microsoft Corporation) C:\Windows\system32\manage-bde.exe 2015-08-13 09:55 - 2014-10-29 04:06 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\autoplay.dll 2015-08-13 09:55 - 2014-10-29 04:05 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\systeminfo.exe 2015-08-13 09:55 - 2014-10-29 04:05 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\wiascanprofiles.dll 2015-08-13 09:55 - 2014-10-29 04:05 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\getmac.exe 2015-08-13 09:55 - 2014-10-29 04:04 - 00270336 _____ (Microsoft Corporation) C:\Windows\system32\sethc.exe 2015-08-13 09:55 - 2014-10-29 04:04 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingFolder.dll 2015-08-13 09:55 - 2014-10-29 04:04 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\Utilman.exe 2015-08-13 09:55 - 2014-10-29 04:02 - 00293888 _____ (Microsoft Corporation) C:\Windows\system32\EaseOfAccessDialog.exe 2015-08-13 09:55 - 2014-10-29 04:00 - 00153600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\syncui.dll 2015-08-13 09:55 - 2014-10-29 04:00 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SPInf.dll 2015-08-13 09:55 - 2014-10-29 03:59 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdadiag.dll 2015-08-13 09:55 - 2014-10-29 03:59 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glu32.dll 2015-08-13 09:55 - 2014-10-29 03:59 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\networkitemfactory.dll 2015-08-13 09:55 - 2014-10-29 03:58 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll 2015-08-13 09:55 - 2014-10-29 03:58 - 00160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll 2015-08-13 09:55 - 2014-10-29 03:58 - 00113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll 2015-08-13 09:55 - 2014-10-29 03:57 - 00329728 _____ (Microsoft Corporation) C:\Windows\system32\pwlauncher.dll 2015-08-13 09:55 - 2014-10-29 03:56 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\wlandlg.dll 2015-08-13 09:55 - 2014-10-29 03:56 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\netid.dll 2015-08-13 09:55 - 2014-10-29 03:56 - 00097792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe 2015-08-13 09:55 - 2014-10-29 03:56 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wevtfwd.dll 2015-08-13 09:55 - 2014-10-29 03:56 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\l2gpstore.dll 2015-08-13 09:55 - 2014-10-29 03:54 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\dafWCN.dll 2015-08-13 09:55 - 2014-10-29 03:53 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdm.tsp 2015-08-13 09:55 - 2014-10-29 03:53 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\winethc.dll 2015-08-13 09:55 - 2014-10-29 03:52 - 00289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compstui.dll 2015-08-13 09:55 - 2014-10-29 03:52 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\L2SecHC.dll 2015-08-13 09:55 - 2014-10-29 03:52 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2015-08-13 09:55 - 2014-10-29 03:52 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2015-08-13 09:55 - 2014-10-29 03:52 - 00068608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertPolEng.dll 2015-08-13 09:55 - 2014-10-29 03:51 - 00182784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsdmo.dll 2015-08-13 09:55 - 2014-10-29 03:51 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\logagent.exe 2015-08-13 09:55 - 2014-10-29 03:50 - 00054784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\g711codc.ax 2015-08-13 09:55 - 2014-10-29 03:49 - 00113664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmview.ocx 2015-08-13 09:55 - 2014-10-29 03:48 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Syncreg.dll 2015-08-13 09:55 - 2014-10-29 03:47 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe 2015-08-13 09:55 - 2014-10-29 03:46 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupugc.exe 2015-08-13 09:55 - 2014-10-29 03:46 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmjpegdec.dll 2015-08-13 09:55 - 2014-10-29 03:46 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasacct.dll 2015-08-13 09:55 - 2014-10-29 03:45 - 01678336 _____ (Microsoft Corporation) C:\Windows\system32\networkexplorer.dll 2015-08-13 09:55 - 2014-10-29 03:45 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksxbar.ax 2015-08-13 09:55 - 2014-10-29 03:44 - 01152000 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl 2015-08-13 09:55 - 2014-10-29 03:44 - 00778752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Bubbles.scr 2015-08-13 09:55 - 2014-10-29 03:44 - 00121344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mystify.scr 2015-08-13 09:55 - 2014-10-29 03:44 - 00120832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Ribbons.scr 2015-08-13 09:55 - 2014-10-29 03:43 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fphc.dll 2015-08-13 09:55 - 2014-10-29 03:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scripto.dll 2015-08-13 09:55 - 2014-10-29 03:42 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWCN.dll 2015-08-13 09:55 - 2014-10-29 03:41 - 00287232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\modemui.dll 2015-08-13 09:55 - 2014-10-29 03:40 - 00168448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\desk.cpl 2015-08-13 09:55 - 2014-10-29 03:40 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinMsoIrmProtector.dll 2015-08-13 09:55 - 2014-10-29 03:40 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe 2015-08-13 09:55 - 2014-10-29 03:40 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinOpcIrmProtector.dll 2015-08-13 09:55 - 2014-10-29 03:39 - 00201728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icsigd.dll 2015-08-13 09:55 - 2014-10-29 03:39 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll 2015-08-13 09:55 - 2014-10-29 03:38 - 00121344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2015-08-13 09:55 - 2014-10-29 03:38 - 00116224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdart.dll 2015-08-13 09:55 - 2014-10-29 03:38 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmstp.exe 2015-08-13 09:55 - 2014-10-29 03:38 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll 2015-08-13 09:55 - 2014-10-29 03:37 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll 2015-08-13 09:55 - 2014-10-29 03:35 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WABSyncProvider.dll 2015-08-13 09:55 - 2014-10-29 03:34 - 00430592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceStatus.dll 2015-08-13 09:55 - 2014-10-29 03:34 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsiwmi.dll 2015-08-13 09:55 - 2014-10-29 03:32 - 00561664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfrgui.exe 2015-08-13 09:55 - 2014-10-29 03:32 - 00313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cttune.exe 2015-08-13 09:55 - 2014-10-29 03:32 - 00149504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RstrtMgr.dll 2015-08-13 09:55 - 2014-10-29 03:31 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll 2015-08-13 09:55 - 2014-10-29 03:30 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vssadmin.exe 2015-08-13 09:55 - 2014-10-29 03:30 - 00085504 _____ (Microsoft) C:\Windows\SysWOW64\SMBHelperClass.dll 2015-08-13 09:55 - 2014-10-29 03:30 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndishc.dll 2015-08-13 09:55 - 2014-10-29 03:29 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairingFolder.dll 2015-08-13 09:55 - 2014-10-29 03:29 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systeminfo.exe 2015-08-13 09:55 - 2014-10-29 03:29 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\getmac.exe 2015-08-13 09:55 - 2014-10-29 03:28 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tasklist.exe 2015-08-13 09:55 - 2014-10-29 03:28 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\RpcEpMap.dll 2015-08-13 09:55 - 2014-10-29 03:28 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskkill.exe 2015-08-13 09:55 - 2014-10-29 03:28 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\samcli.dll 2015-08-13 09:55 - 2014-10-29 03:27 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\mi.dll 2015-08-13 09:55 - 2014-10-29 03:27 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\umpo.dll 2015-08-13 09:55 - 2014-10-29 03:27 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\ntlanman.dll 2015-08-13 09:55 - 2014-10-29 03:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\xcopy.exe 2015-08-13 09:55 - 2014-10-29 03:26 - 00330752 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll 2015-08-13 09:55 - 2014-10-29 03:26 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll 2015-08-13 09:55 - 2014-10-29 03:26 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\themeservice.dll 2015-08-13 09:55 - 2014-10-29 03:26 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\cscapi.dll 2015-08-13 09:55 - 2014-10-29 03:25 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\wininit.exe 2015-08-13 09:55 - 2014-10-29 03:25 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\wecutil.exe 2015-08-13 09:55 - 2014-10-29 03:25 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2015-08-13 09:55 - 2014-10-29 03:25 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSVRMGMT.DLL 2015-08-13 09:55 - 2014-10-29 03:24 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\ScDeviceEnum.dll 2015-08-13 09:55 - 2014-10-29 03:24 - 00102912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\raserver.exe 2015-08-13 09:55 - 2014-10-29 03:23 - 00189440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlandlg.dll 2015-08-13 09:55 - 2014-10-29 03:22 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmInit.exe 2015-08-13 09:55 - 2014-10-29 03:21 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\korwbrkr.dll 2015-08-13 09:55 - 2014-10-29 03:21 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\alg.exe 2015-08-13 09:55 - 2014-10-29 03:21 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Custom.dll 2015-08-13 09:55 - 2014-10-29 03:21 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\Sens.dll 2015-08-13 09:55 - 2014-10-29 03:21 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\nduprov.dll 2015-08-13 09:55 - 2014-10-29 03:21 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Background.dll 2015-08-13 09:55 - 2014-10-29 03:21 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\threadpoolwinrt.dll 2015-08-13 09:55 - 2014-10-29 03:21 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\mtxdm.dll 2015-08-13 09:55 - 2014-10-29 03:20 - 00104960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSXP32.dll 2015-08-13 09:55 - 2014-10-29 03:20 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\prvdmofcomp.dll 2015-08-13 09:55 - 2014-10-29 03:19 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logagent.exe 2015-08-13 09:55 - 2014-10-29 03:19 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\colbact.dll 2015-08-13 09:55 - 2014-10-29 03:18 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2015-08-13 09:55 - 2014-10-29 03:18 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Devices.dll 2015-08-13 09:55 - 2014-10-29 03:17 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\fdSSDP.dll 2015-08-13 09:55 - 2014-10-29 03:17 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\EAPQEC.DLL 2015-08-13 09:55 - 2014-10-29 03:17 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\rdsdwmdr.dll 2015-08-13 09:55 - 2014-10-29 03:16 - 01669632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\networkexplorer.dll 2015-08-13 09:55 - 2014-10-29 03:15 - 01129984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscui.cpl 2015-08-13 09:55 - 2014-10-29 03:15 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\SimAuth.dll 2015-08-13 09:55 - 2014-10-29 03:15 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupManagerAPI.dll 2015-08-13 09:55 - 2014-10-29 03:11 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\WcnApi.dll 2015-08-13 09:55 - 2014-10-29 03:09 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\fdBth.dll 2015-08-13 09:55 - 2014-10-29 03:07 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll 2015-08-13 09:55 - 2014-10-29 03:06 - 00102912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpshell.dll 2015-08-13 09:55 - 2014-10-29 03:05 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samcli.dll 2015-08-13 09:55 - 2014-10-29 03:04 - 00097792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mi.dll 2015-08-13 09:55 - 2014-10-29 03:04 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdsapi.dll 2015-08-13 09:55 - 2014-10-29 03:04 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CallButtons.dll 2015-08-13 09:55 - 2014-10-29 03:04 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntlanman.dll 2015-08-13 09:55 - 2014-10-29 03:04 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xcopy.exe 2015-08-13 09:55 - 2014-10-29 03:03 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icm32.dll 2015-08-13 09:55 - 2014-10-29 03:03 - 00120832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mimofcodec.dll 2015-08-13 09:55 - 2014-10-29 03:03 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2015-08-13 09:55 - 2014-10-29 03:02 - 00513536 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2015-08-13 09:55 - 2014-10-29 03:00 - 00355328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Winlangdb.dll 2015-08-13 09:55 - 2014-10-29 03:00 - 00147456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\korwbrkr.dll 2015-08-13 09:55 - 2014-10-29 03:00 - 00111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\globinputhost.dll 2015-08-13 09:55 - 2014-10-29 03:00 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.HostName.dll 2015-08-13 09:55 - 2014-10-29 03:00 - 00088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinRtTracing.dll 2015-08-13 09:55 - 2014-10-29 03:00 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdi.dll 2015-08-13 09:55 - 2014-10-29 03:00 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vaultcli.dll 2015-08-13 09:55 - 2014-10-29 03:00 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Sockets.PushEnabledApplication.dll 2015-08-13 09:55 - 2014-10-29 03:00 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Custom.dll 2015-08-13 09:55 - 2014-10-29 03:00 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ELSCore.dll 2015-08-13 09:55 - 2014-10-29 02:59 - 00116224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ProximityCommon.dll 2015-08-13 09:55 - 2014-10-29 02:59 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\colbact.dll 2015-08-13 09:55 - 2014-10-29 02:59 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prvdmofcomp.dll 2015-08-13 09:55 - 2014-10-29 02:58 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Devices.dll 2015-08-13 09:55 - 2014-10-29 02:58 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingHost.exe 2015-08-13 09:55 - 2014-10-29 02:57 - 00120832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SimAuth.dll 2015-08-13 09:55 - 2014-10-29 02:57 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\wlidfdp.dll 2015-08-13 09:55 - 2014-10-29 02:56 - 00182784 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll 2015-08-13 09:55 - 2014-10-29 02:56 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\RDSAppXHelper.dll 2015-08-13 09:55 - 2014-10-29 02:55 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\ConsentUX.dll 2015-08-13 09:55 - 2014-10-29 02:54 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApi.dll 2015-08-13 09:55 - 2014-10-29 02:54 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\WfHC.dll 2015-08-13 09:55 - 2014-10-29 02:53 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdBth.dll 2015-08-13 09:55 - 2014-10-29 02:52 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll 2015-08-13 09:55 - 2014-10-29 02:51 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\DeviceElementSource.dll 2015-08-13 09:55 - 2014-10-29 02:51 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\wpninprc.dll 2015-08-13 09:55 - 2014-10-29 02:50 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl 2015-08-13 09:55 - 2014-10-29 02:50 - 00071168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eqossnap.dll 2015-08-13 09:55 - 2014-10-29 02:46 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFiDirect.dll 2015-08-13 09:55 - 2014-10-29 02:46 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ConfigureExpandedStorage.dll |
14.08.2015, 11:36 | #12 |
| pua/DownProt.I - Virus/Malware FRST Log (8) Code:
ATTFilter 2015-08-13 09:55 - 2014-10-29 02:44 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe 2015-08-13 09:55 - 2014-10-29 02:44 - 00153088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netplwiz.dll 2015-08-13 09:55 - 2014-10-29 02:43 - 00119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceClassExtension.dll 2015-08-13 09:55 - 2014-10-29 02:43 - 00114688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApi.dll 2015-08-13 09:55 - 2014-10-29 02:37 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IdCtrls.dll 2015-08-13 09:55 - 2014-10-12 10:53 - 00054592 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll 2015-08-13 09:55 - 2014-08-08 18:55 - 00172344 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_8086.dll 2015-08-13 09:54 - 2014-10-29 06:04 - 00149240 _____ (Microsoft Corporation) C:\Windows\system32\srvcli.dll 2015-08-13 09:54 - 2014-10-29 06:04 - 00124992 _____ (Microsoft Corporation) C:\Windows\system32\cryptxml.dll 2015-08-13 09:54 - 2014-10-29 06:04 - 00086744 _____ (Microsoft Corporation) C:\Windows\system32\wkscli.dll 2015-08-13 09:54 - 2014-10-29 06:04 - 00044368 _____ (Microsoft Corporation) C:\Windows\system32\netutils.dll 2015-08-13 09:54 - 2014-10-29 05:57 - 00045464 _____ (Microsoft Corporation) C:\Windows\system32\CloudNotifications.exe 2015-08-13 09:54 - 2014-10-29 05:57 - 00038736 _____ (Microsoft Corporation) C:\Windows\system32\CredentialUIBroker.exe 2015-08-13 09:54 - 2014-10-29 05:56 - 00089368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbkmcl.sys 2015-08-13 09:54 - 2014-10-29 05:55 - 00067656 _____ (Microsoft Corporation) C:\Windows\system32\RpcRtRemote.dll 2015-08-13 09:54 - 2014-10-29 05:55 - 00064040 _____ (Microsoft Corporation) C:\Windows\system32\wtsapi32.dll 2015-08-13 09:54 - 2014-10-29 05:52 - 00022208 _____ (Microsoft Corporation) C:\Windows\system32\ksuser.dll 2015-08-13 09:54 - 2014-10-29 05:15 - 00110512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srvcli.dll 2015-08-13 09:54 - 2014-10-29 05:15 - 00068168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll 2015-08-13 09:54 - 2014-10-29 05:15 - 00064552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll 2015-08-13 09:54 - 2014-10-29 05:15 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wkscli.dll 2015-08-13 09:54 - 2014-10-29 05:15 - 00035592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netutils.dll 2015-08-13 09:54 - 2014-10-29 05:15 - 00021696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsrole.dll 2015-08-13 09:54 - 2014-10-29 05:12 - 00136296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe 2015-08-13 09:54 - 2014-10-29 05:11 - 00028352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CameraSettingsUIHost.exe 2015-08-13 09:54 - 2014-10-29 05:10 - 00052664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wtsapi32.dll 2015-08-13 09:54 - 2014-10-29 05:10 - 00052664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RpcRtRemote.dll 2015-08-13 09:54 - 2014-10-29 05:10 - 00040816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudNotifications.exe 2015-08-13 09:54 - 2014-10-29 05:10 - 00034016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialUIBroker.exe 2015-08-13 09:54 - 2014-10-29 05:10 - 00030944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserAccountBroker.exe 2015-08-13 09:54 - 2014-10-29 05:10 - 00026304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PickerHost.exe 2015-08-13 09:54 - 2014-10-29 05:06 - 00080016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcd.dll 2015-08-13 09:54 - 2014-10-29 04:50 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-08-13 09:54 - 2014-10-29 04:49 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\msvcirt.dll 2015-08-13 09:54 - 2014-10-29 04:47 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2015-08-13 09:54 - 2014-10-29 04:45 - 00174592 _____ (Microsoft Corporation) C:\Windows\system32\syncui.dll 2015-08-13 09:54 - 2014-10-29 04:45 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys 2015-08-13 09:54 - 2014-10-29 04:45 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll 2015-08-13 09:54 - 2014-10-29 04:45 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\msisip.dll 2015-08-13 09:54 - 2014-10-29 04:44 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\msdadiag.dll 2015-08-13 09:54 - 2014-10-29 04:43 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\radardt.dll 2015-08-13 09:54 - 2014-10-29 04:42 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\iscsiwmiv2.dll 2015-08-13 09:54 - 2014-10-29 04:42 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\makecab.exe 2015-08-13 09:54 - 2014-10-29 04:41 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\dispdiag.exe 2015-08-13 09:54 - 2014-10-29 04:37 - 00269824 _____ (Microsoft Corporation) C:\Windows\system32\scksp.dll 2015-08-13 09:54 - 2014-10-29 04:36 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\mmcshext.dll 2015-08-13 09:54 - 2014-10-29 04:35 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\PlayToStatusProvider.dll 2015-08-13 09:54 - 2014-10-29 04:34 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\ocsetapi.dll 2015-08-13 09:54 - 2014-10-29 04:34 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll 2015-08-13 09:54 - 2014-10-29 04:34 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\dmloader.dll 2015-08-13 09:54 - 2014-10-29 04:33 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\dmsynth.dll 2015-08-13 09:54 - 2014-10-29 04:33 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2015-08-13 09:54 - 2014-10-29 04:32 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\sdiagschd.dll 2015-08-13 09:54 - 2014-10-29 04:31 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\fhcleanup.dll 2015-08-13 09:54 - 2014-10-29 04:30 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\WwanRadioManager.dll 2015-08-13 09:54 - 2014-10-29 04:30 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\mciqtz32.dll 2015-08-13 09:54 - 2014-10-29 04:29 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\WWanHC.dll 2015-08-13 09:54 - 2014-10-29 04:28 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\gcdef.dll 2015-08-13 09:54 - 2014-10-29 04:27 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\loghours.dll 2015-08-13 09:54 - 2014-10-29 04:27 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\dssec.dll 2015-08-13 09:54 - 2014-10-29 04:26 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll 2015-08-13 09:54 - 2014-10-29 04:26 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2015-08-13 09:54 - 2014-10-29 04:25 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\bidispl.dll 2015-08-13 09:54 - 2014-10-29 04:21 - 01086464 _____ (Microsoft Corporation) C:\Windows\system32\onexui.dll 2015-08-13 09:54 - 2014-10-29 04:19 - 00155648 _____ (Microsoft Corporation) C:\Windows\system32\mydocs.dll 2015-08-13 09:54 - 2014-10-29 04:19 - 00128512 _____ (Microsoft Corporation) C:\Windows\splwow64.exe 2015-08-13 09:54 - 2014-10-29 04:19 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe 2015-08-13 09:54 - 2014-10-29 04:19 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\ustprov.dll 2015-08-13 09:54 - 2014-10-29 04:18 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\isoburn.exe 2015-08-13 09:54 - 2014-10-29 04:18 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\udhisapi.dll 2015-08-13 09:54 - 2014-10-29 04:18 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\TapiMigPlugin.dll 2015-08-13 09:54 - 2014-10-29 04:18 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\RegCtrl.dll 2015-08-13 09:54 - 2014-10-29 04:18 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\SyncHost.exe 2015-08-13 09:54 - 2014-10-29 04:17 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\cmstp.exe 2015-08-13 09:54 - 2014-10-29 04:17 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\DfsShlEx.dll 2015-08-13 09:54 - 2014-10-29 04:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\l2nacp.dll 2015-08-13 09:54 - 2014-10-29 04:17 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\fhtask.dll 2015-08-13 09:54 - 2014-10-29 04:17 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\ucmhc.dll 2015-08-13 09:54 - 2014-10-29 04:13 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\PNPXAssoc.dll 2015-08-13 09:54 - 2014-10-29 04:13 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\ConnectedAccountState.dll 2015-08-13 09:54 - 2014-10-29 04:13 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\SetNetworkLocation.dll 2015-08-13 09:54 - 2014-10-29 04:12 - 00154624 _____ (Microsoft Corporation) C:\Windows\regedit.exe 2015-08-13 09:54 - 2014-10-29 04:12 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\iscsiwmi.dll 2015-08-13 09:54 - 2014-10-29 04:11 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\McxDriv.dll 2015-08-13 09:54 - 2014-10-29 04:11 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\rasdiag.dll 2015-08-13 09:54 - 2014-10-29 04:11 - 00053248 _____ C:\Windows\system32\BWContextHandler.dll 2015-08-13 09:54 - 2014-10-29 04:10 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\pnpclean.dll 2015-08-13 09:54 - 2014-10-29 04:10 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\wshext.dll 2015-08-13 09:54 - 2014-10-29 04:10 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\frprov.dll 2015-08-13 09:54 - 2014-10-29 04:10 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountControlSettings.dll 2015-08-13 09:54 - 2014-10-29 04:09 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\dfrgui.exe 2015-08-13 09:54 - 2014-10-29 04:09 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\taskbarcpl.dll 2015-08-13 09:54 - 2014-10-29 04:09 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\remotesp.tsp 2015-08-13 09:54 - 2014-10-29 04:07 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\MaintenanceUI.dll 2015-08-13 09:54 - 2014-10-29 04:07 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\mimefilt.dll 2015-08-13 09:54 - 2014-10-29 04:06 - 00736768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-08-13 09:54 - 2014-10-29 04:06 - 00624640 _____ (Microsoft Corporation) C:\Windows\system32\colorui.dll 2015-08-13 09:54 - 2014-10-29 04:06 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\fhlisten.dll 2015-08-13 09:54 - 2014-10-29 04:06 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\DAConn.dll 2015-08-13 09:54 - 2014-10-29 04:05 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2015-08-13 09:54 - 2014-10-29 04:05 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\Dsui.dll 2015-08-13 09:54 - 2014-10-29 04:04 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\wiaacmgr.exe 2015-08-13 09:54 - 2014-10-29 04:04 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\driverquery.exe 2015-08-13 09:54 - 2014-10-29 04:04 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\SMSRouter.dll 2015-08-13 09:54 - 2014-10-29 04:03 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\tasklist.exe 2015-08-13 09:54 - 2014-10-29 04:03 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\sendmail.dll 2015-08-13 09:54 - 2014-10-29 04:01 - 00188928 _____ (Microsoft Corporation) C:\Windows\system32\irftp.exe 2015-08-13 09:54 - 2014-10-29 04:01 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOM.dll 2015-08-13 09:54 - 2014-10-29 04:01 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\HelpPaneProxy.dll 2015-08-13 09:54 - 2014-10-29 04:00 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\racpldlg.dll 2015-08-13 09:54 - 2014-10-29 04:00 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spfileq.dll 2015-08-13 09:54 - 2014-10-29 04:00 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2015-08-13 09:54 - 2014-10-29 04:00 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SortWindows6Compat.dll 2015-08-13 09:54 - 2014-10-29 04:00 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sfc_os.dll 2015-08-13 09:54 - 2014-10-29 04:00 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll 2015-08-13 09:54 - 2014-10-29 03:59 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\MbaeParserTask.exe 2015-08-13 09:54 - 2014-10-29 03:59 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciavi32.dll 2015-08-13 09:54 - 2014-10-29 03:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cnvfat.dll 2015-08-13 09:54 - 2014-10-29 03:58 - 00095744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsiwmiv2.dll 2015-08-13 09:54 - 2014-10-29 03:58 - 00085504 _____ (Radius Inc.) C:\Windows\SysWOW64\iccvid.dll 2015-08-13 09:54 - 2014-10-29 03:58 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\makecab.exe 2015-08-13 09:54 - 2014-10-29 03:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdmat.dll 2015-08-13 09:54 - 2014-10-29 03:58 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\xmlfilter.dll 2015-08-13 09:54 - 2014-10-29 03:58 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NapiNSP.dll 2015-08-13 09:54 - 2014-10-29 03:58 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offreg.dll 2015-08-13 09:54 - 2014-10-29 03:57 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\TpmInit.exe 2015-08-13 09:54 - 2014-10-29 03:57 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\recovery.dll 2015-08-13 09:54 - 2014-10-29 03:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regapi.dll 2015-08-13 09:54 - 2014-10-29 03:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cliconfg.dll 2015-08-13 09:54 - 2014-10-29 03:54 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scksp.dll 2015-08-13 09:54 - 2014-10-29 03:54 - 00114688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcshext.dll 2015-08-13 09:54 - 2014-10-29 03:54 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapistub.dll 2015-08-13 09:54 - 2014-10-29 03:54 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapi32.dll 2015-08-13 09:54 - 2014-10-29 03:54 - 00066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\avicap32.dll 2015-08-13 09:54 - 2014-10-29 03:53 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll 2015-08-13 09:54 - 2014-10-29 03:53 - 00113664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe 2015-08-13 09:54 - 2014-10-29 03:52 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\aitagent.exe 2015-08-13 09:54 - 2014-10-29 03:52 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\FXSROUTE.dll 2015-08-13 09:54 - 2014-10-29 03:52 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdhui.dll 2015-08-13 09:54 - 2014-10-29 03:51 - 00116224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usbceip.dll 2015-08-13 09:54 - 2014-10-29 03:51 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olecli32.dll 2015-08-13 09:54 - 2014-10-29 03:51 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasdatastore.dll 2015-08-13 09:54 - 2014-10-29 03:51 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dxof.dll 2015-08-13 09:54 - 2014-10-29 03:51 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netprovisionsp.dll 2015-08-13 09:54 - 2014-10-29 03:51 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssign32.dll 2015-08-13 09:54 - 2014-10-29 03:51 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmloader.dll 2015-08-13 09:54 - 2014-10-29 03:51 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmband.dll 2015-08-13 09:54 - 2014-10-29 03:50 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll 2015-08-13 09:54 - 2014-10-29 03:50 - 00109568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmsynth.dll 2015-08-13 09:54 - 2014-10-29 03:50 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2015-08-13 09:54 - 2014-10-29 03:47 - 00186368 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\Windows\SysWOW64\l3codecp.acm 2015-08-13 09:54 - 2014-10-29 03:47 - 00123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gcdef.dll 2015-08-13 09:54 - 2014-10-29 03:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bootcfg.exe 2015-08-13 09:54 - 2014-10-29 03:46 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\loghours.dll 2015-08-13 09:54 - 2014-10-29 03:46 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasads.dll 2015-08-13 09:54 - 2014-10-29 03:46 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vfwwdm32.dll 2015-08-13 09:54 - 2014-10-29 03:46 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dssec.dll 2015-08-13 09:54 - 2014-10-29 03:45 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iashlpr.dll 2015-08-13 09:54 - 2014-10-29 03:45 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QUTIL.DLL 2015-08-13 09:54 - 2014-10-29 03:45 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll 2015-08-13 09:54 - 2014-10-29 03:45 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usbui.dll 2015-08-13 09:54 - 2014-10-29 03:45 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbisurf.ax 2015-08-13 09:54 - 2014-10-29 03:45 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bidispl.dll 2015-08-13 09:54 - 2014-10-29 03:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll 2015-08-13 09:54 - 2014-10-29 03:44 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QCLIPROV.DLL 2015-08-13 09:54 - 2014-10-29 03:44 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3cfg.dll 2015-08-13 09:54 - 2014-10-29 03:42 - 00305664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe 2015-08-13 09:54 - 2014-10-29 03:42 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE 2015-08-13 09:54 - 2014-10-29 03:42 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Groupinghc.dll 2015-08-13 09:54 - 2014-10-29 03:42 - 00057856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Storprop.dll 2015-08-13 09:54 - 2014-10-29 03:41 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\onexui.dll 2015-08-13 09:54 - 2014-10-29 03:40 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxlib.dll 2015-08-13 09:54 - 2014-10-29 03:39 - 00147968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mydocs.dll 2015-08-13 09:54 - 2014-10-29 03:39 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\isoburn.exe 2015-08-13 09:54 - 2014-10-29 03:39 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\udhisapi.dll 2015-08-13 09:54 - 2014-10-29 03:39 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgbkend.dll 2015-08-13 09:54 - 2014-10-29 03:39 - 00046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TapiMigPlugin.dll 2015-08-13 09:54 - 2014-10-29 03:39 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ustprov.dll 2015-08-13 09:54 - 2014-10-29 03:39 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegCtrl.dll 2015-08-13 09:54 - 2014-10-29 03:38 - 00089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndfhcdiscovery.dll 2015-08-13 09:54 - 2014-10-29 03:38 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XPSSHHDR.dll 2015-08-13 09:54 - 2014-10-29 03:38 - 00057856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DfsShlEx.dll 2015-08-13 09:54 - 2014-10-29 03:38 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\l2nacp.dll 2015-08-13 09:54 - 2014-10-29 03:38 - 00054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3hc.dll 2015-08-13 09:54 - 2014-10-29 03:38 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msident.dll 2015-08-13 09:54 - 2014-10-29 03:38 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\playlistfolder.dll 2015-08-13 09:54 - 2014-10-29 03:35 - 00100352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xwreg.dll 2015-08-13 09:54 - 2014-10-29 03:35 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Query.dll 2015-08-13 09:54 - 2014-10-29 03:35 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ConnectedAccountState.dll 2015-08-13 09:54 - 2014-10-29 03:34 - 00201728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdminst.dll 2015-08-13 09:54 - 2014-10-29 03:34 - 00120832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EhStorAPI.dll 2015-08-13 09:54 - 2014-10-29 03:34 - 00054272 _____ (Twain Working Group) C:\Windows\twain_32.dll 2015-08-13 09:54 - 2014-10-29 03:34 - 00046080 _____ C:\Windows\SysWOW64\BWContextHandler.dll 2015-08-13 09:54 - 2014-10-29 03:33 - 00165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uireng.dll 2015-08-13 09:54 - 2014-10-29 03:33 - 00087552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remotesp.tsp 2015-08-13 09:54 - 2014-10-29 03:33 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshext.dll 2015-08-13 09:54 - 2014-10-29 03:33 - 00068608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsockhc.dll 2015-08-13 09:54 - 2014-10-29 03:33 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\frprov.dll 2015-08-13 09:54 - 2014-10-29 03:33 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdiag.dll 2015-08-13 09:54 - 2014-10-29 03:32 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2015-08-13 09:54 - 2014-10-29 03:30 - 00605696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\colorui.dll 2015-08-13 09:54 - 2014-10-29 03:30 - 00160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll 2015-08-13 09:54 - 2014-10-29 03:30 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoplay.dll 2015-08-13 09:54 - 2014-10-29 03:30 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiascanprofiles.dll 2015-08-13 09:54 - 2014-10-29 03:29 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\keymgr.dll 2015-08-13 09:54 - 2014-10-29 03:29 - 00120832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Dsui.dll 2015-08-13 09:54 - 2014-10-29 03:29 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiaacmgr.exe 2015-08-13 09:54 - 2014-10-29 03:29 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Utilman.exe 2015-08-13 09:54 - 2014-10-29 03:29 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\driverquery.exe 2015-08-13 09:54 - 2014-10-29 03:29 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\httpapi.dll 2015-08-13 09:54 - 2014-10-29 03:28 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll 2015-08-13 09:54 - 2014-10-29 03:28 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\vidcap.ax 2015-08-13 09:54 - 2014-10-29 03:27 - 00277504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EaseOfAccessDialog.exe 2015-08-13 09:54 - 2014-10-29 03:27 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\regsvc.dll 2015-08-13 09:54 - 2014-10-29 03:27 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSCOM.dll 2015-08-13 09:54 - 2014-10-29 03:27 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\net.exe 2015-08-13 09:54 - 2014-10-29 03:27 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\ftp.exe 2015-08-13 09:54 - 2014-10-29 03:26 - 00169472 _____ (Microsoft Corporation) C:\Windows\system32\net1.exe 2015-08-13 09:54 - 2014-10-29 03:26 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\racpldlg.dll 2015-08-13 09:54 - 2014-10-29 03:26 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\fveskybackup.dll 2015-08-13 09:54 - 2014-10-29 03:26 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\energyprov.dll 2015-08-13 09:54 - 2014-10-29 03:25 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\winbio.dll 2015-08-13 09:54 - 2014-10-29 03:25 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmlfilter.dll 2015-08-13 09:54 - 2014-10-29 03:25 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\networkitemfactory.dll 2015-08-13 09:54 - 2014-10-29 03:24 - 00133632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll 2015-08-13 09:54 - 2014-10-29 03:23 - 00097280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netid.dll 2015-08-13 09:54 - 2014-10-29 03:22 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\wlgpclnt.dll 2015-08-13 09:54 - 2014-10-29 03:22 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\mmcss.dll 2015-08-13 09:54 - 2014-10-29 03:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\luainstall.dll 2015-08-13 09:54 - 2014-10-29 03:21 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Printers.Extensions.dll 2015-08-13 09:54 - 2014-10-29 03:20 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\L2SecHC.dll 2015-08-13 09:54 - 2014-10-29 03:20 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvvmtransport.dll 2015-08-13 09:54 - 2014-10-29 03:20 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\WlanRadioManager.dll 2015-08-13 09:54 - 2014-10-29 03:19 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\dasHost.exe 2015-08-13 09:54 - 2014-10-29 03:19 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll 2015-08-13 09:54 - 2014-10-29 03:19 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\stclient.dll 2015-08-13 09:54 - 2014-10-29 03:19 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\pautoenr.dll 2015-08-13 09:54 - 2014-10-29 03:18 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systemcpl.dll 2015-08-13 09:54 - 2014-10-29 03:18 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\mbussdapi.dll 2015-08-13 09:54 - 2014-10-29 03:18 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\RoamingSecurity.dll 2015-08-13 09:54 - 2014-10-29 03:17 - 00114688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll 2015-08-13 09:54 - 2014-10-29 03:17 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\umpowmi.dll 2015-08-13 09:54 - 2014-10-29 03:16 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Pnrphc.dll 2015-08-13 09:54 - 2014-10-29 03:14 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll 2015-08-13 09:54 - 2014-10-29 03:13 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\fwcfg.dll 2015-08-13 09:54 - 2014-10-29 03:13 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\umb.dll 2015-08-13 09:54 - 2014-10-29 03:12 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceConnectApi.dll 2015-08-13 09:54 - 2014-10-29 03:11 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\DHCPQEC.DLL 2015-08-13 09:54 - 2014-10-29 03:11 - 00088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efsadu.dll 2015-08-13 09:54 - 2014-10-29 03:10 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\adhsvc.dll 2015-08-13 09:54 - 2014-10-29 03:05 - 00111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll 2015-08-13 09:54 - 2014-10-29 03:05 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll 2015-08-13 09:54 - 2014-10-29 03:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll 2015-08-13 09:54 - 2014-10-29 03:05 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ftp.exe 2015-08-13 09:54 - 2014-10-29 03:04 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netsh.exe 2015-08-13 09:54 - 2014-10-29 03:04 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\eqossnap.dll 2015-08-13 09:54 - 2014-10-29 03:04 - 00077312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nslookup.exe 2015-08-13 09:54 - 2014-10-29 03:04 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncobjapi.dll 2015-08-13 09:54 - 2014-10-29 03:04 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\net.exe 2015-08-13 09:54 - 2014-10-29 03:04 - 00043520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscapi.dll 2015-08-13 09:54 - 2014-10-29 03:04 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\format.com 2015-08-13 09:54 - 2014-10-29 03:03 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.exe 2015-08-13 09:54 - 2014-10-29 03:03 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wecapi.dll 2015-08-13 09:54 - 2014-10-29 03:03 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fmifs.dll 2015-08-13 09:54 - 2014-10-29 03:02 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountTokenProvider.dll 2015-08-13 09:54 - 2014-10-29 03:02 - 00087552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevDispItemProvider.dll 2015-08-13 09:54 - 2014-10-29 03:02 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wecutil.exe 2015-08-13 09:54 - 2014-10-29 03:01 - 00383488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlansec.dll 2015-08-13 09:54 - 2014-10-29 03:01 - 00096256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlgpclnt.dll 2015-08-13 09:54 - 2014-10-29 03:00 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Background.dll 2015-08-13 09:54 - 2014-10-29 03:00 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\threadpoolwinrt.dll 2015-08-13 09:54 - 2014-10-29 03:00 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddrawex.dll 2015-08-13 09:54 - 2014-10-29 02:59 - 00053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stclient.dll 2015-08-13 09:54 - 2014-10-29 02:58 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EAPQEC.DLL 2015-08-13 09:54 - 2014-10-29 02:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbussdapi.dll 2015-08-13 09:54 - 2014-10-29 02:57 - 00203264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\onex.dll 2015-08-13 09:54 - 2014-10-29 02:57 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll 2015-08-13 09:54 - 2014-10-29 02:56 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fwcfg.dll 2015-08-13 09:54 - 2014-10-29 02:55 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll 2015-08-13 09:54 - 2014-10-29 02:54 - 00097280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnApi.dll 2015-08-13 09:54 - 2014-10-29 02:54 - 00077312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DHCPQEC.DLL 2015-08-13 09:54 - 2014-10-29 02:54 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceConnectApi.dll 2015-08-13 09:54 - 2014-10-29 02:51 - 00095744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrscmd.dll 2015-08-13 09:54 - 2014-10-29 02:50 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Renewal.dll 2015-08-13 09:54 - 2014-10-29 02:46 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidfdp.dll 2015-08-13 09:54 - 2014-10-29 02:46 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsSpellCheckingHost.exe 2015-08-13 09:54 - 2014-10-29 02:43 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WfHC.dll 2015-08-13 09:54 - 2014-10-15 10:32 - 00061248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fsdepends.sys 2015-08-13 09:53 - 2014-10-29 06:11 - 00038792 _____ (Microsoft Corporation) C:\Windows\system32\svchost.exe 2015-08-13 09:53 - 2014-10-29 06:09 - 00044912 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll 2015-08-13 09:53 - 2014-10-29 06:09 - 00028480 _____ (Microsoft Corporation) C:\Windows\system32\SysResetErr.exe 2015-08-13 09:53 - 2014-10-29 06:04 - 00131648 _____ (Microsoft Corporation) C:\Windows\system32\easinvoker.exe 2015-08-13 09:53 - 2014-10-29 06:04 - 00080056 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll 2015-08-13 09:53 - 2014-10-29 06:04 - 00073872 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll 2015-08-13 09:53 - 2014-10-29 06:04 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\wlrmdr.exe 2015-08-13 09:53 - 2014-10-29 06:00 - 00139984 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe 2015-08-13 09:53 - 2014-10-29 05:59 - 00063528 _____ (Microsoft Corporation) C:\Windows\system32\wwapi.dll 2015-08-13 09:53 - 2014-10-29 05:57 - 00035664 _____ (Microsoft Corporation) C:\Windows\system32\avrt.dll 2015-08-13 09:53 - 2014-10-29 05:57 - 00031968 _____ (Microsoft Corporation) C:\Windows\system32\PasswordOnWakeSettingFlyout.exe 2015-08-13 09:53 - 2014-10-29 05:57 - 00029960 _____ (Microsoft Corporation) C:\Windows\system32\version.dll 2015-08-13 09:53 - 2014-10-29 05:57 - 00027872 _____ (Microsoft Corporation) C:\Windows\system32\vmbuspipe.dll 2015-08-13 09:53 - 2014-10-29 05:56 - 00097048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbus.sys 2015-08-13 09:53 - 2014-10-29 05:56 - 00061208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhv.sys 2015-08-13 09:53 - 2014-10-29 05:56 - 00049944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmstorfl.sys 2015-08-13 09:53 - 2014-10-29 05:55 - 00043888 _____ (Microsoft Corporation) C:\Windows\system32\utildll.dll 2015-08-13 09:53 - 2014-10-29 05:55 - 00033576 _____ (Microsoft Corporation) C:\Windows\system32\RuntimeBroker.exe 2015-08-13 09:53 - 2014-10-29 05:53 - 00095048 _____ (Microsoft Corporation) C:\Windows\system32\bcd.dll 2015-08-13 09:53 - 2014-10-29 05:52 - 00041880 _____ (Microsoft Corporation) C:\Windows\system32\msgsm32.acm 2015-08-13 09:53 - 2014-10-29 05:52 - 00035664 _____ (Microsoft Corporation) C:\Windows\system32\imaadp32.acm 2015-08-13 09:53 - 2014-10-29 05:52 - 00029408 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe 2015-08-13 09:53 - 2014-10-29 05:51 - 00047024 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2015-08-13 09:53 - 2014-10-29 05:51 - 00033032 _____ (Microsoft Corporation) C:\Windows\system32\winnsi.dll 2015-08-13 09:53 - 2014-10-29 05:51 - 00031528 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2015-08-13 09:53 - 2014-10-29 05:51 - 00024800 _____ (Microsoft Corporation) C:\Windows\system32\nsi.dll 2015-08-13 09:53 - 2014-10-29 05:17 - 00033088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe 2015-08-13 09:53 - 2014-10-29 05:12 - 00051096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wwapi.dll 2015-08-13 09:53 - 2014-10-29 05:11 - 00150776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpps.dll 2015-08-13 09:53 - 2014-10-29 05:11 - 00031496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\avrt.dll 2015-08-13 09:53 - 2014-10-29 05:10 - 00038184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\utildll.dll 2015-08-13 09:53 - 2014-10-29 05:10 - 00029888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PasswordOnWakeSettingFlyout.exe 2015-08-13 09:53 - 2014-10-29 05:10 - 00026304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\version.dll 2015-08-13 09:53 - 2014-10-29 05:07 - 00039720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdmo.dll 2015-08-13 09:53 - 2014-10-29 05:07 - 00036136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msgsm32.acm 2015-08-13 09:53 - 2014-10-29 05:07 - 00029960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imaadp32.acm 2015-08-13 09:53 - 2014-10-29 05:07 - 00028896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msadp32.acm 2015-08-13 09:53 - 2014-10-29 05:07 - 00026816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe 2015-08-13 09:53 - 2014-10-29 05:05 - 00020120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nsi.dll 2015-08-13 09:53 - 2014-10-29 04:48 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2015-08-13 09:53 - 2014-10-29 04:46 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\sxssrv.dll 2015-08-13 09:53 - 2014-10-29 04:45 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys 2015-08-13 09:53 - 2014-10-29 04:45 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\drvcfg.exe 2015-08-13 09:53 - 2014-10-29 04:44 - 02022912 _____ (Microsoft Corporation) C:\Windows\system32\batmeter.dll 2015-08-13 09:53 - 2014-10-29 04:44 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2015-08-13 09:53 - 2014-10-29 04:44 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\spfileq.dll 2015-08-13 09:53 - 2014-10-29 04:44 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mciavi32.dll 2015-08-13 09:53 - 2014-10-29 04:44 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\bderepair.dll 2015-08-13 09:53 - 2014-10-29 04:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\cnvfat.dll 2015-08-13 09:53 - 2014-10-29 04:43 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\repair-bde.exe 2015-08-13 09:53 - 2014-10-29 04:43 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\offreg.dll 2015-08-13 09:53 - 2014-10-29 04:42 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll 2015-08-13 09:53 - 2014-10-29 04:42 - 00082432 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\Windows\system32\l3codeca.acm 2015-08-13 09:53 - 2014-10-29 04:42 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\unimdmat.dll 2015-08-13 09:53 - 2014-10-29 04:42 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\NapiNSP.dll 2015-08-13 09:53 - 2014-10-29 04:42 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\odbcbcp.dll 2015-08-13 09:53 - 2014-10-29 04:41 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll 2015-08-13 09:53 - 2014-10-29 04:40 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.ps.dll 2015-08-13 09:53 - 2014-10-29 04:37 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\avicap32.dll 2015-08-13 09:53 - 2014-10-29 04:37 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelineprxy.dll 2015-08-13 09:53 - 2014-10-29 04:36 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\msctfp.dll 2015-08-13 09:53 - 2014-10-29 04:36 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll 2015-08-13 09:53 - 2014-10-29 04:36 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll 2015-08-13 09:53 - 2014-10-29 04:36 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\PlaySndSrv.dll 2015-08-13 09:53 - 2014-10-29 04:36 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\AzSqlExt.dll 2015-08-13 09:53 - 2014-10-29 04:35 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\dot3dlg.dll 2015-08-13 09:53 - 2014-10-29 04:34 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\rasauto.dll 2015-08-13 09:53 - 2014-10-29 04:34 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\wiarpc.dll 2015-08-13 09:53 - 2014-10-29 04:33 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\msvfw32.dll 2015-08-13 09:53 - 2014-10-29 04:33 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\fhevents.dll 2015-08-13 09:53 - 2014-10-29 04:33 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\mssign32.dll 2015-08-13 09:53 - 2014-10-29 04:33 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\cttunesvr.exe 2015-08-13 09:53 - 2014-10-29 04:33 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\sxsstore.dll 2015-08-13 09:53 - 2014-10-29 04:33 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\dswave.dll 2015-08-13 09:53 - 2014-10-29 04:33 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\wshcon.dll 2015-08-13 09:53 - 2014-10-29 04:32 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\DeviceDisplayStatusManager.dll 2015-08-13 09:53 - 2014-10-29 04:31 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\MsCtfMonitor.dll 2015-08-13 09:53 - 2014-10-29 04:29 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\sdchange.exe 2015-08-13 09:53 - 2014-10-29 04:29 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\ddodiag.exe 2015-08-13 09:53 - 2014-10-29 04:29 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\TSTheme.exe 2015-08-13 09:53 - 2014-10-29 04:28 - 00177152 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\Windows\system32\l3codecp.acm 2015-08-13 09:53 - 2014-10-29 04:28 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll 2015-08-13 09:53 - 2014-10-29 04:27 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\SCardDlg.dll 2015-08-13 09:53 - 2014-10-29 04:27 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\vfwwdm32.dll 2015-08-13 09:53 - 2014-10-29 04:27 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\vdsvd.dll 2015-08-13 09:53 - 2014-10-29 04:27 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\dtsh.dll 2015-08-13 09:53 - 2014-10-29 04:27 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Dot3Conn.dll 2015-08-13 09:53 - 2014-10-29 04:26 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\usbui.dll 2015-08-13 09:53 - 2014-10-29 04:26 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\netcfg.exe 2015-08-13 09:53 - 2014-10-29 04:25 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\dot3cfg.dll 2015-08-13 09:53 - 2014-10-29 04:25 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\pcaui.dll 2015-08-13 09:53 - 2014-10-29 04:24 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\pwlauncher.exe 2015-08-13 09:53 - 2014-10-29 04:23 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\AtBroker.exe 2015-08-13 09:53 - 2014-10-29 04:22 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll 2015-08-13 09:53 - 2014-10-29 04:21 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\vmictimeprovider.dll 2015-08-13 09:53 - 2014-10-29 04:20 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe 2015-08-13 09:53 - 2014-10-29 04:19 - 00143360 _____ (Microsoft Corporation) C:\Windows\system32\joy.cpl 2015-08-13 09:53 - 2014-10-29 04:19 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\fhautoplay.dll 2015-08-13 09:53 - 2014-10-29 04:18 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\cfgbkend.dll 2015-08-13 09:53 - 2014-10-29 04:18 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\ThumbnailExtractionHost.exe 2015-08-13 09:53 - 2014-10-29 04:18 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\BthMtpContextHandler.dll 2015-08-13 09:53 - 2014-10-29 04:17 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\fhmanagew.exe 2015-08-13 09:53 - 2014-10-29 04:17 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\msident.dll 2015-08-13 09:53 - 2014-10-29 04:17 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\Wwanpref.dll 2015-08-13 09:53 - 2014-10-29 04:17 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\hcproviders.dll 2015-08-13 09:53 - 2014-10-29 04:17 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\tvratings.dll 2015-08-13 09:53 - 2014-10-29 04:17 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll 2015-08-13 09:53 - 2014-10-29 04:16 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\cabview.dll 2015-08-13 09:53 - 2014-10-29 04:16 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\gpprnext.dll 2015-08-13 09:53 - 2014-10-29 04:16 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\pwsso.dll 2015-08-13 09:53 - 2014-10-29 04:13 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\BdeUISrv.exe 2015-08-13 09:53 - 2014-10-29 04:12 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\shrpubw.exe 2015-08-13 09:53 - 2014-10-29 04:12 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\xwreg.dll 2015-08-13 09:53 - 2014-10-29 04:11 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll 2015-08-13 09:53 - 2014-10-29 04:11 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll 2015-08-13 09:53 - 2014-10-29 04:11 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\btpanui.dll 2015-08-13 09:53 - 2014-10-29 04:11 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\cryptext.dll 2015-08-13 09:53 - 2014-10-29 04:11 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\FdDevQuery.dll 2015-08-13 09:53 - 2014-10-29 04:10 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentHost.dll 2015-08-13 09:53 - 2014-10-29 04:09 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2015-08-13 09:53 - 2014-10-29 04:09 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\MbaeXmlParser.dll 2015-08-13 09:53 - 2014-10-29 04:09 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\RemoveDeviceContextHandler.dll 2015-08-13 09:53 - 2014-10-29 04:08 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\acppage.dll 2015-08-13 09:53 - 2014-10-29 04:08 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceDriverRetrievalClient.dll 2015-08-13 09:53 - 2014-10-29 04:07 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\EhStorPwdMgr.dll 2015-08-13 09:53 - 2014-10-29 04:06 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll 2015-08-13 09:53 - 2014-10-29 04:04 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\srrstr.dll 2015-08-13 09:53 - 2014-10-29 04:04 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\WSDScanProxy.dll 2015-08-13 09:53 - 2014-10-29 04:04 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcirt.dll 2015-08-13 09:53 - 2014-10-29 04:04 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll 2015-08-13 09:53 - 2014-10-29 04:03 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\fsquirt.exe 2015-08-13 09:53 - 2014-10-29 04:02 - 00333824 _____ (Microsoft Corporation) C:\Windows\system32\newdev.dll 2015-08-13 09:53 - 2014-10-29 04:02 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\signdrv.dll 2015-08-13 09:53 - 2014-10-29 04:02 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\RdpSa.exe 2015-08-13 09:53 - 2014-10-29 04:01 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\EhStorAuthn.exe 2015-08-13 09:53 - 2014-10-29 04:00 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\uicom.dll 2015-08-13 09:53 - 2014-10-29 04:00 - 00043520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll 2015-08-13 09:53 - 2014-10-29 04:00 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll 2015-08-13 09:53 - 2014-10-29 04:00 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SortServer2003Compat.dll 2015-08-13 09:53 - 2014-10-29 04:00 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msisip.dll 2015-08-13 09:53 - 2014-10-29 03:59 - 02013696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\batmeter.dll 2015-08-13 09:53 - 2014-10-29 03:59 - 00053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsnmp32.dll 2015-08-13 09:53 - 2014-10-29 03:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\WcnNetsh.dll 2015-08-13 09:53 - 2014-10-29 03:59 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\feclient.dll 2015-08-13 09:53 - 2014-10-29 03:59 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\htui.dll 2015-08-13 09:53 - 2014-10-29 03:59 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\rtffilt.dll 2015-08-13 09:53 - 2014-10-29 03:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fc.exe 2015-08-13 09:53 - 2014-10-29 03:58 - 00069120 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\Windows\SysWOW64\l3codeca.acm 2015-08-13 09:53 - 2014-10-29 03:58 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spbcd.dll 2015-08-13 09:53 - 2014-10-29 03:58 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe 2015-08-13 09:53 - 2014-10-29 03:58 - 00043520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drttransport.dll 2015-08-13 09:53 - 2014-10-29 03:58 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmmon32.exe 2015-08-13 09:53 - 2014-10-29 03:58 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mode.com 2015-08-13 09:53 - 2014-10-29 03:57 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tlscsp.dll 2015-08-13 09:53 - 2014-10-29 03:57 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hidphone.tsp 2015-08-13 09:53 - 2014-10-29 03:56 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2015-08-13 09:53 - 2014-10-29 03:56 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll 2015-08-13 09:53 - 2014-10-29 03:55 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\pcwutl.dll 2015-08-13 09:53 - 2014-10-29 03:54 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\FXSUTILITY.dll 2015-08-13 09:53 - 2014-10-29 03:54 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpsapi.dll 2015-08-13 09:53 - 2014-10-29 03:54 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsidsc.dll 2015-08-13 09:53 - 2014-10-29 03:53 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlaySndSrv.dll 2015-08-13 09:53 - 2014-10-29 03:53 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\traffic.dll 2015-08-13 09:53 - 2014-10-29 03:53 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzSqlExt.dll 2015-08-13 09:53 - 2014-10-29 03:52 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3dlg.dll 2015-08-13 09:53 - 2014-10-29 03:52 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmutil.dll 2015-08-13 09:53 - 2014-10-29 03:52 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToStatusProvider.dll 2015-08-13 09:53 - 2014-10-29 03:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3api.dll 2015-08-13 09:53 - 2014-10-29 03:51 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\takeown.exe 2015-08-13 09:53 - 2014-10-29 03:51 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msports.dll 2015-08-13 09:53 - 2014-10-29 03:51 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\AuthExt.dll 2015-08-13 09:53 - 2014-10-29 03:51 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\where.exe 2015-08-13 09:53 - 2014-10-29 03:51 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olesvr32.dll 2015-08-13 09:53 - 2014-10-29 03:50 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cttunesvr.exe 2015-08-13 09:53 - 2014-10-29 03:50 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxsstore.dll 2015-08-13 09:53 - 2014-10-29 03:49 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciqtz32.dll 2015-08-13 09:53 - 2014-10-29 03:49 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceDisplayStatusManager.dll 2015-08-13 09:53 - 2014-10-29 03:48 - 00466944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\main.cpl 2015-08-13 09:53 - 2014-10-29 03:48 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\NcaSvc.dll 2015-08-13 09:53 - 2014-10-29 03:48 - 00147456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsicli.exe 2015-08-13 09:53 - 2014-10-29 03:48 - 00057856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\whoami.exe 2015-08-13 09:53 - 2014-10-29 03:48 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmdl32.exe 2015-08-13 09:53 - 2014-10-29 03:48 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdchange.exe 2015-08-13 09:53 - 2014-10-29 03:48 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\forfiles.exe 2015-08-13 09:53 - 2014-10-29 03:48 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sfc.exe 2015-08-13 09:53 - 2014-10-29 03:48 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eventcreate.exe 2015-08-13 09:53 - 2014-10-29 03:47 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\console.dll 2015-08-13 09:53 - 2014-10-29 03:47 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\openfiles.exe 2015-08-13 09:53 - 2014-10-29 03:47 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSTheme.exe 2015-08-13 09:53 - 2014-10-29 03:46 - 00088064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3msm.dll 2015-08-13 09:53 - 2014-10-29 03:46 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SCardDlg.dll 2015-08-13 09:53 - 2014-10-29 03:46 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dtsh.dll 2015-08-13 09:53 - 2014-10-29 03:45 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pcaui.dll 2015-08-13 09:53 - 2014-10-29 03:45 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cipher.exe 2015-08-13 09:53 - 2014-10-29 03:45 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmiprop.dll 2015-08-13 09:53 - 2014-10-29 03:43 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll 2015-08-13 09:53 - 2014-10-29 03:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll 2015-08-13 09:53 - 2014-10-29 03:43 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll 2015-08-13 09:53 - 2014-10-29 03:43 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll 2015-08-13 09:53 - 2014-10-29 03:42 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll 2015-08-13 09:53 - 2014-10-29 03:40 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe 2015-08-13 09:53 - 2014-10-29 03:40 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhsetup.dll 2015-08-13 09:53 - 2014-10-29 03:40 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\docprop.dll 2015-08-13 09:53 - 2014-10-29 03:39 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncHost.exe 2015-08-13 09:53 - 2014-10-29 03:39 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ThumbnailExtractionHost.exe 2015-08-13 09:53 - 2014-10-29 03:38 - 00232448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hdwwiz.cpl 2015-08-13 09:53 - 2014-10-29 03:38 - 00212480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cleanmgr.exe 2015-08-13 09:53 - 2014-10-29 03:38 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\efsadu.dll 2015-08-13 09:53 - 2014-10-29 03:38 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucmhc.dll 2015-08-13 09:53 - 2014-10-29 03:38 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hcproviders.dll 2015-08-13 09:53 - 2014-10-29 03:38 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tvratings.dll 2015-08-13 09:53 - 2014-10-29 03:38 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndfetw.dll 2015-08-13 09:53 - 2014-10-29 03:38 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll 2015-08-13 09:53 - 2014-10-29 03:37 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cabview.dll 2015-08-13 09:53 - 2014-10-29 03:37 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpprnext.dll 2015-08-13 09:53 - 2014-10-29 03:35 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfmon.exe 2015-08-13 09:53 - 2014-10-29 03:34 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shrpubw.exe 2015-08-13 09:53 - 2014-10-29 03:34 - 00057856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptext.dll 2015-08-13 09:53 - 2014-10-29 03:34 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FdDevQuery.dll 2015-08-13 09:53 - 2014-10-29 03:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserAccountControlSettings.dll 2015-08-13 09:53 - 2014-10-29 03:33 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\btpanui.dll 2015-08-13 09:53 - 2014-10-29 03:33 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpmonui.dll 2015-08-13 09:53 - 2014-10-29 03:32 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\acppage.dll 2015-08-13 09:53 - 2014-10-29 03:32 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RemoveDeviceContextHandler.dll 2015-08-13 09:53 - 2014-10-29 03:31 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EhStorPwdMgr.dll 2015-08-13 09:53 - 2014-10-29 03:31 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mimefilt.dll 2015-08-13 09:53 - 2014-10-29 03:29 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2015-08-13 09:53 - 2014-10-29 03:28 - 00258560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sethc.exe 2015-08-13 09:53 - 2014-10-29 03:28 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll 2015-08-13 09:53 - 2014-10-29 03:28 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sendmail.dll 2015-08-13 09:53 - 2014-10-29 03:28 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\rtutils.dll 2015-08-13 09:53 - 2014-10-29 03:28 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\hid.dll 2015-08-13 09:53 - 2014-10-29 03:28 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RdpSa.exe 2015-08-13 09:53 - 2014-10-29 03:28 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Background.TimeBroker.dll 2015-08-13 09:53 - 2014-10-29 03:27 - 00700928 _____ (Microsoft Corporation) C:\Windows\system32\elslad.dll 2015-08-13 09:53 - 2014-10-29 03:27 - 00416768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\irprops.cpl 2015-08-13 09:53 - 2014-10-29 03:27 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2015-08-13 09:53 - 2014-10-29 03:27 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\HelpPaneProxy.dll 2015-08-13 09:53 - 2014-10-29 03:27 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\signdrv.dll 2015-08-13 09:53 - 2014-10-29 03:27 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\format.com 2015-08-13 09:53 - 2014-10-29 03:27 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\more.com 2015-08-13 09:53 - 2014-10-29 03:26 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\ntdsapi.dll 2015-08-13 09:53 - 2014-10-29 03:26 - 00120320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EhStorAuthn.exe 2015-08-13 09:53 - 2014-10-29 03:26 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.exe 2015-08-13 09:53 - 2014-10-29 03:26 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.Fontgroups.dll 2015-08-13 09:53 - 2014-10-29 03:26 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\fmifs.dll 2015-08-13 09:53 - 2014-10-29 03:26 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSEXT32.dll 2015-08-13 09:53 - 2014-10-29 03:26 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\MirrorDrvCompat.dll 2015-08-13 09:53 - 2014-10-29 03:26 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uicom.dll 2015-08-13 09:53 - 2014-10-29 03:26 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\winbrand.dll 2015-08-13 09:53 - 2014-10-29 03:26 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll 2015-08-13 09:53 - 2014-10-29 03:25 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\DevDispItemProvider.dll 2015-08-13 09:53 - 2014-10-29 03:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe 2015-08-13 09:53 - 2014-10-29 03:25 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtffilt.dll 2015-08-13 09:53 - 2014-10-29 03:24 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\UserLanguageProfileCallback.dll 2015-08-13 09:53 - 2014-10-29 03:22 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\fdProxy.dll 2015-08-13 09:53 - 2014-10-29 03:22 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\keyiso.dll 2015-08-13 09:53 - 2014-10-29 03:21 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Portable.dll 2015-08-13 09:53 - 2014-10-29 03:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\elsTrans.dll 2015-08-13 09:53 - 2014-10-29 03:20 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\msimtf.dll 2015-08-13 09:53 - 2014-10-29 03:20 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\dimsjob.dll 2015-08-13 09:53 - 2014-10-29 03:20 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthExt.dll 2015-08-13 09:53 - 2014-10-29 03:19 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\vsstrace.dll 2015-08-13 09:53 - 2014-10-29 03:19 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\rasmbmgr.dll 2015-08-13 09:53 - 2014-10-29 03:18 - 00184832 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe 2015-08-13 09:53 - 2014-10-29 03:17 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\onex.dll 2015-08-13 09:53 - 2014-10-29 03:16 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\xolehlp.dll 2015-08-13 09:53 - 2014-10-29 03:14 - 00344576 _____ (Microsoft Corporation) C:\Windows\system32\certCredProvider.dll 2015-08-13 09:53 - 2014-10-29 03:14 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\RDSPnf.exe 2015-08-13 09:53 - 2014-10-29 03:14 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\ProximityServicePal.dll 2015-08-13 09:53 - 2014-10-29 03:13 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\fdPnp.dll 2015-08-13 09:53 - 2014-10-29 03:05 - 00589824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elslad.dll 2015-08-13 09:53 - 2014-10-29 03:05 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\winrscmd.dll 2015-08-13 09:53 - 2014-10-29 03:05 - 00066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hbaapi.dll 2015-08-13 09:53 - 2014-10-29 03:05 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll 2015-08-13 09:53 - 2014-10-29 03:05 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\reg.exe 2015-08-13 09:53 - 2014-10-29 03:05 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\ndiscapCfg.dll 2015-08-13 09:53 - 2014-10-29 03:05 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mskeyprotect.dll 2015-08-13 09:53 - 2014-10-29 03:05 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtutils.dll 2015-08-13 09:53 - 2014-10-29 03:05 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfos.dll 2015-08-13 09:53 - 2014-10-29 03:05 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshhttp.dll 2015-08-13 09:53 - 2014-10-29 03:05 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vidcap.ax 2015-08-13 09:53 - 2014-10-29 03:04 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pnrpnsp.dll 2015-08-13 09:53 - 2014-10-29 03:04 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2015-08-13 09:53 - 2014-10-29 03:04 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setx.exe 2015-08-13 09:53 - 2014-10-29 03:03 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe 2015-08-13 09:53 - 2014-10-29 03:03 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.Fontgroups.dll 2015-08-13 09:53 - 2014-10-29 03:03 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpkinstall.exe 2015-08-13 09:53 - 2014-10-29 03:03 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winbrand.dll 2015-08-13 09:53 - 2014-10-29 03:02 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanext.exe 2015-08-13 09:53 - 2014-10-29 03:02 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winbio.dll 2015-08-13 09:53 - 2014-10-29 03:02 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll 2015-08-13 09:53 - 2014-10-29 03:01 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\keyiso.dll 2015-08-13 09:53 - 2014-10-29 03:01 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserLanguageProfileCallback.dll 2015-08-13 09:53 - 2014-10-29 03:00 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll 2015-08-13 09:53 - 2014-10-29 03:00 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\luainstall.dll 2015-08-13 09:53 - 2014-10-29 03:00 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfctrs.dll 2015-08-13 09:53 - 2014-10-29 03:00 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Printers.Extensions.dll 2015-08-13 09:53 - 2014-10-29 03:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Portable.dll 2015-08-13 09:53 - 2014-10-29 03:00 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elsTrans.dll 2015-08-13 09:53 - 2014-10-29 02:59 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\dot3gpclnt.dll 2015-08-13 09:53 - 2014-10-29 02:59 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappprxy.dll 2015-08-13 09:53 - 2014-10-29 02:59 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vsstrace.dll 2015-08-13 09:53 - 2014-10-29 02:59 - 00054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pautoenr.dll 2015-08-13 09:53 - 2014-10-29 02:58 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll 2015-08-13 09:53 - 2014-10-29 02:58 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\PSModuleDiscoveryProvider.dll 2015-08-13 09:53 - 2014-10-29 02:58 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimtf.dll 2015-08-13 09:53 - 2014-10-29 02:57 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll 2015-08-13 09:53 - 2014-10-29 02:57 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\dataclen.dll 2015-08-13 09:53 - 2014-10-29 02:56 - 00337920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certCredProvider.dll 2015-08-13 09:53 - 2014-10-29 02:56 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\PrintIsolationProxy.dll 2015-08-13 09:53 - 2014-10-29 02:56 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xolehlp.dll 2015-08-13 09:53 - 2014-10-29 02:55 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdPnp.dll 2015-08-13 09:53 - 2014-10-29 02:53 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\WSDPrintProxy.DLL 2015-08-13 09:53 - 2014-10-29 02:53 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll 2015-08-13 09:53 - 2014-10-29 02:51 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndiscapCfg.dll 2015-08-13 09:53 - 2014-10-29 02:46 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PSModuleDiscoveryProvider.dll 2015-08-13 09:53 - 2014-10-29 02:45 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dataclen.dll 2015-08-13 09:53 - 2014-10-29 02:43 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll 2015-08-13 09:53 - 2014-10-15 10:32 - 00921920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys 2015-08-13 09:53 - 2014-10-07 08:44 - 00069952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpci.sys 2015-08-13 09:52 - 2014-10-29 06:13 - 00021824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tbs.sys 2015-08-13 09:52 - 2014-10-29 06:09 - 00108864 _____ (Microsoft Corporation) C:\Windows\system32\bootsect.exe 2015-08-13 09:52 - 2014-10-29 06:09 - 00033600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wimmount.sys 2015-08-13 09:52 - 2014-10-29 06:09 - 00033088 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll 2015-08-13 09:52 - 2014-10-29 06:09 - 00033064 _____ (Microsoft Corporation) C:\Windows\system32\kernel.appcore.dll 2015-08-13 09:52 - 2014-10-29 06:04 - 00025352 _____ (Microsoft Corporation) C:\Windows\system32\dsrole.dll 2015-08-13 09:52 - 2014-10-29 05:59 - 00025920 _____ (Microsoft Corporation) C:\Windows\system32\streamci.dll 2015-08-13 09:52 - 2014-10-29 05:57 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys 2015-08-13 09:52 - 2014-10-29 05:52 - 00043888 _____ (Microsoft Corporation) C:\Windows\system32\msdmo.dll 2015-08-13 09:52 - 2014-10-29 05:52 - 00034088 _____ (Microsoft Corporation) C:\Windows\system32\msadp32.acm 2015-08-13 09:52 - 2014-10-29 05:52 - 00025312 _____ (Microsoft Corporation) C:\Windows\system32\msg711.acm 2015-08-13 09:52 - 2014-10-29 05:18 - 00029920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel.appcore.dll 2015-08-13 09:52 - 2014-10-29 05:07 - 00022720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msg711.acm 2015-08-13 09:52 - 2014-10-29 05:05 - 00030984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2015-08-13 09:52 - 2014-10-29 05:05 - 00026304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winnsi.dll 2015-08-13 09:52 - 2014-10-29 04:48 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\wwancfg.dll 2015-08-13 09:52 - 2014-10-29 04:48 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\lmhsvc.dll 2015-08-13 09:52 - 2014-10-29 04:46 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys 2015-08-13 09:52 - 2014-10-29 04:45 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys 2015-08-13 09:52 - 2014-10-29 04:45 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys 2015-08-13 09:52 - 2014-10-29 04:45 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\shgina.dll 2015-08-13 09:52 - 2014-10-29 04:45 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\wiatrace.dll 2015-08-13 09:52 - 2014-10-29 04:44 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\vds_ps.dll 2015-08-13 09:52 - 2014-10-29 04:44 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\feclient.dll 2015-08-13 09:52 - 2014-10-29 04:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\dmocx.dll 2015-08-13 09:52 - 2014-10-29 04:43 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\mode.com 2015-08-13 09:52 - 2014-10-29 04:43 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\comp.exe 2015-08-13 09:52 - 2014-10-29 04:43 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\fc.exe 2015-08-13 09:52 - 2014-10-29 04:43 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\tree.com 2015-08-13 09:52 - 2014-10-29 04:42 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\drttransport.dll 2015-08-13 09:52 - 2014-10-29 04:42 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\mcicda.dll 2015-08-13 09:52 - 2014-10-29 04:42 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll 2015-08-13 09:52 - 2014-10-29 04:42 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\convert.exe 2015-08-13 09:52 - 2014-10-29 04:41 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\regapi.dll 2015-08-13 09:52 - 2014-10-29 04:41 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\expand.exe 2015-08-13 09:52 - 2014-10-29 04:41 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\serwvdrv.dll 2015-08-13 09:52 - 2014-10-29 04:40 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2015-08-13 09:52 - 2014-10-29 04:39 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2015-08-13 09:52 - 2014-10-29 04:39 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\easconsent.dll 2015-08-13 09:52 - 2014-10-29 04:38 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\setupcln.dll 2015-08-13 09:52 - 2014-10-29 04:37 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\dhcpsapi.dll 2015-08-13 09:52 - 2014-10-29 04:37 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll 2015-08-13 09:52 - 2014-10-29 04:37 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\drtprov.dll 2015-08-13 09:52 - 2014-10-29 04:37 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\MsiCofire.dll 2015-08-13 09:52 - 2014-10-29 04:37 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\sxstrace.exe 2015-08-13 09:52 - 2014-10-29 04:37 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\LldpNotify.dll 2015-08-13 09:52 - 2014-10-29 04:37 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\msacm32.drv 2015-08-13 09:52 - 2014-10-29 04:36 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\Magnification.dll 2015-08-13 09:52 - 2014-10-29 04:36 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\bridgeunattend.exe 2015-08-13 09:52 - 2014-10-29 04:36 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\icsunattend.exe 2015-08-13 09:52 - 2014-10-29 04:35 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe 2015-08-13 09:52 - 2014-10-29 04:35 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\tcpmib.dll 2015-08-13 09:52 - 2014-10-29 04:35 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\wscisvif.dll 2015-08-13 09:52 - 2014-10-29 04:34 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\bcdboot.exe 2015-08-13 09:52 - 2014-10-29 04:34 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\ias.dll 2015-08-13 09:52 - 2014-10-29 04:33 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\bthpanapi.dll 2015-08-13 09:52 - 2014-10-29 04:33 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\vdsldr.exe 2015-08-13 09:52 - 2014-10-29 04:30 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2015-08-13 09:52 - 2014-10-29 04:30 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\RotMgr.dll 2015-08-13 09:52 - 2014-10-29 04:30 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\sfc.exe 2015-08-13 09:52 - 2014-10-29 04:29 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe 2015-08-13 09:52 - 2014-10-29 04:29 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\whoami.exe 2015-08-13 09:52 - 2014-10-29 04:28 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\iaspolcy.dll 2015-08-13 09:52 - 2014-10-29 04:27 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\dot3msm.dll 2015-08-13 09:52 - 2014-10-29 04:27 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\CompMgmtLauncher.exe 2015-08-13 09:52 - 2014-10-29 04:26 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\iscsiexe.dll 2015-08-13 09:52 - 2014-10-29 04:26 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\wmiprop.dll 2015-08-13 09:52 - 2014-10-29 04:26 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\chkwudrv.dll 2015-08-13 09:52 - 2014-10-29 04:25 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\RelPost.exe 2015-08-13 09:52 - 2014-10-29 04:24 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll 2015-08-13 09:52 - 2014-10-29 04:23 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2015-08-13 09:52 - 2014-10-29 04:23 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2015-08-13 09:52 - 2014-10-29 04:23 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2015-08-13 09:52 - 2014-10-29 04:23 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2015-08-13 09:52 - 2014-10-29 04:22 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE 2015-08-13 09:52 - 2014-10-29 04:22 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\wmdmps.dll 2015-08-13 09:52 - 2014-10-29 04:22 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2015-08-13 09:52 - 2014-10-29 04:20 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\modemui.dll 2015-08-13 09:52 - 2014-10-29 04:20 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\PrintIsolationHost.exe 2015-08-13 09:52 - 2014-10-29 04:20 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\docprop.dll 2015-08-13 09:52 - 2014-10-29 04:19 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\hhsetup.dll 2015-08-13 09:52 - 2014-10-29 04:19 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\rundll32.exe 2015-08-13 09:52 - 2014-10-29 04:19 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\deskmon.dll 2015-08-13 09:52 - 2014-10-29 04:19 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\wmdmlog.dll 2015-08-13 09:52 - 2014-10-29 04:18 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWGP.dll 2015-08-13 09:52 - 2014-10-29 04:18 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\napdsnap.dll 2015-08-13 09:52 - 2014-10-29 04:18 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\NcdProp.dll 2015-08-13 09:52 - 2014-10-29 04:18 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\DefaultPrinterProvider.dll 2015-08-13 09:52 - 2014-10-29 04:17 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\cmlua.dll 2015-08-13 09:52 - 2014-10-29 04:17 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\WcsPlugInService.dll 2015-08-13 09:52 - 2014-10-29 04:17 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\runonce.exe 2015-08-13 09:52 - 2014-10-29 04:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\witnesswmiv2provider.dll 2015-08-13 09:52 - 2014-10-29 04:17 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\wsepno.dll 2015-08-13 09:52 - 2014-10-29 04:17 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\SmsDeviceAccessRevocation.dll 2015-08-13 09:52 - 2014-10-29 04:17 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\shpafact.dll 2015-08-13 09:52 - 2014-10-29 04:16 - 00217600 _____ (Microsoft Corporation) C:\Windows\system32\cleanmgr.exe 2015-08-13 09:52 - 2014-10-29 04:16 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll 2015-08-13 09:52 - 2014-10-29 04:16 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe 2015-08-13 09:52 - 2014-10-29 04:16 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\fdWNet.dll 2015-08-13 09:52 - 2014-10-29 04:12 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\perfmon.exe 2015-08-13 09:52 - 2014-10-29 04:11 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\uireng.dll 2015-08-13 09:52 - 2014-10-29 04:11 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\pwrshplugin.dll 2015-08-13 09:52 - 2014-10-29 04:10 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\tcpmonui.dll 2015-08-13 09:52 - 2014-10-29 04:08 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\sti_ci.dll 2015-08-13 09:52 - 2014-10-29 04:05 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\keymgr.dll 2015-08-13 09:52 - 2014-10-29 04:04 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\srhelper.dll 2015-08-13 09:52 - 2014-10-29 04:04 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\SrTasks.exe 2015-08-13 09:52 - 2014-10-29 04:03 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\SetProxyCredential.dll 2015-08-13 09:52 - 2014-10-29 04:03 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\brdgcfg.dll 2015-08-13 09:52 - 2014-10-29 04:02 - 00423424 _____ (Microsoft Corporation) C:\Windows\system32\irprops.cpl 2015-08-13 09:52 - 2014-10-29 04:01 - 00380928 _____ (Microsoft Corporation) C:\Windows\system32\cryptuiwizard.dll 2015-08-13 09:52 - 2014-10-29 04:00 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shgina.dll 2015-08-13 09:52 - 2014-10-29 04:00 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmutil.dll 2015-08-13 09:52 - 2014-10-29 04:00 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\shimgvw.dll 2015-08-13 09:52 - 2014-10-29 03:59 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmocx.dll 2015-08-13 09:52 - 2014-10-29 03:59 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\dfp.exe 2015-08-13 09:52 - 2014-10-29 03:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hidserv.dll 2015-08-13 09:52 - 2014-10-29 03:59 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efsutil.dll 2015-08-13 09:52 - 2014-10-29 03:59 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmpbk32.dll 2015-08-13 09:52 - 2014-10-29 03:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comp.exe 2015-08-13 09:52 - 2014-10-29 03:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\replace.exe 2015-08-13 09:52 - 2014-10-29 03:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\doskey.exe 2015-08-13 09:52 - 2014-10-29 03:59 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\find.exe 2015-08-13 09:52 - 2014-10-29 03:58 - 00857088 _____ (Microsoft Corporation) C:\Windows\system32\FXSST.dll 2015-08-13 09:52 - 2014-10-29 03:58 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kmddsp.tsp 2015-08-13 09:52 - 2014-10-29 03:58 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcbcp.dll 2015-08-13 09:52 - 2014-10-29 03:58 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcicda.dll 2015-08-13 09:52 - 2014-10-29 03:58 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasmxs.dll 2015-08-13 09:52 - 2014-10-29 03:58 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvidc32.dll 2015-08-13 09:52 - 2014-10-29 03:58 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\WPDShextAutoplay.exe 2015-08-13 09:52 - 2014-10-29 03:58 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ureg.dll 2015-08-13 09:52 - 2014-10-29 03:58 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbnmpntw.dll 2015-08-13 09:52 - 2014-10-29 03:58 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chkntfs.exe 2015-08-13 09:52 - 2014-10-29 03:58 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\convert.exe 2015-08-13 09:52 - 2014-10-29 03:58 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tree.com 2015-08-13 09:52 - 2014-10-29 03:57 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\expand.exe 2015-08-13 09:52 - 2014-10-29 03:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2015-08-13 09:52 - 2014-10-29 03:57 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiougc.exe 2015-08-13 09:52 - 2014-10-29 03:57 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\serwvdrv.dll 2015-08-13 09:52 - 2014-10-29 03:56 - 00107008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.ps.dll 2015-08-13 09:52 - 2014-10-29 03:56 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\linkinfo.dll 2015-08-13 09:52 - 2014-10-29 03:56 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icmui.dll 2015-08-13 09:52 - 2014-10-29 03:55 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupcln.dll 2015-08-13 09:52 - 2014-10-29 03:55 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pid.dll 2015-08-13 09:52 - 2014-10-29 03:54 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfp.dll 2015-08-13 09:52 - 2014-10-29 03:54 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drtprov.dll 2015-08-13 09:52 - 2014-10-29 03:54 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msacm32.drv 2015-08-13 09:52 - 2014-10-29 03:53 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Magnification.dll 2015-08-13 09:52 - 2014-10-29 03:53 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcnsh.dll 2015-08-13 09:52 - 2014-10-29 03:53 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsium.dll 2015-08-13 09:52 - 2014-10-29 03:52 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxproxy.dll 2015-08-13 09:52 - 2014-10-29 03:52 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpmib.dll 2015-08-13 09:52 - 2014-10-29 03:52 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ias.dll 2015-08-13 09:52 - 2014-10-29 03:52 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscisvif.dll 2015-08-13 09:52 - 2014-10-29 03:52 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compact.exe 2015-08-13 09:52 - 2014-10-29 03:51 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasphone.exe 2015-08-13 09:52 - 2014-10-29 03:51 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdrleakdiag.exe 2015-08-13 09:52 - 2014-10-29 03:51 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dialer.exe 2015-08-13 09:52 - 2014-10-29 03:51 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timeout.exe 2015-08-13 09:52 - 2014-10-29 03:51 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clip.exe 2015-08-13 09:52 - 2014-10-29 03:51 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dswave.dll 2015-08-13 09:52 - 2014-10-29 03:51 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshcon.dll 2015-08-13 09:52 - 2014-10-29 03:51 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hnetmon.dll 2015-08-13 09:52 - 2014-10-29 03:49 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\sysdm.cpl 2015-08-13 09:52 - 2014-10-29 03:49 - 00195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PkgMgr.exe 2015-08-13 09:52 - 2014-10-29 03:49 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutilext.dll 2015-08-13 09:52 - 2014-10-29 03:49 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2015-08-13 09:52 - 2014-10-29 03:48 - 01497600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskcopy.dll 2015-08-13 09:52 - 2014-10-29 03:48 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\waitfor.exe 2015-08-13 09:52 - 2014-10-29 03:48 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\choice.exe 2015-08-13 09:52 - 2014-10-29 03:48 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsCtfMonitor.dll 2015-08-13 09:52 - 2014-10-29 03:47 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iaspolcy.dll 2015-08-13 09:52 - 2014-10-29 03:47 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddodiag.exe 2015-08-13 09:52 - 2014-10-29 03:46 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmci.dll 2015-08-13 09:52 - 2014-10-29 03:44 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmcfg32.dll 2015-08-13 09:52 - 2014-10-29 03:43 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll 2015-08-13 09:52 - 2014-10-29 03:43 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AtBroker.exe 2015-08-13 09:52 - 2014-10-29 03:42 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\radarrs.dll 2015-08-13 09:52 - 2014-10-29 03:40 - 00136704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\joy.cpl 2015-08-13 09:52 - 2014-10-29 03:40 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdmlog.dll 2015-08-13 09:52 - 2014-10-29 03:40 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shutdown.exe 2015-08-13 09:52 - 2014-10-29 03:40 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\proquota.exe 2015-08-13 09:52 - 2014-10-29 03:39 - 00299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthFWGP.dll 2015-08-13 09:52 - 2014-10-29 03:39 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\napdsnap.dll 2015-08-13 09:52 - 2014-10-29 03:39 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deskmon.dll 2015-08-13 09:52 - 2014-10-29 03:39 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NcdProp.dll 2015-08-13 09:52 - 2014-10-29 03:39 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DefaultPrinterProvider.dll 2015-08-13 09:52 - 2014-10-29 03:38 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmlua.dll 2015-08-13 09:52 - 2014-10-29 03:38 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\runonce.exe 2015-08-13 09:52 - 2014-10-29 03:38 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcsPlugInService.dll 2015-08-13 09:52 - 2014-10-29 03:38 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shpafact.dll 2015-08-13 09:52 - 2014-10-29 03:37 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe 2015-08-13 09:52 - 2014-10-29 03:36 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWNet.dll 2015-08-13 09:52 - 2014-10-29 03:34 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pwrshplugin.dll 2015-08-13 09:52 - 2014-10-29 03:32 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\unregmp2.exe 2015-08-13 09:52 - 2014-10-29 03:30 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MuiUnattend.exe 2015-08-13 09:52 - 2014-10-29 03:28 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll 2015-08-13 09:52 - 2014-10-29 03:28 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\mspatchc.dll 2015-08-13 09:52 - 2014-10-29 03:28 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\hbaapi.dll 2015-08-13 09:52 - 2014-10-29 03:28 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\mskeyprotect.dll 2015-08-13 09:52 - 2014-10-29 03:28 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\scext.dll 2015-08-13 09:52 - 2014-10-29 03:28 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Websocket.dll 2015-08-13 09:52 - 2014-10-29 03:28 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll 2015-08-13 09:52 - 2014-10-29 03:28 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\bitsperf.dll 2015-08-13 09:52 - 2014-10-29 03:27 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\netsh.exe 2015-08-13 09:52 - 2014-10-29 03:27 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll 2015-08-13 09:52 - 2014-10-29 03:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\findstr.exe 2015-08-13 09:52 - 2014-10-29 03:26 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll 2015-08-13 09:52 - 2014-10-29 03:26 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2015-08-13 09:52 - 2014-10-29 03:26 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\pnrpnsp.dll 2015-08-13 09:52 - 2014-10-29 03:26 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe 2015-08-13 09:52 - 2014-10-29 03:26 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\wlidnsp.dll 2015-08-13 09:52 - 2014-10-29 03:26 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\srumapi.dll 2015-08-13 09:52 - 2014-10-29 03:26 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\NetEvtFwdr.exe 2015-08-13 09:52 - 2014-10-29 03:26 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\XInput1_4.dll 2015-08-13 09:52 - 2014-10-29 03:26 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\eapprovp.dll 2015-08-13 09:52 - 2014-10-29 03:26 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\chkdsk.exe 2015-08-13 09:52 - 2014-10-29 03:26 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimgvw.dll 2015-08-13 09:52 - 2014-10-29 03:25 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll 2015-08-13 09:52 - 2014-10-29 03:25 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WPDShextAutoplay.exe 2015-08-13 09:52 - 2014-10-29 03:25 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\wfapigp.dll 2015-08-13 09:52 - 2014-10-29 03:24 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\wlanext.exe 2015-08-13 09:52 - 2014-10-29 03:24 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll 2015-08-13 09:52 - 2014-10-29 03:23 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Enumeration.ps.dll 2015-08-13 09:52 - 2014-10-29 03:22 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\msauserext.dll 2015-08-13 09:52 - 2014-10-29 03:21 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\cngcredui.dll 2015-08-13 09:52 - 2014-10-29 03:21 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\bcdsrv.dll 2015-08-13 09:52 - 2014-10-29 03:21 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll 2015-08-13 09:52 - 2014-10-29 03:21 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\cfmifs.dll 2015-08-13 09:52 - 2014-10-29 03:21 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Display.dll 2015-08-13 09:52 - 2014-10-29 03:21 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Profile.SystemManufacturers.dll 2015-08-13 09:52 - 2014-10-29 03:21 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\delegatorprovider.dll 2015-08-13 09:52 - 2014-10-29 03:21 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi_passthru.dll 2015-08-13 09:52 - 2014-10-29 03:21 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.RemoteDesktop.dll 2015-08-13 09:52 - 2014-10-29 03:20 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll 2015-08-13 09:52 - 2014-10-29 03:19 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\profext.dll 2015-08-13 09:52 - 2014-10-29 03:19 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\sxshared.dll 2015-08-13 09:52 - 2014-10-29 03:18 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\bthserv.dll 2015-08-13 09:52 - 2014-10-29 03:18 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\wsdchngr.dll 2015-08-13 09:52 - 2014-10-29 03:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\wfdprov.dll 2015-08-13 09:52 - 2014-10-29 03:16 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll 2015-08-13 09:52 - 2014-10-29 03:15 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\FDResPub.dll 2015-08-13 09:52 - 2014-10-29 03:12 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\msdtc.exe 2015-08-13 09:52 - 2014-10-29 03:06 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2015-08-13 09:52 - 2014-10-29 03:06 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmiclnt.dll 2015-08-13 09:52 - 2014-10-29 03:06 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\httpapi.dll 2015-08-13 09:52 - 2014-10-29 03:05 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspatchc.dll 2015-08-13 09:52 - 2014-10-29 03:05 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sc.exe 2015-08-13 09:52 - 2014-10-29 03:05 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfscli.dll 2015-08-13 09:52 - 2014-10-29 03:05 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspatcha.dll 2015-08-13 09:52 - 2014-10-29 03:05 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Websocket.dll 2015-08-13 09:52 - 2014-10-29 03:05 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfdisk.dll 2015-08-13 09:52 - 2014-10-29 03:05 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icacls.exe 2015-08-13 09:52 - 2014-10-29 03:05 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32topl.dll 2015-08-13 09:52 - 2014-10-29 03:05 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hid.dll 2015-08-13 09:52 - 2014-10-29 03:05 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbs.dll 2015-08-13 09:52 - 2014-10-29 03:05 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\more.com 2015-08-13 09:52 - 2014-10-29 03:05 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userinit.exe 2015-08-13 09:52 - 2014-10-29 03:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsparse.dll 2015-08-13 09:52 - 2014-10-29 03:05 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Background.TimeBroker.dll 2015-08-13 09:52 - 2014-10-29 03:05 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsperf.dll 2015-08-13 09:52 - 2014-10-29 03:05 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\attrib.exe 2015-08-13 09:52 - 2014-10-29 03:04 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esentprf.dll 2015-08-13 09:52 - 2014-10-29 03:04 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll 2015-08-13 09:52 - 2014-10-29 03:04 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SecEdit.exe 2015-08-13 09:52 - 2014-10-29 03:04 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srumapi.dll 2015-08-13 09:52 - 2014-10-29 03:04 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll 2015-08-13 09:52 - 2014-10-29 03:04 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findstr.exe 2015-08-13 09:52 - 2014-10-29 03:04 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cacls.exe 2015-08-13 09:52 - 2014-10-29 03:04 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapprovp.dll 2015-08-13 09:52 - 2014-10-29 03:03 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MirrorDrvCompat.dll 2015-08-13 09:52 - 2014-10-29 03:03 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypttpmeksvc.dll 2015-08-13 09:52 - 2014-10-29 03:03 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XInput1_4.dll 2015-08-13 09:52 - 2014-10-29 03:03 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chkdsk.exe 2015-08-13 09:52 - 2014-10-29 03:02 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfapigp.dll 2015-08-13 09:52 - 2014-10-29 03:01 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PCPKsp.dll 2015-08-13 09:52 - 2014-10-29 03:00 - 00101376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngcredui.dll 2015-08-13 09:52 - 2014-10-29 03:00 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll 2015-08-13 09:52 - 2014-10-29 03:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NETSTAT.EXE 2015-08-13 09:52 - 2014-10-29 03:00 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsjob.dll 2015-08-13 09:52 - 2014-10-29 03:00 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxlegih.dll 2015-08-13 09:52 - 2014-10-29 03:00 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfmifs.dll 2015-08-13 09:52 - 2014-10-29 03:00 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAgent.dll 2015-08-13 09:52 - 2014-10-29 03:00 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxdm.dll 2015-08-13 09:52 - 2014-10-29 03:00 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Display.dll 2015-08-13 09:52 - 2014-10-29 03:00 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Profile.SystemManufacturers.dll 2015-08-13 09:52 - 2014-10-29 03:00 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\encapi.dll 2015-08-13 09:52 - 2014-10-29 03:00 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\delegatorprovider.dll 2015-08-13 09:52 - 2014-10-29 03:00 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi_passthru.dll 2015-08-13 09:52 - 2014-10-29 02:59 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profext.dll 2015-08-13 09:52 - 2014-10-29 02:58 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsdchngr.dll 2015-08-13 09:52 - 2014-10-29 02:58 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfdprov.dll 2015-08-13 09:52 - 2014-10-29 02:57 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\NcdAutoSetup.dll 2015-08-13 09:52 - 2014-10-29 02:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetmib1.dll 2015-08-13 09:52 - 2014-10-29 02:57 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\datusage.dll 2015-08-13 09:52 - 2014-10-29 02:57 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\ByteCodeGenerator.exe 2015-08-13 09:52 - 2014-10-29 02:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrshost.exe 2015-08-13 09:52 - 2014-10-29 02:52 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrs.exe 2015-08-13 09:52 - 2014-10-29 02:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll 2015-08-13 09:52 - 2014-10-29 02:47 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3gpclnt.dll 2015-08-13 09:52 - 2014-10-29 02:46 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ByteCodeGenerator.exe 2015-08-13 09:52 - 2014-10-29 02:44 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RdpSaProxy.exe 2015-08-13 09:52 - 2014-10-29 02:42 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncPolicy.dll 2015-08-13 09:52 - 2014-10-29 02:35 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncPolicy.dll 2015-08-13 09:52 - 2014-10-07 08:54 - 00189248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UCX01000.SYS 2015-08-13 09:51 - 2014-10-29 04:49 - 00638976 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll 2015-08-13 09:51 - 2014-10-29 04:48 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\bi.dll 2015-08-13 09:51 - 2014-10-29 04:45 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\regidle.dll 2015-08-13 09:51 - 2014-10-29 04:44 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll 2015-08-13 09:51 - 2014-10-29 04:44 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\efslsaext.dll 2015-08-13 09:51 - 2014-10-29 04:44 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\lsmproxy.dll 2015-08-13 09:51 - 2014-10-29 04:44 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\htui.dll 2015-08-13 09:51 - 2014-10-29 04:44 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\efsutil.dll 2015-08-13 09:51 - 2014-10-29 04:44 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\winrnr.dll 2015-08-13 09:51 - 2014-10-29 04:44 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\cmpbk32.dll 2015-08-13 09:51 - 2014-10-29 04:44 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\dmutil.dll 2015-08-13 09:51 - 2014-10-29 04:43 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\kmddsp.tsp 2015-08-13 09:51 - 2014-10-29 04:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\rasmxs.dll 2015-08-13 09:51 - 2014-10-29 04:43 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\ureg.dll 2015-08-13 09:51 - 2014-10-29 04:43 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\replace.exe 2015-08-13 09:51 - 2014-10-29 04:43 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\msiltcfg.dll 2015-08-13 09:51 - 2014-10-29 04:43 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\doskey.exe 2015-08-13 09:51 - 2014-10-29 04:43 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\find.exe 2015-08-13 09:51 - 2014-10-29 04:43 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\print.exe 2015-08-13 09:51 - 2014-10-29 04:43 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\diskcomp.com 2015-08-13 09:51 - 2014-10-29 04:42 - 00349184 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe 2015-08-13 09:51 - 2014-10-29 04:42 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\cmmon32.exe 2015-08-13 09:51 - 2014-10-29 04:42 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\msvidc32.dll 2015-08-13 09:51 - 2014-10-29 04:42 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\wephostsvc.dll 2015-08-13 09:51 - 2014-10-29 04:42 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\chkntfs.exe 2015-08-13 09:51 - 2014-10-29 04:42 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\ifsutilx.dll 2015-08-13 09:51 - 2014-10-29 04:42 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\IconCodecService.dll 2015-08-13 09:51 - 2014-10-29 04:41 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\hidphone.tsp 2015-08-13 09:51 - 2014-10-29 04:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe 2015-08-13 09:51 - 2014-10-29 04:41 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\xmlprovi.dll 2015-08-13 09:51 - 2014-10-29 04:40 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\djoin.exe 2015-08-13 09:51 - 2014-10-29 04:40 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\linkinfo.dll 2015-08-13 09:51 - 2014-10-29 04:38 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\pid.dll 2015-08-13 09:51 - 2014-10-29 04:37 - 15789568 _____ (Microsoft Corporation) C:\Windows\system32\DDORes.dll 2015-08-13 09:51 - 2014-10-29 04:36 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\iscsidsc.dll 2015-08-13 09:51 - 2014-10-29 04:36 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\qmgrprxy.dll 2015-08-13 09:51 - 2014-10-29 04:36 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\traffic.dll 2015-08-13 09:51 - 2014-10-29 04:36 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iscsium.dll 2015-08-13 09:51 - 2014-10-29 04:34 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\cmutil.dll 2015-08-13 09:51 - 2014-10-29 04:34 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\rasphone.exe 2015-08-13 09:51 - 2014-10-29 04:34 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\uniplat.dll 2015-08-13 09:51 - 2014-10-29 04:34 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\regsvr32.exe 2015-08-13 09:51 - 2014-10-29 04:34 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\kernelceip.dll 2015-08-13 09:51 - 2014-10-29 04:33 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\msports.dll 2015-08-13 09:51 - 2014-10-29 04:33 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\MemoryDiagnostic.dll 2015-08-13 09:51 - 2014-10-29 04:33 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\hnetmon.dll 2015-08-13 09:51 - 2014-10-29 04:33 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\pstask.dll 2015-08-13 09:51 - 2014-10-29 04:32 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\CHxReadingStringIME.dll 2015-08-13 09:51 - 2014-10-29 04:31 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\fsutilext.dll 2015-08-13 09:51 - 2014-10-29 04:31 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\fixmapi.exe 2015-08-13 09:51 - 2014-10-29 04:30 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\cmdl32.exe 2015-08-13 09:51 - 2014-10-29 04:30 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\pnppolicy.dll 2015-08-13 09:51 - 2014-10-29 04:30 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\dfdts.dll 2015-08-13 09:51 - 2014-10-29 04:30 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\bdeui.dll 2015-08-13 09:51 - 2014-10-29 04:29 - 01502720 _____ (Microsoft Corporation) C:\Windows\system32\diskcopy.dll 2015-08-13 09:51 - 2014-10-29 04:29 - 00475648 _____ (Microsoft Corporation) C:\Windows\system32\main.cpl 2015-08-13 09:51 - 2014-10-29 04:29 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\console.dll 2015-08-13 09:51 - 2014-10-29 04:29 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\openfiles.exe 2015-08-13 09:51 - 2014-10-29 04:29 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\tapilua.dll 2015-08-13 09:51 - 2014-10-29 04:26 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cipher.exe 2015-08-13 09:51 - 2014-10-29 04:26 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\BthSQM.dll 2015-08-13 09:51 - 2014-10-29 04:25 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\napipsec.dll 2015-08-13 09:51 - 2014-10-29 04:24 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\xwizard.exe 2015-08-13 09:51 - 2014-10-29 04:24 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\cmcfg32.dll 2015-08-13 09:51 - 2014-10-29 04:22 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\Storprop.dll 2015-08-13 09:51 - 2014-10-29 04:20 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\deskadp.dll 2015-08-13 09:51 - 2014-10-29 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\WorkFolders.exe 2015-08-13 09:51 - 2014-10-29 04:19 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe 2015-08-13 09:51 - 2014-10-29 04:18 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe 2015-08-13 09:51 - 2014-10-29 04:17 - 00240640 _____ (Microsoft Corporation) C:\Windows\system32\hdwwiz.cpl 2015-08-13 09:51 - 2014-10-29 04:17 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\aecache.dll 2015-08-13 09:51 - 2014-10-29 04:17 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll 2015-08-13 09:51 - 2014-10-29 04:17 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\cmstplua.dll 2015-08-13 09:51 - 2014-10-29 04:12 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\bthci.dll 2015-08-13 09:51 - 2014-10-29 04:11 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\mdminst.dll 2015-08-13 09:51 - 2014-10-29 04:10 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\srwmi.dll 2015-08-13 09:51 - 2014-10-29 04:09 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\hotplug.dll 2015-08-13 09:51 - 2014-10-29 04:08 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\DFDWiz.exe 2015-08-13 09:51 - 2014-10-29 04:08 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\MuiUnattend.exe 2015-08-13 09:51 - 2014-10-29 04:02 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\FXST30.dll 2015-08-13 09:51 - 2014-10-29 04:02 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\WinFax.dll 2015-08-13 09:51 - 2014-10-29 04:00 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\idndl.dll 2015-08-13 09:51 - 2014-10-29 04:00 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscdll.dll 2015-08-13 09:51 - 2014-10-29 04:00 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davhlpr.dll 2015-08-13 09:51 - 2014-10-29 04:00 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shunimpl.dll 2015-08-13 09:51 - 2014-10-29 04:00 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbios.dll 2015-08-13 09:51 - 2014-10-29 03:59 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\PnPUnattend.exe 2015-08-13 09:51 - 2014-10-29 03:59 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vds_ps.dll 2015-08-13 09:51 - 2014-10-29 03:59 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regini.exe 2015-08-13 09:51 - 2014-10-29 03:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll 2015-08-13 09:51 - 2014-10-29 03:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\pnpui.dll 2015-08-13 09:51 - 2014-10-29 03:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrnr.dll 2015-08-13 09:51 - 2014-10-29 03:59 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sisbkup.dll 2015-08-13 09:51 - 2014-10-29 03:59 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mgmtapi.dll 2015-08-13 09:51 - 2014-10-29 03:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clb.dll 2015-08-13 09:51 - 2014-10-29 03:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\print.exe 2015-08-13 09:51 - 2014-10-29 03:58 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasser.dll 2015-08-13 09:51 - 2014-10-29 03:58 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcconf.exe 2015-08-13 09:51 - 2014-10-29 03:58 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbtugc.exe 2015-08-13 09:51 - 2014-10-29 03:58 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drprov.dll 2015-08-13 09:51 - 2014-10-29 03:58 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\midimap.dll 2015-08-13 09:51 - 2014-10-29 03:58 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiltcfg.dll 2015-08-13 09:51 - 2014-10-29 03:58 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasctrs.dll 2015-08-13 09:51 - 2014-10-29 03:58 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskcomp.com 2015-08-13 09:51 - 2014-10-29 03:58 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\label.exe 2015-08-13 09:51 - 2014-10-29 03:58 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrle32.dll 2015-08-13 09:51 - 2014-10-29 03:58 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskcopy.com 2015-08-13 09:51 - 2014-10-29 03:57 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\syskey.exe 2015-08-13 09:51 - 2014-10-29 03:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgentc.exe 2015-08-13 09:51 - 2014-10-29 03:57 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmlprovi.dll 2015-08-13 09:51 - 2014-10-29 03:57 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IconCodecService.dll 2015-08-13 09:51 - 2014-10-29 03:57 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shfolder.dll 2015-08-13 09:51 - 2014-10-29 03:56 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capisp.dll 2015-08-13 09:51 - 2014-10-29 03:55 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxstrace.exe 2015-08-13 09:51 - 2014-10-29 03:54 - 15784448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DDORes.dll 2015-08-13 09:51 - 2014-10-29 03:54 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\SpaceAgent.exe 2015-08-13 09:51 - 2014-10-29 03:54 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsauth.dll 2015-08-13 09:51 - 2014-10-29 03:54 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\extrac32.exe 2015-08-13 09:51 - 2014-10-29 03:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RpcPing.exe 2015-08-13 09:51 - 2014-10-29 03:53 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qmgrprxy.dll 2015-08-13 09:51 - 2014-10-29 03:53 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icsunattend.exe 2015-08-13 09:51 - 2014-10-29 03:52 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ocsetapi.dll 2015-08-13 09:51 - 2014-10-29 03:52 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eventvwr.exe 2015-08-13 09:51 - 2014-10-29 03:52 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regsvr32.exe 2015-08-13 09:51 - 2014-10-29 03:51 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\at.exe 2015-08-13 09:51 - 2014-10-29 03:51 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnpcont.exe 2015-08-13 09:51 - 2014-10-29 03:51 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winusb.dll 2015-08-13 09:51 - 2014-10-29 03:51 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorSvc.dll 2015-08-13 09:51 - 2014-10-29 03:51 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uniplat.dll 2015-08-13 09:51 - 2014-10-29 03:50 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Apphlpdm.dll 2015-08-13 09:51 - 2014-10-29 03:50 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdiagnhost.exe 2015-08-13 09:51 - 2014-10-29 03:49 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlaninst.dll 2015-08-13 09:51 - 2014-10-29 03:49 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2015-08-13 09:51 - 2014-10-29 03:49 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fixmapi.exe 2015-08-13 09:51 - 2014-10-29 03:49 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CHxReadingStringIME.dll 2015-08-13 09:51 - 2014-10-29 03:48 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshelper.dll 2015-08-13 09:51 - 2014-10-29 03:45 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\napipsec.dll 2015-08-13 09:51 - 2014-10-29 03:44 - 00104960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontview.exe 2015-08-13 09:51 - 2014-10-29 03:43 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xwizard.exe 2015-08-13 09:51 - 2014-10-29 03:40 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deskadp.dll 2015-08-13 09:51 - 2014-10-29 03:40 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DefaultDeviceManager.dll 2015-08-13 09:51 - 2014-10-29 03:39 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmprovhost.exe 2015-08-13 09:51 - 2014-10-29 03:39 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dvdupgrd.exe 2015-08-13 09:51 - 2014-10-29 03:39 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe |
14.08.2015, 14:35 | #13 |
| pua/DownProt.I - Virus/Malware FRST Log (9) Code:
ATTFilter 2015-08-13 09:51 - 2014-10-29 03:38 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmstplua.dll 2015-08-13 09:51 - 2014-10-29 03:37 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcconf.dll 2015-08-13 09:51 - 2014-10-29 03:32 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntlanui2.dll 2015-08-13 09:51 - 2014-10-29 03:31 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credwiz.exe 2015-08-13 09:51 - 2014-10-29 03:29 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\wmiclnt.dll 2015-08-13 09:51 - 2014-10-29 03:29 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\nsisvc.dll 2015-08-13 09:51 - 2014-10-29 03:29 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\FileAppxStreamingDataSource.dll 2015-08-13 09:51 - 2014-10-29 03:28 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\dfscli.dll 2015-08-13 09:51 - 2014-10-29 03:28 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\vpnikeapi.dll 2015-08-13 09:51 - 2014-10-29 03:28 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\mfcsubs.dll 2015-08-13 09:51 - 2014-10-29 03:28 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\w32topl.dll 2015-08-13 09:51 - 2014-10-29 03:28 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinFax.dll 2015-08-13 09:51 - 2014-10-29 03:28 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\attrib.exe 2015-08-13 09:51 - 2014-10-29 03:28 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\mskeyprotcli.dll 2015-08-13 09:51 - 2014-10-29 03:28 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wshqos.dll 2015-08-13 09:51 - 2014-10-29 03:28 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Management.Infrastructure.Native.Unmanaged.dll 2015-08-13 09:51 - 2014-10-29 03:27 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll 2015-08-13 09:51 - 2014-10-29 03:27 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\loadperf.dll 2015-08-13 09:51 - 2014-10-29 03:27 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll 2015-08-13 09:51 - 2014-10-29 03:27 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\perfos.dll 2015-08-13 09:51 - 2014-10-29 03:27 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\OnDemandConnRouteHelper.dll 2015-08-13 09:51 - 2014-10-29 03:27 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\EventAggregation.dll 2015-08-13 09:51 - 2014-10-29 03:27 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\dsparse.dll 2015-08-13 09:51 - 2014-10-29 03:27 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\sysntfy.dll 2015-08-13 09:51 - 2014-10-29 03:27 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\ARP.EXE 2015-08-13 09:51 - 2014-10-29 03:26 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\crypttpmeksvc.dll 2015-08-13 09:51 - 2014-10-29 03:26 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapAuthProxy.dll 2015-08-13 09:51 - 2014-10-29 03:26 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\userinitext.dll 2015-08-13 09:51 - 2014-10-29 03:25 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\winipsec.dll 2015-08-13 09:51 - 2014-10-29 03:25 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll 2015-08-13 09:51 - 2014-10-29 03:22 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\SubscriptionMgr.dll 2015-08-13 09:51 - 2014-10-29 03:21 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\BackgroundTransferHost.exe 2015-08-13 09:51 - 2014-10-29 03:21 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\WsmAgent.dll 2015-08-13 09:51 - 2014-10-29 03:21 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\wpnsruprov.dll 2015-08-13 09:51 - 2014-10-29 03:21 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\TimeSyncTask.dll 2015-08-13 09:51 - 2014-10-29 03:20 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\encapi.dll 2015-08-13 09:51 - 2014-10-29 03:20 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\ProximityCommonPal.dll 2015-08-13 09:51 - 2014-10-29 03:20 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentTask.dll 2015-08-13 09:51 - 2014-10-29 03:19 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\pnrpauto.dll 2015-08-13 09:51 - 2014-10-29 03:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\WofTasks.dll 2015-08-13 09:51 - 2014-10-29 03:15 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\winrshost.exe 2015-08-13 09:51 - 2014-10-29 03:11 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\umpoext.dll 2015-08-13 09:51 - 2014-10-29 03:09 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\ifmon.dll 2015-08-13 09:51 - 2014-10-29 03:06 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2015-08-13 09:51 - 2014-10-29 03:05 - 00043520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lodctr.exe 2015-08-13 09:51 - 2014-10-29 03:05 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfproc.dll 2015-08-13 09:51 - 2014-10-29 03:05 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\virtdisk.dll 2015-08-13 09:51 - 2014-10-29 03:05 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OnDemandConnRouteHelper.dll 2015-08-13 09:51 - 2014-10-29 03:05 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcsubs.dll 2015-08-13 09:51 - 2014-10-29 03:05 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\snmpapi.dll 2015-08-13 09:51 - 2014-10-29 03:05 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schedcli.dll 2015-08-13 09:51 - 2014-10-29 03:05 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mskeyprotcli.dll 2015-08-13 09:51 - 2014-10-29 03:05 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fltLib.dll 2015-08-13 09:51 - 2014-10-29 03:05 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshqos.dll 2015-08-13 09:51 - 2014-10-29 03:05 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Management.Infrastructure.Native.Unmanaged.dll 2015-08-13 09:51 - 2014-10-29 03:04 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll 2015-08-13 09:51 - 2014-10-29 03:04 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceassociation.dll 2015-08-13 09:51 - 2014-10-29 03:04 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pots.dll 2015-08-13 09:51 - 2014-10-29 03:04 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ARP.EXE 2015-08-13 09:51 - 2014-10-29 03:04 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2015-08-13 09:51 - 2014-10-29 03:04 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userinitext.dll 2015-08-13 09:51 - 2014-10-29 03:03 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidnsp.dll 2015-08-13 09:51 - 2014-10-29 03:00 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ipconfig.exe 2015-08-13 09:51 - 2014-10-29 03:00 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BackgroundTransferHost.exe 2015-08-13 09:51 - 2014-10-29 03:00 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.RemoteDesktop.dll 2015-08-13 09:51 - 2014-10-29 03:00 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TtlsExt.dll 2015-08-13 09:51 - 2014-10-29 03:00 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ProximityCommonPal.dll 2015-08-13 09:51 - 2014-10-29 02:58 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\fdPHost.dll 2015-08-13 09:51 - 2014-10-29 02:58 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxshared.dll 2015-08-13 09:51 - 2014-10-29 02:57 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FwRemoteSvr.dll 2015-08-13 09:51 - 2014-10-29 02:57 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\energytask.dll 2015-08-13 09:51 - 2014-10-29 02:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll 2015-08-13 09:51 - 2014-10-29 02:56 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nci.dll 2015-08-13 09:51 - 2014-10-29 02:55 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\RdpSaProxy.exe 2015-08-13 09:51 - 2014-10-29 02:54 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\RdpSaUacHelper.exe 2015-08-13 09:51 - 2014-10-29 02:53 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ifmon.dll 2015-08-13 09:51 - 2014-10-29 02:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnrollCtrl.exe 2015-08-13 09:51 - 2014-10-29 02:48 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slpts.dll 2015-08-13 09:51 - 2014-10-29 02:46 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll 2015-08-13 09:51 - 2014-10-29 02:44 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CheckNetIsolation.exe 2015-08-13 09:51 - 2014-10-29 02:44 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RdpSaUacHelper.exe 2015-08-13 09:51 - 2014-06-21 09:33 - 00212736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys 2015-08-13 09:50 - 2014-10-29 04:46 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys 2015-08-13 09:50 - 2014-10-29 04:44 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2015-08-13 09:50 - 2014-10-29 04:44 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\idndl.dll 2015-08-13 09:50 - 2014-10-29 04:44 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\hidserv.dll 2015-08-13 09:50 - 2014-10-29 04:44 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll 2015-08-13 09:50 - 2014-10-29 04:44 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\irmon.dll 2015-08-13 09:50 - 2014-10-29 04:44 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\sisbkup.dll 2015-08-13 09:50 - 2014-10-29 04:44 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\shunimpl.dll 2015-08-13 09:50 - 2014-10-29 04:43 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.exe 2015-08-13 09:50 - 2014-10-29 04:43 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\dbnmpntw.dll 2015-08-13 09:50 - 2014-10-29 04:43 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\rasctrs.dll 2015-08-13 09:50 - 2014-10-29 04:43 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\label.exe 2015-08-13 09:50 - 2014-10-29 04:43 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\subst.exe 2015-08-13 09:50 - 2014-10-29 04:43 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\pnpts.dll 2015-08-13 09:50 - 2014-10-29 04:42 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll 2015-08-13 09:50 - 2014-10-29 04:42 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\hwrcomp.exe 2015-08-13 09:50 - 2014-10-29 04:42 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\efssvc.dll 2015-08-13 09:50 - 2014-10-29 04:42 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\klist.exe 2015-08-13 09:50 - 2014-10-29 04:42 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe 2015-08-13 09:50 - 2014-10-29 04:42 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2015-08-13 09:50 - 2014-10-29 04:42 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\drprov.dll 2015-08-13 09:50 - 2014-10-29 04:42 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\netiougc.exe 2015-08-13 09:50 - 2014-10-29 04:42 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\WINSRPC.DLL 2015-08-13 09:50 - 2014-10-29 04:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\pcacli.dll 2015-08-13 09:50 - 2014-10-29 04:42 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\midimap.dll 2015-08-13 09:50 - 2014-10-29 04:42 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\umdmxfrm.dll 2015-08-13 09:50 - 2014-10-29 04:42 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\msrle32.dll 2015-08-13 09:50 - 2014-10-29 04:41 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\cliconfg.dll 2015-08-13 09:50 - 2014-10-29 04:41 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\dxpps.dll 2015-08-13 09:50 - 2014-10-29 04:41 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\dispex.dll 2015-08-13 09:50 - 2014-10-29 04:40 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\SyncInfrastructureps.dll 2015-08-13 09:50 - 2014-10-29 04:40 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\bitsprx5.dll 2015-08-13 09:50 - 2014-10-29 04:39 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\ksetup.exe 2015-08-13 09:50 - 2014-10-29 04:39 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\icmui.dll 2015-08-13 09:50 - 2014-10-29 04:38 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe 2015-08-13 09:50 - 2014-10-29 04:37 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\wdiasqmmodule.dll 2015-08-13 09:50 - 2014-10-29 04:37 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\RpcPing.exe 2015-08-13 09:50 - 2014-10-29 04:37 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\VscMgrPS.dll 2015-08-13 09:50 - 2014-10-29 04:36 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\verclsid.exe 2015-08-13 09:50 - 2014-10-29 04:35 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\pdhui.dll 2015-08-13 09:50 - 2014-10-29 04:34 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WSCollect.exe 2015-08-13 09:50 - 2014-10-29 04:34 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\at.exe 2015-08-13 09:50 - 2014-10-29 04:34 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll 2015-08-13 09:50 - 2014-10-29 04:34 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\pcaui.exe 2015-08-13 09:50 - 2014-10-29 04:33 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\NetVscCoinstall.dll 2015-08-13 09:50 - 2014-10-29 04:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\VmdCoinstall.dll 2015-08-13 09:50 - 2014-10-29 04:33 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\winusb.dll 2015-08-13 09:50 - 2014-10-29 04:33 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\sdiagnhost.exe 2015-08-13 09:50 - 2014-10-29 04:32 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2015-08-13 09:50 - 2014-10-29 04:28 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\bootcfg.exe 2015-08-13 09:50 - 2014-10-29 04:28 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\FXSMON.dll 2015-08-13 09:50 - 2014-10-29 04:28 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\eventcls.dll 2015-08-13 09:50 - 2014-10-29 04:24 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\pcwrun.exe 2015-08-13 09:50 - 2014-10-29 04:23 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\dispci.dll 2015-08-13 09:50 - 2014-10-29 04:20 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\iscsicpl.dll 2015-08-13 09:50 - 2014-10-29 04:20 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\shutdown.exe 2015-08-13 09:50 - 2014-10-29 04:19 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingWizard.exe 2015-08-13 09:50 - 2014-10-29 04:19 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\DefaultDeviceManager.dll 2015-08-13 09:50 - 2014-10-29 04:18 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\dvdupgrd.exe 2015-08-13 09:50 - 2014-10-29 04:18 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\grpconv.exe 2015-08-13 09:50 - 2014-10-29 04:17 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll 2015-08-13 09:50 - 2014-10-29 04:17 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\mobsync.exe 2015-08-13 09:50 - 2014-10-29 04:09 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\ntlanui2.dll 2015-08-13 09:50 - 2014-10-29 04:00 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dramp.dll 2015-08-13 09:50 - 2014-10-29 04:00 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SortWindows61.dll 2015-08-13 09:50 - 2014-10-29 04:00 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Nlsdl.dll 2015-08-13 09:50 - 2014-10-29 04:00 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciwave.dll 2015-08-13 09:50 - 2014-10-29 04:00 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscpxl32.dLL 2015-08-13 09:50 - 2014-10-29 04:00 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiatrace.dll 2015-08-13 09:50 - 2014-10-29 04:00 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll 2015-08-13 09:50 - 2014-10-29 04:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscat32.dll 2015-08-13 09:50 - 2014-10-29 04:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browseui.dll 2015-08-13 09:50 - 2014-10-29 04:00 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\softpub.dll 2015-08-13 09:50 - 2014-10-29 04:00 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssip32.dll 2015-08-13 09:50 - 2014-10-29 03:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vdmdbg.dll 2015-08-13 09:50 - 2014-10-29 03:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\subst.exe 2015-08-13 09:50 - 2014-10-29 03:58 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iyuv_32.dll 2015-08-13 09:50 - 2014-10-29 03:58 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osbaseln.dll 2015-08-13 09:50 - 2014-10-29 03:58 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\umdmxfrm.dll 2015-08-13 09:50 - 2014-10-29 03:58 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WINSRPC.DLL 2015-08-13 09:50 - 2014-10-29 03:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\recover.exe 2015-08-13 09:50 - 2014-10-29 03:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlmsprep.dll 2015-08-13 09:50 - 2014-10-29 03:57 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\FXSTIFF.dll 2015-08-13 09:50 - 2014-10-29 03:57 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pcacli.dll 2015-08-13 09:50 - 2014-10-29 03:57 - 00019456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\npmproxy.dll 2015-08-13 09:50 - 2014-10-29 03:57 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpupdate.exe 2015-08-13 09:50 - 2014-10-29 03:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcmsetup.exe 2015-08-13 09:50 - 2014-10-29 03:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\syssetup.dll 2015-08-13 09:50 - 2014-10-29 03:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\muifontsetup.dll 2015-08-13 09:50 - 2014-10-29 03:57 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\panmap.dll 2015-08-13 09:50 - 2014-10-29 03:57 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ifsutilx.dll 2015-08-13 09:50 - 2014-10-29 03:57 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcico.dll 2015-08-13 09:50 - 2014-10-29 03:56 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsprx5.dll 2015-08-13 09:50 - 2014-10-29 03:56 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\irclass.dll 2015-08-13 09:50 - 2014-10-29 03:56 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dispex.dll 2015-08-13 09:50 - 2014-10-29 03:56 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsprx6.dll 2015-08-13 09:50 - 2014-10-29 03:56 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsprx7.dll 2015-08-13 09:50 - 2014-10-29 03:56 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsprx3.dll 2015-08-13 09:50 - 2014-10-29 03:56 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsprx4.dll 2015-08-13 09:50 - 2014-10-29 03:53 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ktmutil.exe 2015-08-13 09:50 - 2014-10-29 03:53 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsprx2.dll 2015-08-13 09:50 - 2014-10-29 03:53 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\verclsid.exe 2015-08-13 09:50 - 2014-10-29 03:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spopk.dll 2015-08-13 09:50 - 2014-10-29 03:52 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmdext.dll 2015-08-13 09:50 - 2014-10-29 03:52 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TapiSysprep.dll 2015-08-13 09:50 - 2014-10-29 03:51 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndadmin.exe 2015-08-13 09:50 - 2014-10-29 03:51 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pcaui.exe 2015-08-13 09:50 - 2014-10-29 03:51 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasautou.exe 2015-08-13 09:50 - 2014-10-29 03:51 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcmonitor.dll 2015-08-13 09:50 - 2014-10-29 03:48 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RmClient.exe 2015-08-13 09:50 - 2014-10-29 03:47 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eventcls.dll 2015-08-13 09:50 - 2014-10-29 03:46 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\serialui.dll 2015-08-13 09:50 - 2014-10-29 03:43 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NcaApi.dll 2015-08-13 09:50 - 2014-10-29 03:42 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\newdev.exe 2015-08-13 09:50 - 2014-10-29 03:39 - 00114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\control.exe 2015-08-13 09:50 - 2014-10-29 03:38 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll 2015-08-13 09:50 - 2014-10-29 03:38 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mobsync.exe 2015-08-13 09:50 - 2014-10-29 03:38 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\grpconv.exe 2015-08-13 09:50 - 2014-10-29 03:38 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DDACLSys.dll 2015-08-13 09:50 - 2014-10-29 03:29 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2015-08-13 09:50 - 2014-10-29 03:29 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gptext.dll 2015-08-13 09:50 - 2014-10-29 03:28 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\KdsCli.dll 2015-08-13 09:50 - 2014-10-29 03:28 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\sc.exe 2015-08-13 09:50 - 2014-10-29 03:28 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\snmpapi.dll 2015-08-13 09:50 - 2014-10-29 03:28 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\userinit.exe 2015-08-13 09:50 - 2014-10-29 03:28 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\TimeBrokerClient.dll 2015-08-13 09:50 - 2014-10-29 03:28 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\PATHPING.EXE 2015-08-13 09:50 - 2014-10-29 03:28 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\rasadhlp.dll 2015-08-13 09:50 - 2014-10-29 03:28 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\sscoreext.dll 2015-08-13 09:50 - 2014-10-29 03:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\esentprf.dll 2015-08-13 09:50 - 2014-10-29 03:27 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\mspatcha.dll 2015-08-13 09:50 - 2014-10-29 03:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\perfdisk.dll 2015-08-13 09:50 - 2014-10-29 03:27 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\virtdisk.dll 2015-08-13 09:50 - 2014-10-29 03:27 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\deviceassociation.dll 2015-08-13 09:50 - 2014-10-29 03:27 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wcmapi.dll 2015-08-13 09:50 - 2014-10-29 03:27 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\fvecerts.dll 2015-08-13 09:50 - 2014-10-29 03:27 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\schedcli.dll 2015-08-13 09:50 - 2014-10-29 03:27 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2015-08-13 09:50 - 2014-10-29 03:27 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\CSystemEventsBrokerClient.dll 2015-08-13 09:50 - 2014-10-29 03:27 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\httpprxp.dll 2015-08-13 09:50 - 2014-10-29 03:27 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\Register-CimProvider.exe 2015-08-13 09:50 - 2014-10-29 03:26 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapPeerProxy.dll 2015-08-13 09:50 - 2014-10-29 03:25 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\winlogonext.dll 2015-08-13 09:50 - 2014-10-29 03:25 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tpmcompc.dll 2015-08-13 09:50 - 2014-10-29 03:25 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\ncuprov.dll 2015-08-13 09:50 - 2014-10-29 03:23 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\PCPKsp.dll 2015-08-13 09:50 - 2014-10-29 03:22 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\vss_ps.dll 2015-08-13 09:50 - 2014-10-29 03:22 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\TaskSchdPS.dll 2015-08-13 09:50 - 2014-10-29 03:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\catsrvps.dll 2015-08-13 09:50 - 2014-10-29 03:21 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\TtlsExt.dll 2015-08-13 09:50 - 2014-10-29 03:20 - 00072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapimig.exe 2015-08-13 09:50 - 2014-10-29 03:20 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\NETSTAT.EXE 2015-08-13 09:50 - 2014-10-29 03:20 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\keepaliveprovider.dll 2015-08-13 09:50 - 2014-10-29 03:16 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\FwRemoteSvr.dll 2015-08-13 09:50 - 2014-10-29 03:16 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\inetmib1.dll 2015-08-13 09:50 - 2014-10-29 03:06 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapi.dll 2015-08-13 09:50 - 2014-10-29 03:05 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vpnikeapi.dll 2015-08-13 09:50 - 2014-10-29 03:05 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfnet.dll 2015-08-13 09:50 - 2014-10-29 03:05 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PING.EXE 2015-08-13 09:50 - 2014-10-29 03:05 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TimeBrokerClient.dll 2015-08-13 09:50 - 2014-10-29 03:05 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mountvol.exe 2015-08-13 09:50 - 2014-10-29 03:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmsgapi.dll 2015-08-13 09:50 - 2014-10-29 03:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\finger.exe 2015-08-13 09:50 - 2014-10-29 03:05 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasadhlp.dll 2015-08-13 09:50 - 2014-10-29 03:05 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\whhelper.dll 2015-08-13 09:50 - 2014-10-29 03:04 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcmapi.dll 2015-08-13 09:50 - 2014-10-29 03:04 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Register-CimProvider.exe 2015-08-13 09:50 - 2014-10-29 03:04 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\smphost.dll 2015-08-13 09:50 - 2014-10-29 03:04 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\HOSTNAME.EXE 2015-08-13 09:50 - 2014-10-29 03:02 - 00072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winipsec.dll 2015-08-13 09:50 - 2014-10-29 03:02 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininitext.dll 2015-08-13 09:50 - 2014-10-29 03:01 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\slpts.dll 2015-08-13 09:50 - 2014-10-29 03:00 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvps.dll 2015-08-13 09:50 - 2014-10-29 03:00 - 00019456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ROUTE.EXE 2015-08-13 09:50 - 2014-10-29 02:59 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\raschapext.dll 2015-08-13 09:50 - 2014-10-29 02:59 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastlsext.dll 2015-08-13 09:50 - 2014-10-29 02:46 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Startupscan.dll 2015-08-13 09:50 - 2014-10-29 02:45 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msshooks.dll 2015-08-13 09:49 - 2014-10-29 04:46 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netvsc63.sys 2015-08-13 09:49 - 2014-10-29 04:46 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys 2015-08-13 09:49 - 2014-10-29 04:45 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\SortWindows6Compat.dll 2015-08-13 09:49 - 2014-10-29 04:45 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll 2015-08-13 09:49 - 2014-10-29 04:45 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\SortWindows61.dll 2015-08-13 09:49 - 2014-10-29 04:45 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\netbios.dll 2015-08-13 09:49 - 2014-10-29 04:45 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\SensApi.dll 2015-08-13 09:49 - 2014-10-29 04:45 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\browseui.dll 2015-08-13 09:49 - 2014-10-29 04:45 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\oleacchooks.dll 2015-08-13 09:49 - 2014-10-29 04:44 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\fthsvc.dll 2015-08-13 09:49 - 2014-10-29 04:44 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\SortServer2003Compat.dll 2015-08-13 09:49 - 2014-10-29 04:44 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\Nlsdl.dll 2015-08-13 09:49 - 2014-10-29 04:44 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\blb_ps.dll 2015-08-13 09:49 - 2014-10-29 04:44 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\davhlpr.dll 2015-08-13 09:49 - 2014-10-29 04:44 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\mgmtapi.dll 2015-08-13 09:49 - 2014-10-29 04:44 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\WofUtil.dll 2015-08-13 09:49 - 2014-10-29 04:44 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\clb.dll 2015-08-13 09:49 - 2014-10-29 04:44 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wsock32.dll 2015-08-13 09:49 - 2014-10-29 04:44 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\d3d8thk.dll 2015-08-13 09:49 - 2014-10-29 04:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\sas.dll 2015-08-13 09:49 - 2014-10-29 04:44 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\WlS0WndH.dll 2015-08-13 09:49 - 2014-10-29 04:44 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\rdpcfgex.dll 2015-08-13 09:49 - 2014-10-29 04:44 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\nddeapi.dll 2015-08-13 09:49 - 2014-10-29 04:44 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\XInput9_1_0.dll 2015-08-13 09:49 - 2014-10-29 04:44 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\riched32.dll 2015-08-13 09:49 - 2014-10-29 04:43 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\telephon.cpl 2015-08-13 09:49 - 2014-10-29 04:43 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\rasser.dll 2015-08-13 09:49 - 2014-10-29 04:43 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\osbaseln.dll 2015-08-13 09:49 - 2014-10-29 04:43 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\chcp.com 2015-08-13 09:49 - 2014-10-29 04:43 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\recover.exe 2015-08-13 09:49 - 2014-10-29 04:43 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\diskcopy.com 2015-08-13 09:49 - 2014-10-29 04:43 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\tapiperf.dll 2015-08-13 09:49 - 2014-10-29 04:43 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\acledit.dll 2015-08-13 09:49 - 2014-10-29 04:42 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\iyuv_32.dll 2015-08-13 09:49 - 2014-10-29 04:42 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\msyuv.dll 2015-08-13 09:49 - 2014-10-29 04:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe 2015-08-13 09:49 - 2014-10-29 04:42 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe 2015-08-13 09:49 - 2014-10-29 04:42 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll 2015-08-13 09:49 - 2014-10-29 04:42 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\muifontsetup.dll 2015-08-13 09:49 - 2014-10-29 04:42 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\tsbyuv.dll 2015-08-13 09:49 - 2014-10-29 04:41 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\dmintf.dll 2015-08-13 09:49 - 2014-10-29 04:41 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\npmproxy.dll 2015-08-13 09:49 - 2014-10-29 04:41 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\RdpSaPs.dll 2015-08-13 09:49 - 2014-10-29 04:41 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\wshirda.dll 2015-08-13 09:49 - 2014-10-29 04:41 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\SyncHostps.dll 2015-08-13 09:49 - 2014-10-29 04:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wmcodecdspps.dll 2015-08-13 09:49 - 2014-10-29 04:40 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\TSChannel.dll 2015-08-13 09:49 - 2014-10-29 04:40 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\bitsprx7.dll 2015-08-13 09:49 - 2014-10-29 04:40 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\wscproxystub.dll 2015-08-13 09:49 - 2014-10-29 04:40 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\bitsprx6.dll 2015-08-13 09:49 - 2014-10-29 04:40 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\bitsprx3.dll 2015-08-13 09:49 - 2014-10-29 04:40 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\bitsprx4.dll 2015-08-13 09:49 - 2014-10-29 04:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\VmApplicationHealthMonitorProxy.dll 2015-08-13 09:49 - 2014-10-29 04:38 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\capisp.dll 2015-08-13 09:49 - 2014-10-29 04:38 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\nbtstat.exe 2015-08-13 09:49 - 2014-10-29 04:37 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\dsauth.dll 2015-08-13 09:49 - 2014-10-29 04:36 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\extrac32.exe 2015-08-13 09:49 - 2014-10-29 04:36 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\rpcnsh.dll 2015-08-13 09:49 - 2014-10-29 04:36 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\bitsprx2.dll 2015-08-13 09:49 - 2014-10-29 04:35 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\cofiredm.dll 2015-08-13 09:49 - 2014-10-29 04:34 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\hdwwiz.exe 2015-08-13 09:49 - 2014-10-29 04:34 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\UI0Detect.exe 2015-08-13 09:49 - 2014-10-29 04:34 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\where.exe 2015-08-13 09:49 - 2014-10-29 04:34 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEject.exe 2015-08-13 09:49 - 2014-10-29 04:34 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\upnpcont.exe 2015-08-13 09:49 - 2014-10-29 04:34 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\spopk.dll 2015-08-13 09:49 - 2014-10-29 04:34 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\compact.exe 2015-08-13 09:49 - 2014-10-29 04:34 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcmonitor.dll 2015-08-13 09:49 - 2014-10-29 04:34 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\cmdext.dll 2015-08-13 09:49 - 2014-10-29 04:33 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\ndadmin.exe 2015-08-13 09:49 - 2014-10-29 04:33 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\takeown.exe 2015-08-13 09:49 - 2014-10-29 04:33 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll 2015-08-13 09:49 - 2014-10-29 04:33 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\rasautou.exe 2015-08-13 09:49 - 2014-10-29 04:33 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\svsvc.dll 2015-08-13 09:49 - 2014-10-29 04:33 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\LAPRXY.DLL 2015-08-13 09:49 - 2014-10-29 04:31 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingProxy.dll 2015-08-13 09:49 - 2014-10-29 04:30 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\eventcreate.exe 2015-08-13 09:49 - 2014-10-29 04:30 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\choice.exe 2015-08-13 09:49 - 2014-10-29 04:29 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\waitfor.exe 2015-08-13 09:49 - 2014-10-29 04:29 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\setspn.exe 2015-08-13 09:49 - 2014-10-29 04:29 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\fhsvcctl.dll 2015-08-13 09:49 - 2014-10-29 04:29 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\wshelper.dll 2015-08-13 09:49 - 2014-10-29 04:27 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mmci.dll 2015-08-13 09:49 - 2014-10-29 04:27 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\serialui.dll 2015-08-13 09:49 - 2014-10-29 04:25 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\hwrreg.exe 2015-08-13 09:49 - 2014-10-29 04:25 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\fontview.exe 2015-08-13 09:49 - 2014-10-29 04:24 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountControlSettings.exe 2015-08-13 09:49 - 2014-10-29 04:24 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\NcaApi.dll 2015-08-13 09:49 - 2014-10-29 04:23 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\montr_ci.dll 2015-08-13 09:49 - 2014-10-29 04:22 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\newdev.exe 2015-08-13 09:49 - 2014-10-29 04:22 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\radarrs.dll 2015-08-13 09:49 - 2014-10-29 04:22 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\PNPXAssocPrx.dll 2015-08-13 09:49 - 2014-10-29 04:22 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\ndproxystub.dll 2015-08-13 09:49 - 2014-10-29 04:22 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\dxgwdi.dll 2015-08-13 09:49 - 2014-10-29 04:20 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\ncpa.cpl 2015-08-13 09:49 - 2014-10-29 04:19 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\control.exe 2015-08-13 09:49 - 2014-10-29 04:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\tabcal.exe 2015-08-13 09:49 - 2014-10-29 04:19 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\MultiDigiMon.exe 2015-08-13 09:49 - 2014-10-29 04:19 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Eap3Host.exe 2015-08-13 09:49 - 2014-10-29 04:18 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\MdRes.exe 2015-08-13 09:49 - 2014-10-29 04:17 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\MdSched.exe 2015-08-13 09:49 - 2014-10-29 04:17 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2015-08-13 09:49 - 2014-10-29 04:17 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\DDACLSys.dll 2015-08-13 09:49 - 2014-10-29 04:17 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\RemoveDeviceElevated.dll 2015-08-13 09:49 - 2014-10-29 04:05 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\gptext.dll 2015-08-13 09:49 - 2014-10-29 04:00 - 00182784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\miguiresource.dll 2015-08-13 09:49 - 2014-10-29 04:00 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\tpmcompc.dll 2015-08-13 09:49 - 2014-10-29 04:00 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensApi.dll 2015-08-13 09:49 - 2014-10-29 04:00 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacchooks.dll 2015-08-13 09:49 - 2014-10-29 04:00 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nddeapi.dll 2015-08-13 09:49 - 2014-10-29 04:00 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiwer.dll 2015-08-13 09:49 - 2014-10-29 04:00 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir50_32.dll 2015-08-13 09:49 - 2014-10-29 04:00 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir41_32.ax 2015-08-13 09:49 - 2014-10-29 04:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OskSupport.dll 2015-08-13 09:49 - 2014-10-29 04:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir50_qcx.dll 2015-08-13 09:49 - 2014-10-29 04:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir50_qc.dll 2015-08-13 09:49 - 2014-10-29 04:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir41_qcx.dll 2015-08-13 09:49 - 2014-10-29 04:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir41_qc.dll 2015-08-13 09:49 - 2014-10-29 04:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir32_32.dll 2015-08-13 09:49 - 2014-10-29 04:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\getuname.dll 2015-08-13 09:49 - 2014-10-29 04:00 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osuninst.dll 2015-08-13 09:49 - 2014-10-29 03:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lsmproxy.dll 2015-08-13 09:49 - 2014-10-29 03:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsock32.dll 2015-08-13 09:49 - 2014-10-29 03:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msidcrl40.dll 2015-08-13 09:49 - 2014-10-29 03:59 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WlS0WndH.dll 2015-08-13 09:49 - 2014-10-29 03:59 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sas.dll 2015-08-13 09:49 - 2014-10-29 03:59 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XInput9_1_0.dll 2015-08-13 09:49 - 2014-10-29 03:59 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comcat.dll 2015-08-13 09:49 - 2014-10-29 03:59 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxex.dll 2015-08-13 09:49 - 2014-10-29 03:58 - 00107008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\telephon.cpl 2015-08-13 09:49 - 2014-10-29 03:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.exe 2015-08-13 09:49 - 2014-10-29 03:58 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msyuv.dll 2015-08-13 09:49 - 2014-10-29 03:58 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sort.exe 2015-08-13 09:49 - 2014-10-29 03:58 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshrm.dll 2015-08-13 09:49 - 2014-10-29 03:58 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfts.dll 2015-08-13 09:49 - 2014-10-29 03:58 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsbyuv.dll 2015-08-13 09:49 - 2014-10-29 03:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwinsat.dll 2015-08-13 09:49 - 2014-10-29 03:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chcp.com 2015-08-13 09:49 - 2014-10-29 03:58 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsied.dll 2015-08-13 09:49 - 2014-10-29 03:58 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapiperf.dll 2015-08-13 09:49 - 2014-10-29 03:58 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtprio.dll 2015-08-13 09:49 - 2014-10-29 03:58 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TimeDateMUICallback.dll 2015-08-13 09:49 - 2014-10-29 03:58 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\acledit.dll 2015-08-13 09:49 - 2014-10-29 03:57 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmintf.dll 2015-08-13 09:49 - 2014-10-29 03:57 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usbperf.dll 2015-08-13 09:49 - 2014-10-29 03:57 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshirda.dll 2015-08-13 09:49 - 2014-10-29 03:57 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RdpSaPs.dll 2015-08-13 09:49 - 2014-10-29 03:57 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spnet.dll 2015-08-13 09:49 - 2014-10-29 03:56 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncInfrastructureps.dll 2015-08-13 09:49 - 2014-10-29 03:56 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSChannel.dll 2015-08-13 09:49 - 2014-10-29 03:56 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscproxystub.dll 2015-08-13 09:49 - 2014-10-29 03:56 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncHostps.dll 2015-08-13 09:49 - 2014-10-29 03:56 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmcodecdspps.dll 2015-08-13 09:49 - 2014-10-29 03:56 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcji32.dll 2015-08-13 09:49 - 2014-10-29 03:56 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odtext32.dll 2015-08-13 09:49 - 2014-10-29 03:56 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odpdx32.dll 2015-08-13 09:49 - 2014-10-29 03:56 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odfox32.dll 2015-08-13 09:49 - 2014-10-29 03:56 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oddbse32.dll 2015-08-13 09:49 - 2014-10-29 03:56 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odexl32.dll 2015-08-13 09:49 - 2014-10-29 03:55 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfime.ime 2015-08-13 09:49 - 2014-10-29 03:54 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secinit.exe 2015-08-13 09:49 - 2014-10-29 03:54 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VscMgrPS.dll 2015-08-13 09:49 - 2014-10-29 03:52 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hdwwiz.exe 2015-08-13 09:49 - 2014-10-29 03:51 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\runas.exe 2015-08-13 09:49 - 2014-10-29 03:51 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdial.exe 2015-08-13 09:49 - 2014-10-29 03:51 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LAPRXY.DLL 2015-08-13 09:49 - 2014-10-29 03:49 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairingProxy.dll 2015-08-13 09:49 - 2014-10-29 03:44 - 00218112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserAccountControlSettings.exe 2015-08-13 09:49 - 2014-10-29 03:44 - 00094720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Narrator.exe 2015-08-13 09:49 - 2014-10-29 03:43 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wowreg32.exe 2015-08-13 09:49 - 2014-10-29 03:42 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdmps.dll 2015-08-13 09:49 - 2014-10-29 03:42 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndproxystub.dll 2015-08-13 09:49 - 2014-10-29 03:40 - 00100352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncpa.cpl 2015-08-13 09:49 - 2014-10-29 03:40 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairingWizard.exe 2015-08-13 09:49 - 2014-10-29 03:39 - 00097792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Fondue.exe 2015-08-13 09:49 - 2014-10-29 03:38 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RemoveDeviceElevated.dll 2015-08-13 09:49 - 2014-10-29 03:34 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efsui.exe 2015-08-13 09:49 - 2014-10-29 03:32 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll 2015-08-13 09:49 - 2014-10-29 03:29 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\dpapi.dll 2015-08-13 09:49 - 2014-10-29 03:28 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\perfproc.dll 2015-08-13 09:49 - 2014-10-29 03:28 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\nshhttp.dll 2015-08-13 09:49 - 2014-10-29 03:28 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\icacls.exe 2015-08-13 09:49 - 2014-10-29 03:28 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\perfnet.dll 2015-08-13 09:49 - 2014-10-29 03:28 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\fltLib.dll 2015-08-13 09:49 - 2014-10-29 03:28 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\wmsgapi.dll 2015-08-13 09:49 - 2014-10-29 03:28 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\nrpsrv.dll 2015-08-13 09:49 - 2014-10-29 03:28 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll 2015-08-13 09:49 - 2014-10-29 03:28 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\winrssrv.dll 2015-08-13 09:49 - 2014-10-29 03:28 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\fdBthProxy.dll 2015-08-13 09:49 - 2014-10-29 03:28 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msidle.dll 2015-08-13 09:49 - 2014-10-29 03:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\nslookup.exe 2015-08-13 09:49 - 2014-10-29 03:27 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\setx.exe 2015-08-13 09:49 - 2014-10-29 03:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\SecEdit.exe 2015-08-13 09:49 - 2014-10-29 03:27 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\adhapi.dll 2015-08-13 09:49 - 2014-10-29 03:27 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\PING.EXE 2015-08-13 09:49 - 2014-10-29 03:27 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerClient.dll 2015-08-13 09:49 - 2014-10-29 03:27 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\finger.exe 2015-08-13 09:49 - 2014-10-29 03:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\smphost.dll 2015-08-13 09:49 - 2014-10-29 03:26 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appsruprov.dll 2015-08-13 09:49 - 2014-10-29 03:26 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\pots.dll 2015-08-13 09:49 - 2014-10-29 03:25 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\wininitext.dll 2015-08-13 09:49 - 2014-10-29 03:25 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\dnsext.dll 2015-08-13 09:49 - 2014-10-29 03:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Background.ps.dll 2015-08-13 09:49 - 2014-10-29 03:21 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\perfctrs.dll 2015-08-13 09:49 - 2014-10-29 03:21 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\ipconfig.exe 2015-08-13 09:49 - 2014-10-29 03:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\nlmproxy.dll 2015-08-13 09:49 - 2014-10-29 03:21 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\defragproxy.dll 2015-08-13 09:49 - 2014-10-29 03:21 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\AuthHostProxy.dll 2015-08-13 09:49 - 2014-10-29 03:21 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\cfmifsproxy.dll 2015-08-13 09:49 - 2014-10-29 03:14 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\nci.dll 2015-08-13 09:49 - 2014-10-29 03:12 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\wwaninst.dll 2015-08-13 09:49 - 2014-10-29 03:08 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\winrs.exe 2015-08-13 09:49 - 2014-10-29 03:06 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprext.dll 2015-08-13 09:49 - 2014-10-29 03:05 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\C_G18030.DLL 2015-08-13 09:49 - 2014-10-29 03:05 - 00113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprmsg.dll 2015-08-13 09:49 - 2014-10-29 03:05 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unlodctr.exe 2015-08-13 09:49 - 2014-10-29 03:05 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PATHPING.EXE 2015-08-13 09:49 - 2014-10-29 03:05 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemEventsBrokerClient.dll 2015-08-13 09:49 - 2014-10-29 03:05 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmplpxy.dll 2015-08-13 09:49 - 2014-10-29 03:05 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\C_IS2022.DLL 2015-08-13 09:49 - 2014-10-29 03:05 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrssrv.dll 2015-08-13 09:49 - 2014-10-29 03:05 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdBthProxy.dll 2015-08-13 09:49 - 2014-10-29 03:05 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msidle.dll 2015-08-13 09:49 - 2014-10-29 03:05 - 00006144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll 2015-08-13 09:49 - 2014-10-29 03:04 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\CertEnrollCtrl.exe 2015-08-13 09:49 - 2014-10-29 03:04 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fltMC.exe 2015-08-13 09:49 - 2014-10-29 03:04 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpcsvc.dll 2015-08-13 09:49 - 2014-10-29 03:03 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MRINFO.EXE 2015-08-13 09:49 - 2014-10-29 03:03 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ProximityRtapiPal.dll 2015-08-13 09:49 - 2014-10-29 03:01 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TaskSchdPS.dll 2015-08-13 09:49 - 2014-10-29 03:01 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vss_ps.dll 2015-08-13 09:49 - 2014-10-29 03:00 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlmproxy.dll 2015-08-13 09:49 - 2014-10-29 03:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfmifsproxy.dll 2015-08-13 09:49 - 2014-10-29 02:55 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\CheckNetIsolation.exe 2015-08-13 09:48 - 2014-10-29 05:54 - 05120000 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWSnapin.dll 2015-08-13 09:48 - 2014-10-29 05:07 - 05120000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthFWSnapin.dll 2015-08-13 09:48 - 2014-10-29 04:48 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\txfw32.dll 2015-08-13 09:48 - 2014-10-29 04:48 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\Locator.exe 2015-08-13 09:48 - 2014-10-29 04:47 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys 2015-08-13 09:48 - 2014-10-29 04:45 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\miguiresource.dll 2015-08-13 09:48 - 2014-10-29 04:45 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\mciseq.dll 2015-08-13 09:48 - 2014-10-29 04:45 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\AutoWorkplaceN.dll 2015-08-13 09:48 - 2014-10-29 04:45 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\osuninst.dll 2015-08-13 09:48 - 2014-10-29 04:44 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\MSchedExe.exe 2015-08-13 09:48 - 2014-10-29 04:44 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\regini.exe 2015-08-13 09:48 - 2014-10-29 04:44 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\msidcrl40.dll 2015-08-13 09:48 - 2014-10-29 04:44 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\msiwer.dll 2015-08-13 09:48 - 2014-10-29 04:44 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\mscat32.dll 2015-08-13 09:48 - 2014-10-29 04:44 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\softpub.dll 2015-08-13 09:48 - 2014-10-29 04:44 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\OskSupport.dll 2015-08-13 09:48 - 2014-10-29 04:44 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\getuname.dll 2015-08-13 09:48 - 2014-10-29 04:44 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\mtxex.dll 2015-08-13 09:48 - 2014-10-29 04:44 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\mssip32.dll 2015-08-13 09:48 - 2014-10-29 04:44 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll 2015-08-13 09:48 - 2014-10-29 04:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\printui.exe 2015-08-13 09:48 - 2014-10-29 04:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe 2015-08-13 09:48 - 2014-10-29 04:43 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\tzutil.exe 2015-08-13 09:48 - 2014-10-29 04:43 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\sort.exe 2015-08-13 09:48 - 2014-10-29 04:43 - 00017408 _____ (Microsoft Corporation) C:\Windows\hh.exe 2015-08-13 09:48 - 2014-10-29 04:43 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\cmdkey.exe 2015-08-13 09:48 - 2014-10-29 04:43 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\perfts.dll 2015-08-13 09:48 - 2014-10-29 04:43 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\nlmsprep.dll 2015-08-13 09:48 - 2014-10-29 04:43 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\MUILanguageCleanup.dll 2015-08-13 09:48 - 2014-10-29 04:43 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\LangCleanupSysprepAction.dll 2015-08-13 09:48 - 2014-10-29 04:43 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\spwinsat.dll 2015-08-13 09:48 - 2014-10-29 04:43 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\dvdplay.exe 2015-08-13 09:48 - 2014-10-29 04:43 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\TimeDateMUICallback.dll 2015-08-13 09:48 - 2014-10-29 04:43 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\iscsied.dll 2015-08-13 09:48 - 2014-10-29 04:43 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\iprtprio.dll 2015-08-13 09:48 - 2014-10-29 04:43 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\help.exe 2015-08-13 09:48 - 2014-10-29 04:43 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\spmpm.dll 2015-08-13 09:48 - 2014-10-29 04:43 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\plasrv.exe 2015-08-13 09:48 - 2014-10-29 04:42 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\colorcpl.exe 2015-08-13 09:48 - 2014-10-29 04:42 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\DDOIProxy.dll 2015-08-13 09:48 - 2014-10-29 04:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\syskey.exe 2015-08-13 09:48 - 2014-10-29 04:42 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\cliconfg.exe 2015-08-13 09:48 - 2014-10-29 04:42 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\snmptrap.exe 2015-08-13 09:48 - 2014-10-29 04:42 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\TapiUnattend.exe 2015-08-13 09:48 - 2014-10-29 04:42 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\wshnetbs.dll 2015-08-13 09:48 - 2014-10-29 04:42 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\usbperf.dll 2015-08-13 09:48 - 2014-10-29 04:42 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\LogonUI.exe 2015-08-13 09:48 - 2014-10-29 04:41 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\sysclass.dll 2015-08-13 09:48 - 2014-10-29 04:41 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\mpnotify.exe 2015-08-13 09:48 - 2014-10-29 04:41 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\gpupdate.exe 2015-08-13 09:48 - 2014-10-29 04:41 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\syssetup.dll 2015-08-13 09:48 - 2014-10-29 04:41 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\localui.dll 2015-08-13 09:48 - 2014-10-29 04:41 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe 2015-08-13 09:48 - 2014-10-29 04:41 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\tcmsetup.exe 2015-08-13 09:48 - 2014-10-29 04:41 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\mmcico.dll 2015-08-13 09:48 - 2014-10-29 04:41 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\panmap.dll 2015-08-13 09:48 - 2014-10-29 04:41 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\scrnsave.scr 2015-08-13 09:48 - 2014-10-29 04:41 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\spnet.dll 2015-08-13 09:48 - 2014-10-29 04:41 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\CIRCoInst.dll 2015-08-13 09:48 - 2014-10-29 04:41 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\shfolder.dll 2015-08-13 09:48 - 2014-10-29 04:40 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\sccls.dll 2015-08-13 09:48 - 2014-10-29 04:40 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\easinvoker.proxystub.dll 2015-08-13 09:48 - 2014-10-29 04:40 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\irclass.dll 2015-08-13 09:48 - 2014-10-29 04:38 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\msctfime.ime 2015-08-13 09:48 - 2014-10-29 04:37 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\secinit.exe 2015-08-13 09:48 - 2014-10-29 04:37 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\ctfmon.exe 2015-08-13 09:48 - 2014-10-29 04:36 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ktmutil.exe 2015-08-13 09:48 - 2014-10-29 04:36 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\acproxy.dll 2015-08-13 09:48 - 2014-10-29 04:35 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\PnPutil.exe 2015-08-13 09:48 - 2014-10-29 04:34 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\iscsicpl.exe 2015-08-13 09:48 - 2014-10-29 04:34 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\eventvwr.exe 2015-08-13 09:48 - 2014-10-29 04:34 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe 2015-08-13 09:48 - 2014-10-29 04:34 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\winver.exe 2015-08-13 09:48 - 2014-10-29 04:34 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\rdrleakdiag.exe 2015-08-13 09:48 - 2014-10-29 04:34 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\dialer.exe 2015-08-13 09:48 - 2014-10-29 04:34 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\timeout.exe 2015-08-13 09:48 - 2014-10-29 04:34 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\clip.exe 2015-08-13 09:48 - 2014-10-29 04:34 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\cofire.exe 2015-08-13 09:48 - 2014-10-29 04:34 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\rasdial.exe 2015-08-13 09:48 - 2014-10-29 04:34 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\fsavailux.exe 2015-08-13 09:48 - 2014-10-29 04:34 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe 2015-08-13 09:48 - 2014-10-29 04:34 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TapiSysprep.dll 2015-08-13 09:48 - 2014-10-29 04:34 - 00011264 _____ (Microsoft Corporation) C:\Windows\write.exe 2015-08-13 09:48 - 2014-10-29 04:34 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\write.exe 2015-08-13 09:48 - 2014-10-29 04:34 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\regedt32.exe 2015-08-13 09:48 - 2014-10-29 04:33 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\Apphlpdm.dll 2015-08-13 09:48 - 2014-10-29 04:33 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\runas.exe 2015-08-13 09:48 - 2014-10-29 04:31 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\wlaninst.dll 2015-08-13 09:48 - 2014-10-29 04:30 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\sigverif.exe 2015-08-13 09:48 - 2014-10-29 04:30 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\forfiles.exe 2015-08-13 09:48 - 2014-10-29 04:30 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\RmClient.exe 2015-08-13 09:48 - 2014-10-29 04:29 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\iscsicli.exe 2015-08-13 09:48 - 2014-10-29 04:28 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\odbcad32.exe 2015-08-13 09:48 - 2014-10-29 04:25 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\resmon.exe 2015-08-13 09:48 - 2014-10-29 04:25 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\Narrator.exe 2015-08-13 09:48 - 2014-10-29 04:24 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\LocationNotifications.exe 2015-08-13 09:48 - 2014-10-29 04:23 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerWizardElev.exe 2015-08-13 09:48 - 2014-10-29 04:23 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\wowreg32.exe 2015-08-13 09:48 - 2014-10-29 04:22 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll 2015-08-13 09:48 - 2014-10-29 04:20 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\proquota.exe 2015-08-13 09:48 - 2014-10-29 04:20 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\WallpaperHost.exe 2015-08-13 09:48 - 2014-10-29 04:19 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\DeviceProperties.exe 2015-08-13 09:48 - 2014-10-29 04:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesRemote.exe 2015-08-13 09:48 - 2014-10-29 04:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesProtection.exe 2015-08-13 09:48 - 2014-10-29 04:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesPerformance.exe 2015-08-13 09:48 - 2014-10-29 04:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesHardware.exe 2015-08-13 09:48 - 2014-10-29 04:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesDataExecutionPrevention.exe 2015-08-13 09:48 - 2014-10-29 04:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesComputerName.exe 2015-08-13 09:48 - 2014-10-29 04:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesAdvanced.exe 2015-08-13 09:48 - 2014-10-29 04:19 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\Netplwiz.exe 2015-08-13 09:48 - 2014-10-29 04:18 - 00219136 _____ (Microsoft Corporation) C:\Windows\system32\SmartScreenSettings.exe 2015-08-13 09:48 - 2014-10-29 04:18 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\OptionalFeatures.exe 2015-08-13 09:48 - 2014-10-29 04:18 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\Fondue.exe 2015-08-13 09:48 - 2014-10-29 04:18 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\DpiScaling.exe 2015-08-13 09:48 - 2014-10-29 04:18 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\RunLegacyCPLElevated.exe 2015-08-13 09:48 - 2014-10-29 04:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\ComputerDefaults.exe 2015-08-13 09:48 - 2014-10-29 04:17 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\FXSUNATD.exe 2015-08-13 09:48 - 2014-10-29 04:09 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\bthudtask.exe 2015-08-13 09:48 - 2014-10-29 04:08 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\credwiz.exe 2015-08-13 09:48 - 2014-10-29 04:08 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll 2015-08-13 09:48 - 2014-10-29 04:03 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ktmw32.dll 2015-08-13 09:48 - 2014-10-29 04:03 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\txfw32.dll 2015-08-13 09:48 - 2014-10-29 04:03 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wship6.dll 2015-08-13 09:48 - 2014-10-29 04:00 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciseq.dll 2015-08-13 09:48 - 2014-10-29 03:59 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\help.exe 2015-08-13 09:48 - 2014-10-29 03:58 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\colorcpl.exe 2015-08-13 09:48 - 2014-10-29 03:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.exe 2015-08-13 09:48 - 2014-10-29 03:58 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzutil.exe 2015-08-13 09:48 - 2014-10-29 03:58 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cliconfg.exe 2015-08-13 09:48 - 2014-10-29 03:58 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hh.exe 2015-08-13 09:48 - 2014-10-29 03:58 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmdkey.exe 2015-08-13 09:48 - 2014-10-29 03:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TapiUnattend.exe 2015-08-13 09:48 - 2014-10-29 03:58 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dvdplay.exe 2015-08-13 09:48 - 2014-10-29 03:58 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomcnfg.exe 2015-08-13 09:48 - 2014-10-29 03:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DDOIProxy.dll 2015-08-13 09:48 - 2014-10-29 03:57 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrnsave.scr 2015-08-13 09:48 - 2014-10-29 03:54 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ctfmon.exe 2015-08-13 09:48 - 2014-10-29 03:53 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\dpapimig.exe 2015-08-13 09:48 - 2014-10-29 03:53 - 00009728 _____ (Microsoft Corporation) C:\Windows\winhlp32.exe 2015-08-13 09:48 - 2014-10-29 03:52 - 00120320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsicpl.exe 2015-08-13 09:48 - 2014-10-29 03:52 - 00108032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msra.exe 2015-08-13 09:48 - 2014-10-29 03:52 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winver.exe 2015-08-13 09:48 - 2014-10-29 03:52 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regedt32.exe 2015-08-13 09:48 - 2014-10-29 03:52 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\write.exe 2015-08-13 09:48 - 2014-10-29 03:51 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InfDefaultInstall.exe 2015-08-13 09:48 - 2014-10-29 03:51 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systray.exe 2015-08-13 09:48 - 2014-10-29 03:46 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcad32.exe 2015-08-13 09:48 - 2014-10-29 03:45 - 00108032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resmon.exe 2015-08-13 09:48 - 2014-10-29 03:45 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\AxInstUI.exe 2015-08-13 09:48 - 2014-10-29 03:44 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationNotifications.exe 2015-08-13 09:48 - 2014-10-29 03:40 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Netplwiz.exe 2015-08-13 09:48 - 2014-10-29 03:39 - 00217088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartScreenSettings.exe 2015-08-13 09:48 - 2014-10-29 03:39 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceProperties.exe 2015-08-13 09:48 - 2014-10-29 03:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesRemote.exe 2015-08-13 09:48 - 2014-10-29 03:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesProtection.exe 2015-08-13 09:48 - 2014-10-29 03:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesPerformance.exe 2015-08-13 09:48 - 2014-10-29 03:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesHardware.exe 2015-08-13 09:48 - 2014-10-29 03:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesDataExecutionPrevention.exe 2015-08-13 09:48 - 2014-10-29 03:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesComputerName.exe 2015-08-13 09:48 - 2014-10-29 03:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesAdvanced.exe 2015-08-13 09:48 - 2014-10-29 03:39 - 00077312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DpiScaling.exe 2015-08-13 09:48 - 2014-10-29 03:39 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RunLegacyCPLElevated.exe 2015-08-13 09:48 - 2014-10-29 03:39 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ComputerDefaults.exe 2015-08-13 09:48 - 2014-10-29 03:29 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\mprext.dll 2015-08-13 09:48 - 2014-10-29 03:28 - 00224768 _____ (Microsoft Corporation) C:\Windows\system32\C_G18030.DLL 2015-08-13 09:48 - 2014-10-29 03:28 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\mprmsg.dll 2015-08-13 09:48 - 2014-10-29 03:28 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\reg.exe 2015-08-13 09:48 - 2014-10-29 03:28 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\sdhcinst.dll 2015-08-13 09:48 - 2014-10-29 03:28 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\mountvol.exe 2015-08-13 09:48 - 2014-10-29 03:28 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\C_IS2022.DLL 2015-08-13 09:48 - 2014-10-29 03:28 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\whhelper.dll 2015-08-13 09:48 - 2014-10-29 03:28 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\TCPSVCS.EXE 2015-08-13 09:48 - 2014-10-29 03:28 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\backgroundTaskHost.exe 2015-08-13 09:48 - 2014-10-29 03:28 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll 2015-08-13 09:48 - 2014-10-29 03:27 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\lodctr.exe 2015-08-13 09:48 - 2014-10-29 03:27 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\unlodctr.exe 2015-08-13 09:48 - 2014-10-29 03:27 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\cacls.exe 2015-08-13 09:48 - 2014-10-29 03:27 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\fltMC.exe 2015-08-13 09:48 - 2014-10-29 03:27 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\TetheringIeProvider.dll 2015-08-13 09:48 - 2014-10-29 03:26 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\VaultCmd.exe 2015-08-13 09:48 - 2014-10-29 03:26 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\MRINFO.EXE 2015-08-13 09:48 - 2014-10-29 03:26 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\ProximityRtapiPal.dll 2015-08-13 09:48 - 2014-10-29 03:26 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wpcsvc.dll 2015-08-13 09:48 - 2014-10-29 03:24 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\procinst.dll 2015-08-13 09:48 - 2014-10-29 03:23 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Custom.ps.dll 2015-08-13 09:48 - 2014-10-29 03:21 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\CallButtons.ProxyStub.dll 2015-08-13 09:48 - 2014-10-29 03:21 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\ROUTE.EXE 2015-08-13 09:48 - 2014-10-29 03:21 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\dllhst3g.exe 2015-08-13 09:48 - 2014-10-29 03:19 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\raschapext.dll 2015-08-13 09:48 - 2014-10-29 03:19 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\rastlsext.dll 2015-08-13 09:48 - 2014-10-29 03:12 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\DsmUserTask.exe 2015-08-13 09:48 - 2014-10-29 03:05 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TRACERT.EXE 2015-08-13 09:48 - 2014-10-29 03:05 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TCPSVCS.EXE 2015-08-13 09:48 - 2014-10-29 03:05 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\backgroundTaskHost.exe 2015-08-13 09:48 - 2014-10-29 03:03 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\LaunchTM.exe 2015-08-13 09:48 - 2014-10-29 03:01 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdProxy.dll 2015-08-13 09:48 - 2014-10-29 03:01 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Enumeration.ps.dll 2015-08-13 09:48 - 2014-10-29 03:01 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Custom.ps.dll 2015-08-13 09:48 - 2014-10-29 03:01 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Background.ps.dll 2015-08-13 09:48 - 2014-10-29 03:00 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CallButtons.ProxyStub.dll 2015-08-13 09:48 - 2014-10-29 02:58 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Startupscan.dll 2015-08-13 09:48 - 2014-10-29 02:58 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\bootim.exe 2015-08-13 09:48 - 2014-10-29 02:50 - 00182784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchTM.exe 2015-08-13 09:47 - 2014-10-29 05:54 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWWizFwk.dll 2015-08-13 09:47 - 2014-10-29 05:07 - 00114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthFWWizFwk.dll 2015-08-13 09:47 - 2014-10-29 04:51 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-08-13 09:47 - 2014-10-29 04:50 - 02628608 _____ (Microsoft Corporation) C:\Windows\system32\NlsLexicons0009.dll 2015-08-13 09:47 - 2014-10-29 04:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\DeviceUxRes.dll 2015-08-13 09:47 - 2014-10-29 04:49 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll 2015-08-13 09:47 - 2014-10-29 04:49 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\Firewall.cpl 2015-08-13 09:47 - 2014-10-29 04:49 - 00004608 _____ (Microsoft Corporation) C:\Windows\system32\ws2help.dll 2015-08-13 09:47 - 2014-10-29 04:49 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\rnr20.dll 2015-08-13 09:47 - 2014-10-29 04:48 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2015-08-13 09:47 - 2014-10-29 04:48 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\ktmw32.dll 2015-08-13 09:47 - 2014-10-29 04:48 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasacd.sys 2015-08-13 09:47 - 2014-10-29 04:48 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\WSHTCPIP.DLL 2015-08-13 09:47 - 2014-10-29 04:48 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wship6.dll 2015-08-13 09:47 - 2014-10-29 04:48 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rootmdm.sys 2015-08-13 09:47 - 2014-10-29 04:48 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll 2015-08-13 09:47 - 2014-10-29 04:47 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys 2015-08-13 09:47 - 2014-10-29 04:47 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\qwavedrv.sys 2015-08-13 09:47 - 2014-10-29 04:47 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys 2015-08-13 09:47 - 2014-10-29 04:46 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS 2015-08-13 09:47 - 2014-10-29 04:46 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys 2015-08-13 09:47 - 2014-10-29 04:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiscap.sys 2015-08-13 09:47 - 2014-10-29 04:46 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys 2015-08-13 09:47 - 2014-10-29 04:46 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys 2015-08-13 09:47 - 2014-10-29 04:45 - 00630784 _____ (Microsoft Corporation) C:\Windows\system32\OobeFldr.dll 2015-08-13 09:47 - 2014-10-29 04:45 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys 2015-08-13 09:47 - 2014-10-29 04:45 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Ndu.sys 2015-08-13 09:47 - 2014-10-29 04:45 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mslldp.sys 2015-08-13 09:47 - 2014-10-29 04:45 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\mciwave.dll 2015-08-13 09:47 - 2014-10-29 04:45 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx 2015-08-13 09:47 - 2014-10-29 04:45 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll 2015-08-13 09:47 - 2014-10-29 04:45 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\normaliz.dll 2015-08-13 09:47 - 2014-10-29 04:42 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\dcomcnfg.exe 2015-08-13 09:47 - 2014-10-29 04:42 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\RpcNs4.dll 2015-08-13 09:47 - 2014-10-29 04:41 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\lpksetupproxyserv.dll 2015-08-13 09:47 - 2014-10-29 04:40 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2015-08-13 09:47 - 2014-10-29 04:38 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\pstorec.dll 2015-08-13 09:47 - 2014-10-29 04:34 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\systray.exe 2015-08-13 09:47 - 2014-10-29 04:33 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\InfDefaultInstall.exe 2015-08-13 09:47 - 2014-10-29 04:12 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\efsui.exe 2015-08-13 09:47 - 2014-10-29 04:06 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-08-13 09:47 - 2014-10-29 04:05 - 02628608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsLexicons0009.dll 2015-08-13 09:47 - 2014-10-29 04:04 - 00638976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll 2015-08-13 09:47 - 2014-10-29 04:04 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceUxRes.dll 2015-08-13 09:47 - 2014-10-29 04:04 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll 2015-08-13 09:47 - 2014-10-29 04:04 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2help.dll 2015-08-13 09:47 - 2014-10-29 04:04 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rnr20.dll 2015-08-13 09:47 - 2014-10-29 04:03 - 00077312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2015-08-13 09:47 - 2014-10-29 04:03 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSHTCPIP.DLL 2015-08-13 09:47 - 2014-10-29 04:03 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll 2015-08-13 09:47 - 2014-10-29 04:00 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OobeFldr.dll 2015-08-13 09:47 - 2014-10-29 04:00 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx 2015-08-13 09:47 - 2014-10-29 04:00 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll 2015-08-13 09:47 - 2014-10-29 04:00 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\normaliz.dll 2015-08-13 09:47 - 2014-10-29 04:00 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprop.dll 2015-08-13 09:47 - 2014-10-29 03:57 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RpcNs4.dll 2015-08-13 09:47 - 2014-10-29 03:56 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pstorec.dll 2015-08-13 09:47 - 2014-10-29 03:32 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthudtask.exe 2015-08-13 09:47 - 2014-10-29 03:29 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\dabapi.dll 2015-08-13 09:47 - 2014-10-29 03:29 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\C_ISCII.DLL 2015-08-13 09:47 - 2014-10-29 03:28 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\TcpipSetup.dll 2015-08-13 09:47 - 2014-10-29 03:27 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\TRACERT.EXE 2015-08-13 09:47 - 2014-10-29 03:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\HOSTNAME.EXE 2015-08-13 09:47 - 2014-10-29 03:23 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\AppxStreamingDataSourcePS.dll 2015-08-13 09:47 - 2014-10-29 03:06 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\C_ISCII.DLL 2015-08-13 09:47 - 2014-10-29 03:06 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dabapi.dll 2015-08-13 09:30 - 2015-03-14 02:09 - 00200192 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll 2015-08-13 09:12 - 2014-06-10 00:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2015-08-13 09:12 - 2014-06-10 00:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2015-08-13 09:10 - 2015-03-23 23:59 - 00360480 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll 2015-08-13 09:10 - 2015-03-23 23:45 - 00257216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll 2015-08-13 09:10 - 2015-03-20 05:17 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe 2015-08-13 09:10 - 2015-03-20 04:41 - 00369152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tracerpt.exe 2015-08-13 09:10 - 2015-03-20 04:40 - 00950784 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2015-08-13 09:10 - 2015-03-20 04:16 - 00749568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2015-08-13 09:10 - 2014-10-29 04:43 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe 2015-08-13 09:10 - 2014-10-29 04:17 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe 2015-08-13 09:10 - 2014-10-29 03:58 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskperf.exe 2015-08-13 09:10 - 2014-10-29 03:38 - 00087552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logman.exe 2015-08-13 09:10 - 2014-10-29 03:26 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe 2015-08-13 09:10 - 2014-10-29 03:26 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe 2015-08-13 09:10 - 2014-10-29 03:04 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\typeperf.exe 2015-08-13 09:10 - 2014-10-29 03:04 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\relog.exe 2015-08-13 09:09 - 2015-07-13 21:46 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2015-08-13 09:09 - 2015-07-13 21:45 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll 2015-08-13 09:09 - 2015-07-02 00:19 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2015-08-13 09:09 - 2015-07-02 00:16 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2015-08-13 09:09 - 2015-07-01 23:37 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2015-08-13 09:09 - 2015-07-01 23:35 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2015-08-13 09:09 - 2015-03-20 06:12 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll 2015-08-13 09:09 - 2015-03-20 06:10 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2015-08-13 09:09 - 2015-03-20 06:10 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2015-08-13 09:09 - 2014-10-29 03:57 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2015-08-13 09:09 - 2014-10-29 03:15 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2015-08-13 09:09 - 2014-10-29 03:15 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2015-08-13 09:09 - 2014-10-29 03:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2015-08-13 09:09 - 2014-10-29 03:13 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2015-08-13 09:09 - 2014-10-29 03:13 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2015-08-13 09:08 - 2015-07-14 05:22 - 02529880 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2015-08-13 09:08 - 2015-07-14 05:21 - 01901776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2015-08-13 09:08 - 2015-07-10 20:19 - 01101824 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2015-08-13 09:08 - 2015-07-10 19:42 - 02345472 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2015-08-13 09:08 - 2015-07-10 19:14 - 00856064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2015-08-13 09:08 - 2015-07-10 19:13 - 07032320 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-08-13 09:08 - 2015-07-10 18:47 - 01556992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2015-08-13 09:08 - 2015-07-10 18:31 - 06213120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-08-13 09:08 - 2015-02-24 10:32 - 00991552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys 2015-08-13 09:08 - 2014-10-29 04:24 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2015-08-13 09:08 - 2014-10-29 03:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2015-08-13 09:07 - 2015-06-11 05:49 - 01380600 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-08-13 09:07 - 2015-06-10 18:13 - 01097216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2015-08-13 09:04 - 2014-07-24 05:20 - 00875688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll 2015-08-13 09:04 - 2014-07-24 05:20 - 00869544 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll 2015-08-13 09:03 - 2015-07-29 16:37 - 01994752 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-08-13 09:03 - 2015-07-29 16:30 - 01381888 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-08-13 09:03 - 2015-07-29 16:23 - 01559552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2015-08-13 09:03 - 2015-07-24 20:57 - 04177408 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-08-13 09:03 - 2015-07-24 20:57 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2015-08-13 09:03 - 2015-07-24 20:52 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2015-08-13 09:03 - 2015-07-24 19:27 - 00301568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2015-08-13 09:03 - 2015-07-24 19:23 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2015-08-13 09:03 - 2015-07-09 19:13 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe 2015-08-13 09:03 - 2015-07-09 19:13 - 00221184 _____ (Microsoft Corporation) C:\Windows\notepad.exe 2015-08-13 09:03 - 2015-07-09 18:30 - 00212992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe 2015-08-13 09:03 - 2015-06-16 07:36 - 01661576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2015-08-13 09:03 - 2015-06-16 07:36 - 01212248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2015-08-13 09:03 - 2015-05-12 02:24 - 00536920 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll 2015-08-13 09:03 - 2015-03-04 12:25 - 00377152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys 2015-08-13 09:03 - 2015-03-04 05:04 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll 2015-08-13 09:03 - 2015-03-04 04:19 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll 2015-08-13 09:03 - 2015-02-21 01:49 - 00780800 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll 2015-08-13 09:03 - 2015-01-31 01:20 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll 2015-08-13 09:03 - 2015-01-28 03:31 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2015-08-13 09:03 - 2015-01-28 03:11 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2015-08-13 09:03 - 2015-01-27 06:22 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2015-08-13 09:03 - 2015-01-27 04:11 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2015-08-13 09:03 - 2014-10-29 05:56 - 00027456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys 2015-08-13 09:03 - 2014-10-29 04:49 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2015-08-13 09:03 - 2014-10-29 04:48 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\workerdd.dll 2015-08-13 09:03 - 2014-10-29 04:44 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2015-08-13 09:03 - 2014-10-29 04:44 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2015-08-13 09:03 - 2014-10-29 04:42 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll 2015-08-13 09:03 - 2014-10-29 04:37 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll 2015-08-13 09:03 - 2014-10-29 04:04 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2015-08-13 09:03 - 2014-10-29 04:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2015-08-13 09:03 - 2014-10-29 04:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2015-08-13 09:03 - 2014-10-29 03:19 - 00268288 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll 2015-08-13 09:03 - 2014-10-29 02:59 - 00230912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll 2015-08-13 09:02 - 2015-05-07 18:47 - 00564224 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll 2015-08-13 09:02 - 2015-04-25 04:34 - 00653824 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2015-08-13 09:02 - 2015-04-25 04:33 - 00549888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll 2015-08-13 09:02 - 2015-04-09 00:55 - 00410128 _____ (Microsoft Corporation) C:\Windows\system32\services.exe 2015-08-13 09:02 - 2015-03-13 04:58 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll 2015-08-13 09:02 - 2015-03-13 04:37 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll 2015-08-13 09:02 - 2015-03-11 03:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe 2015-08-13 09:02 - 2015-03-11 03:09 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe 2015-08-13 09:02 - 2015-01-29 20:45 - 01763352 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2015-08-13 09:02 - 2015-01-29 20:34 - 01488040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2015-08-13 09:02 - 2014-12-19 08:26 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2015-08-13 09:02 - 2014-12-12 04:04 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2015-08-13 09:02 - 2014-12-06 05:17 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2015-08-13 09:02 - 2014-12-06 03:41 - 00391680 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2015-08-13 09:02 - 2014-10-29 04:45 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll 2015-08-13 09:02 - 2014-10-29 04:00 - 00642560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll 2015-08-13 09:02 - 2014-10-29 04:00 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll 2015-08-13 09:02 - 2014-10-29 03:24 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2015-08-13 09:02 - 2014-10-29 03:01 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2015-08-13 09:02 - 2014-10-13 04:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys 2015-08-13 09:02 - 2014-10-13 04:43 - 00039744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys 2015-08-13 08:43 - 2015-08-13 08:43 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Foxit Software 2015-08-13 08:41 - 2015-08-13 11:53 - 00000000 ____D C:\AdwCleaner 2015-08-12 20:52 - 2015-05-19 13:59 - 00207208 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\HipShieldK.sys 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Vorlagen 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Startmenü 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Programme 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\ProgramData\Vorlagen 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\ProgramData\Startmenü 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\ProgramData\Dokumente 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2015-08-11 21:57 - 2015-08-11 21:57 - 00000000 _SHDL C:\Dokumente und Einstellungen 2015-08-11 20:35 - 2015-08-11 20:36 - 00033204 _____ C:\Users\Giovanni\Downloads\Addition.txt 2015-08-11 20:34 - 2015-08-14 12:11 - 00519277 _____ C:\Users\Giovanni\Downloads\FRST.txt 2015-08-11 20:33 - 2015-08-14 12:14 - 00000000 ____D C:\FRST 2015-08-11 20:33 - 2015-08-13 12:16 - 02173952 _____ (Farbar) C:\Users\Giovanni\Desktop\FRST64.exe 2015-08-11 20:14 - 2015-08-11 20:14 - 00003712 _____ C:\Users\Giovanni\Documents\Ereignisse.txt 2015-08-11 20:00 - 2015-08-13 20:06 - 00000116 _____ C:\Windows\setupact.log 2015-08-11 20:00 - 2015-08-11 20:00 - 00000000 _____ C:\Windows\setuperr.log 2015-08-11 19:58 - 2015-08-11 19:58 - 00059360 _____ C:\Users\Giovanni\Documents\AVSCAN-20150811-190341-72E69B44.LOG 2015-08-11 18:55 - 2015-08-11 18:55 - 00003264 _____ C:\Windows\System32\Tasks\Pokki 2015-08-11 18:49 - 2015-08-13 20:06 - 00492368 _____ C:\Windows\system32\FNTCACHE.DAT 2015-08-11 18:43 - 2015-08-11 18:43 - 00002804 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2015-08-11 18:43 - 2015-08-11 18:43 - 00000838 _____ C:\Users\Public\Desktop\CCleaner.lnk 2015-08-11 18:43 - 2015-08-11 18:43 - 00000000 ____D C:\Program Files\CCleaner 2015-08-11 18:40 - 2015-08-11 18:40 - 05375464 _____ (Piriform Ltd) C:\Users\Giovanni\Downloads\ccsetup508_slim.exe 2015-08-11 18:34 - 2015-08-11 18:34 - 04721376 _____ (Avira Operations GmbH & Co. KG) C:\Users\Giovanni\Desktop\avira_de_av_55ca065f34e17__bng.exe 2015-08-11 17:53 - 2015-08-13 20:26 - 00000000 ____D C:\Users\Giovanni\AppData\Local\CrashDumps 2015-08-11 17:38 - 2015-08-11 17:38 - 00000000 ____D C:\Users\Giovanni\AppData\Local\Acer Aspire R7 Tutorial 2015-08-11 17:33 - 2015-08-11 17:33 - 00002005 _____ C:\Users\Public\Desktop\abPhoto.lnk 2015-08-11 17:22 - 2015-08-11 17:22 - 00002001 _____ C:\Users\Public\Desktop\abMedia.lnk 2015-08-11 17:19 - 2015-08-11 17:20 - 00001140 _____ C:\Users\Public\Desktop\Avira.lnk 2015-08-11 17:18 - 2015-08-11 17:18 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Avira 2015-08-11 16:53 - 2015-08-11 17:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2015-08-11 16:53 - 2015-08-11 17:19 - 00000000 ____D C:\ProgramData\Avira 2015-08-11 16:53 - 2015-08-11 17:19 - 00000000 ____D C:\Program Files (x86)\Avira 2015-08-11 16:53 - 2015-07-15 08:37 - 00148632 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2015-08-11 16:53 - 2015-07-15 08:37 - 00137288 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2015-08-11 16:53 - 2015-07-15 08:37 - 00043576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2015-08-11 16:53 - 2015-07-15 08:37 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2015-08-11 16:42 - 2015-08-11 16:42 - 00000000 ____D C:\Program Files\Common Files\AV 2015-08-11 16:41 - 2015-08-11 16:41 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\dlg 2015-08-11 16:39 - 2015-08-11 16:39 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\AVG 2015-08-11 16:39 - 2015-08-11 16:39 - 00000000 ____D C:\Users\Giovanni\AppData\Local\Avg 2015-08-11 16:38 - 2015-08-11 16:40 - 00000000 ____D C:\ProgramData\AVG 2015-08-11 16:27 - 2015-08-14 08:38 - 00003958 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{FE0F8107-04D4-4B03-8F58-39703C9DC7FC} 2015-08-11 16:27 - 2015-08-11 16:27 - 00000000 __SHD C:\Users\Giovanni\AppData\Local\EmieUserList 2015-08-11 16:27 - 2015-08-11 16:27 - 00000000 __SHD C:\Users\Giovanni\AppData\Local\EmieSiteList 2015-08-11 16:27 - 2015-08-11 16:27 - 00000000 __SHD C:\Users\Giovanni\AppData\Local\EmieBrowserModeList 2015-08-11 16:26 - 2015-08-11 16:26 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2015-08-11 16:23 - 2015-08-11 16:23 - 00000000 ____D C:\Users\Giovanni\AppData\Local\GWX 2015-08-11 16:22 - 2015-08-14 08:14 - 00000000 ___RD C:\Users\Giovanni\OneDrive 2015-08-11 16:21 - 2015-08-11 16:21 - 00001969 _____ C:\Users\Public\Desktop\abDocs.lnk 2015-08-11 16:20 - 2015-08-14 11:50 - 00003596 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-209834852-2542712019-429283644-1001 2015-08-11 16:20 - 2015-08-11 16:20 - 00003352 _____ C:\Windows\System32\Tasks\BacKGroundAgent 2015-08-11 16:20 - 2015-08-11 16:20 - 00000000 ____D C:\Users\Public\Pokki 2015-08-11 16:19 - 2015-08-11 20:00 - 00002322 _____ C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk 2015-08-11 16:16 - 2015-08-14 08:37 - 00000000 ____D C:\Users\Giovanni\AppData\Local\clear.fi 2015-08-11 16:16 - 2015-08-11 16:16 - 00001276 _____ C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HD Audio-Manager.lnk 2015-08-11 16:16 - 2015-08-11 16:16 - 00000000 ____D C:\Users\Giovanni\PicStream 2015-08-11 16:16 - 2015-08-11 16:16 - 00000000 ____D C:\Users\Giovanni\Documents\Meine empfangenen Dateien 2015-08-11 16:16 - 2015-08-11 16:16 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Macromedia 2015-08-11 16:16 - 2015-08-11 16:16 - 00000000 ____D C:\Users\Giovanni\AppData\Local\iGware 2015-08-11 16:16 - 2015-08-11 16:16 - 00000000 ____D C:\Users\Giovanni\AppData\Local\AOP SDK 2015-08-11 16:15 - 2015-08-11 16:15 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2015-08-11 16:15 - 2015-08-11 16:15 - 00000000 ____D C:\Program Files (x86)\OEM 2015-08-11 16:14 - 2015-08-14 08:15 - 00000000 ____D C:\Users\Giovanni\AppData\Local\VirtualStore 2015-08-11 16:14 - 2015-08-13 20:45 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Adobe 2015-08-11 16:14 - 2015-08-13 17:27 - 00000000 ____D C:\Users\Giovanni\AppData\Local\Packages 2015-08-11 16:14 - 2015-08-11 16:14 - 00001454 _____ C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-08-11 16:14 - 2015-08-11 16:14 - 00000118 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2015-08-11 16:14 - 2015-08-11 16:14 - 00000000 ____D C:\Windows\oem 2015-08-11 16:14 - 2015-08-11 16:14 - 00000000 ____D C:\Users\Giovanni\AppData\Local\OEM 2015-08-11 16:14 - 2015-08-11 16:14 - 00000000 ____D C:\ProgramData\OEM_YAHOO 2015-08-11 16:14 - 2015-08-11 16:14 - 00000000 ____D C:\Program Files\Accessory Store 2015-08-11 16:13 - 2015-08-11 16:13 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Intel 2015-08-11 16:12 - 2015-08-11 16:21 - 00000000 ___SD C:\Windows\system32\GWX 2015-08-11 16:12 - 2015-08-11 16:12 - 00000000 ___SD C:\Windows\SysWOW64\GWX Code:
ATTFilter 2015-08-11 16:11 - 2015-08-14 08:37 - 00000000 ____D C:\Users\Giovanni 2015-08-11 16:11 - 2015-08-11 16:11 - 00000020 ___SH C:\Users\Giovanni\ntuser.ini 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Vorlagen 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Startmenü 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Netzwerkumgebung 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Lokale Einstellungen 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Eigene Dateien 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Druckumgebung 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Documents\Eigene Musik 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Documents\Eigene Bilder 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\AppData\Local\Verlauf 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\AppData\Local\Anwendungsdaten 2015-08-11 16:11 - 2015-08-11 16:11 - 00000000 _SHDL C:\Users\Giovanni\Anwendungsdaten 2015-08-11 16:11 - 2015-04-03 13:37 - 00000000 ___RD C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-08-11 16:11 - 2014-10-27 18:49 - 00000000 ___RD C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-11 16:11 - 2014-03-18 12:13 - 00000369 _____ C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2015-08-11 16:11 - 2014-03-18 12:13 - 00000369 _____ C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2015-08-11 16:11 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-11 16:11 - 2013-08-22 17:36 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-08-11 15:57 - 2015-07-09 20:48 - 02758128 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2015-08-11 15:57 - 2015-07-09 20:48 - 00131712 _____ (Microsoft Corporation) C:\Windows\system32\RestoreOptIn.exe 2015-08-11 15:57 - 2015-07-09 20:40 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-08-11 15:57 - 2015-07-09 19:59 - 02412576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2015-08-11 15:57 - 2015-07-09 19:59 - 00112624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RestoreOptIn.exe 2015-08-11 15:57 - 2015-06-27 05:08 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-08-11 15:57 - 2015-06-27 05:08 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-08-11 15:57 - 2015-06-27 04:14 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-08-11 15:57 - 2015-03-14 03:51 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2015-08-11 15:57 - 2014-10-18 08:50 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wuaext.dll 2015-08-11 15:56 - 2015-08-14 10:15 - 01818713 _____ C:\Windows\WindowsUpdate.log ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-14 12:00 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sru 2015-08-14 10:21 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppCompat 2015-08-14 09:54 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness 2015-08-14 08:37 - 2014-10-27 19:04 - 00000000 ____D C:\ProgramData\OEM 2015-08-14 08:36 - 2014-10-27 19:12 - 00000000 ____D C:\ProgramData\McAfee 2015-08-14 08:33 - 2014-10-27 19:12 - 00000000 ____D C:\Program Files\Common Files\mcafee 2015-08-14 08:32 - 2013-08-22 17:36 - 00000000 ___HD C:\Windows\ELAMBKUP 2015-08-14 08:24 - 2014-10-27 19:04 - 00000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer 2015-08-14 08:24 - 2014-10-27 19:04 - 00000000 ____D C:\Program Files (x86)\Acer 2015-08-14 08:23 - 2014-10-27 19:12 - 00000000 ____D C:\Program Files (x86)\McAfee 2015-08-13 20:43 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\FxsTmp 2015-08-13 20:14 - 2015-04-03 22:40 - 00765582 _____ C:\Windows\system32\perfh007.dat 2015-08-13 20:14 - 2015-04-03 22:40 - 00159366 _____ C:\Windows\system32\perfc007.dat 2015-08-13 20:14 - 2014-03-18 12:03 - 01776918 _____ C:\Windows\system32\PerfStringBackup.INI 2015-08-13 20:10 - 2015-04-03 14:06 - 00011724 _____ C:\Windows\SysWOW64\Gms.log 2015-08-13 20:06 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-08-13 18:04 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI 2015-08-13 18:01 - 2013-08-22 17:36 - 00000000 ___RD C:\Windows\ToastData 2015-08-13 18:01 - 2013-08-22 17:36 - 00000000 ___RD C:\Windows\ImmersiveControlPanel 2015-08-13 18:01 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\PolicyDefinitions 2015-08-13 18:00 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-13 18:00 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-13 18:00 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\WinStore 2015-08-13 18:00 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Defender 2015-08-13 18:00 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2015-08-13 17:57 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp 2015-08-13 17:10 - 2013-08-22 15:25 - 00000199 _____ C:\Windows\win.ini 2015-08-13 15:11 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-08-13 15:08 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\System 2015-08-13 15:07 - 2014-03-18 11:45 - 00000000 ____D C:\Windows\ShellNew 2015-08-13 14:28 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-08-13 14:28 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-08-13 14:28 - 2013-08-22 17:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-13 14:28 - 2013-08-22 17:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-13 14:28 - 2013-08-22 17:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-08-13 14:28 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\SysWOW64\sppui 2015-08-13 14:28 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\SysWOW64\setup 2015-08-13 14:28 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\SysWOW64\migwiz 2015-08-13 14:28 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\SysWOW64\Com 2015-08-13 14:28 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\MediaViewer 2015-08-13 14:28 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\FileManager 2015-08-13 14:28 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\Camera 2015-08-13 14:28 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Portable Devices 2015-08-13 14:28 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2015-08-13 14:28 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Multimedia Platform 2015-08-13 14:28 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\SysWOW64\oobe 2015-08-13 14:28 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\SysWOW64\Dism 2015-08-13 14:28 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\servicing 2015-08-13 14:27 - 2013-08-22 17:36 - 00000000 ___SD C:\Windows\system32\dsc 2015-08-13 14:27 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\WinBioPlugIns 2015-08-13 14:27 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\SystemResetPlatform 2015-08-13 14:27 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sppui 2015-08-13 14:27 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\setup 2015-08-13 14:27 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\migwiz 2015-08-13 14:27 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\Com 2015-08-13 14:27 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\IME 2015-08-13 14:27 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\system32\Sysprep 2015-08-13 14:27 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\system32\oobe 2015-08-13 14:27 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\system32\Dism 2015-08-13 14:26 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices 2015-08-13 14:26 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2015-08-13 14:26 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform 2015-08-13 14:25 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-13 14:25 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-13 14:25 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\WindowsPowerShell 2015-08-13 14:11 - 2013-08-22 17:36 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll 2015-08-13 14:11 - 2013-08-22 17:36 - 00195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll 2015-08-13 13:44 - 2014-03-18 11:45 - 00000000 ____D C:\Program Files\Windows Journal 2015-08-13 10:43 - 2013-08-22 17:36 - 00000000 ___HD C:\Windows\system32\GroupPolicy 2015-08-12 20:51 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\ELAM 2015-08-11 21:58 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache 2015-08-11 21:57 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows NT 2015-08-11 21:57 - 2013-08-22 15:36 - 00000000 __RHD C:\Users\Default 2015-08-11 18:44 - 2014-10-27 19:22 - 00000000 ____D C:\Windows\Panther 2015-08-11 17:39 - 2014-10-27 19:09 - 00000000 ____D C:\Windows\System32\Tasks\Recovery Management 2015-08-11 17:20 - 2014-10-27 19:11 - 00000000 ____D C:\ProgramData\Package Cache 2015-08-11 16:29 - 2014-10-27 19:21 - 00000000 ___HD C:\OEM 2015-08-11 16:29 - 2014-10-27 19:04 - 00000000 ____D C:\ProgramData\Acer 2015-08-11 16:25 - 2015-04-03 14:16 - 00002904 _____ C:\Windows\System32\Tasks\Launch Manager 2015-08-11 15:58 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\system32\AdvancedInstallers 2015-08-11 15:57 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\restore ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-04-03 13:59 - 2015-04-03 13:59 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Einige Dateien in TEMP: ==================== C:\Users\Giovanni\AppData\Local\Temp\avgnt.exe C:\Users\Giovanni\AppData\Local\Temp\DseShExt-x64.dll C:\Users\Giovanni\AppData\Local\Temp\DseShExt-x86.dll C:\Users\Giovanni\AppData\Local\Temp\oct797A.tmp.exe C:\Users\Giovanni\AppData\Local\Temp\Quarantine.exe C:\Users\Giovanni\AppData\Local\Temp\SDShelEx-win32.dll C:\Users\Giovanni\AppData\Local\Temp\SDShelEx-x64.dll C:\Users\Giovanni\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2014-10-27 18:23 ==================== Ende von Ergebnis ============================ DANKE für die bisherige Hlfe. Auf die Frage, ob "noch Probleme" da sind: Habe jetzt nochmal Antivir Systemdurchsuchung durchgeführt und erhalte eine Warnung: Code:
ATTFilter C:\swapfile.sys [WARNUNG] Die Datei konnte nicht geöffnet werden! Ansonsten warte ich auf Deine Diagnose nach Sichtung des letzten FRST. Und bedanke mich nochmal sehr herzlich! |
15.08.2015, 06:15 | #14 |
/// the machine /// TB-Ausbilder | pua/DownProt.I - Virus/Malware Die Warnung von Avira ist normal. Kein Grund zur Sorge. Ist ne legitime Datei die von Avira nicht geöffnet werden kann. Papierkorb leeren. Cleanup: (Die Reihenfolge ist hier entscheidend) Falls Defogger verwendet wurde: Erneut starten und auf Re-enable klicken. Falls Combofix verwendet wurde: Combofix deinstallieren .
Alle Logs gepostet? Dann lade Dir bitte DelFix herunter.
Hinweis: DelFix entfernt u.a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst. Starte Deinen Rechner abschließend neu. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein, kannst Du diese bedenkenlos löschen. Wenn Du möchtest, kannst Du hier sagen, ob Du mit mir und meiner Hilfe zufrieden warst...und/oder das Forum mit einer kleinen Spende unterstützen. Absicherung: Beim Betriebsystem Windows die automatischen Updates aktivieren. Auch die sicherheitsrelevante Software sollte immer nur in der aktuellsten Version vorliegen: Browser Java Flash-Player PDF-Reader Sicherheitslücken in deren alten Versionen werden dazu ausgenutzt, um beim einfachen Besuch einer manipulierten Website per "Drive-by" Malware zu installieren. Ich empfehle z.B. die Verwendung von Mozilla Firefox statt des Internet Explorers. Zudem lassen sich mit dem Firefox auch PDF-Dokumente öffnen. Aktiviere eine Firewall. Die in Windows integrierte genügt im Normalfall völlig. Verwende ein Antivirusprogramm mit Echtzeitscanner und stets aktueller Signaturendatenbank. Meine Empfehlung: Emsisoft Zusätzlich kannst Du Deinen PC regelmäßig mit Malwarebytes Anti-Malware und ESET scannen. Optional: NoScript verhindert das Ausführen von aktiven Inhalten (Java, JavaScript, Flash,...) für sämtliche Websites. Man kann aber nach dem Prinzip einer Whitelist festlegen, auf welchen Seiten Scripts erlaubt werden sollen. Malwarebytes Anti Exploit: Schützt die Anwendungen des Computers vor der Ausnutzung bekannter Schwachstellen. Lade Software von einem sauberen Portal wie . Wähle beim Installieren von Software immer die benutzerdefinierte Option und entferne den Haken bei allen optional angebotenen Toolbars oder sonstigen, fürs Programm, irrelevanten Ergänzungen. Um Adware wieder los zu werden, empfiehlt sich zunächst die Deinstallation sowie die anschließende Resteentfernung mit Adwarecleaner . Abschließend noch ein paar grundsätzliche Bemerkungen: Ändere regelmäßig Deine wichtigen Online-Passwörter und erstelle regelmäßig Backups Deiner wichtigen Dateien oder des Systems. Der Nutzen von Registry-Cleanern, Optimizern usw. zur Performancesteigerung ist umstritten. Ich empfehle deshalb, die Finger von der Registry zu lassen und lieber die windowseigene Datenträgerbereinigung zu verwenden.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
21.08.2015, 08:55 | #15 |
| pua/DownProt.I - Virus/Malware Betr: Vllt doch noch infiziert - oder neue PUA-Malware? Hallo Schrauber, gerade hat mein Avira einen neuen/weiteren PUA-Fund gemeldet "PUA/InstallMonetizer.gen". Ich kann mir nicht erklären wo der herkommt. Bisher habe ich nur PDF creator allerdings von der CHIP-Seite downgeloaded ( Hier der AVIRA-Bericht ich mache gerade den FRST Scan und füge ihn danac gleich bei. Code:
ATTFilter Free Antivirus Erstellungsdatum der Reportdatei: Freitag, 21. August 2015 09:25 Das Programm läuft als uneingeschränkte Vollversion. Online-Dienste stehen zur Verfügung. Lizenznehmer : Free Seriennummer : 0000149996-AVHOE-0000001 Plattform : Windows 8.1 Windowsversion : (plain) [6.3.9600] Boot Modus : Normal gebootet Benutzername : SYSTEM Computername : BIG_LEBOWSKI Versionsinformationen: BUILD.DAT : 15.0.12.408 93846 Bytes 15.07.2015 08:38:00 AVSCAN.EXE : 15.0.12.402 1171384 Bytes 15.07.2015 06:37:55 AVSCANRC.DLL : 15.0.12.380 67688 Bytes 15.07.2015 06:37:55 LUKE.DLL : 15.0.12.398 69248 Bytes 15.07.2015 06:38:20 AVSCPLR.DLL : 15.0.12.398 106352 Bytes 15.07.2015 06:37:55 REPAIR.DLL : 15.0.12.402 516304 Bytes 15.07.2015 06:37:54 REPAIR.RDF : 1.0.9.76 1056085 Bytes 20.08.2015 14:49:56 AVREG.DLL : 15.0.12.398 318008 Bytes 15.07.2015 06:37:54 AVLODE.DLL : 15.0.12.402 634712 Bytes 15.07.2015 06:37:53 AVLODE.RDF : 14.0.5.2 79262 Bytes 19.08.2015 19:44:32 XBV00024.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00025.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00026.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00027.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00028.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00029.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00030.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00031.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00032.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00033.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00034.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00035.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00036.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00037.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00038.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00039.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00040.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00041.VDF : 8.11.165.190 2048 Bytes 07.08.2014 06:38:40 XBV00185.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00186.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00187.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00188.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00189.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00190.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00191.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00192.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00193.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00194.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00195.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00196.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00197.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:40 XBV00198.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00199.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00200.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00201.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00202.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00203.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00204.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00205.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00206.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00207.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00208.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00209.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00210.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00211.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00212.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00213.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00214.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00215.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00216.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00217.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00218.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00219.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00220.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00221.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00222.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00223.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00224.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00225.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00226.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00227.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00228.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00229.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:41 XBV00230.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00231.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00232.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00233.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00234.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00235.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00236.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00237.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00238.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00239.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00240.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00241.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00242.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:42 XBV00243.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:43 XBV00244.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:44 XBV00245.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:44 XBV00246.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:44 XBV00247.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00248.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00249.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00250.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00251.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00252.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00253.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00254.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00255.VDF : 8.11.254.112 2048 Bytes 07.08.2015 15:31:45 XBV00000.VDF : 7.11.70.0 66736640 Bytes 04.04.2013 06:38:40 XBV00001.VDF : 7.11.74.226 2201600 Bytes 30.04.2013 06:38:40 XBV00002.VDF : 7.11.80.60 2751488 Bytes 28.05.2013 06:38:40 XBV00003.VDF : 7.11.85.214 2162688 Bytes 21.06.2013 06:38:40 XBV00004.VDF : 7.11.91.176 3903488 Bytes 23.07.2013 06:38:40 XBV00005.VDF : 7.11.98.186 6822912 Bytes 29.08.2013 06:38:40 XBV00006.VDF : 7.11.139.38 15708672 Bytes 27.03.2014 06:38:40 XBV00007.VDF : 7.11.152.100 4193792 Bytes 02.06.2014 06:38:40 XBV00008.VDF : 8.11.165.192 4251136 Bytes 07.08.2014 06:38:40 XBV00009.VDF : 8.11.172.30 2094080 Bytes 15.09.2014 06:38:40 XBV00010.VDF : 8.11.178.32 1581056 Bytes 14.10.2014 06:38:40 XBV00011.VDF : 8.11.184.50 2178560 Bytes 11.11.2014 06:38:40 XBV00012.VDF : 8.11.190.32 1876992 Bytes 03.12.2014 06:38:40 XBV00013.VDF : 8.11.201.28 2973696 Bytes 14.01.2015 06:38:40 XBV00014.VDF : 8.11.206.252 2695680 Bytes 04.02.2015 06:38:40 XBV00015.VDF : 8.11.213.84 3175936 Bytes 03.03.2015 06:38:40 XBV00016.VDF : 8.11.213.176 212480 Bytes 05.03.2015 06:38:40 XBV00017.VDF : 8.11.219.166 2033664 Bytes 25.03.2015 06:38:40 XBV00018.VDF : 8.11.225.88 2367488 Bytes 22.04.2015 06:38:40 XBV00019.VDF : 8.11.230.186 1674752 Bytes 13.05.2015 06:38:40 XBV00020.VDF : 8.11.237.30 4711936 Bytes 02.06.2015 06:38:40 XBV00021.VDF : 8.11.243.12 2747904 Bytes 26.06.2015 06:38:40 XBV00022.VDF : 8.11.248.172 2350592 Bytes 17.07.2015 15:31:23 XBV00023.VDF : 8.11.254.112 2570752 Bytes 07.08.2015 15:31:24 XBV00042.VDF : 8.11.254.114 5632 Bytes 07.08.2015 15:31:24 XBV00043.VDF : 8.11.254.116 9216 Bytes 07.08.2015 15:31:24 XBV00044.VDF : 8.11.254.120 40960 Bytes 07.08.2015 15:31:24 XBV00045.VDF : 8.11.254.122 13824 Bytes 07.08.2015 15:31:24 XBV00046.VDF : 8.11.254.126 30720 Bytes 07.08.2015 15:31:24 XBV00047.VDF : 8.11.254.128 10240 Bytes 07.08.2015 15:31:25 XBV00048.VDF : 8.11.254.130 2048 Bytes 07.08.2015 15:31:25 XBV00049.VDF : 8.11.254.132 17920 Bytes 07.08.2015 15:31:25 XBV00050.VDF : 8.11.254.146 8704 Bytes 07.08.2015 15:31:25 XBV00051.VDF : 8.11.254.162 54784 Bytes 08.08.2015 15:31:25 XBV00052.VDF : 8.11.254.176 2048 Bytes 08.08.2015 15:31:25 XBV00053.VDF : 8.11.254.190 9728 Bytes 08.08.2015 15:31:25 XBV00054.VDF : 8.11.254.204 32768 Bytes 08.08.2015 15:31:25 XBV00055.VDF : 8.11.254.206 99328 Bytes 09.08.2015 15:31:25 XBV00056.VDF : 8.11.254.220 14336 Bytes 09.08.2015 15:31:25 XBV00057.VDF : 8.11.254.232 2048 Bytes 09.08.2015 15:31:25 XBV00058.VDF : 8.11.254.244 28160 Bytes 09.08.2015 15:31:25 XBV00059.VDF : 8.11.255.2 3584 Bytes 09.08.2015 15:31:25 XBV00060.VDF : 8.11.255.4 95232 Bytes 10.08.2015 15:31:25 XBV00061.VDF : 8.11.255.6 4608 Bytes 10.08.2015 15:31:26 XBV00062.VDF : 8.11.255.8 8192 Bytes 10.08.2015 15:31:26 XBV00063.VDF : 8.11.255.20 6656 Bytes 10.08.2015 15:31:26 XBV00064.VDF : 8.11.255.32 22016 Bytes 10.08.2015 15:31:26 XBV00065.VDF : 8.11.255.44 2048 Bytes 10.08.2015 15:31:26 XBV00066.VDF : 8.11.255.56 7680 Bytes 10.08.2015 15:31:26 XBV00067.VDF : 8.11.255.58 7680 Bytes 10.08.2015 15:31:26 XBV00068.VDF : 8.11.255.60 37888 Bytes 10.08.2015 15:31:26 XBV00069.VDF : 8.11.255.62 19456 Bytes 10.08.2015 15:31:26 XBV00070.VDF : 8.11.255.64 5120 Bytes 10.08.2015 15:31:26 XBV00071.VDF : 8.11.255.66 10240 Bytes 10.08.2015 15:31:26 XBV00072.VDF : 8.11.255.68 24576 Bytes 10.08.2015 15:31:26 XBV00073.VDF : 8.11.255.74 30208 Bytes 10.08.2015 15:31:26 XBV00074.VDF : 8.11.255.86 7680 Bytes 10.08.2015 15:31:26 XBV00075.VDF : 8.11.255.96 9216 Bytes 10.08.2015 15:31:26 XBV00076.VDF : 8.11.255.106 8192 Bytes 10.08.2015 15:31:27 XBV00077.VDF : 8.11.255.116 5632 Bytes 10.08.2015 15:31:27 XBV00078.VDF : 8.11.255.120 26112 Bytes 11.08.2015 15:31:36 XBV00079.VDF : 8.11.255.122 2048 Bytes 11.08.2015 15:31:36 XBV00080.VDF : 8.11.255.124 24064 Bytes 11.08.2015 15:31:36 XBV00081.VDF : 8.11.255.126 7168 Bytes 11.08.2015 15:31:36 XBV00082.VDF : 8.11.255.128 9728 Bytes 11.08.2015 15:31:36 XBV00083.VDF : 8.11.255.130 7680 Bytes 11.08.2015 19:19:11 XBV00084.VDF : 8.11.255.132 8192 Bytes 11.08.2015 19:19:12 XBV00085.VDF : 8.11.255.136 64000 Bytes 11.08.2015 19:19:12 XBV00086.VDF : 8.11.255.146 2560 Bytes 11.08.2015 19:19:12 XBV00087.VDF : 8.11.255.156 25600 Bytes 11.08.2015 19:19:12 XBV00088.VDF : 8.11.255.166 18944 Bytes 11.08.2015 07:59:32 XBV00089.VDF : 8.11.255.176 22528 Bytes 11.08.2015 07:59:32 XBV00090.VDF : 8.11.255.184 51200 Bytes 12.08.2015 07:59:32 XBV00091.VDF : 8.11.255.186 6144 Bytes 12.08.2015 07:59:32 XBV00092.VDF : 8.11.255.188 9728 Bytes 12.08.2015 07:59:32 XBV00093.VDF : 8.11.255.190 13312 Bytes 12.08.2015 07:59:32 XBV00094.VDF : 8.11.255.200 5120 Bytes 12.08.2015 11:19:23 XBV00095.VDF : 8.11.255.208 5632 Bytes 12.08.2015 11:19:23 XBV00096.VDF : 8.11.255.220 36864 Bytes 12.08.2015 19:01:08 XBV00097.VDF : 8.11.255.228 2048 Bytes 12.08.2015 19:01:08 XBV00098.VDF : 8.11.255.236 19456 Bytes 12.08.2015 19:01:08 XBV00099.VDF : 8.11.255.238 13312 Bytes 12.08.2015 19:01:08 XBV00100.VDF : 8.11.255.240 10752 Bytes 12.08.2015 09:33:23 XBV00101.VDF : 8.11.255.242 12800 Bytes 12.08.2015 09:33:23 XBV00102.VDF : 8.11.255.244 5632 Bytes 12.08.2015 09:33:23 XBV00103.VDF : 8.11.255.246 9216 Bytes 12.08.2015 09:33:23 XBV00104.VDF : 8.11.255.248 5632 Bytes 12.08.2015 09:33:23 XBV00105.VDF : 8.11.255.254 9216 Bytes 13.08.2015 09:33:23 XBV00106.VDF : 8.12.0.0 48640 Bytes 13.08.2015 09:33:23 XBV00107.VDF : 8.12.0.8 6144 Bytes 13.08.2015 09:33:23 XBV00108.VDF : 8.12.0.16 4096 Bytes 13.08.2015 09:33:23 XBV00109.VDF : 8.12.0.24 3584 Bytes 13.08.2015 09:33:23 XBV00110.VDF : 8.12.0.32 7680 Bytes 13.08.2015 09:33:23 XBV00111.VDF : 8.12.0.38 35328 Bytes 13.08.2015 06:17:09 XBV00112.VDF : 8.12.0.40 10752 Bytes 13.08.2015 06:17:09 XBV00113.VDF : 8.12.0.42 7168 Bytes 13.08.2015 06:17:09 XBV00114.VDF : 8.12.0.46 24576 Bytes 13.08.2015 06:17:09 XBV00115.VDF : 8.12.0.48 7168 Bytes 13.08.2015 06:17:09 XBV00116.VDF : 8.12.0.50 8704 Bytes 13.08.2015 06:17:09 XBV00117.VDF : 8.12.0.54 45056 Bytes 14.08.2015 08:16:09 XBV00118.VDF : 8.12.0.56 2048 Bytes 14.08.2015 08:16:09 XBV00119.VDF : 8.12.0.58 2048 Bytes 14.08.2015 08:16:09 XBV00120.VDF : 8.12.0.60 25088 Bytes 14.08.2015 10:15:44 XBV00121.VDF : 8.12.0.62 22528 Bytes 14.08.2015 12:16:31 XBV00122.VDF : 8.12.0.72 22016 Bytes 14.08.2015 06:36:05 XBV00123.VDF : 8.12.0.78 10240 Bytes 14.08.2015 06:36:05 XBV00124.VDF : 8.12.0.88 14336 Bytes 14.08.2015 06:36:05 XBV00125.VDF : 8.12.0.94 13312 Bytes 14.08.2015 06:36:05 XBV00126.VDF : 8.12.0.100 7168 Bytes 14.08.2015 06:36:06 XBV00127.VDF : 8.12.0.104 53248 Bytes 15.08.2015 12:34:34 XBV00128.VDF : 8.12.0.106 2560 Bytes 15.08.2015 12:34:34 XBV00129.VDF : 8.12.0.108 2048 Bytes 15.08.2015 12:34:34 XBV00130.VDF : 8.12.0.110 21504 Bytes 15.08.2015 12:34:34 XBV00131.VDF : 8.12.0.116 8704 Bytes 15.08.2015 08:35:26 XBV00132.VDF : 8.12.0.122 91648 Bytes 16.08.2015 08:35:26 XBV00133.VDF : 8.12.0.146 4096 Bytes 16.08.2015 10:35:23 XBV00134.VDF : 8.12.0.156 9216 Bytes 16.08.2015 10:35:23 XBV00135.VDF : 8.12.0.166 14848 Bytes 16.08.2015 12:35:24 XBV00136.VDF : 8.12.0.176 13824 Bytes 16.08.2015 14:35:26 XBV00137.VDF : 8.12.0.178 75264 Bytes 17.08.2015 06:49:29 XBV00138.VDF : 8.12.0.180 2048 Bytes 17.08.2015 06:49:29 XBV00139.VDF : 8.12.0.190 6656 Bytes 17.08.2015 06:49:29 XBV00140.VDF : 8.12.0.200 4096 Bytes 17.08.2015 06:49:29 XBV00141.VDF : 8.12.0.210 5632 Bytes 17.08.2015 06:49:30 XBV00142.VDF : 8.12.0.220 6656 Bytes 17.08.2015 06:49:30 XBV00143.VDF : 8.12.0.222 6656 Bytes 17.08.2015 06:49:30 XBV00144.VDF : 8.12.0.228 46592 Bytes 17.08.2015 06:49:30 XBV00145.VDF : 8.12.0.230 26624 Bytes 17.08.2015 06:49:30 XBV00146.VDF : 8.12.0.234 24064 Bytes 17.08.2015 06:49:30 XBV00147.VDF : 8.12.0.244 6656 Bytes 17.08.2015 06:49:31 XBV00148.VDF : 8.12.0.252 7680 Bytes 17.08.2015 06:49:31 XBV00149.VDF : 8.12.1.4 6144 Bytes 17.08.2015 06:49:31 XBV00150.VDF : 8.12.1.14 24064 Bytes 18.08.2015 06:49:31 XBV00151.VDF : 8.12.1.16 4608 Bytes 18.08.2015 06:49:31 XBV00152.VDF : 8.12.1.18 4096 Bytes 18.08.2015 06:49:31 XBV00153.VDF : 8.12.1.20 6144 Bytes 18.08.2015 10:48:47 XBV00154.VDF : 8.12.1.22 6144 Bytes 18.08.2015 10:48:47 XBV00155.VDF : 8.12.1.24 18432 Bytes 18.08.2015 10:48:47 XBV00156.VDF : 8.12.1.26 6144 Bytes 18.08.2015 10:48:48 XBV00157.VDF : 8.12.1.30 19456 Bytes 18.08.2015 14:49:05 XBV00158.VDF : 8.12.1.32 2048 Bytes 18.08.2015 14:49:05 XBV00159.VDF : 8.12.1.34 3072 Bytes 18.08.2015 16:49:10 XBV00160.VDF : 8.12.1.36 25600 Bytes 18.08.2015 16:49:10 XBV00161.VDF : 8.12.1.44 7680 Bytes 18.08.2015 06:22:34 XBV00162.VDF : 8.12.1.46 3072 Bytes 18.08.2015 06:22:34 XBV00163.VDF : 8.12.1.48 2048 Bytes 18.08.2015 06:22:34 XBV00164.VDF : 8.12.1.56 70656 Bytes 19.08.2015 06:22:34 XBV00165.VDF : 8.12.1.64 15360 Bytes 19.08.2015 19:44:32 XBV00166.VDF : 8.12.1.72 5120 Bytes 19.08.2015 19:44:32 XBV00167.VDF : 8.12.1.80 2560 Bytes 19.08.2015 19:44:32 XBV00168.VDF : 8.12.1.82 2048 Bytes 19.08.2015 19:44:32 XBV00169.VDF : 8.12.1.94 55296 Bytes 19.08.2015 19:44:32 XBV00170.VDF : 8.12.1.102 11264 Bytes 19.08.2015 19:44:32 XBV00171.VDF : 8.12.1.110 8704 Bytes 19.08.2015 06:50:50 XBV00172.VDF : 8.12.1.112 7168 Bytes 19.08.2015 06:50:50 XBV00173.VDF : 8.12.1.114 8192 Bytes 19.08.2015 06:50:50 XBV00174.VDF : 8.12.1.116 9216 Bytes 19.08.2015 06:50:50 XBV00175.VDF : 8.12.1.118 4608 Bytes 19.08.2015 06:50:50 XBV00176.VDF : 8.12.1.120 3584 Bytes 20.08.2015 06:50:50 XBV00177.VDF : 8.12.1.122 20480 Bytes 20.08.2015 06:50:50 XBV00178.VDF : 8.12.1.130 5120 Bytes 20.08.2015 06:50:50 XBV00179.VDF : 8.12.1.136 3072 Bytes 20.08.2015 06:50:50 XBV00180.VDF : 8.12.1.142 4096 Bytes 20.08.2015 10:49:45 XBV00181.VDF : 8.12.1.148 16896 Bytes 20.08.2015 10:49:45 XBV00182.VDF : 8.12.1.150 14848 Bytes 20.08.2015 10:49:45 XBV00183.VDF : 8.12.1.152 37888 Bytes 20.08.2015 14:49:55 XBV00184.VDF : 8.12.1.154 13824 Bytes 20.08.2015 16:50:48 LOCAL001.VDF : 8.12.1.154 135800832 Bytes 20.08.2015 16:52:27 Engineversion : 8.3.32.46 AEBB.DLL : 8.1.2.0 60448 Bytes 15.07.2015 06:37:47 AECORE.DLL : 8.3.7.2 249920 Bytes 15.07.2015 06:37:47 AEDROID.DLL : 8.4.3.324 1540160 Bytes 11.08.2015 15:31:22 AEEMU.DLL : 8.1.3.4 399264 Bytes 15.07.2015 06:37:47 AEEXP.DLL : 8.4.2.116 269168 Bytes 11.08.2015 15:31:22 AEGEN.DLL : 8.1.7.48 460704 Bytes 11.08.2015 15:31:15 AEHELP.DLL : 8.3.2.2 281456 Bytes 15.07.2015 06:37:47 AEHEUR.DLL : 8.1.4.1860 8625280 Bytes 13.08.2015 13:33:51 AEMOBILE.DLL : 8.1.8.2 303168 Bytes 15.07.2015 06:37:47 AEOFFICE.DLL : 8.3.1.44 404608 Bytes 15.07.2015 06:37:47 AEPACK.DLL : 8.4.1.8 793728 Bytes 13.08.2015 13:33:51 AERDL.DLL : 8.2.1.32 804768 Bytes 13.08.2015 13:33:52 AESBX.DLL : 8.2.21.0 1622072 Bytes 15.07.2015 06:37:47 AESCN.DLL : 8.3.2.10 142456 Bytes 15.07.2015 06:37:47 AESCRIPT.DLL : 8.2.2.90 534440 Bytes 11.08.2015 15:31:22 AEVDF.DLL : 8.3.1.6 133992 Bytes 15.07.2015 06:37:47 AVWINLL.DLL : 15.0.12.380 29600 Bytes 15.07.2015 06:37:58 AVPREF.DLL : 15.0.12.380 55864 Bytes 15.07.2015 06:37:54 AVREP.DLL : 15.0.12.380 225320 Bytes 15.07.2015 06:37:54 AVARKT.DLL : 15.0.12.380 232000 Bytes 15.07.2015 06:37:48 AVEVTLOG.DLL : 15.0.12.398 202112 Bytes 15.07.2015 06:37:50 SQLITE3.DLL : 15.0.12.380 461672 Bytes 15.07.2015 06:38:34 AVSMTP.DLL : 15.0.12.380 82120 Bytes 15.07.2015 06:37:56 NETNT.DLL : 15.0.12.380 18792 Bytes 15.07.2015 06:38:23 CommonImageRc.dll: 15.0.12.380 4308216 Bytes 15.07.2015 06:38:24 CommonTextRc.dll: 15.0.12.386 69248 Bytes 15.07.2015 06:38:24 Konfiguration für den aktuellen Suchlauf: Job Name..............................: AVGuardAsyncScan Konfigurationsdatei...................: C:\ProgramData\Avira\Antivirus\TEMP\AVGUARD_55d6c381\guard_slideup.avp Protokollierung.......................: standard Primäre Aktion........................: Reparieren Sekundäre Aktion......................: Quarantäne Durchsuche Masterbootsektoren.........: ein Durchsuche Bootsektoren...............: aus Durchsuche aktive Programme...........: ein Durchsuche Registrierung..............: aus Suche nach Rootkits...................: aus Integritätsprüfung von Systemdateien..: aus Prüfe alle Dateien....................: Alle Dateien Durchsuche Archive....................: ein Rekursionstiefe einschränken..........: 20 Archiv Smart Extensions...............: ein Makrovirenheuristik...................: ein Dateiheuristik........................: Vollständig Beginn des Suchlaufs: Freitag, 21. August 2015 09:25 Der Suchlauf über gestartete Prozesse wird begonnen: Durchsuche Prozess 'svchost.exe' - '47' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '37' Modul(e) wurden durchsucht Durchsuche Prozess 'dwm.exe' - '42' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '109' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '176' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '69' Modul(e) wurden durchsucht Durchsuche Prozess 'igfxCUIService.exe' - '40' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '134' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '76' Modul(e) wurden durchsucht Durchsuche Prozess 'WLANExt.exe' - '76' Modul(e) wurden durchsucht Durchsuche Prozess 'conhost.exe' - '12' Modul(e) wurden durchsucht Durchsuche Prozess 'spoolsv.exe' - '81' Modul(e) wurden durchsucht Durchsuche Prozess 'sched.exe' - '99' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '81' Modul(e) wurden durchsucht Durchsuche Prozess 'armsvc.exe' - '27' Modul(e) wurden durchsucht Durchsuche Prozess 'avguard.exe' - '114' Modul(e) wurden durchsucht Durchsuche Prozess 'CCDMonitorService.exe' - '37' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '54' Modul(e) wurden durchsucht Durchsuche Prozess 'EvtEng.exe' - '59' Modul(e) wurden durchsucht Durchsuche Prozess 'dashost.exe' - '56' Modul(e) wurden durchsucht Durchsuche Prozess 'ibtsiva.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'ccd.exe' - '70' Modul(e) wurden durchsucht Durchsuche Prozess 'LMSvc.exe' - '32' Modul(e) wurden durchsucht Durchsuche Prozess 'conhost.exe' - '12' Modul(e) wurden durchsucht Durchsuche Prozess 'McSACore.exe' - '66' Modul(e) wurden durchsucht Durchsuche Prozess 'mfemms.exe' - '23' Modul(e) wurden durchsucht Durchsuche Prozess 'mfevtps.exe' - '18' Modul(e) wurden durchsucht Durchsuche Prozess 'mfevtps.exe' - '36' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '16' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '16' Modul(e) wurden durchsucht Durchsuche Prozess 'RegSrvc.exe' - '36' Modul(e) wurden durchsucht Durchsuche Prozess 'RichVideo.exe' - '27' Modul(e) wurden durchsucht Durchsuche Prozess 'Avira.ServiceHost.exe' - '111' Modul(e) wurden durchsucht Durchsuche Prozess 'mcshield.exe' - '76' Modul(e) wurden durchsucht Durchsuche Prozess 'mfefire.exe' - '36' Modul(e) wurden durchsucht Durchsuche Prozess 'McAPExe.exe' - '41' Modul(e) wurden durchsucht Durchsuche Prozess 'McSvHost.exe' - '147' Modul(e) wurden durchsucht Durchsuche Prozess 'mfefire.exe' - '15' Modul(e) wurden durchsucht Durchsuche Prozess 'taskhostex.exe' - '52' Modul(e) wurden durchsucht Durchsuche Prozess 'Explorer.EXE' - '258' Modul(e) wurden durchsucht Durchsuche Prozess 'GWX.exe' - '44' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '24' Modul(e) wurden durchsucht Durchsuche Prozess 'wmiprvse.exe' - '48' Modul(e) wurden durchsucht Durchsuche Prozess 'LMEvent.exe' - '38' Modul(e) wurden durchsucht Durchsuche Prozess 'LMLockHandler.exe' - '35' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'avshadow.exe' - '22' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchIndexer.exe' - '65' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '71' Modul(e) wurden durchsucht Durchsuche Prozess 'PresentationFontCache.exe' - '36' Modul(e) wurden durchsucht Durchsuche Prozess 'skydrive.exe' - '93' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'QASvc.exe' - '21' Modul(e) wurden durchsucht Durchsuche Prozess 'ePowerSvc.exe' - '50' Modul(e) wurden durchsucht Durchsuche Prozess 'igfxEM.exe' - '49' Modul(e) wurden durchsucht Durchsuche Prozess 'RMSvc.exe' - '36' Modul(e) wurden durchsucht Durchsuche Prozess 'QAEvent.exe' - '58' Modul(e) wurden durchsucht Durchsuche Prozess 'igfxHK.exe' - '30' Modul(e) wurden durchsucht Durchsuche Prozess 'SettingSyncHost.exe' - '87' Modul(e) wurden durchsucht Durchsuche Prozess 'McCSPServiceHost.exe' - '77' Modul(e) wurden durchsucht Durchsuche Prozess 'igfxTray.exe' - '46' Modul(e) wurden durchsucht Durchsuche Prozess 'unsecapp.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'QAMsg.exe' - '25' Modul(e) wurden durchsucht Durchsuche Prozess 'LMTray.exe' - '35' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '51' Modul(e) wurden durchsucht Durchsuche Prozess 'rundll32.exe' - '47' Modul(e) wurden durchsucht Durchsuche Prozess 'BackgroundAgent.exe' - '100' Modul(e) wurden durchsucht Durchsuche Prozess 'devmonsrv.exe' - '45' Modul(e) wurden durchsucht Durchsuche Prozess 'RAVCpl64.exe' - '44' Modul(e) wurden durchsucht Durchsuche Prozess 'AcerPortal.exe' - '92' Modul(e) wurden durchsucht Durchsuche Prozess 'obexsrv.exe' - '41' Modul(e) wurden durchsucht Durchsuche Prozess 'avgnt.exe' - '116' Modul(e) wurden durchsucht Durchsuche Prozess 'acrotray.exe' - '65' Modul(e) wurden durchsucht Durchsuche Prozess 'Dropbox.exe' - '119' Modul(e) wurden durchsucht Durchsuche Prozess 'DllHost.exe' - '28' Modul(e) wurden durchsucht Durchsuche Prozess 'Avira.Systray.exe' - '96' Modul(e) wurden durchsucht Durchsuche Prozess 'FNPLicensingService.exe' - '21' Modul(e) wurden durchsucht Durchsuche Prozess 'GamesAppIntegrationService.exe' - '32' Modul(e) wurden durchsucht Durchsuche Prozess 'CCleaner64.exe' - '79' Modul(e) wurden durchsucht Durchsuche Prozess 'mcuicnt.exe' - '88' Modul(e) wurden durchsucht Durchsuche Prozess 'jhi_service.exe' - '28' Modul(e) wurden durchsucht Durchsuche Prozess 'LMS.exe' - '60' Modul(e) wurden durchsucht Durchsuche Prozess 'wmpnetwk.exe' - '75' Modul(e) wurden durchsucht Durchsuche Prozess 'taskhost.exe' - '41' Modul(e) wurden durchsucht Durchsuche Prozess 'UBTService.exe' - '39' Modul(e) wurden durchsucht Durchsuche Prozess 'wwahost.exe' - '146' Modul(e) wurden durchsucht Durchsuche Prozess 'RuntimeBroker.exe' - '89' Modul(e) wurden durchsucht Durchsuche Prozess 'Skype.exe' - '184' Modul(e) wurden durchsucht Durchsuche Prozess 'SkypeC2CAutoUpdateSvc.exe' - '44' Modul(e) wurden durchsucht Durchsuche Prozess 'SkypeC2CPNRSvc.exe' - '23' Modul(e) wurden durchsucht Durchsuche Prozess 'WINWORD.EXE' - '121' Modul(e) wurden durchsucht Durchsuche Prozess 'PDFCreator-2_1_2-setup.exe' - '27' Modul(e) wurden durchsucht Durchsuche Prozess 'PDFCreator-2_1_2-setup.tmp' - '43' Modul(e) wurden durchsucht Durchsuche Prozess 'PDFCreator-2_1_2-setup.exe' - '27' Modul(e) wurden durchsucht Durchsuche Prozess 'PDFCreator-2_1_2-setup.tmp' - '54' Modul(e) wurden durchsucht Durchsuche Prozess 'CBStub.exe' - '64' Modul(e) wurden durchsucht Durchsuche Prozess 'InstallManager.exe' - '72' Modul(e) wurden durchsucht Modul ist infiziert -> <C:\Users\Giovanni\AppData\Local\Temp\nscA23.tmp\InstallManager.exe> [FUND] Enthält Muster der Software PUA/InstallMonetizer.Gen [HINWEIS] Prozess 'InstallManager.exe' wurde beendet [WARNUNG] Beim Versuch eine Sicherungskopie der Datei anzulegen ist ein Fehler aufgetreten und die Datei wurde nicht gelöscht. Fehlernummer: 26004 [WARNUNG] Die Quelldatei konnte nicht gefunden werden. [HINWEIS] Es wird versucht die Aktion mit Hilfe der ARK Library durchzuführen. [WARNUNG] Die Datei konnte nicht ins Quarantäneverzeichnis verschoben werden! [WARNUNG] Fehler in der ARK Library Durchsuche Prozess 'wmiprvse.exe' - '32' Modul(e) wurden durchsucht Durchsuche Prozess 'Mntz_Installer.exe' - '72' Modul(e) wurden durchsucht Durchsuche Prozess 'msiexec.exe' - '49' Modul(e) wurden durchsucht Durchsuche Prozess 'vssvc.exe' - '47' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '30' Modul(e) wurden durchsucht Durchsuche Prozess 'avscan.exe' - '113' Modul(e) wurden durchsucht Durchsuche Prozess 'wininit.exe' - '15' Modul(e) wurden durchsucht Durchsuche Prozess 'winlogon.exe' - '28' Modul(e) wurden durchsucht Durchsuche Prozess 'lsass.exe' - '67' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchProtocolHost.exe' - '50' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchFilterHost.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'srtasks.exe' - '38' Modul(e) wurden durchsucht Durchsuche Prozess 'conhost.exe' - '12' Modul(e) wurden durchsucht Durchsuche Prozess 'wmiprvse.exe' - '46' Modul(e) wurden durchsucht Durchsuche Prozess 'LavasoftTcpService.exe' - '49' Modul(e) wurden durchsucht Durchsuche Prozess 'WebCompanion.exe' - '119' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchProtocolHost.exe' - '38' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchFilterHost.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'PrinterHelper.exe' - '34' Modul(e) wurden durchsucht Durchsuche Prozess 'conhost.exe' - '16' Modul(e) wurden durchsucht Durchsuche Prozess 'Lavasoft.SearchProtect.WinService.exe' - '89' Modul(e) wurden durchsucht Durchsuche Prozess 'dw20.exe' - '24' Modul(e) wurden durchsucht Der Suchlauf über die ausgewählten Dateien wird begonnen: Beginne mit der Suche in 'C:\Users\Giovanni\AppData\Local\Temp\nsjDEC.tmp\nsCBHTML5.dll' C:\Users\Giovanni\AppData\Local\Temp\nsjDEC.tmp\nsCBHTML5.dll [FUND] Enthält Muster der Software PUA/InstallMonetizer.Gen [HINWEIS] Die Datei wurde ins Quarantäneverzeichnis unter dem Namen '4a0f6fc8.qua' verschoben! Ende des Suchlaufs: Freitag, 21. August 2015 09:28 Benötigte Zeit: 03:43 Minute(n) Der Suchlauf wurde vollständig durchgeführt. 0 Verzeichnisse wurden überprüft 7318 Dateien wurden geprüft 3 Viren bzw. unerwünschte Programme wurden gefunden 0 Dateien wurden als verdächtig eingestuft 0 Dateien wurden gelöscht 0 Viren bzw. unerwünschte Programme wurden repariert 1 Dateien wurden in die Quarantäne verschoben 0 Dateien wurden umbenannt 0 Dateien konnten nicht durchsucht werden 7315 Dateien ohne Befall 188 Archive wurden durchsucht 2 Warnungen 2 Hinweise Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:21-08-2015 durchgeführt von Giovanni (Administrator) auf BIG_LEBOWSKI (21-08-2015 09:40:03) Gestartet von C:\Users\Giovanni\Downloads Geladene Profile: Giovanni (Verfügbare Profile: Giovanni) Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe (Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe (Acer Cloud Technology) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfemms.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe (McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMLockHandler.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\CSP\1.6.1008.0\McCSPServiceHost.exe () C:\Windows\System32\igfxTray.exe (Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe (Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Acer) C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe (Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\acrotray.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Macrovision Europe Ltd.) C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Lavasoft Limited) C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe (Lavasoft) C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect 3\creator-ws.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avcenter.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avscan.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13674712 2014-07-16] (Realtek Semiconductor) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [782008 2015-07-15] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe [134368 2015-07-02] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe [620152 2006-10-22] (Adobe Systems Inc.) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [39175960 2015-08-14] (Dropbox, Inc.) HKU\S-1-5-21-209834852-2542712019-429283644-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd) HKU\S-1-5-21-209834852-2542712019-429283644-1001\...\Run: [AcerPortal] => C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe [2674528 2015-07-23] (Acer) HKU\S-1-5-21-209834852-2542712019-429283644-1001\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe [1381648 2015-06-08] (Lavasoft) HKU\S-1-5-21-209834852-2542712019-429283644-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53737488 2015-08-07] (Skype Technologies S.A.) HKU\S-1-5-18\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe [1769312 2015-07-27] () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Acrobat - Schnellstart.lnk [2015-08-13] ShortcutTarget: Adobe Acrobat - Schnellstart.lnk -> C:\Windows\Installer\{AC76BA86-1033-F400-7760-000000000003}\_SC_Acrobat.exe () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Synchronizer.lnk [2015-08-13] ShortcutTarget: Adobe Reader Synchronizer.lnk -> C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AdobeCollabSync.exe () ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2015-07-23] (Acer Incorporated) ShellIconOverlayIdentifiers: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2015-07-23] (Acer Incorporated) ShellIconOverlayIdentifiers: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2015-07-23] (Acer Incorporated) ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKU\S-1-5-21-209834852-2542712019-429283644-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKU\S-1-5-21-209834852-2542712019-429283644-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKU\S-1-5-21-209834852-2542712019-429283644-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://safesearch.avira.com/#web/result?source=repair&q= HKU\S-1-5-21-209834852-2542712019-429283644-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/#web/result?source=repair&q= SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-07-14] (Microsoft Corporation) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-07-14] (Microsoft Corporation) BHO-x32: Adobe PDF Reader -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22] (Adobe Systems Incorporated) BHO-x32: PDF Architect 3 Helper -> {06E08260-0695-4EC1-A74B-1310D8899D93} -> C:\Program Files (x86)\PDF Architect 3\creator-ie-helper.dll [2015-04-24] (pdfforge GmbH) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-07-14] (Microsoft Corporation) BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll [2006-10-22] (Adobe Systems Incorporated) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-07-14] (Microsoft Corporation) Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll [2006-10-22] (Adobe Systems Incorporated) Toolbar: HKLM-x32 - PDF Architect 3 Toolbar - {2DFF3579-5AA7-45B9-9328-1D38EA230861} - C:\Program Files (x86)\PDF Architect 3\creator-ie-plugin.dll [2015-04-24] (pdfforge GmbH) Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-08-04] (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-08-04] (McAfee, Inc.) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2015-02-17] (Microsoft Corporation) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-08-04] (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-08-04] (McAfee, Inc.) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2015-07-21] (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2015-07-21] (McAfee, Inc.) Winsock: Catalog9 01 C:\Windows\SysWOW64\LavasoftTcpService.dll [348488 2015-08-20] (Lavasoft Limited) Winsock: Catalog9 02 C:\Windows\SysWOW64\LavasoftTcpService.dll [348488 2015-08-20] (Lavasoft Limited) Winsock: Catalog9 03 C:\Windows\SysWOW64\LavasoftTcpService.dll [348488 2015-08-20] (Lavasoft Limited) Winsock: Catalog9 04 C:\Windows\SysWOW64\LavasoftTcpService.dll [348488 2015-08-20] (Lavasoft Limited) Winsock: Catalog9 16 C:\Windows\SysWOW64\LavasoftTcpService.dll [348488 2015-08-20] (Lavasoft Limited) Winsock: Catalog9-x64 01 C:\Windows\system32\LavasoftTcpService64.dll [428880 2015-08-20] (Lavasoft Limited) Winsock: Catalog9-x64 02 C:\Windows\system32\LavasoftTcpService64.dll [428880 2015-08-20] (Lavasoft Limited) Winsock: Catalog9-x64 03 C:\Windows\system32\LavasoftTcpService64.dll [428880 2015-08-20] (Lavasoft Limited) Winsock: Catalog9-x64 04 C:\Windows\system32\LavasoftTcpService64.dll [428880 2015-08-20] (Lavasoft Limited) Winsock: Catalog9-x64 16 C:\Windows\system32\LavasoftTcpService64.dll [428880 2015-08-20] (Lavasoft Limited) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{60AEE4C0-106E-46AB-B671-A79DCFD9F58A}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{88FCFF4C-CDDF-4709-B999-68CF527CAEFC}: [NameServer] 129.206.100.126,129.206.210.127 FireFox: ======== FF ProfilePath: C:\Users\Giovanni\AppData\Roaming\Mozilla\Firefox\Profiles\o3vts2lv.default FF NewTab: hxxp://www.bing.com/?pc=COSP&ptag=D082115-A510D0E105D5B4CC49CF&form=CONMHP&conlogo=CT3330941 FF Homepage: hxxp://www.bing.com/?pc=COSP&ptag=D082115-A510D0E105D5B4CC49CF&form=CONMHP&conlogo=CT3330941 FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2015-07-21] () FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-09-03] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-09-03] (Intel Corporation) FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2015-07-21] () FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-07-14] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2013-08-06] () FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-07-03] (Adobe Systems Inc.) FF Plugin-x32: PDF Architect 3 -> C:\Program Files (x86)\PDF Architect 3\np-previewer.dll [2015-04-24] (pdfforge GmbH) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-07-14] (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2015-07-03] (Adobe Systems Inc.) FF Extension: Google Scholar Button - C:\Users\Giovanni\AppData\Roaming\Mozilla\Firefox\Profiles\o3vts2lv.default\Extensions\button@scholar.google.com.xpi [2015-08-18] FF Extension: Zotero - C:\Users\Giovanni\AppData\Roaming\Mozilla\Firefox\Profiles\o3vts2lv.default\Extensions\zotero@chnm.gmu.edu.xpi [2015-08-18] FF Extension: McAfee WebAdvisor - C:\Users\Giovanni\AppData\Roaming\Mozilla\Firefox\Profiles\o3vts2lv.default\Extensions\{4ED1F68A-5463-4931-9384-8FFF5ED91D92}.xpi [2015-08-13] FF Extension: Adblock Plus - C:\Users\Giovanni\AppData\Roaming\Mozilla\Firefox\Profiles\o3vts2lv.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-08-18] FF Extension: Kein Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-05-01] FF HKLM-x32\...\Firefox\Extensions: [pdf_architect_3_conv@pdfarchitect.org] - C:\Program Files (x86)\PDF Architect 3\resources\pdfarchitect3firefoxextension FF Extension: PDF Architect 3 Creator - C:\Program Files (x86)\PDF Architect 3\resources\pdfarchitect3firefoxextension [2015-08-21] FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2014-10-27] Chrome: ======= CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-08-13] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-08-13] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [887128 2015-07-15] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [461672 2015-07-15] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [461672 2015-07-15] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1213072 2015-07-15] (Avira Operations GmbH & Co. KG) R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [218816 2015-07-02] (Avira Operations GmbH & Co. KG) S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation) R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2858336 2015-07-23] (Acer Incorporated) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [136048 2015-08-16] (Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [136048 2015-08-16] (Dropbox, Inc.) R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573032 2014-07-22] (Acer Incorporated) R3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [654848 2015-08-13] (Macrovision Europe Ltd.) [Datei ist nicht signiert] R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2014-04-24] (WildTangent) R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [368048 2015-07-21] (McAfee, Inc.) R2 iBtSiva; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [121288 2014-06-05] (Intel Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344168 2014-12-22] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-09-03] (Intel Corporation) R2 LavasoftTcpService; C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe [2751792 2015-06-08] (Lavasoft Limited) R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [455912 2014-12-30] (Acer Incorporate) R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [155368 2015-08-04] (McAfee, Inc.) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [782608 2015-07-21] (McAfee, Inc.) S3 McAWFwk; c:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334608 2013-07-30] (McAfee, Inc.) R2 mcbootdelaystartsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [368048 2015-07-21] (McAfee, Inc.) R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.6.1008.0\McCSPServiceHost.exe [1694152 2015-07-23] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [368048 2015-07-21] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [368048 2015-07-21] (McAfee, Inc.) S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [639456 2015-07-17] (McAfee, Inc.) S4 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [368048 2015-07-21] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [368048 2015-07-21] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [368048 2015-07-21] (McAfee, Inc.) R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232656 2015-06-29] (McAfee, Inc.) R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [373704 2015-07-15] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [254792 2015-06-29] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [368048 2015-07-21] (McAfee, Inc.) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [284912 2014-05-29] () R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [50688 2013-11-14] (Hewlett-Packard) [Datei ist nicht signiert] S3 PDF Architect 3; C:\Program Files (x86)\PDF Architect 3\ws.exe [2244312 2015-04-24] (pdfforge GmbH) S3 PDF Architect 3 CrashHandler; C:\Program Files (x86)\PDF Architect 3\crash-handler-ws.exe [901336 2015-04-24] (pdfforge GmbH) R2 PDF Architect 3 Creator; C:\Program Files (x86)\PDF Architect 3\creator-ws.exe [740568 2015-04-24] (pdfforge GmbH) R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [66048 2013-11-14] (Hewlett-Packard) [Datei ist nicht signiert] R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [458984 2014-10-17] (Acer Incorporate) R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] () R3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768 2014-10-17] (Acer Incorporate) S2 SearchProtectionService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe [19816 2015-06-08] () R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [234240 2014-07-15] (acer) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation) S2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3816176 2014-05-29] (Intel® Corporation) S2 0136141439533551mcinstcleanup; C:\Windows\TEMP\013614~1.EXE -cleanup -nolog [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S5 3ware; C:\Windows\System32\drivers\3ware.sys [108896 2013-08-22] (LSI) R5 ACPI; C:\Windows\System32\drivers\ACPI.sys [533824 2014-10-07] (Microsoft Corporation) R5 acpiex; C:\Windows\System32\Drivers\acpiex.sys [79712 2013-08-22] (Microsoft Corporation) S5 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) S5 agp440; C:\Windows\System32\drivers\agp440.sys [62304 2013-08-22] (Microsoft Corporation) S5 amdsata; C:\Windows\System32\drivers\amdsata.sys [79200 2013-08-22] (Advanced Micro Devices) S5 amdsbs; C:\Windows\System32\drivers\amdsbs.sys [259424 2013-08-22] (AMD Technologies Inc.) S5 amdxata; C:\Windows\System32\drivers\amdxata.sys [25952 2013-08-22] (Advanced Micro Devices) S5 arcsas; C:\Windows\System32\drivers\arcsas.sys [114016 2013-08-22] (PMC-Sierra, Inc.) S5 atapi; C:\Windows\System32\drivers\atapi.sys [26464 2013-08-22] (Microsoft Corporation) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [137288 2015-07-15] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [148632 2015-07-15] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2015-07-15] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [43576 2015-07-15] (Avira Operations GmbH & Co. KG) S5 b06bdrv; C:\Windows\System32\drivers\bxvbda.sys [531296 2013-08-22] (Broadcom Corporation) S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation) S3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [140600 2014-03-26] (Motorola Solutions, Inc.) R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1424184 2014-04-22] (Motorola Solutions, Inc.) R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [77536 2015-07-02] (McAfee, Inc.) R5 CLFS; C:\Windows\System32\drivers\CLFS.sys [377152 2015-03-04] (Microsoft Corporation) R5 CNG; C:\Windows\System32\Drivers\cng.sys [561928 2015-03-30] (Microsoft Corporation) R5 disk; C:\Windows\System32\drivers\disk.sys [100192 2013-08-22] (Microsoft Corporation) S5 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation) R5 EhStorClass; C:\Windows\System32\drivers\EhStorClass.sys [82784 2013-08-22] (Microsoft Corporation) S5 EhStorTcgDrv; C:\Windows\System32\drivers\EhStorTcgDrv.sys [114016 2013-08-22] (Microsoft Corporation) R5 FileInfo; C:\Windows\System32\drivers\fileinfo.sys [79192 2014-03-18] (Microsoft Corporation) R5 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [354112 2014-08-26] (Microsoft Corporation) U5 Fs_Rec; C:\Windows\System32\Drivers\Fs_Rec.sys [30048 2013-08-22] (Microsoft Corporation) R5 fvevol; C:\Windows\System32\DRIVERS\fvevol.sys [589656 2014-04-08] (Microsoft Corporation) S5 gagp30kx; C:\Windows\System32\drivers\gagp30kx.sys [65888 2013-08-22] (Microsoft Corporation) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [207208 2015-05-19] (McAfee, Inc.) S5 HpSAMD; C:\Windows\System32\drivers\HpSAMD.sys [64352 2013-08-22] (Hewlett-Packard Company) S5 hwpolicy; C:\Windows\System32\drivers\hwpolicy.sys [24416 2013-08-22] (Microsoft Corporation) R3 iaLPSS_GPIO; C:\Windows\System32\drivers\iaLPSS_GPIO.sys [35832 2014-06-10] (Intel Corporation) R3 iaLPSS_I2C; C:\Windows\System32\drivers\iaLPSS_I2C.sys [120312 2014-06-10] (Intel Corporation) S5 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) S5 iaStorV; C:\Windows\System32\drivers\iaStorV.sys [412000 2013-08-22] (Intel Corporation) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [199624 2014-06-05] (Intel Corporation) S5 intelide; C:\Windows\System32\drivers\intelide.sys [18272 2013-08-22] (Microsoft Corporation) R5 intelpep; C:\Windows\System32\drivers\intelpep.sys [39744 2014-10-13] (Microsoft Corporation) S5 isapnp; C:\Windows\System32\drivers\isapnp.sys [21856 2013-08-22] (Microsoft Corporation) R5 KSecDD; C:\Windows\System32\Drivers\ksecdd.sys [100672 2014-10-29] (Microsoft Corporation) R5 KSecPkg; C:\Windows\System32\Drivers\ksecpkg.sys [178008 2015-06-28] (Microsoft Corporation) R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated) S5 LSI_SAS; C:\Windows\System32\drivers\lsi_sas.sys [109408 2013-08-22] (LSI Corporation) S5 LSI_SAS2; C:\Windows\System32\drivers\lsi_sas2.sys [93536 2013-08-22] (LSI Corporation) S5 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) S5 LSI_SSS; C:\Windows\System32\drivers\lsi_sss.sys [82784 2013-08-22] (LSI Corporation) S5 megasas; C:\Windows\System32\drivers\megasas.sys [56672 2013-08-22] (LSI Corporation) S5 megasr; C:\Windows\System32\drivers\megasr.sys [575840 2013-08-22] (LSI Corporation, Inc.) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [126976 2014-09-03] (Intel Corporation) R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [412440 2015-07-02] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [347800 2015-07-02] (McAfee, Inc.) S5 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [80920 2015-07-02] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [496888 2015-07-02] (McAfee, Inc.) R5 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [875928 2015-07-02] (McAfee, Inc.) R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [529080 2015-06-28] (McAfee, Inc.) S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [109728 2015-06-28] (McAfee, Inc.) R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [37960 2015-08-04] (McAfee, Inc.) R5 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [344704 2015-07-02] (McAfee, Inc.) R5 mountmgr; C:\Windows\System32\drivers\mountmgr.sys [101720 2015-07-16] (Microsoft Corporation) R5 msisadrv; C:\Windows\System32\drivers\msisadrv.sys [17248 2013-08-22] (Microsoft Corporation) R5 Mup; C:\Windows\System32\Drivers\mup.sys [78688 2013-08-22] (Microsoft Corporation) S5 mvumis; C:\Windows\System32\drivers\mvumis.sys [63840 2013-08-22] (Marvell Semiconductor, Inc.) R5 NDIS; C:\Windows\System32\drivers\ndis.sys [1113944 2015-07-14] (Microsoft Corporation) R3 NETwNb64; C:\Windows\system32\DRIVERS\Netwbw02.sys [3446240 2014-06-18] (Intel Corporation) S5 nvraid; C:\Windows\System32\drivers\nvraid.sys [150368 2013-08-22] (NVIDIA Corporation) S5 nvstor; C:\Windows\System32\drivers\nvstor.sys [168288 2013-08-22] (NVIDIA Corporation) S5 nv_agp; C:\Windows\System32\drivers\nv_agp.sys [124768 2013-08-22] (Microsoft Corporation) R5 partmgr; C:\Windows\System32\drivers\partmgr.sys [88896 2014-10-15] (Microsoft Corporation) R5 pci; C:\Windows\System32\drivers\pci.sys [280384 2014-07-24] (Microsoft Corporation) S5 pciide; C:\Windows\System32\drivers\pciide.sys [14688 2013-08-22] (Microsoft Corporation) S5 pcmcia; C:\Windows\System32\drivers\pcmcia.sys [114528 2013-08-22] (Microsoft Corporation) R5 pcw; C:\Windows\System32\drivers\pcw.sys [50016 2013-08-22] (Microsoft Corporation) R5 pdc; C:\Windows\System32\drivers\pdc.sys [86336 2014-10-13] (Microsoft Corporation) R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated) R5 rdyboost; C:\Windows\System32\drivers\rdyboost.sys [249688 2014-03-18] (Microsoft Corporation) R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [506072 2014-06-20] (Realsil Semiconductor Corporation) S5 sbp2port; C:\Windows\System32\drivers\sbp2port.sys [107872 2013-08-22] (Microsoft Corporation) S5 SiSRaid2; C:\Windows\System32\drivers\SiSRaid2.sys [44896 2013-08-22] (Silicon Integrated Systems Corp.) S5 SiSRaid4; C:\Windows\System32\drivers\sisraid4.sys [81760 2013-08-22] (Silicon Integrated Systems) R5 spaceport; C:\Windows\System32\drivers\spaceport.sys [415040 2014-10-29] (Microsoft Corporation) S5 stexstor; C:\Windows\System32\drivers\stexstor.sys [31072 2013-08-22] (Promise Technology, Inc.) R5 storahci; C:\Windows\System32\drivers\storahci.sys [107872 2013-08-22] (Microsoft Corporation) S5 storflt; C:\Windows\System32\drivers\vmstorfl.sys [49944 2014-10-29] (Microsoft Corporation) S5 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2014-03-18] (Microsoft Corporation) S5 storvsc; C:\Windows\System32\drivers\storvsc.sys [45888 2013-08-22] (Microsoft Corporation) R3 SynRMIHID; C:\Windows\system32\DRIVERS\SynRMIHID.sys [42224 2014-02-19] (Synaptics Incorporated) R5 Tcpip; C:\Windows\System32\drivers\tcpip.sys [2476376 2015-06-11] (Microsoft Corporation) S5 uagp35; C:\Windows\System32\drivers\uagp35.sys [64864 2013-08-22] (Microsoft Corporation) S5 uliagpkx; C:\Windows\System32\drivers\uliagpkx.sys [65888 2013-08-22] (Microsoft Corporation) R5 vdrvroot; C:\Windows\System32\drivers\vdrvroot.sys [37728 2013-08-22] (Microsoft Corporation) S5 viaide; C:\Windows\System32\drivers\viaide.sys [19808 2013-08-22] (VIA Technologies, Inc.) S5 vmbus; C:\Windows\System32\drivers\vmbus.sys [97048 2014-10-29] (Microsoft Corporation) R5 volmgr; C:\Windows\System32\drivers\volmgr.sys [73568 2013-08-22] (Microsoft Corporation) R5 volmgrx; C:\Windows\System32\drivers\volmgrx.sys [377696 2013-08-22] (Microsoft Corporation) R5 volsnap; C:\Windows\System32\drivers\volsnap.sys [310080 2014-06-19] (Microsoft Corporation) S5 vsmraid; C:\Windows\System32\drivers\vsmraid.sys [168800 2013-08-22] (VIA Technologies Inc.,Ltd) S5 VSTXRAID; C:\Windows\System32\drivers\vstxraid.sys [305504 2013-08-22] (VIA Corporation) R5 Wdf01000; C:\Windows\System32\drivers\Wdf01000.sys [839488 2013-08-22] (Microsoft Corporation) R5 WFPLWFS; C:\Windows\System32\DRIVERS\wfplwfs.sys [136512 2014-10-29] (Microsoft Corporation) R5 Wof; C:\Windows\System32\Drivers\Wof.sys [157016 2014-03-13] (Microsoft Corporation) S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-21 09:40 - 2015-08-21 09:42 - 00038793 _____ C:\Users\Giovanni\Downloads\FRST.txt 2015-08-21 09:40 - 2015-08-21 09:40 - 00000000 ____D C:\FRST 2015-08-21 09:39 - 2015-08-21 09:39 - 02173952 _____ (Farbar) C:\Users\Giovanni\Downloads\FRST64.exe 2015-08-21 09:29 - 2015-08-21 09:29 - 00000999 _____ C:\Users\Public\Desktop\PDF Architect 3.lnk 2015-08-21 09:29 - 2015-08-21 09:29 - 00000000 ____D C:\Users\Giovanni\Documents\PDF Architect 2015-08-21 09:29 - 2015-08-21 09:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 3 2015-08-21 09:29 - 2015-08-21 09:29 - 00000000 ____D C:\Program Files (x86)\PDF Architect 3 2015-08-21 09:28 - 2015-08-21 09:30 - 00000000 ____D C:\Program Files\PDFCreator 2015-08-21 09:28 - 2015-08-21 09:28 - 00115592 _____ (pdfforge GmbH) C:\Windows\system32\pdfcmon.dll 2015-08-21 09:28 - 2015-08-21 09:28 - 00000852 _____ C:\Users\Public\Desktop\PDFCreator.lnk 2015-08-21 09:28 - 2015-08-21 09:28 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\pdfforge 2015-08-21 09:26 - 2015-08-21 09:26 - 00000000 ____D C:\Users\Giovanni\AppData\Local\Lavasoft 2015-08-21 09:25 - 2015-08-21 09:25 - 00000000 ____D C:\Program Files (x86)\Lavasoft 2015-08-21 09:24 - 2015-08-21 09:24 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Lavasoft 2015-08-21 09:24 - 2015-08-21 09:24 - 00000000 ____D C:\ProgramData\Lavasoft 2015-08-21 09:20 - 2015-08-21 09:20 - 00000000 ____D C:\Users\Giovanni\Tracing 2015-08-21 09:16 - 2015-08-21 09:33 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Skype 2015-08-21 09:16 - 2015-08-21 09:16 - 00002715 _____ C:\Users\Public\Desktop\Skype.lnk 2015-08-21 09:16 - 2015-08-21 09:16 - 00000000 ___RD C:\Program Files (x86)\Skype 2015-08-21 09:16 - 2015-08-21 09:16 - 00000000 ____D C:\Users\Giovanni\AppData\Local\Skype 2015-08-21 09:16 - 2015-08-21 09:16 - 00000000 ____D C:\ProgramData\Skype 2015-08-21 09:16 - 2015-08-21 09:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-08-21 08:26 - 2015-08-21 08:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee 2015-08-20 09:58 - 2015-08-20 10:06 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\PDF Architect 3 2015-08-20 09:57 - 2015-08-20 09:57 - 00000000 ____D C:\ProgramData\PDF Architect 3 2015-08-20 09:55 - 2015-08-21 09:26 - 00002976 _____ C:\Windows\SysWOW64\LavasoftTcpServiceOff.ini 2015-08-20 09:55 - 2015-08-21 09:26 - 00002976 _____ C:\Windows\system32\LavasoftTcpServiceOff.ini 2015-08-20 09:55 - 2015-06-08 14:13 - 00428880 _____ (Lavasoft Limited) C:\Windows\system32\LavasoftTcpService64.dll 2015-08-20 09:55 - 2015-06-08 14:13 - 00348488 _____ (Lavasoft Limited) C:\Windows\SysWOW64\LavasoftTcpService.dll 2015-08-20 09:54 - 2015-08-20 09:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft 2015-08-20 09:11 - 2015-08-11 03:20 - 25191936 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-08-20 09:11 - 2015-08-11 02:20 - 19871232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-08-19 08:11 - 2015-08-20 21:39 - 00004854 _____ C:\Windows\PFRO.log 2015-08-19 08:11 - 2015-08-19 08:11 - 00493784 _____ C:\Windows\system32\FNTCACHE.DAT 2015-08-18 21:18 - 2015-08-18 21:45 - 00000000 ___RD C:\Phils-Phils-Hirn 2015-08-18 21:06 - 2015-08-18 21:18 - 00000000 ____D C:\Gios Hirn-Phils 2015-08-18 20:35 - 2015-08-18 21:06 - 00000000 ____D C:\Gios Hirn 2015-08-18 10:20 - 2015-08-18 10:20 - 00000000 ____D C:\Users\Giovanni\AppData\Local\CEF 2015-08-18 10:06 - 2015-08-18 10:06 - 00000000 ____D C:\Users\Giovanni\Desktop\Zotero von ACER 2015-08-18 10:01 - 2015-08-18 10:01 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2015-08-16 20:08 - 2015-08-21 08:24 - 00000000 ___RD C:\Users\Giovanni\Dropbox 2015-08-16 20:06 - 2015-08-16 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-08-16 20:05 - 2015-08-16 20:05 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Dropbox 2015-08-16 20:03 - 2015-08-21 09:08 - 00001244 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job 2015-08-16 20:03 - 2015-08-21 08:24 - 00000000 ____D C:\Users\Giovanni\AppData\Local\Dropbox 2015-08-16 20:03 - 2015-08-21 08:21 - 00001240 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job 2015-08-16 20:03 - 2015-08-16 20:06 - 00000000 ____D C:\Program Files (x86)\Dropbox 2015-08-16 20:03 - 2015-08-16 20:03 - 00004216 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineUA 2015-08-16 20:03 - 2015-08-16 20:03 - 00003980 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineCore 2015-08-16 20:03 - 2015-08-16 20:03 - 00000000 ____D C:\ProgramData\Dropbox 2015-08-16 19:51 - 2015-08-21 08:19 - 00001787 _____ C:\Windows\setupact.log 2015-08-16 19:51 - 2015-08-16 19:51 - 00000000 _____ C:\Windows\setuperr.log 2015-08-16 09:55 - 2015-08-18 14:47 - 00035328 ___SH C:\Users\Giovanni\Desktop\Thumbs.db 2015-08-16 09:55 - 2015-08-16 09:55 - 00413134 _____ C:\Users\Giovanni\Desktop\Flaschenring.pptx 2015-08-16 09:55 - 2015-08-16 09:55 - 00000000 ____D C:\Users\Giovanni\Documents\Benutzerdefinierte Office-Vorlagen 2015-08-15 08:57 - 2015-08-16 10:07 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-08-15 08:50 - 2015-08-15 08:51 - 00001048 _____ C:\DelFix.txt 2015-08-15 08:50 - 2015-08-15 08:50 - 00000000 ____D C:\Windows\ERUNT 2015-08-14 08:37 - 2015-08-14 08:37 - 00000000 ____D C:\Users\Giovanni\abBox 2015-08-14 08:36 - 2015-08-14 08:36 - 00000000 ____D C:\Users\Giovanni\AppData\Local\acer 2015-08-14 08:28 - 2015-08-14 08:28 - 00000000 ____D C:\Windows\System32\Tasks\McAfee 2015-08-14 08:25 - 2015-08-14 08:25 - 00003334 _____ C:\Windows\System32\Tasks\AcerCloud 2015-08-14 08:24 - 2015-08-14 08:24 - 00002102 _____ C:\Users\Public\Desktop\Acer Portal.lnk 2015-08-13 20:45 - 2015-08-13 20:45 - 00000000 ____D C:\Users\Giovanni\Documents\Updater5 2015-08-13 20:43 - 2015-08-13 20:43 - 00000000 ____D C:\ProgramData\FLEXnet 2015-08-13 20:28 - 2015-08-13 20:28 - 00002481 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Distiller 8.lnk 2015-08-13 20:28 - 2015-08-13 20:28 - 00002469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat 8 Professional.lnk 2015-08-13 20:28 - 2015-08-13 20:28 - 00002195 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe LiveCycle Designer 8.0.lnk 2015-08-13 20:28 - 2015-08-13 20:28 - 00002045 _____ C:\Users\Public\Desktop\Adobe Acrobat 8 Professional.lnk 2015-08-13 20:26 - 2015-08-13 20:26 - 00000000 ____D C:\Windows\SysWOW64\spool 2015-08-13 18:00 - 2015-08-13 18:00 - 00000000 ____D C:\Windows\system32\appraiser 2015-08-13 17:48 - 2015-07-30 16:04 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2015-08-13 17:48 - 2015-07-30 15:48 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-08-13 17:10 - 2015-08-13 17:10 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help 2015-08-13 17:10 - 2015-08-13 17:10 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help 2015-08-13 15:39 - 2015-08-14 09:06 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2015-08-13 15:38 - 2015-08-13 15:38 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2015-08-13 15:37 - 2015-08-13 20:26 - 00000000 ____D C:\Program Files (x86)\Adobe 2015-08-13 15:36 - 2015-08-18 10:20 - 00000000 ____D C:\Users\Giovanni\AppData\Local\Adobe 2015-08-13 15:36 - 2015-08-14 09:05 - 00000000 ____D C:\ProgramData\Adobe 2015-08-13 15:31 - 2015-08-19 08:11 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-08-13 15:31 - 2015-08-13 15:58 - 00000000 ____D C:\Users\Giovanni\AppData\Local\Mozilla 2015-08-13 15:31 - 2015-08-13 15:31 - 00001175 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-08-13 15:31 - 2015-08-13 15:31 - 00000000 ____D C:\Users\Giovanni\AppData\Roaming\Mozilla 2015-08-13 15:27 - 2015-08-13 15:28 - 00002161 _____ C:\Windows\epplauncher.mif 2015-08-13 15:23 - 2015-08-13 15:23 - 00000000 ____D C:\ProgramData\Hewlett-Packard 2015-08-13 15:22 - 2015-08-13 15:22 - 00000000 _____ C:\Windows\HPMProp.INI 2015-08-13 15:21 - 2013-12-04 00:14 - 00601376 _____ (HP) C:\Windows\SysWOW64\hpcdmc32.dll 2015-08-13 15:21 - 2013-12-04 00:14 - 00237344 _____ (Hewlett-Packard Company) C:\Windows\system32\hpmlm135.dll 2015-08-13 15:21 - 2013-12-04 00:13 - 00217376 _____ (Hewlett-Packard) C:\Windows\system32\hpmml160.dll 2015-08-13 15:21 - 2013-12-04 00:13 - 00189728 _____ (Hewlett-Packard) C:\Windows\system32\hpmpm081.dll 2015-08-13 15:21 - 2013-12-04 00:13 - 00162080 _____ (Hewlett-Packard) C:\Windows\system32\hpmtp160.dll 2015-08-13 15:21 - 2013-12-04 00:13 - 00074016 _____ (Hewlett-Packard) C:\Windows\system32\hpmpw081.dll 2015-08-13 15:21 - 2013-12-04 00:12 - 00199968 _____ (Hewlett-Packard) C:\Windows\system32\hpmja160.dll 2015-08-13 15:21 - 2013-12-04 00:11 - 00447264 _____ (Hewlett-Packard Corporation) C:\Windows\system32\hpcpn160.dll 2015-08-13 15:21 - 2013-12-04 00:11 - 00140064 _____ (Hewlett-Packard) C:\Windows\system32\hpcjpm.dll 2015-08-13 15:21 - 2013-12-04 00:07 - 00446240 _____ (Hewlett Packard Corporation) C:\Windows\SysWOW64\hpcc3160.dll 2015-08-13 15:21 - 2011-02-11 14:23 - 00193592 _____ (Hewlett-Packard) C:\Windows\system32\hppdcompio.dll 2015-08-13 15:21 - 2011-02-11 14:23 - 00167480 _____ (Hewlett-Packard) C:\Windows\SysWOW64\hppccompio.dll 2015-08-13 15:21 - 2009-02-25 16:32 - 00060440 _____ (Hewlett-Packard) C:\Windows\system32\FxCompChannel_x64.dll 2015-08-13 15:12 - 2015-08-18 19:19 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2015-08-13 15:11 - 2015-08-13 15:11 - 00000000 ____D C:\Program Files\Common Files\DESIGNER 2015-08-13 15:10 - 2015-08-13 15:10 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2015-08-13 15:09 - 2015-08-13 15:09 - 00000000 ____D C:\Windows\PCHEALTH 2015-08-13 15:09 - 2015-08-13 15:09 - 00000000 ____D C:\Program Files\Microsoft SQL Server 2015-08-13 15:07 - 2015-08-13 15:07 - 00000000 ____D C:\Users\Giovanni\AppData\Local\Microsoft Help 2015-08-13 15:07 - 2015-08-13 15:07 - 00000000 ____D C:\Program Files\Microsoft Analysis Services 2015-08-13 15:07 - 2015-08-13 15:07 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2015-08-13 15:06 - 2015-08-18 19:18 - 00000000 ____D C:\ProgramData\Microsoft Help 2015-08-13 15:06 - 2015-08-13 15:09 - 00000000 ____D C:\Program Files\Microsoft Office 2015-08-13 15:06 - 2015-08-13 15:06 - 00000000 __RHD C:\MSOCache 2015-08-13 15:02 - 2015-05-25 15:23 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll 2015-08-13 15:02 - 2015-05-25 15:07 - 01430528 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll 2015-08-13 14:58 - 2012-11-13 07:49 - 00000000 ____D C:\Users\Giovanni\Downloads\Office_Professional_Plus_2013-x64-de 2015-08-13 14:39 - 2015-08-08 15:55 - 00794088 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-08-13 14:39 - 2015-08-08 15:55 - 00179688 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-08-13 14:25 - 2015-08-13 18:00 - 00000000 ___SD C:\Windows\system32\CompatTel 2015-08-13 14:22 - 2015-08-13 14:24 - 00000000 ____D C:\Windows\system32\MRT 2015-08-13 14:22 - 2015-07-28 10:59 - 132483416 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-08-13 14:21 - 2015-06-09 20:27 - 00411133 _____ C:\Windows\system32\ApnDatabase.xml 2015-08-13 14:21 - 2015-05-07 19:50 - 22292672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2015-08-13 14:21 - 2015-05-07 19:00 - 03109376 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2015-08-13 14:21 - 2015-05-07 18:53 - 19734960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2015-08-13 14:21 - 2015-05-07 18:12 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2015-08-13 14:21 - 2015-05-07 17:21 - 00522240 _____ (Microsoft Corporation) C:\Windows\system32\GeofenceMonitorService.dll 2015-08-13 14:21 - 2015-05-07 17:05 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GeofenceMonitorService.dll 2015-08-13 14:21 - 2015-05-03 02:39 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2015-08-13 14:21 - 2015-04-30 01:22 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll 2015-08-13 14:21 - 2015-04-10 02:34 - 02256896 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2015-08-13 14:21 - 2015-04-10 02:11 - 01943040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2015-08-13 14:21 - 2015-03-17 19:26 - 00467776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS 2015-08-13 14:21 - 2015-03-14 10:20 - 01385256 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2015-08-13 14:21 - 2015-03-14 10:13 - 01124352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll 2015-08-13 14:21 - 2015-03-09 04:02 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthhfenum.sys 2015-08-13 14:21 - 2015-01-29 03:58 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll 2015-08-13 14:21 - 2015-01-29 03:29 - 00290816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\photowiz.dll 2015-08-13 14:21 - 2015-01-27 05:44 - 00933888 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe 2015-08-13 14:21 - 2015-01-24 03:51 - 00816128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe 2015-08-13 14:21 - 2015-01-23 09:17 - 00723072 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll 2015-08-13 14:21 - 2015-01-23 07:02 - 00560392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll 2015-08-13 14:21 - 2014-12-19 10:57 - 00788680 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2015-08-13 14:21 - 2014-12-19 10:25 - 00602776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2015-08-13 14:21 - 2014-11-10 04:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll 2015-08-13 14:21 - 2014-11-10 03:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll 2015-08-13 14:21 - 2014-10-31 01:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2015-08-13 14:20 - 2015-07-29 01:24 - 00025776 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2015-08-13 14:20 - 2015-07-28 16:24 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2015-08-13 14:20 - 2015-07-28 16:24 - 01116160 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2015-08-13 14:20 - 2015-07-28 16:24 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2015-08-13 14:20 - 2015-07-28 16:24 - 00743424 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2015-08-13 14:20 - 2015-07-28 16:24 - 00437248 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2015-08-13 14:20 - 2015-07-28 16:24 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2015-08-13 14:20 - 2015-07-14 23:59 - 01113944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2015-08-13 14:20 - 2015-07-14 23:59 - 00487256 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll 2015-08-13 14:20 - 2015-07-14 23:59 - 00393560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll 2015-08-13 14:20 - 2015-07-07 11:40 - 00270168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2015-08-13 14:20 - 2015-07-07 11:40 - 00114520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys 2015-08-13 14:20 - 2015-07-07 11:40 - 00044560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2015-08-13 14:20 - 2015-06-27 01:21 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2015-08-13 14:20 - 2015-06-12 19:03 - 18823680 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2015-08-13 14:20 - 2015-06-12 18:36 - 15159296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2015-08-13 14:20 - 2015-05-21 15:08 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2015-08-13 14:20 - 2015-05-11 20:17 - 01201664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys 2015-08-13 14:20 - 2015-05-03 17:09 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-08-13 14:20 - 2015-05-03 16:58 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-08-13 14:20 - 2015-05-03 16:55 - 00971776 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2015-08-13 14:20 - 2015-05-03 16:49 - 00811008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2015-08-13 14:20 - 2015-04-25 04:25 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2015-08-13 14:20 - 2015-04-16 08:17 - 00325464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS 2015-08-13 14:20 - 2015-04-14 00:37 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\authz.dll 2015-08-13 14:20 - 2015-04-14 00:34 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authz.dll 2015-08-13 14:20 - 2015-04-10 02:40 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll 2015-08-13 14:20 - 2015-04-10 02:17 - 01018880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll 2015-08-13 14:20 - 2015-04-09 00:41 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rgb9rast.dll 2015-08-13 14:20 - 2015-04-03 02:35 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\PhotoMetadataHandler.dll 2015-08-13 14:20 - 2015-04-03 02:14 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoMetadataHandler.dll 2015-08-13 14:20 - 2015-04-02 00:22 - 02985984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll 2015-08-13 14:20 - 2015-04-02 00:20 - 04417536 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll 2015-08-13 14:20 - 2015-04-01 05:45 - 01491456 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll 2015-08-13 14:20 - 2015-04-01 04:31 - 01207296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbghelp.dll 2015-08-13 14:20 - 2015-03-20 05:49 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll 2015-08-13 14:20 - 2015-03-20 05:08 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll 2015-08-13 14:20 - 2015-03-20 04:37 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll 2015-08-13 14:20 - 2015-03-20 04:07 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2015-08-13 14:20 - 2015-03-20 03:56 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys 2015-08-13 14:20 - 2015-03-13 04:02 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys 2015-08-13 14:20 - 2015-03-13 03:11 - 02162176 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll 2015-08-13 14:20 - 2015-03-13 02:39 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll 2015-08-13 14:20 - 2015-03-06 04:47 - 01696256 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll 2015-08-13 14:20 - 2015-03-04 03:32 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll 2015-08-13 14:20 - 2015-03-04 03:12 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll 2015-08-13 14:20 - 2015-03-02 03:43 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\rastapi.dll 2015-08-13 14:20 - 2015-03-02 03:21 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastapi.dll 2015-08-13 14:20 - 2015-02-03 02:03 - 03551744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll 2015-08-13 14:20 - 2015-02-03 02:02 - 04298240 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll 2015-08-13 14:20 - 2015-02-03 01:53 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll 2015-08-13 14:20 - 2015-02-03 01:53 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll 2015-08-13 14:20 - 2015-01-30 05:01 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys 2015-08-13 14:20 - 2015-01-30 05:00 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rfcomm.sys 2015-08-13 14:20 - 2015-01-30 04:03 - 01488896 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll 2015-08-13 14:20 - 2015-01-30 04:03 - 01464832 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll 2015-08-13 14:20 - 2015-01-30 03:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll 2015-08-13 14:20 - 2015-01-30 03:42 - 01204224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll 2015-08-13 14:20 - 2015-01-30 03:29 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atlthunk.dll 2015-08-13 14:20 - 2015-01-30 02:53 - 02819584 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll 2015-08-13 14:20 - 2015-01-29 03:04 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2015-08-13 14:20 - 2015-01-28 04:24 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\StorageContextHandler.dll 2015-08-13 14:20 - 2015-01-28 03:47 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorageContextHandler.dll 2015-08-13 14:20 - 2015-01-19 20:42 - 01487976 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll 2015-08-13 14:20 - 2014-11-14 08:58 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsDatabase.dll 2015-08-13 14:20 - 2014-11-04 21:25 - 00059712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdclass.sys 2015-08-13 14:20 - 2014-11-04 21:25 - 00051008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouclass.sys 2015-08-13 14:20 - 2014-11-04 08:55 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sermouse.sys 2015-08-13 14:20 - 2014-11-04 08:54 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\i8042prt.sys 2015-08-13 14:20 - 2014-11-04 08:54 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys 2015-08-13 14:20 - 2014-11-04 08:54 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouhid.sys 2015-08-13 14:20 - 2014-10-31 01:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2015-08-13 14:19 - 2015-06-11 22:12 - 02476376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2015-08-13 14:19 - 2015-06-11 22:12 - 00428888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2015-08-13 14:19 - 2015-05-12 15:19 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll 2015-08-13 14:19 - 2015-05-11 18:34 - 00332800 _____ (Microsoft Corporation) C:\Windows\system32\fhcpl.dll 2015-08-13 14:19 - 2015-05-03 17:07 - 07784448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll 2015-08-13 14:19 - 2015-05-03 16:57 - 05264384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll 2015-08-13 14:19 - 2015-04-28 15:13 - 00513480 _____ C:\Windows\SysWOW64\locale.nls 2015-08-13 14:19 - 2015-04-28 15:13 - 00513480 _____ C:\Windows\system32\locale.nls 2015-08-13 14:19 - 2015-04-23 17:47 - 03084288 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll 2015-08-13 14:19 - 2015-04-23 17:16 - 02471424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll 2015-08-13 14:19 - 2015-04-01 06:21 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe 2015-08-13 14:19 - 2015-04-01 06:18 - 00468480 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll 2015-08-13 14:19 - 2015-04-01 06:17 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll 2015-08-13 14:19 - 2015-04-01 06:08 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll 2015-08-13 14:19 - 2015-04-01 05:46 - 03633664 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2015-08-13 14:19 - 2015-04-01 05:17 - 02551808 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2015-08-13 14:19 - 2015-04-01 05:17 - 00903168 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2015-08-13 14:19 - 2015-04-01 04:53 - 00391680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll 2015-08-13 14:19 - 2015-04-01 04:53 - 00272896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe 2015-08-13 14:19 - 2015-04-01 04:45 - 02749952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll 2015-08-13 14:19 - 2015-04-01 04:45 - 00699392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll 2015-08-13 14:19 - 2015-04-01 04:14 - 01920000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll 2015-08-13 14:19 - 2015-04-01 04:12 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe 2015-08-13 14:19 - 2015-03-13 06:03 - 00239424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2015-08-13 14:19 - 2015-03-13 06:03 - 00154432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2015-08-13 14:19 - 2015-03-06 05:08 - 02067968 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll 2015-08-13 14:19 - 2015-03-06 04:43 - 01969664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll 2015-08-13 14:19 - 2015-02-18 01:19 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll 2015-08-13 14:19 - 2015-02-08 01:57 - 01090048 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll 2015-08-13 14:19 - 2015-02-08 01:49 - 00791040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll 2015-08-13 14:19 - 2015-01-30 04:02 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll 2015-08-13 14:19 - 2015-01-30 03:40 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll 2015-08-13 14:19 - 2015-01-30 03:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll 2015-08-13 14:19 - 2015-01-30 03:24 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll 2015-08-13 14:19 - 2015-01-30 03:24 - 00250880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll 2015-08-13 14:19 - 2015-01-30 03:16 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll 2015-08-13 14:19 - 2015-01-30 03:08 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll 2015-08-13 14:19 - 2015-01-30 03:06 - 00278016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll 2015-08-13 14:19 - 2014-12-11 07:36 - 00046456 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentServer.exe 2015-08-13 13:53 - 2014-12-09 05:45 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll 2015-08-13 13:53 - 2014-12-09 03:56 - 00538624 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll 2015-08-13 13:52 - 2014-10-31 00:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2015-08-13 13:52 - 2014-10-31 00:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2015-08-13 13:40 - 2015-07-16 02:29 - 07458648 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-08-13 13:40 - 2015-07-16 02:29 - 01735000 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-08-13 13:40 - 2015-07-16 02:29 - 00101720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys 2015-08-13 13:40 - 2015-07-16 02:28 - 01499920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2015-08-13 13:40 - 2015-07-10 19:54 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll 2015-08-13 13:32 - 2015-07-19 03:58 - 00136904 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-08-13 13:32 - 2015-07-18 20:51 - 03704320 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-08-13 13:32 - 2015-07-18 20:31 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-08-13 13:32 - 2015-07-18 20:31 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-08-13 13:32 - 2015-07-18 20:31 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-08-13 13:32 - 2015-07-18 20:29 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll 2015-08-13 13:32 - 2015-07-18 20:29 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-08-13 13:32 - 2015-07-18 20:29 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-08-13 13:32 - 2015-07-18 20:28 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-08-13 13:32 - 2015-07-18 20:12 - 02228736 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-08-13 13:32 - 2015-07-18 20:10 - 00891904 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-08-13 13:32 - 2015-07-18 20:09 - 00721920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-08-13 12:21 - 2015-06-16 00:41 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe 2015-08-13 12:21 - 2015-06-16 00:24 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-08-13 12:21 - 2015-06-15 23:16 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe 2015-08-13 12:21 - 2015-06-15 23:09 - 03607552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2015-08-13 12:21 - 2015-06-15 22:50 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-08-13 12:21 - 2015-06-15 21:57 - 02460160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2015-08-13 12:16 - 2015-07-16 21:45 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-08-13 12:16 - 2015-07-16 21:13 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2015-08-13 12:16 - 2015-07-16 20:37 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-08-13 12:16 - 2015-06-15 23:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-08-13 12:16 - 2015-06-15 22:44 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-08-13 12:16 - 2015-06-15 22:30 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-08-13 12:15 - 2015-07-16 22:36 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-08-13 12:15 - 2015-07-16 22:35 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-08-13 12:15 - 2015-07-16 22:26 - 05923328 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-08-13 12:15 - 2015-07-16 22:23 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-08-13 12:15 - 2015-07-16 22:21 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-08-13 12:15 - 2015-07-16 21:53 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2015-08-13 12:15 - 2015-07-16 21:51 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-08-13 12:15 - 2015-07-16 21:50 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-08-13 12:15 - 2015-07-16 21:45 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2015-08-13 12:15 - 2015-07-16 21:41 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-08-13 12:15 - 2015-07-16 21:39 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-08-13 12:15 - 2015-07-16 21:38 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2015-08-13 12:15 - 2015-07-16 21:36 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-08-13 12:15 - 2015-07-16 21:34 - 14451200 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-08-13 12:15 - 2015-07-16 21:12 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-08-13 12:15 - 2015-07-16 21:12 - 02427904 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-08-13 12:15 - 2015-07-16 21:10 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-08-13 12:15 - 2015-07-16 21:06 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-08-13 12:15 - 2015-07-16 20:52 - 01048576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll 2015-08-13 12:15 - 2015-07-16 20:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-08-13 12:15 - 2015-07-16 20:42 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-08-13 12:15 - 2015-07-16 20:38 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-08-13 12:15 - 2015-06-16 00:38 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-08-13 12:15 - 2015-06-16 00:02 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2015-08-13 12:15 - 2015-06-15 23:58 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-08-13 12:15 - 2015-06-15 23:57 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-08-13 12:15 - 2015-06-15 23:55 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-08-13 12:15 - 2015-06-15 22:47 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2015-08-13 12:15 - 2015-06-15 22:43 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-08-13 12:15 - 2015-06-15 22:42 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2015-08-13 12:15 - 2015-06-15 22:41 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-08-13 12:15 - 2015-06-15 22:32 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2015-08-13 12:15 - 2015-06-15 22:30 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-08-13 12:15 - 2015-05-23 05:04 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-08-13 12:15 - 2015-05-22 20:47 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-08-13 12:15 - 2015-05-22 20:08 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-08-13 12:15 - 2015-04-21 18:13 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2015-08-13 12:15 - 2015-04-21 17:49 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-08-13 12:15 - 2015-01-12 04:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-08-13 12:15 - 2015-01-12 03:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-08-13 12:14 - 2015-08-13 12:14 - 00000679 _____ C:\Users\Giovanni\Documents\JRT Text vom 13-15-08.txt 2015-08-13 12:14 - 2015-07-16 22:36 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-08-13 12:14 - 2015-07-16 21:32 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-08-13 12:14 - 2015-07-16 21:14 - 02880000 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2015-08-13 12:14 - 2015-07-16 21:01 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-08-13 12:12 - 2015-06-28 07:06 - 00332120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2015-08-13 12:12 - 2015-06-27 18:42 - 00747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-08-13 12:12 - 2015-06-27 03:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2015-08-13 12:12 - 2015-06-27 03:26 - 00802816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-08-13 12:11 - 2015-06-28 07:07 - 00442712 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-08-13 12:11 - 2015-06-28 07:07 - 00178008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-08-13 12:11 - 2015-06-28 07:06 - 01311960 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-08-13 12:11 - 2015-06-27 05:13 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-08-13 12:11 - 2015-06-27 05:12 - 00401408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-08-13 12:11 - 2015-06-27 05:12 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-08-13 12:11 - 2015-06-27 04:40 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2015-08-13 12:11 - 2015-06-27 04:05 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-08-13 12:11 - 2015-06-27 04:00 - 00989184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-08-13 12:11 - 2015-05-30 23:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll 2015-08-13 12:11 - 2015-05-30 21:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll 2015-08-13 12:11 - 2015-05-30 21:35 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2015-08-13 12:11 - 2015-05-01 01:05 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-08-13 12:11 - 2015-05-01 00:48 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-08-13 12:11 - 2015-03-30 07:47 - 00561928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2015-08-13 12:11 - 2014-12-08 21:42 - 00535640 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2015-08-13 12:11 - 2014-12-08 21:42 - 00531616 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll 2015-08-13 12:11 - 2014-12-08 21:42 - 00448792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2015-08-13 12:11 - 2014-12-08 21:42 - 00413248 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll 2015-08-13 12:11 - 2014-12-08 21:42 - 00372408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll 2015-08-13 12:11 - 2014-12-08 21:42 - 00108944 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll 2015-08-13 12:11 - 2014-12-08 21:42 - 00038264 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe 2015-08-13 12:11 - 2014-12-08 21:42 - 00033584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe 2015-08-13 11:03 - 2015-08-13 11:03 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-08-13 10:40 - 2015-08-13 10:40 - 00326656 _____ C:\Users\Giovanni\Desktop\DownloadProtectCleaner.exe 2015-08-13 10:39 - 2015-08-13 10:43 - 00226304 _____ C:\Users\Giovanni\Desktop\DownloadProtectCleaner-reboot.exe 2015-08-13 10:33 - 2014-10-31 06:50 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\BulkOperationHost.exe 2015-08-13 10:33 - 2014-10-31 05:30 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll 2015-08-13 10:33 - 2014-10-31 05:23 - 00733696 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll 2015-08-13 10:33 - 2014-10-31 05:22 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll 2015-08-13 10:33 - 2014-10-31 05:18 - 04840960 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2015-08-13 10:33 - 2014-10-31 05:09 - 01154048 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe 2015-08-13 10:33 - 2014-10-31 04:12 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll 2015-08-13 10:21 - 2015-08-15 09:07 - 00000000 ____D C:\Program Files (x86)\VS Revo Group 2015-08-13 10:21 - 2014-10-29 05:59 - 03460472 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll 2015-08-13 10:21 - 2014-10-29 03:02 - 14354944 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2015-08-13 10:21 - 2014-10-29 02:52 - 15432704 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2015-08-13 10:21 - 2014-10-29 02:46 - 09530368 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll 2015-08-13 10:21 - 2014-10-29 02:45 - 13318144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2015-08-13 10:20 - 2014-10-29 06:00 - 02314952 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2015-08-13 10:20 - 2014-10-29 06:00 - 02229168 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll 2015-08-13 10:20 - 2014-10-29 05:59 - 00014144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\swenum.sys 2015-08-13 10:20 - 2014-10-29 05:57 - 03138720 _____ (Microsoft Corporation) C:\Windows\system32\WMVCORE.DLL 2015-08-13 10:20 - 2014-10-29 05:57 - 03118096 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe 2015-08-13 10:20 - 2014-10-29 05:57 - 01286048 _____ (Microsoft Corporation) C:\Windows\system32\MSAudDecMFT.dll 2015-08-13 10:20 - 2014-10-29 05:55 - 02174976 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll 2015-08-13 10:20 - 2014-10-29 05:52 - 02334080 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2015-08-13 10:20 - 2014-10-29 05:11 - 02689392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVCORE.DLL 2015-08-13 10:20 - 2014-10-29 05:07 - 02324208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2015-08-13 10:20 - 2014-10-29 04:29 - 04483072 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll 2015-08-13 10:20 - 2014-10-29 03:56 - 03754496 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll 2015-08-13 10:20 - 2014-10-29 03:51 - 00941056 _____ (Microsoft Corporation) C:\Windows\system32\XpsFilt.dll 2015-08-13 10:20 - 2014-10-29 03:45 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\rdpinput.exe 2015-08-13 10:20 - 2014-10-29 03:43 - 07075328 _____ (Microsoft Corporation) C:\Windows\system32\glcndFilter.dll 2015-08-13 10:20 - 2014-10-29 03:40 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe 2015-08-13 10:20 - 2014-10-29 03:39 - 02896384 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll 2015-08-13 10:20 - 2014-10-29 03:38 - 04690432 _____ (Microsoft Corporation) C:\Windows\system32\xpsrchvw.exe 2015-08-13 10:20 - 2014-10-29 03:35 - 04709888 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2015-08-13 10:20 - 2014-10-29 03:35 - 03256320 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2015-08-13 10:20 - 2014-10-29 03:28 - 03820544 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll 2015-08-13 10:20 - 2014-10-29 03:28 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\atlthunk.dll 2015-08-13 10:20 - 2014-10-29 03:26 - 03561984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbon.dll 2015-08-13 10:20 - 2014-10-29 03:24 - 02464768 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2015-08-13 10:20 - 2014-10-29 03:16 - 05267968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glcndFilter.dll 2015-08-13 10:20 - 2014-10-29 03:08 - 02608640 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll 2015-08-13 10:20 - 2014-10-29 03:08 - 02542080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll 2015-08-13 10:20 - 2014-10-29 03:05 - 03273216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll 2015-08-13 10:20 - 2014-10-29 03:03 - 04067840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2015-08-13 10:20 - 2014-10-29 02:50 - 12749824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2015-08-13 10:20 - 2014-10-29 02:48 - 03056128 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll 2015-08-13 10:20 - 2014-10-29 02:37 - 06386176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll 2015-08-13 10:20 - 2014-10-07 08:45 - 03307112 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2015-08-13 10:20 - 2014-10-07 05:44 - 02890296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2015-08-13 10:19 - 2014-10-29 06:10 - 01816008 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll 2015-08-13 10:19 - 2014-10-29 05:58 - 00014528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys 2015-08-13 10:19 - 2014-10-29 05:57 - 02745160 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2015-08-13 10:19 - 2014-10-29 05:57 - 02450216 _____ (Microsoft Corporation) C:\Windows\system32\WMVENCOD.DLL 2015-08-13 10:19 - 2014-10-29 05:55 - 01543768 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll 2015-08-13 10:19 - 2014-10-29 05:52 - 01518504 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll 2015-08-13 10:19 - 2014-10-29 05:52 - 01509688 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll 2015-08-13 10:19 - 2014-10-29 05:52 - 01288096 _____ (Microsoft Corporation) C:\Windows\system32\mfnetsrc.dll 2015-08-13 10:19 - 2014-10-29 05:52 - 01165744 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll 2015-08-13 10:19 - 2014-10-29 05:12 - 01946144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2015-08-13 10:19 - 2014-10-29 05:12 - 01907384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll 2015-08-13 10:19 - 2014-10-29 05:11 - 02528760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2015-08-13 10:19 - 2014-10-29 05:11 - 02447104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVENCOD.DLL 2015-08-13 10:19 - 2014-10-29 05:11 - 01024200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAudDecMFT.dll 2015-08-13 10:19 - 2014-10-29 05:10 - 01564464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll 2015-08-13 10:19 - 2014-10-29 04:25 - 00785920 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll 2015-08-13 10:19 - 2014-10-29 03:57 - 02924032 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll 2015-08-13 10:19 - 2014-10-29 03:47 - 02072064 _____ (Microsoft Corporation) C:\Windows\system32\OpcServices.dll 2015-08-13 10:19 - 2014-10-29 03:31 - 02941952 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll 2015-08-13 10:19 - 2014-10-29 03:24 - 02364928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcndmgr.dll 2015-08-13 10:19 - 2014-10-29 03:23 - 01500672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll 2015-08-13 10:19 - 2014-10-29 03:18 - 01753600 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2015-08-13 10:19 - 2014-10-29 03:17 - 01360896 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll 2015-08-13 10:19 - 2014-10-29 03:11 - 01639424 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll |
Themen zu pua/DownProt.I - Virus/Malware |
antivir, ccleaner, entferne, entfernen, erhalte, erklären, folge, folgende, formatieren, fund, herzlichen, installation, laptop, log, lösung, natürlich, schließe, seite, systemüberprüfung, virus, warnungen, windows, wissen, zurücksetzen, ähnliches |