|
Plagegeister aller Art und deren Bekämpfung: quick_star im BrowserWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
14.08.2015, 17:38 | #1 |
| quick_star im Browser Hallo Freunde, da habe ich mir wieder ein unerwünschtes Programm oder Add-on geladen ohne es gewollt zu haben Folgendes Problem/Herausforderung (wie man es bei mir auf Arbeit sagt ^^): Ich verwende den Firefox und habe bereits das Add-on von Quick Start deinstalliert, aber wie ihr wisst bleiben da noch Reste übrg die man so einfach nicht entfernen kann bzw. kann ich diese nicht selber entfernen. Wenn ich einen neuen tab öffne, dann werde ich immer an folgende Seite weitergeleiten "chrome://quick_start/content/index.html". Des Weiteren ist die Standardsuchmaschine "webssearches.com", welche ich niemals eingestellt habe. Bitte helft mir es wieder in den normalen Zustand zu bringen! Mal wieder ^^ Gruß Dabbei |
14.08.2015, 17:58 | #2 |
/// the machine /// TB-Ausbilder | quick_star im Browser Hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
14.08.2015, 18:27 | #3 |
| quick_star im BrowserCode:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:13-08-2015 durchgeführt von Rod (Administrator) auf RECHNER (14-08-2015 19:22:59) Gestartet von D:\Downloads Geladene Profile: UpdatusUser & Rod (Verfügbare Profile: UpdatusUser & Rod) Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (DTools LIMITED) C:\ProgramData\8WinManPro8\ProtectWindowsManager.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (MSI) C:\Program Files (x86)\SCM\SCM.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Spotify Ltd) C:\Users\Rod\AppData\Roaming\Spotify\SpotifyWebHelper.exe () C:\Program Files\Qualcomm Atheros\Killer Network Manager\KillerNetManager.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe ==================== Registry (Nicht auf der Ausnahmeliste) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13538376 2013-05-21] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1308232 2013-05-20] (Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2859344 2013-04-30] (ELAN Microelectronics Corp.) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [286704 2013-03-22] (Intel Corporation) HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp HKLM\...\Run: [Radio Manager] => C:\Program Files (x86)\SCM\Radio Manager.exe [403848 2013-05-14] (MSI) HKLM\...\Run: [SCM] => C:\Program Files (x86)\SCM\SCM.exe [399776 2013-05-14] (MSI) HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [393480 2015-03-19] () HKLM\...\Run: [HotKeysCmds] => C:\Windows\system32\hkcmd.exe HKLM\...\Run: [Persistence] => C:\Windows\system32\igfxpers.exe HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation) HKLM\...\Policies\Explorer: [ConfirmFileDelete] 1 HKU\S-1-5-21-1054307018-325505745-2950437668-1001\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2014-11-21] (Microsoft Corporation) HKU\S-1-5-21-1054307018-325505745-2950437668-1002\...\Run: [Spotify Web Helper] => C:\Users\Rod\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2017848 2015-08-01] (Spotify Ltd) HKU\S-1-5-21-1054307018-325505745-2950437668-1002\...\Run: [Steam] => "D:\CProgram Files (x86)\Steam\steam.exe" -silent AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [168616 2013-09-05] (NVIDIA Corporation) AppInit_DLLs: ,C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [168616 2013-09-05] (NVIDIA Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Qualcomm Atheros Killer Network Manager.lnk [2013-10-28] ShortcutTarget: Qualcomm Atheros Killer Network Manager.lnk -> C:\Program Files\Qualcomm Atheros\Killer Network Manager\KillerNetManager.exe () ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=MSE1 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=MSE1 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.istartsurf.com/web/?type=ds&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.istartsurf.com/web/?type=ds&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.istartsurf.com/?type=hp&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.istartsurf.com/?type=hp&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.istartsurf.com/web/?type=ds&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.istartsurf.com/web/?type=ds&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&q={searchTerms} HKU\S-1-5-21-1054307018-325505745-2950437668-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=MSE1 HKU\S-1-5-21-1054307018-325505745-2950437668-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.istartsurf.com/?type=hp&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282 HKU\S-1-5-21-1054307018-325505745-2950437668-1002\Software\Microsoft\Internet Explorer\Main,First Home Page = hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=http%3A%2F%2Fwww.istartsurf.com%2F%3Ftype%3Dhp%26ts%3D1438449320%26z%3D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282&OSP=http%3A%2F%2Fwww.istartsurf.com%2Fweb%2F%3Futm%5Fsource%3Db%26utm%5Fmedium%3Dcor%26utm%5Fcampaign%3Dinstall%5Fie%26utm%5Fcontent%3Dds%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282%26ts%3D1438449380%26type%3Ddefault%26q%3D%7BsearchTerms%7D SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKU\S-1-5-21-1054307018-325505745-2950437668-1002 -> DefaultScope {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKU\S-1-5-21-1054307018-325505745-2950437668-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&ts=1438449380&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-1054307018-325505745-2950437668-1002 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKU\S-1-5-21-1054307018-325505745-2950437668-1002 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&ts=1438449380&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-1054307018-325505745-2950437668-1002 -> {AD85C21D-2DD9-462E-B6BE-FA52D8DF3BAB} URL = hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&ts=1438449380&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-1054307018-325505745-2950437668-1002 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&ts=1438449380&type=default&q={searchTerms} BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> D:\Program Files (x86)\Java\bin\ssv.dll [2015-08-02] (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> D:\Program Files (x86)\Java\bin\jp2ssv.dll [2015-08-02] (Oracle Corporation) BHO-x32: Kein Name -> {E6E66045-E911-4C01-961D-32387BF12768} -> C:\Users\Rod\AppData\LocalLow\Browser-Security\safe_url.dll [2015-07-22] () Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{071837BD-B367-4F29-AA57-BA350E9AF7CB}: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default FF NewTab: chrome://quick_start/content/index.html FF DefaultSearchEngine: istartsurf FF SelectedSearchEngine: istartsurf FF Homepage: about:home FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-08-12] () FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB) FF Plugin: @java.com/DTPlugin,version=11.51.2 -> D:\Program Files (x86)\Java\bin\dtplugin\npDeployJava1.dll [2015-08-02] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> D:\Program Files (x86)\Java\bin\plugin2\npjp2.dll [2015-08-02] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll [2013-01-24] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-12] () FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-03-12] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-03-12] (Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll [2013-01-24] ( Microsoft Corporation) FF user.js: detected! => C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\user.js [2015-08-08] FF SearchPlugin: C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\searchplugins\istartsurf.xml [2015-08-02] FF Extension: Adblock Plus - C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-08-01] FF HKLM-x32\...\Firefox\Extensions: [defsearchp@gmail.com] - C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\extensions\defsearchp@gmail.com FF HKLM-x32\...\Firefox\Extensions: [deskCutv2@gmail.com] - C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\extensions\deskCutv2@gmail.com ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-11-21] (Microsoft Corporation) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15344 2013-03-22] (Intel Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [345864 2015-03-19] (Intel Corporation) R2 Intel(R) Bluetooth Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [160712 2013-03-11] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [Datei ist nicht signiert] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-03-12] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-03-12] (Intel Corporation) R2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [160768 2013-05-14] (Micro-Star International Co., Ltd.) [Datei ist nicht signiert] S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-03-29] () S3 Origin Client Service; D:\Origin\OriginClientService.exe [2007048 2015-08-01] (Electronic Arts) R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76152 2015-08-02] () R2 Qualcomm Atheros Killer Service; C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe [495616 2013-03-15] () [Datei ist nicht signiert] S2 SkypeUpdate; D:\Meine Programme\Skype\Updater\Updater.exe [327296 2015-06-25] (Skype Technologies) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation) R2 WindowsMangerProtect; C:\ProgramData\8WinManPro8\ProtectWindowsManager.exe [708264 2015-08-01] (DTools LIMITED) <==== ACHTUNG R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3376880 2013-03-29] (Intel® Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [74096 2013-03-15] (Qualcomm Atheros, Inc.) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-11-21] (Microsoft Corporation) R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsfw.sys [1366328 2013-04-01] (Motorola Solutions, Inc.) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [76744 2013-03-11] (Intel Corporation) R3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [174448 2013-03-15] (Qualcomm Atheros, Inc.) R3 NETwNb64; C:\Windows\system32\DRIVERS\NETwbw02.sys [3589600 2013-09-25] (Intel Corporation) S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew02.sys [3545056 2013-04-18] (Intel Corporation) R1 nvkflt; C:\Windows\system32\DRIVERS\nvkflt.sys [300320 2013-09-05] (NVIDIA Corporation) R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [448072 2013-02-01] (RTS Corporation) R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [226304 2014-11-21] (Microsoft Corporation) S3 clwvd; \SystemRoot\system32\DRIVERS\clwvd.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-14 19:22 - 2015-08-14 19:23 - 00000000 ____D C:\FRST 2015-08-12 12:06 - 2015-07-16 02:29 - 07458648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-08-12 12:06 - 2015-07-16 02:29 - 01735000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2015-08-12 12:06 - 2015-07-16 02:29 - 00101720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys 2015-08-12 12:06 - 2015-07-16 02:28 - 01499920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2015-08-12 12:06 - 2015-07-10 19:54 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll 2015-08-12 12:06 - 2015-07-02 00:19 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebClnt.dll 2015-08-12 12:06 - 2015-07-02 00:16 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2015-08-12 12:06 - 2015-07-01 23:37 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebClnt.dll 2015-08-12 12:06 - 2015-07-01 23:35 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll 2015-08-12 12:03 - 2015-07-10 20:19 - 01101824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2015-08-12 12:03 - 2015-07-10 19:14 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll 2015-08-12 12:03 - 2015-07-10 19:13 - 07032320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2015-08-12 12:03 - 2015-07-10 18:31 - 06213120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2015-08-12 12:03 - 2015-07-09 19:13 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe 2015-08-12 12:03 - 2015-07-09 19:13 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe 2015-08-12 12:03 - 2015-07-09 18:30 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe 2015-08-09 13:10 - 2015-08-09 13:10 - 00000000 ____D C:\Users\Rod\AppData\Roaming\NVIDIA 2015-08-05 21:05 - 2015-08-05 21:05 - 00000000 ____D C:\Users\Rod\AppData\Local\MediaServer 2015-08-05 21:03 - 2015-08-05 21:03 - 00000032 _____ C:\ProgramData\Temp.log 2015-08-05 20:47 - 2015-08-05 20:47 - 00000000 ____D C:\Users\Rod\Documents\Avatar 2015-08-05 20:46 - 2015-08-05 20:46 - 00000000 ____D C:\Users\Rod\AppData\Roaming\CyberLink 2015-08-05 20:41 - 2015-08-05 20:58 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Skype 2015-08-05 20:41 - 2015-08-05 20:41 - 00000000 ____D C:\Users\Rod\Tracing 2015-08-05 20:41 - 2015-08-05 20:41 - 00000000 ____D C:\Users\Rod\AppData\Local\Skype 2015-08-05 20:41 - 2015-08-05 20:41 - 00000000 ____D C:\ProgramData\Skype 2015-08-05 20:41 - 2015-08-05 20:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-08-05 20:41 - 2015-08-05 20:41 - 00000000 ____D C:\Program Files (x86)\Skype 2015-08-03 23:44 - 2015-08-03 23:45 - 00000000 ____D C:\Users\Rod\Documents\Visual Studio 2015 2015-08-03 23:12 - 2015-08-14 19:18 - 00001183 _____ C:\WINDOWS\setupact.log 2015-08-03 23:12 - 2015-08-03 23:12 - 00000000 _____ C:\WINDOWS\setuperr.log 2015-08-03 23:06 - 2015-08-03 23:08 - 00000000 ___HD C:\$Windows.~BT 2015-08-03 00:02 - 2015-08-03 00:10 - 00000000 ____D C:\Users\Rod\.android 2015-08-02 23:51 - 2015-08-02 23:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android SDK Tools 2015-08-02 23:51 - 2015-08-02 23:51 - 00000000 ____D C:\Program Files (x86)\Android 2015-08-02 23:50 - 2015-08-02 23:50 - 00000000 ____D C:\Program Files (x86)\Java 2015-08-02 23:45 - 2015-08-02 23:45 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2015-08-02 23:38 - 2015-08-02 23:38 - 00000000 ____D C:\ProgramData\Microsoft DNX 2015-08-02 23:34 - 2015-08-02 23:34 - 00000000 ____D C:\Program Files\IIS Express 2015-08-02 23:34 - 2015-08-02 23:34 - 00000000 ____D C:\Program Files (x86)\IIS Express 2015-08-02 23:33 - 2015-08-02 23:33 - 00000000 ____D C:\Program Files\IIS 2015-08-02 23:33 - 2015-08-02 23:33 - 00000000 ____D C:\Program Files (x86)\IIS 2015-08-02 23:20 - 2015-08-04 00:00 - 00000000 ____D C:\WINDOWS\system32\1033 2015-08-02 23:20 - 2015-08-03 23:58 - 00000000 ____D C:\Program Files (x86)\Windows Kits 2015-08-02 23:20 - 2015-08-03 23:57 - 00000000 ____D C:\WINDOWS\SysWOW64\1031 2015-08-02 23:20 - 2015-08-02 23:46 - 00000000 ____D C:\Program Files\Microsoft SQL Server 2015-08-02 23:20 - 2015-08-02 23:45 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2015-08-02 23:20 - 2015-08-02 23:20 - 00000000 ____D C:\WINDOWS\SysWOW64\1033 2015-08-02 23:20 - 2015-08-02 23:20 - 00000000 ____D C:\Program Files (x86)\Microsoft Help Viewer 2015-08-02 23:19 - 2015-08-04 00:02 - 00000000 ____D C:\WINDOWS\system32\1031 2015-08-02 23:19 - 2015-08-03 23:59 - 00000000 ____D C:\Program Files (x86)\Microsoft SDKs 2015-08-02 23:19 - 2015-08-02 23:19 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_SensorsSimulatorDriver_01_11_00.Wdf 2015-08-02 23:16 - 2015-06-22 08:31 - 00027840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspnet_counters.dll 2015-08-02 23:16 - 2015-06-22 08:30 - 00029888 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00961192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00062304 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00883712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00064352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-private-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00022368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-math-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-string-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-time-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-process-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll 2015-08-02 22:58 - 2015-08-02 22:58 - 00000000 ____D C:\ProgramData\VsTelemetry 2015-08-02 21:43 - 2015-08-02 21:44 - 00000000 ____D C:\Users\Rod\Documents\Battlefield 3 2015-08-02 12:50 - 2015-08-02 23:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-08-02 12:50 - 2015-08-02 12:50 - 00110688 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2015-08-02 12:50 - 2015-08-02 12:50 - 00000000 ____D C:\ProgramData\Sun 2015-08-02 12:50 - 2015-08-02 12:50 - 00000000 ____D C:\ProgramData\Oracle 2015-08-02 12:49 - 2015-08-02 23:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2015-08-02 12:26 - 2015-08-02 12:26 - 00000000 ____D C:\Users\Rod\AppData\Local\Macromedia 2015-08-02 10:57 - 2015-08-02 10:57 - 00000000 ____D C:\Users\Rod\AppData\Local\GWX 2015-08-01 23:16 - 2015-08-01 23:16 - 00000000 ___HD C:\$Windows.~WS 2015-08-01 19:19 - 2015-08-14 18:33 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2015-08-01 19:19 - 2015-08-12 12:33 - 00003772 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2015-08-01 19:17 - 2015-08-01 19:17 - 00000000 ____D C:\ProgramData\IHProtectUpDate 2015-08-01 19:16 - 2015-08-01 19:19 - 00000000 ____D C:\Users\Rod\AppData\Local\Adobe 2015-08-01 19:16 - 2015-08-01 19:17 - 00000000 ____D C:\ProgramData\8WinManPro8 2015-08-01 19:15 - 2015-08-13 12:30 - 00000000 ____D C:\Users\Rod\AppData\Roaming\istartsurf 2015-08-01 19:15 - 2015-08-01 19:15 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Browser-Security 2015-08-01 18:01 - 2015-08-01 18:01 - 00000887 _____ C:\Users\Public\Desktop\Battlefield 3.lnk 2015-08-01 18:01 - 2015-08-01 18:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3 2015-08-01 14:44 - 2015-08-01 14:44 - 00000222 _____ C:\Users\Rod\Desktop\Total War SHOGUN 2.url 2015-08-01 13:39 - 2015-08-01 13:39 - 00000000 ____D C:\Users\Rod\Documents\my games 2015-08-01 11:25 - 2015-08-01 11:31 - 00000000 ____D C:\Users\Rod\Documents\FUSSBALL MANAGER 14 2015-08-01 11:03 - 2015-08-01 11:03 - 00000223 _____ C:\Users\Rod\Desktop\Company of Heroes 2.url 2015-08-01 04:14 - 2015-08-01 14:44 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2015-08-01 04:14 - 2015-08-01 04:14 - 00000223 _____ C:\Users\Rod\Desktop\Total War ATTILA.url 2015-08-01 04:05 - 2015-08-14 18:49 - 00003918 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{09DFCB16-AD9D-4E8B-BE1B-EFD841E16986} 2015-08-01 04:05 - 2015-08-01 04:05 - 00000000 ____D C:\Users\Rod\AppData\Local\Steam 2015-08-01 04:05 - 2015-08-01 04:05 - 00000000 ____D C:\Users\Rod\AppData\Local\CEF 2015-08-01 04:03 - 2015-08-01 04:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2015-08-01 04:02 - 2015-06-10 00:39 - 00081920 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS 2015-08-01 04:02 - 2015-06-10 00:39 - 00053248 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys 2015-08-01 04:02 - 2015-06-10 00:38 - 01201664 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2015-08-01 04:02 - 2015-06-09 20:27 - 00411133 _____ C:\WINDOWS\system32\ApnDatabase.xml 2015-08-01 04:02 - 2015-05-01 03:13 - 06521800 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2015-08-01 04:02 - 2015-05-01 03:13 - 01488000 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2015-08-01 04:02 - 2015-05-01 03:13 - 00261376 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2015-08-01 03:55 - 2015-08-09 13:07 - 00000000 ____D C:\ProgramData\Origin 2015-08-01 03:53 - 2015-08-01 03:53 - 00000923 _____ C:\Users\Public\Desktop\FUSSBALL MANAGER 14.lnk 2015-08-01 03:53 - 2015-08-01 03:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-08-01 03:53 - 2015-08-01 03:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FUSSBALL MANAGER 14 2015-08-01 03:52 - 2015-08-01 03:52 - 00000000 ____D C:\Users\Rod\Documents\Meine empfangenen Dateien 2015-08-01 02:57 - 2015-08-03 23:06 - 00000000 ___DC C:\WINDOWS\Panther 2015-08-01 02:56 - 2015-08-01 02:56 - 02171904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2015-08-01 02:56 - 2015-08-01 02:56 - 01970432 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2015-08-01 02:56 - 2015-08-01 02:56 - 01612992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2015-08-01 02:56 - 2015-08-01 02:56 - 00672984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2015-08-01 02:56 - 2015-08-01 02:56 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll 2015-08-01 02:56 - 2015-08-01 02:56 - 00273240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2015-08-01 02:56 - 2015-08-01 02:56 - 00262144 _____ C:\WINDOWS\system32\config\userdiff 2015-08-01 02:56 - 2015-08-01 02:56 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe 2015-08-01 02:56 - 2015-08-01 02:56 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe 2015-08-01 02:56 - 2015-08-01 02:56 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsDatabase.dll 2015-08-01 02:56 - 2015-08-01 02:56 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupStatusProvider.dll 2015-08-01 02:56 - 2015-08-01 02:56 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceSetupStatusProvider.dll 2015-08-01 02:55 - 2015-08-03 23:23 - 00000000 ____D C:\Program Files (x86)\MSBuild 2015-08-01 02:55 - 2015-08-01 02:55 - 00000000 ____D C:\Program Files\Reference Assemblies 2015-08-01 02:55 - 2015-08-01 02:55 - 00000000 ____D C:\Program Files\MSBuild 2015-08-01 02:55 - 2015-08-01 02:55 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2015-08-01 02:55 - 2015-08-01 02:02 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2015-08-01 02:55 - 2013-08-03 06:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2015-08-01 02:55 - 2013-08-03 06:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2015-08-01 02:54 - 2015-08-01 02:54 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdbinst.exe 2015-08-01 02:54 - 2015-08-01 02:54 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sdbinst.exe 2015-08-01 02:51 - 2015-08-11 18:36 - 00000000 ____D C:\Users\Rod\AppData\Local\Spotify 2015-08-01 02:51 - 2015-08-11 18:34 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Spotify 2015-08-01 02:51 - 2015-08-01 02:51 - 00146080 _____ (Spotify Ltd) C:\Users\Rod\Downloads\SpotifySetup.exe 2015-08-01 02:51 - 2015-08-01 02:51 - 00001830 _____ C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2015-08-01 02:50 - 2015-04-30 22:35 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2015-08-01 02:50 - 2015-04-30 22:35 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-08-01 02:34 - 2015-08-13 12:27 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-08-01 02:24 - 2015-08-02 22:05 - 00348360 _____ C:\WINDOWS\SysWOW64\PnkBstrB.xtr 2015-08-01 02:24 - 2015-08-01 02:24 - 00000000 ____D C:\Users\Rod\AppData\Local\PunkBuster 2015-08-01 02:24 - 2015-08-01 02:24 - 00000000 ____D C:\Users\Rod\AppData\Local\ESN 2015-08-01 02:24 - 2015-08-01 02:24 - 00000000 ____D C:\Program Files (x86)\Battlelog Web Plugins 2015-08-01 02:23 - 2015-08-01 02:23 - 00000000 ____D C:\Users\Rod\AppData\Local\Origin 2015-08-01 02:23 - 2015-08-01 02:20 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Origin 2015-08-01 02:21 - 2015-08-01 02:21 - 00000536 _____ C:\Users\Public\Desktop\Origin.lnk 2015-08-01 02:21 - 2015-08-01 02:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin 2015-08-01 02:21 - 2015-08-01 01:47 - 00000000 ____D C:\ProgramData\Electronic Arts 2015-08-01 02:21 - 2015-05-25 15:23 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll 2015-08-01 02:21 - 2015-05-25 15:07 - 01430528 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2015-08-01 02:21 - 2015-01-23 09:17 - 00723072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll 2015-08-01 02:21 - 2015-01-23 07:02 - 00560392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll 2015-08-01 02:20 - 2015-08-01 02:21 - 17110336 _____ (Electronic Arts, Inc.) C:\Users\Rod\Downloads\OriginThinSetup.exe 2015-08-01 02:20 - 2015-07-09 21:51 - 00136904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2015-08-01 02:20 - 2015-07-09 20:40 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll 2015-08-01 02:20 - 2015-07-09 18:03 - 03701760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-08-01 02:20 - 2015-07-09 17:54 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2015-08-01 02:20 - 2015-07-09 17:53 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2015-08-01 02:20 - 2015-07-09 17:50 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2015-08-01 02:20 - 2015-07-09 17:50 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2015-08-01 02:20 - 2015-07-09 17:48 - 00891904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2015-08-01 02:20 - 2015-07-09 17:46 - 02229248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2015-08-01 02:20 - 2015-07-09 17:38 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe 2015-08-01 02:20 - 2015-07-09 17:37 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll 2015-08-01 02:20 - 2015-07-09 17:35 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2015-08-01 02:20 - 2015-07-09 17:34 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2015-08-01 02:20 - 2015-06-27 05:08 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2015-08-01 02:20 - 2015-06-27 05:08 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2015-08-01 02:20 - 2015-06-27 04:14 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll 2015-08-01 02:20 - 2015-06-25 04:31 - 04177920 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2015-08-01 02:20 - 2015-04-30 01:22 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll 2015-08-01 02:20 - 2015-03-17 19:26 - 00467776 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2015-08-01 02:20 - 2015-03-14 03:51 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll 2015-08-01 02:20 - 2015-02-04 01:58 - 00264000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2015-08-01 02:20 - 2015-02-04 01:58 - 00114496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2015-08-01 02:20 - 2015-02-04 01:58 - 00044024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2015-08-01 02:20 - 2015-02-03 01:53 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll 2015-08-01 02:20 - 2015-02-03 01:53 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll 2015-08-01 02:20 - 2015-01-27 05:44 - 00933888 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe 2015-08-01 02:20 - 2015-01-24 03:51 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\calc.exe 2015-08-01 02:20 - 2014-10-18 08:50 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll 2015-08-01 02:19 - 2015-08-01 02:19 - 00000118 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2015-08-01 02:19 - 2015-06-28 07:07 - 00442712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2015-08-01 02:19 - 2015-06-28 07:07 - 00178008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2015-08-01 02:19 - 2015-06-28 07:06 - 01311960 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2015-08-01 02:19 - 2015-06-28 07:06 - 00332120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2015-08-01 02:19 - 2015-06-27 18:42 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2015-08-01 02:19 - 2015-06-27 05:13 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2015-08-01 02:19 - 2015-06-27 05:12 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2015-08-01 02:19 - 2015-06-27 05:12 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2015-08-01 02:19 - 2015-06-27 04:40 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2015-08-01 02:19 - 2015-06-27 04:05 - 01441792 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2015-08-01 02:19 - 2015-06-27 04:00 - 00989184 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2015-08-01 02:19 - 2015-06-27 03:53 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll 2015-08-01 02:19 - 2015-06-27 03:26 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2015-08-01 02:19 - 2015-03-30 07:47 - 00561928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2015-08-01 02:18 - 2015-08-02 01:39 - 00000000 ___SD C:\WINDOWS\system32\GWX 2015-08-01 02:18 - 2015-08-01 02:18 - 00000000 ___SD C:\WINDOWS\SysWOW64\GWX 2015-08-01 02:18 - 2015-08-01 02:18 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-08-01 02:18 - 2015-06-16 00:41 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe 2015-08-01 02:18 - 2015-06-16 00:24 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2015-08-01 02:18 - 2015-06-15 23:16 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe 2015-08-01 02:18 - 2015-06-15 23:09 - 03607552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2015-08-01 02:18 - 2015-06-15 22:50 - 02774528 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2015-08-01 02:18 - 2015-06-15 21:57 - 02460160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2015-08-01 02:18 - 2015-05-30 23:18 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll 2015-08-01 02:18 - 2015-05-30 21:36 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2015-08-01 02:18 - 2015-05-30 21:35 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2015-08-01 02:18 - 2015-05-07 19:50 - 22292672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2015-08-01 02:18 - 2015-05-07 19:00 - 03109376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2015-08-01 02:18 - 2015-05-07 18:53 - 19734960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2015-08-01 02:18 - 2015-05-07 18:12 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2015-08-01 02:18 - 2015-05-07 17:21 - 00522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2015-08-01 02:18 - 2015-05-07 17:05 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll 2015-08-01 02:18 - 2015-05-03 02:39 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2015-08-01 02:18 - 2015-03-14 10:20 - 01385256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2015-08-01 02:18 - 2015-03-14 10:13 - 01124352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2015-08-01 02:18 - 2015-03-09 04:02 - 00057856 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys 2015-08-01 02:18 - 2014-12-19 10:57 - 00788680 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2015-08-01 02:18 - 2014-12-19 10:25 - 00602776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00535640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00531616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00448792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00413248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00372408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00108944 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00038264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe 2015-08-01 02:18 - 2014-12-08 21:42 - 00033584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe 2015-08-01 02:17 - 2015-06-16 00:39 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-08-01 02:17 - 2015-06-16 00:38 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll 2015-08-01 02:17 - 2015-06-16 00:26 - 00633856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll 2015-08-01 02:17 - 2015-06-16 00:24 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-08-01 02:17 - 2015-06-16 00:02 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx 2015-08-01 02:17 - 2015-06-15 23:58 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll 2015-08-01 02:17 - 2015-06-15 23:57 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2015-08-01 02:17 - 2015-06-15 23:56 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2015-08-01 02:17 - 2015-06-15 23:55 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2015-08-01 02:17 - 2015-06-15 23:49 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2015-08-01 02:17 - 2015-06-15 23:41 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2015-08-01 02:17 - 2015-06-15 23:38 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2015-08-01 02:17 - 2015-06-15 23:36 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2015-08-01 02:17 - 2015-06-15 23:17 - 02880000 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2015-08-01 02:17 - 2015-06-15 23:16 - 02427392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-08-01 02:17 - 2015-06-15 23:15 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-08-01 02:17 - 2015-06-15 23:13 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll 2015-08-01 02:17 - 2015-06-15 23:04 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll 2015-08-01 02:17 - 2015-06-15 23:03 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-08-01 02:17 - 2015-06-15 22:52 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2015-08-01 02:17 - 2015-06-15 22:47 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx 2015-08-01 02:17 - 2015-06-15 22:44 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll 2015-08-01 02:17 - 2015-06-15 22:43 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2015-08-01 02:17 - 2015-06-15 22:42 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll 2015-08-01 02:17 - 2015-06-15 22:41 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2015-08-01 02:17 - 2015-06-15 22:37 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2015-08-01 02:17 - 2015-06-15 22:32 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll 2015-08-01 02:17 - 2015-06-15 22:31 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2015-08-01 02:17 - 2015-06-15 22:30 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2015-08-01 02:17 - 2015-06-15 22:30 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2015-08-01 02:17 - 2015-06-15 22:17 - 01048576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2015-08-01 02:17 - 2015-06-15 22:07 - 01951232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-08-01 02:17 - 2015-06-15 22:02 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2015-08-01 02:17 - 2015-05-23 05:14 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec 2015-08-01 02:17 - 2015-05-23 05:04 - 00620032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2015-08-01 02:17 - 2015-05-22 21:00 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec 2015-08-01 02:17 - 2015-05-22 20:47 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2015-08-01 02:17 - 2015-05-22 20:08 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2015-08-01 02:17 - 2015-05-01 01:05 - 00429568 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2015-08-01 02:17 - 2015-05-01 00:48 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll 2015-08-01 02:17 - 2015-04-21 18:13 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\inseng.dll 2015-08-01 02:17 - 2015-04-21 17:49 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2015-08-01 02:17 - 2015-04-10 03:00 - 01996800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2015-08-01 02:17 - 2015-04-10 02:50 - 01387008 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2015-08-01 02:17 - 2015-04-10 02:34 - 02256896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2015-08-01 02:17 - 2015-04-10 02:26 - 01560576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2015-08-01 02:17 - 2015-04-10 02:11 - 01943040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2015-08-01 02:17 - 2015-03-20 05:49 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll 2015-08-01 02:17 - 2015-03-20 05:08 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll 2015-08-01 02:17 - 2015-03-20 04:37 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll 2015-08-01 02:17 - 2015-03-20 04:07 - 01091072 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2015-08-01 02:17 - 2015-03-20 03:56 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys 2015-08-01 02:17 - 2015-03-04 03:32 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll 2015-08-01 02:17 - 2015-03-04 03:12 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll 2015-08-01 02:17 - 2015-03-02 03:43 - 00222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastapi.dll 2015-08-01 02:17 - 2015-03-02 03:21 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastapi.dll 2015-08-01 02:17 - 2015-01-30 02:53 - 02819584 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2015-08-01 02:17 - 2015-01-29 03:58 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\photowiz.dll 2015-08-01 02:17 - 2015-01-29 03:29 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\photowiz.dll 2015-08-01 02:17 - 2015-01-29 03:04 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2015-08-01 02:17 - 2015-01-12 04:21 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll 2015-08-01 02:17 - 2015-01-12 03:45 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll 2015-08-01 02:17 - 2014-12-09 05:45 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scesrv.dll 2015-08-01 02:17 - 2014-12-09 03:56 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll 2015-08-01 02:16 - 2015-07-25 15:34 - 01084928 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2015-08-01 02:16 - 2015-07-14 16:14 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2015-08-01 02:16 - 2015-07-14 16:14 - 00301056 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2015-08-01 02:16 - 2015-07-14 16:14 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2015-08-01 02:16 - 2015-07-14 16:13 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2015-08-01 02:16 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-08-01 02:16 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-08-01 02:16 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-08-01 02:16 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-08-01 02:16 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-08-01 02:16 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-08-01 02:16 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-08-01 02:16 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-08-01 02:16 - 2015-07-02 00:08 - 05923840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-08-01 02:16 - 2015-07-01 23:14 - 04520448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-08-01 02:16 - 2015-06-30 00:43 - 00026288 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2015-08-01 02:16 - 2015-06-29 17:07 - 01145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2015-08-01 02:16 - 2015-06-29 17:07 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2015-08-01 02:16 - 2015-06-29 17:07 - 00433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2015-08-01 02:16 - 2015-06-29 17:07 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2015-08-01 02:16 - 2015-06-27 01:21 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2015-08-01 02:16 - 2015-06-27 01:21 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll 2015-08-01 02:16 - 2015-06-16 07:36 - 01661576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2015-08-01 02:16 - 2015-06-16 07:36 - 01212248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2015-08-01 02:16 - 2015-06-11 05:49 - 01380600 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2015-08-01 02:16 - 2015-06-10 18:13 - 01097216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2015-08-01 02:16 - 2015-05-21 15:08 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2015-08-01 02:16 - 2015-05-12 15:19 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2015-08-01 02:16 - 2015-05-11 18:34 - 00332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcpl.dll 2015-08-01 02:16 - 2015-05-07 18:47 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll 2015-08-01 02:16 - 2015-05-03 17:09 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-08-01 02:16 - 2015-05-03 16:58 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-08-01 02:16 - 2015-05-03 16:55 - 00971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2015-08-01 02:16 - 2015-05-03 16:49 - 00811008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll 2015-08-01 02:16 - 2015-04-28 15:13 - 00513480 _____ C:\WINDOWS\SysWOW64\locale.nls 2015-08-01 02:16 - 2015-04-28 15:13 - 00513480 _____ C:\WINDOWS\system32\locale.nls 2015-08-01 02:16 - 2015-04-25 04:34 - 00653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll 2015-08-01 02:16 - 2015-04-25 04:33 - 00549888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll 2015-08-01 02:16 - 2015-04-25 04:25 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usb8023.sys 2015-08-01 02:16 - 2015-04-23 17:47 - 03084288 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2015-08-01 02:16 - 2015-04-23 17:16 - 02471424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2015-08-01 02:16 - 2015-04-16 08:17 - 00325464 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS 2015-08-01 02:16 - 2015-04-14 00:37 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll 2015-08-01 02:16 - 2015-04-14 00:34 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authz.dll 2015-08-01 02:16 - 2015-04-10 02:40 - 01249280 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2015-08-01 02:16 - 2015-04-10 02:17 - 01018880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2015-08-01 02:16 - 2015-04-09 00:55 - 00410128 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2015-08-01 02:16 - 2015-04-09 00:41 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rgb9rast.dll 2015-08-01 02:16 - 2015-04-03 02:35 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll 2015-08-01 02:16 - 2015-04-03 02:14 - 00364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll 2015-08-01 02:16 - 2015-04-02 00:22 - 02985984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll 2015-08-01 02:16 - 2015-04-02 00:20 - 04417536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll 2015-08-01 02:16 - 2015-04-01 06:21 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2015-08-01 02:16 - 2015-04-01 06:18 - 00468480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll 2015-08-01 02:16 - 2015-04-01 06:17 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssphtb.dll 2015-08-01 02:16 - 2015-04-01 06:08 - 00774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll 2015-08-01 02:16 - 2015-04-01 05:46 - 03633664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2015-08-01 02:16 - 2015-04-01 05:45 - 01491456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll 2015-08-01 02:16 - 2015-04-01 05:17 - 02551808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2015-08-01 02:16 - 2015-04-01 05:17 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2015-08-01 02:16 - 2015-04-01 04:53 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll 2015-08-01 02:16 - 2015-04-01 04:53 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2015-08-01 02:16 - 2015-04-01 04:45 - 02749952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2015-08-01 02:16 - 2015-04-01 04:45 - 00699392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll 2015-08-01 02:16 - 2015-04-01 04:31 - 01207296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll 2015-08-01 02:16 - 2015-04-01 04:14 - 01920000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2015-08-01 02:16 - 2015-04-01 04:12 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2015-08-01 02:16 - 2015-03-23 23:59 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll 2015-08-01 02:16 - 2015-03-23 23:45 - 00257216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll 2015-08-01 02:16 - 2015-03-20 06:12 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll 2015-08-01 02:16 - 2015-03-20 06:10 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll 2015-08-01 02:16 - 2015-03-20 06:10 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll 2015-08-01 02:16 - 2015-03-20 05:17 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\tracerpt.exe 2015-08-01 02:16 - 2015-03-20 04:41 - 00369152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tracerpt.exe 2015-08-01 02:16 - 2015-03-20 04:40 - 00950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll 2015-08-01 02:16 - 2015-03-20 04:16 - 00749568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll 2015-08-01 02:16 - 2015-03-14 02:09 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2015-08-01 02:16 - 2015-03-13 06:03 - 00239424 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2015-08-01 02:16 - 2015-03-13 06:03 - 00154432 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2015-08-01 02:16 - 2015-03-13 04:58 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll 2015-08-01 02:16 - 2015-03-13 04:37 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll 2015-08-01 02:16 - 2015-03-13 04:02 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys 2015-08-01 02:16 - 2015-03-13 03:11 - 02162176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2015-08-01 02:16 - 2015-03-13 02:39 - 01812992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll 2015-08-01 02:16 - 2015-03-06 05:08 - 02067968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdshext.dll 2015-08-01 02:16 - 2015-03-06 04:47 - 01696256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2015-08-01 02:16 - 2015-03-06 04:43 - 01969664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpdshext.dll 2015-08-01 02:16 - 2015-03-04 12:25 - 00377152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2015-08-01 02:16 - 2015-03-04 05:04 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll 2015-08-01 02:16 - 2015-03-04 04:19 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll 2015-08-01 02:16 - 2015-02-24 10:32 - 00991552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2015-08-01 02:16 - 2015-02-21 01:49 - 00780800 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll 2015-08-01 02:16 - 2015-02-18 01:19 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll 2015-08-01 02:16 - 2015-02-08 01:57 - 01090048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2015-08-01 02:16 - 2015-02-08 01:49 - 00791040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2015-08-01 02:16 - 2015-02-05 22:24 - 01113920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2015-08-01 02:16 - 2015-02-03 02:03 - 03551744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2015-08-01 02:16 - 2015-02-03 02:02 - 04298240 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2015-08-01 02:16 - 2015-01-31 01:20 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2015-08-01 02:16 - 2015-01-30 05:01 - 00097792 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys 2015-08-01 02:16 - 2015-01-30 05:00 - 00167424 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys 2015-08-01 02:16 - 2015-01-30 04:03 - 01488896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42u.dll 2015-08-01 02:16 - 2015-01-30 04:03 - 01464832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42.dll 2015-08-01 02:16 - 2015-01-30 04:02 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll 2015-08-01 02:16 - 2015-01-30 03:44 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42u.dll 2015-08-01 02:16 - 2015-01-30 03:42 - 01204224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42.dll 2015-08-01 02:16 - 2015-01-30 03:40 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll 2015-08-01 02:16 - 2015-01-30 03:37 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll 2015-08-01 02:16 - 2015-01-30 03:29 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atlthunk.dll 2015-08-01 02:16 - 2015-01-30 03:24 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll 2015-08-01 02:16 - 2015-01-30 03:24 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll 2015-08-01 02:16 - 2015-01-30 03:16 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll 2015-08-01 02:16 - 2015-01-30 03:08 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll 2015-08-01 02:16 - 2015-01-30 03:06 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll 2015-08-01 02:16 - 2015-01-29 20:45 - 01763352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2015-08-01 02:16 - 2015-01-29 20:34 - 01488040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2015-08-01 02:16 - 2015-01-28 04:24 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageContextHandler.dll 2015-08-01 02:16 - 2015-01-28 03:47 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StorageContextHandler.dll 2015-08-01 02:16 - 2015-01-28 03:31 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll 2015-08-01 02:16 - 2015-01-28 03:11 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll 2015-08-01 02:16 - 2015-01-28 01:47 - 02501368 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2015-08-01 02:16 - 2015-01-28 01:41 - 02207488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2015-08-01 02:16 - 2015-01-27 06:22 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2015-08-01 02:16 - 2015-01-27 04:11 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2015-08-01 02:16 - 2014-12-19 08:26 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2015-08-01 02:16 - 2014-12-12 04:04 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe 2015-08-01 02:16 - 2014-12-11 07:36 - 00046456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentServer.exe 2015-08-01 02:16 - 2014-12-06 05:17 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll 2015-08-01 02:16 - 2014-12-06 03:41 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll 2015-08-01 02:16 - 2014-11-04 21:25 - 00059712 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdclass.sys 2015-08-01 02:16 - 2014-11-04 21:25 - 00051008 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouclass.sys 2015-08-01 02:16 - 2014-11-04 08:55 - 00026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sermouse.sys 2015-08-01 02:16 - 2014-11-04 08:54 - 00108544 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\i8042prt.sys 2015-08-01 02:16 - 2014-11-04 08:54 - 00032256 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys 2015-08-01 02:16 - 2014-11-04 08:54 - 00030208 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouhid.sys 2015-08-01 02:16 - 2014-10-29 03:57 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntvdm64.dll 2015-08-01 02:16 - 2014-10-29 03:15 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntvdm64.dll 2015-08-01 02:16 - 2014-10-29 03:15 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wow32.dll 2015-08-01 02:16 - 2014-10-29 03:14 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user.exe 2015-08-01 02:16 - 2014-10-29 03:13 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setup16.exe 2015-08-01 02:16 - 2014-10-29 03:13 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\instnm.exe 2015-08-01 02:16 - 2014-07-24 05:20 - 00875688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll 2015-08-01 02:16 - 2014-07-24 05:20 - 00869544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll 2015-08-01 02:16 - 2014-06-10 00:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2015-08-01 02:16 - 2014-06-10 00:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2015-08-01 02:14 - 2015-05-03 17:07 - 07784448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2015-08-01 02:14 - 2015-05-03 16:57 - 05264384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2015-08-01 02:10 - 2015-08-01 02:10 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2015-08-01 02:09 - 2015-08-01 02:09 - 00001454 _____ C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-08-01 02:09 - 2015-08-01 02:09 - 00000401 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat 2015-08-01 02:09 - 2015-08-01 02:09 - 00000020 ___SH C:\Users\Rod\ntuser.ini 2015-08-01 02:09 - 2015-08-01 02:09 - 00000000 ____D C:\WINDOWS\System32\Tasks\WPD 2015-08-01 02:05 - 2015-08-01 02:05 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Vorlagen 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Startmenü 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Programme 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\ProgramData\Vorlagen 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\ProgramData\Startmenü 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\ProgramData\Dokumente 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Dokumente und Einstellungen 2015-08-01 02:03 - 2015-08-01 02:03 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat 2015-08-01 02:02 - 2015-08-01 02:02 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2015-08-01 02:01 - 2015-08-01 02:01 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate 2015-08-01 02:00 - 2015-08-05 21:12 - 00000000 ____D C:\Users\Rod 2015-08-01 02:00 - 2015-08-01 23:44 - 00035474 _____ C:\WINDOWS\diagerr.xml 2015-08-01 02:00 - 2015-08-01 23:44 - 00035373 _____ C:\WINDOWS\diagwrn.xml 2015-08-01 02:00 - 2015-08-01 02:01 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-01 02:00 - 2015-08-01 02:01 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-08-01 02:00 - 2015-08-01 02:01 - 00000000 ___RD C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-01 02:00 - 2015-08-01 02:01 - 00000000 ___RD C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Vorlagen 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Startmenü 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Netzwerkumgebung 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Lokale Einstellungen 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Eigene Dateien 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Druckumgebung 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Musik 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Bilder 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Verlauf 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Anwendungsdaten 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Anwendungsdaten 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Vorlagen 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Startmenü 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Netzwerkumgebung 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Lokale Einstellungen 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Eigene Dateien 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Druckumgebung 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Documents\Eigene Musik 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Documents\Eigene Bilder 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\AppData\Local\Verlauf 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\AppData\Local\Anwendungsdaten 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Anwendungsdaten 2015-08-01 02:00 - 2014-11-21 12:52 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-01 02:00 - 2014-11-21 12:52 - 00000000 ___RD C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-01 02:00 - 2014-11-21 05:42 - 00000369 _____ C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2015-08-01 02:00 - 2014-11-21 05:42 - 00000369 _____ C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2015-08-01 02:00 - 2014-11-21 05:42 - 00000369 _____ C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2015-08-01 02:00 - 2014-11-21 05:42 - 00000369 _____ C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2015-08-01 02:00 - 2013-08-22 17:36 - 00000000 ____D C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-08-01 02:00 - 2013-08-22 17:36 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-08-01 01:58 - 2015-08-14 18:57 - 01502571 _____ C:\WINDOWS\WindowsUpdate.log 2015-08-01 01:58 - 2015-08-01 02:01 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2015-08-01 01:58 - 2015-08-01 02:01 - 00000000 ____D C:\Program Files\Intel 2015-08-01 01:58 - 2015-08-01 02:01 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2015-08-01 01:58 - 2015-08-01 02:01 - 00000000 ____D C:\Program Files (x86)\Intel 2015-08-01 01:58 - 2015-08-01 01:58 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_btmhsfw_01011.Wdf 2015-08-01 01:58 - 2015-08-01 01:58 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2015-08-01 01:58 - 2015-08-01 01:58 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2015-08-01 01:58 - 2015-08-01 01:58 - 00000000 ____D C:\Program Files\Realtek 2015-08-01 01:58 - 2015-08-01 01:58 - 00000000 ____D C:\Program Files\Elantech 2015-08-01 01:58 - 2015-03-19 21:02 - 00086528 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL 2015-08-01 01:58 - 2015-03-19 21:02 - 00082432 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL 2015-08-01 01:48 - 2015-08-01 02:04 - 00006523 _____ C:\WINDOWS\comsetup.log 2015-08-01 01:42 - 2015-08-01 01:42 - 00000000 ____D C:\ProgramData\EA Core 2015-08-01 01:16 - 2015-08-02 22:05 - 00348360 _____ C:\WINDOWS\SysWOW64\PnkBstrB.exe 2015-08-01 01:16 - 2015-08-02 22:05 - 00280904 _____ C:\WINDOWS\SysWOW64\PnkBstrB.ex0 2015-08-01 01:16 - 2015-08-02 21:44 - 00076152 _____ C:\WINDOWS\SysWOW64\PnkBstrA.exe 2015-08-01 01:16 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll 2015-08-01 01:16 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll 2015-08-01 01:16 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll 2015-08-01 01:16 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll 2015-08-01 01:16 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll 2015-08-01 01:16 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll 2015-08-01 01:16 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll 2015-08-01 01:16 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll 2015-08-01 01:16 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll 2015-08-01 01:16 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll 2015-08-01 01:16 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll 2015-08-01 01:16 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll 2015-08-01 01:16 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll 2015-08-01 01:16 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll 2015-08-01 01:16 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll 2015-08-01 01:16 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll 2015-08-01 01:16 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll 2015-08-01 01:16 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll 2015-08-01 01:16 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll 2015-08-01 01:16 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll 2015-08-01 01:16 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll 2015-08-01 01:16 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll 2015-08-01 01:16 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll 2015-08-01 01:16 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll 2015-08-01 01:16 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll 2015-08-01 01:16 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll 2015-08-01 01:16 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll 2015-08-01 01:16 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll 2015-08-01 01:16 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll 2015-08-01 01:16 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll 2015-08-01 01:16 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll 2015-08-01 01:16 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll 2015-08-01 01:16 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll 2015-08-01 01:16 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll 2015-08-01 01:16 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll 2015-08-01 01:16 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll 2015-08-01 01:16 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll 2015-08-01 01:16 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll 2015-08-01 01:16 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll 2015-08-01 01:16 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll 2015-08-01 01:16 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll 2015-08-01 01:16 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll 2015-08-01 01:16 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll 2015-08-01 01:16 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll 2015-08-01 01:16 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll 2015-08-01 01:16 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll 2015-08-01 01:16 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll 2015-08-01 01:16 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll 2015-08-01 01:16 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll 2015-08-01 01:16 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll 2015-08-01 01:16 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll 2015-08-01 01:16 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll 2015-08-01 01:16 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll 2015-08-01 01:16 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll 2015-08-01 01:16 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll 2015-08-01 01:16 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll 2015-08-01 01:16 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll 2015-08-01 01:16 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll 2015-08-01 01:16 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll 2015-08-01 01:16 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll 2015-08-01 01:16 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll 2015-08-01 01:16 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll 2015-08-01 01:16 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll 2015-08-01 01:16 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll 2015-08-01 01:16 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll 2015-08-01 01:16 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll 2015-08-01 01:16 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll 2015-08-01 01:16 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll 2015-08-01 01:16 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll 2015-08-01 01:16 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll 2015-08-01 01:16 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll 2015-08-01 01:16 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll 2015-08-01 01:16 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll 2015-08-01 01:16 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll 2015-08-01 01:16 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll 2015-08-01 01:16 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll 2015-08-01 01:16 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll 2015-08-01 01:16 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll 2015-08-01 01:16 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll 2015-08-01 01:16 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll 2015-08-01 01:16 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll 2015-08-01 01:16 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll 2015-08-01 01:16 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll 2015-08-01 01:16 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll 2015-08-01 01:16 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll 2015-08-01 01:16 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll 2015-08-01 01:16 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll 2015-08-01 01:16 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll 2015-08-01 01:16 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll 2015-08-01 01:16 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll 2015-08-01 01:16 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll 2015-08-01 01:16 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll 2015-08-01 01:16 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll 2015-08-01 01:16 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll 2015-08-01 01:16 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll 2015-08-01 01:16 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll 2015-08-01 01:16 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll 2015-08-01 01:16 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll 2015-08-01 01:16 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll 2015-08-01 01:16 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll 2015-08-01 01:16 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll 2015-08-01 01:16 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll 2015-08-01 01:16 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll 2015-08-01 01:16 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll 2015-08-01 01:16 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll 2015-08-01 01:16 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll 2015-08-01 01:16 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll 2015-08-01 01:16 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll 2015-08-01 01:16 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll 2015-08-01 01:16 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll 2015-08-01 01:16 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll 2015-08-01 01:16 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll 2015-08-01 01:16 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll 2015-08-01 01:16 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll 2015-08-01 01:16 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll 2015-08-01 01:16 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll 2015-08-01 01:16 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll 2015-08-01 01:16 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll 2015-08-01 01:16 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll 2015-08-01 01:16 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll 2015-08-01 01:16 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll 2015-08-01 01:16 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll 2015-08-01 01:16 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll 2015-08-01 01:16 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll 2015-08-01 01:16 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll 2015-08-01 01:16 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll 2015-08-01 01:16 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll 2015-08-01 01:16 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll 2015-08-01 01:16 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll 2015-08-01 01:16 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll 2015-08-01 01:16 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll 2015-08-01 01:16 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll 2015-08-01 01:16 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll 2015-08-01 01:16 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll 2015-08-01 01:16 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll 2015-08-01 01:16 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll 2015-08-01 01:16 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll 2015-08-01 01:16 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll 2015-08-01 01:16 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll 2015-08-01 01:16 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll 2015-08-01 01:16 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll 2015-08-01 01:16 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll 2015-08-01 01:16 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll 2015-08-01 01:16 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll 2015-08-01 00:40 - 2015-08-01 00:40 - 00000017 _____ C:\Users\Rod\AppData\Local\resmon.resmoncfg 2015-08-01 00:10 - 2015-08-01 00:10 - 00001163 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-08-01 00:10 - 2015-08-01 00:10 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2015-08-01 00:10 - 2015-08-01 00:10 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Mozilla 2015-08-01 00:10 - 2015-08-01 00:10 - 00000000 ____D C:\Users\Rod\AppData\Local\Mozilla 2015-08-01 00:10 - 2015-08-01 00:10 - 00000000 ____D C:\ProgramData\Mozilla 2015-08-01 00:10 - 2015-08-01 00:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-08-01 00:10 - 2015-08-01 00:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-08-01 00:08 - 2015-08-01 00:08 - 00242928 _____ C:\Users\Rod\Downloads\Firefox Setup Stub 39.0.exe 2015-07-31 23:56 - 2015-08-13 19:47 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1054307018-325505745-2950437668-1002 2015-07-31 23:54 - 2015-07-31 23:54 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Macromedia 2015-07-31 23:30 - 2015-08-05 20:46 - 00000000 ____D C:\Users\Rod\Documents\Youcam 2015-07-31 23:30 - 2015-07-31 23:30 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Intel Corporation 2015-07-31 23:30 - 2015-07-31 23:30 - 00000000 ____D C:\Users\Rod\AppData\Local\CyberLink 2015-07-31 23:28 - 2015-07-31 23:28 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Adobe 2015-07-31 23:28 - 2015-07-31 23:28 - 00000000 ____D C:\Users\Rod\AppData\Local\Power2Go8 2015-07-31 23:28 - 2015-07-31 23:28 - 00000000 ____D C:\Users\Rod\AppData\Local\MSI 2015-07-31 23:28 - 2012-08-11 06:25 - 00001193 _____ C:\Users\Default\Desktop\ALDI Foto.lnk 2015-07-31 23:28 - 2012-08-11 06:25 - 00001193 _____ C:\Users\Default User\Desktop\ALDI Foto.lnk 2015-07-31 23:28 - 2012-08-11 06:20 - 00001251 _____ C:\Users\Rod\Desktop\Medion Services.lnk 2015-07-31 23:28 - 2012-08-11 06:20 - 00001251 _____ C:\Users\Default\Desktop\Medion Services.lnk 2015-07-31 23:28 - 2012-08-11 06:20 - 00001251 _____ C:\Users\Default User\Desktop\Medion Services.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001809 _____ C:\Users\Rod\Desktop\ALDI Talk.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001809 _____ C:\Users\Default\Desktop\ALDI Talk.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001809 _____ C:\Users\Default User\Desktop\ALDI Talk.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001093 _____ C:\Users\Default\Desktop\ALDI Nord Reisen.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001093 _____ C:\Users\Default User\Desktop\ALDI Nord Reisen.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001037 _____ C:\Users\Rod\Desktop\ALDI Nord Startseite.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001037 _____ C:\Users\Default\Desktop\ALDI Nord Startseite.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001037 _____ C:\Users\Default User\Desktop\ALDI Nord Startseite.lnk 2015-07-31 23:28 - 2012-08-05 13:39 - 00001893 _____ C:\Users\Default\Desktop\ALDI Nord Blumen Service.lnk 2015-07-31 23:28 - 2012-08-05 13:39 - 00001893 _____ C:\Users\Default User\Desktop\ALDI Nord Blumen Service.lnk 2015-07-31 23:27 - 2015-08-01 02:09 - 00000000 ____D C:\Users\Rod\AppData\Local\Packages 2015-07-31 23:27 - 2015-07-31 23:27 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Intel 2015-07-31 23:27 - 2015-07-31 23:27 - 00000000 ____D C:\Users\Rod\AppData\Local\VirtualStore 2015-07-31 23:17 - 2015-08-01 02:09 - 00000000 ____D C:\Intel 2015-07-31 23:17 - 2015-08-01 01:52 - 00846784 _____ C:\WINDOWS\WindowsUpdate (1).log 2015-07-31 23:17 - 2015-07-31 23:17 - 00002324 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1054307018-325505745-2950437668-500 ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-14 19:19 - 2013-10-28 14:55 - 00000000 ____D C:\ProgramData\Bigfoot Networks 2015-08-14 19:18 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-08-14 18:57 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2015-08-14 18:57 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-08-14 17:00 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru 2015-08-13 19:22 - 2014-11-21 05:35 - 01780340 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-08-13 19:22 - 2014-11-21 04:45 - 00766620 _____ C:\WINDOWS\system32\perfh007.dat 2015-08-13 19:22 - 2014-11-21 04:45 - 00159902 _____ C:\WINDOWS\system32\perfc007.dat 2015-08-13 12:26 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-13 12:26 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-13 12:26 - 2013-03-22 19:03 - 132483416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-08-12 12:13 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-08-09 13:10 - 2013-03-25 10:23 - 00080489 _____ C:\WINDOWS\DirectX.log 2015-08-08 20:17 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache 2015-08-08 15:55 - 2014-11-21 13:01 - 00794088 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-08-08 15:55 - 2014-11-21 13:01 - 00179688 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-08-05 21:07 - 2013-10-28 16:34 - 00000000 ____D C:\Users\Public\Documents\CyberLink 2015-08-05 21:07 - 2013-10-28 16:26 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HomeCinema 2015-08-05 21:07 - 2013-10-28 16:26 - 00000000 ____D C:\ProgramData\CLSK 2015-08-05 21:07 - 2013-03-25 12:31 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-08-05 21:06 - 2013-10-28 16:26 - 00000000 ____D C:\ProgramData\CyberLink 2015-08-05 21:05 - 2013-09-18 17:07 - 00000000 ____D C:\Program Files\CyberLink 2015-08-05 20:59 - 2013-10-28 14:57 - 00000000 ____D C:\ProgramData\Package Cache 2015-08-04 23:26 - 2013-08-22 16:44 - 00342000 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-08-04 00:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-08-03 23:12 - 2014-11-20 20:24 - 00016386 _____ C:\WINDOWS\PFRO.log 2015-08-02 01:39 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppCompat 2015-08-01 06:37 - 2013-10-28 16:35 - 00000000 ____D C:\Users\Public\CyberLink 2015-08-01 02:57 - 2013-08-22 17:36 - 00262144 _____ C:\WINDOWS\system32\config\BCD-Template 2015-08-01 02:31 - 2014-11-21 05:13 - 00000000 ____D C:\Program Files\Windows Journal 2015-08-01 02:31 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\restore 2015-08-01 02:19 - 2013-10-28 14:52 - 00000000 ____D C:\WINDOWS\SysWOW64\NV 2015-08-01 02:19 - 2013-10-28 14:52 - 00000000 ____D C:\WINDOWS\system32\NV 2015-08-01 02:18 - 2014-11-21 12:51 - 00000000 ___SD C:\WINDOWS\system32\CompatTel 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\WinStore 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-RS 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-CS 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Defender 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2015-08-01 02:18 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2015-08-01 02:18 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM 2015-08-01 02:04 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Registration 2015-08-01 02:04 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows NT 2015-08-01 02:04 - 2013-08-22 15:36 - 00000000 __RHD C:\Users\Default 2015-08-01 02:03 - 2013-08-22 17:36 - 00000000 __RSD C:\WINDOWS\Media 2015-08-01 02:03 - 2013-08-22 17:36 - 00000000 __RHD C:\Users\Public\Libraries 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\system32\winrm 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\system32\WCN 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\system32\slmgr 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts 2015-08-01 02:02 - 2013-10-28 16:30 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PhotoDirector 3 2015-08-01 02:02 - 2013-10-28 16:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Medion MediaPack 3 2015-08-01 02:02 - 2013-10-28 14:57 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless 2015-08-01 02:02 - 2013-10-28 14:56 - 00000000 ____D C:\WINDOWS\SysWOW64\sda 2015-08-01 02:02 - 2013-10-28 14:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby 2015-08-01 02:02 - 2013-10-28 14:44 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2015-08-01 02:02 - 2013-09-18 17:07 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2015-08-01 02:02 - 2013-08-22 17:37 - 00005217 _____ C:\WINDOWS\DtcInstall.log 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\IME 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\en-GB 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\spool 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\MUI 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\IME 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\en-GB 2015-08-01 02:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\SysWOW64\SMI 2015-08-01 02:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe 2015-08-01 02:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2015-08-01 02:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2015-08-01 02:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\oobe 2015-08-01 02:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\Dism 2015-08-01 02:02 - 2013-05-07 15:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-08-01 02:02 - 2012-07-26 11:43 - 00000000 ____D C:\WINDOWS\en-GB 2015-08-01 02:02 - 2012-07-26 07:37 - 00000000 ____D C:\Users\Default.migrated 2015-08-01 02:01 - 2013-10-28 14:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Qualcomm Atheros 2015-08-01 02:01 - 2013-08-22 17:43 - 00000000 ____D C:\WINDOWS\DigitalLocker 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 __SHD C:\Program Files\Windows Sidebar 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\Recovery 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\IME 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Help 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\System 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2015-08-01 02:01 - 2013-03-22 14:27 - 00000000 ____D C:\ProgramData\PRICache 2015-08-01 01:59 - 2014-01-15 23:34 - 00000000 ____D C:\Recovery 2015-07-31 23:24 - 2013-03-22 15:22 - 00782014 _____ C:\WINDOWS\system32\perfh010.dat 2015-07-31 23:24 - 2013-03-22 15:22 - 00153144 _____ C:\WINDOWS\system32\perfc010.dat 2015-07-31 23:24 - 2013-03-22 15:17 - 00791060 _____ C:\WINDOWS\system32\perfh00C.dat 2015-07-31 23:24 - 2013-03-22 15:17 - 00155620 _____ C:\WINDOWS\system32\perfc00C.dat 2015-07-31 23:18 - 2013-10-28 14:49 - 00000000 ____D C:\ProgramData\NVIDIA ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-08-01 00:40 - 2015-08-01 00:40 - 0000017 _____ () C:\Users\Rod\AppData\Local\resmon.resmoncfg 2013-10-28 14:52 - 2013-10-28 14:52 - 0000000 ____H () C:\ProgramData\DP45977C.lfl 2015-08-05 21:03 - 2015-08-05 21:03 - 0000032 _____ () C:\ProgramData\Temp.log 2013-10-28 16:30 - 2013-10-28 16:30 - 0000104 _____ () C:\ProgramData\{01FB4998-33C4-4431-85ED-079E3EEFE75D}.log 2013-10-28 16:30 - 2013-10-28 16:30 - 0000119 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log 2013-10-28 16:27 - 2013-10-28 16:28 - 0000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log 2013-10-28 16:30 - 2013-10-28 16:30 - 0000111 _____ () C:\ProgramData\{39337565-330E-4ab6-A9AE-AC81E0720B10}.log 2013-10-28 16:29 - 2013-10-28 16:29 - 0000032 _____ () C:\ProgramData\{551F492A-01B0-4DC4-866F-875EC4EDC0A8}.log 2013-10-28 16:26 - 2013-10-28 16:26 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log 2013-10-28 16:29 - 2013-10-28 16:29 - 0000108 _____ () C:\ProgramData\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}.log 2013-10-28 16:27 - 2013-10-28 16:27 - 0000110 _____ () C:\ProgramData\{E3739848-5329-48E3-8D28-5BBD6E8BE384}.log 2013-10-28 16:28 - 2013-10-28 16:28 - 0000110 _____ () C:\ProgramData\{E3D04529-6EDB-11D8-A372-0050BAE317E1}.log ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-08-10 12:50 ==================== Ende von Ergebnis ============================ |
14.08.2015, 18:28 | #4 |
| quick_star im BrowserCode:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:13-08-2015 durchgeführt von Rod (2015-08-14 19:23:28) Gestartet von D:\Downloads Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-1054307018-325505745-2950437668-500 - Administrator - Disabled) Gast (S-1-5-21-1054307018-325505745-2950437668-501 - Limited - Disabled) Rod (S-1-5-21-1054307018-325505745-2950437668-1002 - Administrator - Enabled) => C:\Users\Rod UpdatusUser (S-1-5-21-1054307018-325505745-2950437668-1001 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.232 - Adobe Systems Incorporated) Android SDK Tools (HKLM-x32\...\Android SDK Tools) (Version: 1.16 - Google Inc.) Ashampoo AppLauncher (Medion) v.1.0.0 (HKLM-x32\...\Ashampoo AppLauncher (Medion)_is1) (Version: 1.0.0 - Ashampoo GmbH & Co. KG) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.7.1 - EA Digital Illusions CE AB) Browser-Security (HKLM-x32\...\Browser-Security) (Version: 1.0.7.0 - Vondos Media GmbH) Company of Heroes 2 (HKLM-x32\...\Steam App 231430) (Version: - Relic Entertainment) CyberLink PowerRecover (HKLM-x32\...\InstallShield_{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}) (Version: 5.7.0.2103 - CyberLink Corp.) CyberLink PowerRecover (Version: 5.7.0.2103 - CyberLink Corp.) Hidden Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.8000.17 - Dolby Laboratories Inc) Erforderliche Komponenten für SSDT (HKLM-x32\...\{2466E484-9D86-416B-9C88-AA533F15AF1C}) (Version: 12.0.2000.8 - Microsoft Corporation) ETDWare PS/2-X64 11.13.0.2_WHQL (HKLM\...\Elantech) (Version: 11.13.0.2 - ELAN Microelectronic Corp.) Fotogalleri (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden FUSSBALL MANAGER 14 (HKLM-x32\...\{5FC27E1E-08C0-4346-A321-ED2D31FAE936}) (Version: 1.0.0.0 - Electronic Arts) Galeria de Fotografias (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden IIS 10.0 Express (HKLM\...\{5984D8DA-C1AF-4284-9C88-D7150425B315}) (Version: 10.0.1734 - Microsoft Corporation) IIS Express Application Compatibility Database for x64 (HKLM\...\{08274920-8908-45c2-9258-8ad67ff77b09}.sdb) (Version: - ) IIS Express Application Compatibility Database for x86 (HKLM\...\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb) (Version: - ) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.0.0.1323 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4170 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{302600C1-6BDF-4FD1-1303-148929CC1385}) (Version: 3.0.1303.0326 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.5.0.1066 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.63463 - Intel Corporation) Intel® PROSet/Wireless Software (HKLM-x32\...\{c59bceea-23ab-4e2e-bfa6-625dd1e26dd1}) (Version: 16.0.2 - Intel Corporation) Java 8 Update 51 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418051F0}) (Version: 8.0.510 - Oracle Corporation) Java SE Development Kit 7 Update 55 (HKLM-x32\...\{32A3A4F4-B792-11D6-A78A-00B0D0170550}) (Version: 1.7.0.550 - Oracle) Java SE Development Kit 8 Update 51 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180510}) (Version: 8.0.510.16 - Oracle Corporation) KB9X Radio Switch Driver (HKLM\...\5AADE1068CF70DD983F763B20CF2CAAB72883915) (Version: 1.1.0.0 - ENE TECHNOLOGY INC.) Microsoft .NET Framework 4.5.1 SDK (Deutsch) (HKLM-x32\...\{CBD7095F-7211-43FD-9FE7-FB08D753AF79}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.6 SDK (Deutsch) (HKLM-x32\...\{EE8BD24B-75E1-4BBF-86B9-91FE16ADE71C}) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6 SDK (HKLM-x32\...\{B5915D37-0637-4A26-A3AA-C5DC9F856370}) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6 Targeting Pack (HKLM-x32\...\{2CC6A4A7-AAC2-46C9-9DBB-3727B5954F65}) (Version: 4.6.00081 - Microsoft Corporation) Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.23107 - Microsoft Corporation) Microsoft Help Viewer 2.2 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.2 Sprachpaket - DEU) (Version: 2.2.23107 - Microsoft Corporation) Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20125.0 - Microsoft Corporation) Microsoft SQL Server 2012 Command Line Utilities (HKLM\...\{F09DEB00-9F41-4BC9-BA81-9F131B12B3D5}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Native Client (HKLM\...\{8E4BA1E5-54E8-41F0-919B-CD875B83CFCE}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server Data Tools - DEU (14.0.50616.0) (HKLM-x32\...\{FA604873-01A0-4834-AF87-418534E465BB}) (Version: 14.0.50616.0 - Microsoft Corporation) Microsoft SQL Server*2014 Transact-SQL ScriptDom (HKLM\...\{F2A2DB39-2C5A-4764-AA0F-5AB112663FFA}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server*2014 T-SQL Language Service (HKLM-x32\...\{06BE8B71-46C6-434B-869E-85C58EF3120A}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{9634d50a-0c4d-4f52-8a9f-894a2baae370}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{307a22b8-8353-4c5e-b67b-2404c5734558}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{90ffcee5-8608-4e94-8c18-a4feb4f83fb8}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{4fcf070a-daac-45e9-a8b0-6850941f7ed8}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Web Deploy 3.6 (HKLM\...\{ED4CC1E5-043E-4157-8452-B5E533FE2BA1}) (Version: 3.1238.1955 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2014 (HKLM\...\{63967E7E-5D53-42FA-A7B2-DC50FB0F976F}) (Version: 12.0.2402.11 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2014 (HKLM-x32\...\{2ADB6B9D-83C6-494E-B8AE-E815956A4670}) (Version: 12.0.2402.11 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Mozilla Firefox 39.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 39.0 (x86 de)) (Version: 39.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 39.0 - Mozilla) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) NVIDIA HD Audio Driver 1.3.18.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.18.0 - NVIDIA Corporation) NVIDIA PhysX System Software 9.13.0325 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0325 - NVIDIA Corporation) NVIDIA Update 1.11.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.11.3 - NVIDIA Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.5.12.2862 - Electronic Arts, Inc.) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Qualcomm Atheros Killer Network Manager (HKLM-x32\...\InstallShield_{DF446558-ADF7-4884-9B2D-281979CCE71F}) (Version: 6.1.0.550 - Qualcomm Atheros) Qualcomm Atheros Killer Network Manager (Version: 6.1.0.550 - Qualcomm Atheros) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6914 - Realtek Semiconductor Corp.) Realtek PCIE Card Reader (HKLM-x32\...\{BCDA54F6-C4B6-4519-A09E-FA064A6B4098}) (Version: 6.2.9200.21219 - Realtek Semiconductor Corp.) SCM (HKLM\...\{EDF24C5B-2E36-4089-B96A-329B15A74649}) (Version: 11.013.05146 - ) Skype™ 7.7 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.7.103 - Skype Technologies S.A.) Spotify (HKU\S-1-5-21-1054307018-325505745-2950437668-1002\...\Spotify) (Version: 1.0.10.107.gd0dfca3a - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Total War: ATTILA (HKLM-x32\...\Steam App 325610) (Version: - Creative Assembly) Total War: SHOGUN 2 (HKLM-x32\...\Steam App 34330) (Version: - The Creative Assembly) Universal CRT Redistributable (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden Universal CRT Tools x64 (Version: 10.0.26624 - Microsoft Corporation) Hidden Universal CRT Tools x86 (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-1054307018-325505745-2950437668-1002_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation) ==================== Wiederherstellungspunkte ========================= 13-08-2015 12:25:54 Windows Update ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {4BA0862F-A95A-473A-AB09-E9588C5056F9} - System32\Tasks\Dolby Selector => C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [2012-08-31] (Dolby Laboratories Inc.) Task: {56CAF43B-ECB3-48AA-94C1-41279A7F4C03} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-08-13] (Microsoft Corporation) Task: {72D84C80-8FE6-4203-BFD7-54FB07198DFB} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-12] (Adobe Systems Incorporated) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2013-09-05 02:36 - 2013-09-05 02:36 - 00013088 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll 2015-08-01 01:16 - 2015-08-02 21:44 - 00076152 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe 2013-03-15 14:22 - 2013-03-15 14:22 - 00495616 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe 2011-05-09 22:46 - 2011-05-09 22:46 - 02760192 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\QtCore4.dll 2011-05-09 22:56 - 2011-05-09 22:56 - 09856000 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\QtGui4.dll 2011-05-09 22:47 - 2011-05-09 22:47 - 00416256 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\QtXml4.dll 2013-03-15 14:22 - 2013-03-15 14:22 - 00217600 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFCommon.dll 2011-05-09 22:48 - 2011-05-09 22:48 - 00990720 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\QtNetwork4.dll 2011-05-10 14:32 - 2011-05-10 14:32 - 00731648 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\qwt5.dll 2015-03-19 21:02 - 2015-03-19 21:02 - 00393480 _____ () C:\WINDOWS\system32\igfxTray.exe 2013-03-15 14:22 - 2013-03-15 14:22 - 00553984 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\KillerNetManager.exe 2013-03-15 14:22 - 2013-03-15 14:22 - 00404992 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modApplications.dll 2013-03-15 14:22 - 2013-03-15 14:22 - 00036864 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modFeatures.dll 2013-03-15 14:22 - 2013-03-15 14:22 - 00025088 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modFraps.dll 2013-03-15 14:22 - 2013-03-15 14:22 - 00240128 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modGraph.dll 2013-03-15 14:22 - 2013-03-15 14:22 - 00062464 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modlcd.dll 2013-03-15 14:22 - 2013-03-15 14:22 - 00291328 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modNetwork.dll 2013-03-15 14:22 - 2013-03-15 14:22 - 00184832 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modNpu.dll 2013-03-15 14:22 - 2013-03-15 14:22 - 00211456 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modOptions.dll 2013-03-15 14:22 - 2013-03-15 14:22 - 00064000 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modOverview.dll 2013-03-15 14:22 - 2013-03-15 14:22 - 00317440 _____ () C:\Program Files\Qualcomm Atheros\Killer Network Manager\plugins\modSystemInfo.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-1054307018-325505745-2950437668-1001\Control Panel\Desktop\\Wallpaper -> HKU\S-1-5-21-1054307018-325505745-2950437668-1002\Control Panel\Desktop\\Wallpaper -> DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{0D1B7EBB-62CB-4F48-A200-D1CBF87BF580}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{19490F66-66D9-481B-B06D-B59F7476EB89}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{3D7B0B48-7FA6-4168-B29D-D56A2F831D6D}] => (Allow) C:\Program Files\CyberLink\PowerDirector11\PDR10.EXE FirewallRules: [{D08C112D-A8DE-403D-9109-4ECD25D9D8F0}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{A388916A-8717-4596-882C-9941419105C0}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{5ABABA98-B34B-4E30-8DC2-838DAAFDB69D}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [TCP Query User{877582D1-99B6-40DF-A7F7-59035D3873B2}C:\users\rod\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\rod\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{454A5BF7-E31B-49E6-8CAF-F1ECEA057239}C:\users\rod\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\rod\appdata\roaming\spotify\spotify.exe FirewallRules: [{28D42C54-5CD3-494A-A186-8B4030A5F429}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA Manager 14\Manager14.exe FirewallRules: [{1EFB68FE-3BE5-459D-813B-546A20DFB49B}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA Manager 14\Manager14.exe FirewallRules: [{B2A76193-CC4B-4A16-827C-4F844C87A5D0}] => (Allow) D:\CProgram Files (x86)\Steam\Steam.exe FirewallRules: [{C809A184-6241-41EF-B9B1-E9A1B412E681}] => (Allow) D:\CProgram Files (x86)\Steam\Steam.exe FirewallRules: [{DCECE8FA-8858-4F2B-A93E-AD6128249D4F}] => (Allow) D:\CProgram Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{3761827B-574A-4C8B-A789-6C52EE7D815E}] => (Allow) D:\CProgram Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{F99DD71A-D44F-4113-8FE6-E7C649300CF5}] => (Allow) D:\CProgram Files (x86)\Steam\steamapps\common\Total War Attila\launcher\launcher.exe FirewallRules: [{836CDF0E-135C-4A6A-B3F9-23289C48B200}] => (Allow) D:\CProgram Files (x86)\Steam\steamapps\common\Total War Attila\launcher\launcher.exe FirewallRules: [{3CFAA9E8-065D-4013-9339-D27147A4E7C2}] => (Allow) D:\CProgram Files (x86)\Steam\steamapps\common\Company of Heroes 2\RelicCoH2.exe FirewallRules: [{04659E2A-DA68-4211-8B07-B6E6ED9B2274}] => (Allow) D:\CProgram Files (x86)\Steam\steamapps\common\Company of Heroes 2\RelicCoH2.exe FirewallRules: [{980C9E04-BA3A-4F1B-92AE-73620CFB4AF1}] => (Allow) D:\CProgram Files (x86)\Steam\steamapps\common\Total War SHOGUN 2\Shogun2.exe FirewallRules: [{4C8EF922-23D3-4553-B897-CC75F1D75D8C}] => (Allow) D:\CProgram Files (x86)\Steam\steamapps\common\Total War SHOGUN 2\Shogun2.exe FirewallRules: [{E6F50B90-D5D6-409E-AC6C-47D95C70EA58}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{B81EDC3C-6330-4C9E-A21A-6E3031FF2381}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{8FED9939-D69D-41A2-8201-61C75FC3CBFD}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{E251F8CE-BBEB-4279-9DCD-545CCD233B27}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{1BE9B500-43F6-4CBB-A203-07F875A666A7}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{227D7BFE-9346-4A76-895B-B0863DC4322E}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{A79CABFF-12F3-40AC-BCB6-DF707C95ED5E}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{1958F8E1-396F-45BD-A779-7188887CFE4B}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe FirewallRules: [TCP Query User{B92A3877-789D-4CA0-8859-DC9C10327252}D:\program files (x86)\steam\steamapps\common\company of heroes 2\reliccoh2.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\company of heroes 2\reliccoh2.exe FirewallRules: [UDP Query User{D1386E64-7BF0-4428-986A-18ED16AC93AA}D:\program files (x86)\steam\steamapps\common\company of heroes 2\reliccoh2.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\company of heroes 2\reliccoh2.exe FirewallRules: [TCP Query User{ADB8C313-5AC6-4B2D-A172-73A77586F963}D:\meine programme\skype\phone\skype.exe] => (Block) D:\meine programme\skype\phone\skype.exe FirewallRules: [UDP Query User{DB0A3BB9-11E3-4F32-8040-7729750330E3}D:\meine programme\skype\phone\skype.exe] => (Block) D:\meine programme\skype\phone\skype.exe FirewallRules: [TCP Query User{AEF5E2C2-5120-4BDC-AE93-860676E30A64}D:\program files (x86)\steam\steamapps\common\total war attila\attila.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\total war attila\attila.exe FirewallRules: [UDP Query User{CBE5CE15-F792-4C06-9FBD-9990C58A705C}D:\program files (x86)\steam\steamapps\common\total war attila\attila.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\total war attila\attila.exe ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (08/13/2015 12:26:38 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: Das Volume "\\?\Volume{28093404-c710-4e21-8095-578ed04ea020}\" wurde aufgrund eines Fehlers nicht optimiert: Falscher Parameter. (0x80070057) Error: (08/08/2015 10:56:00 AM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: Das Volume "\\?\Volume{28093404-c710-4e21-8095-578ed04ea020}\" wurde aufgrund eines Fehlers nicht optimiert: Falscher Parameter. (0x80070057) Error: (08/08/2015 05:18:41 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/07/2015 05:26:01 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/06/2015 11:32:28 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/05/2015 01:30:47 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/04/2015 12:04:25 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/03/2015 11:58:04 PM) (Source: HlpCtntMgr) (EventID: 1003) (User: ) Description: Help Content Manager exited with error: NoBooksToUninstall Error: (08/03/2015 11:56:21 PM) (Source: HlpCtntMgr) (EventID: 1003) (User: ) Description: Der Hilfeinhalts-Manager wurde mit einem Fehler beendet: NoBooksToUninstall Error: (08/03/2015 11:09:55 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\ProgramData\Package Cache\{8fd9a549-20ac-4daf-8da3-c54b6621ac29}\MDD_VCiOS.exe Cache\{8fd9a549-20ac-4daf-8da3-c54b6621ac29}\MDD_VCiOS.exe" -q -burn.elevated BurnPipe.{28B9D194-A67D-48A2-99B8-9076BDBC5F2D} {4FC03200-4BFC-4BF0-8EDB-73FF7768B8FD} 5300; Beschreibung = Visual C++ für Mobile-Entwicklung (iOS-Unterstützung); Fehler = 0x8004231f). Systemfehler: ============= Error: (08/14/2015 07:23:04 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070718 fehlgeschlagen: Sicherheitsupdate für Windows 8.1 für x64-basierte Systeme (KB3078601) Error: (08/14/2015 07:23:00 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070718 fehlgeschlagen: Sicherheitsupdate für Windows 8.1 für x64-basierte Systeme (KB3076895) Error: (08/14/2015 07:23:00 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070718 fehlgeschlagen: Update für Windows 8.1 für x64-Systeme (KB3065013) Error: (08/14/2015 07:23:00 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070718 fehlgeschlagen: Update für Windows 8.1 für x64-Systeme (KB3064209) Error: (08/14/2015 07:23:00 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070718 fehlgeschlagen: Update für Windows 8.1 für x64-Systeme (KB3055343) Error: (08/14/2015 07:23:00 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070718 fehlgeschlagen: Update für Windows 8.1 für x64-Systeme (KB3061493) Error: (08/14/2015 07:23:00 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070718 fehlgeschlagen: Sicherheitsupdate für Windows 8.1 für x64-basierte Systeme (KB3060716) Error: (08/14/2015 07:23:00 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070718 fehlgeschlagen: Update für Windows 8.1 für x64-Systeme (KB2976978) Error: (08/14/2015 07:23:00 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070718 fehlgeschlagen: Update für Windows 8.1 für x64-Systeme (KB3038936) Error: (08/14/2015 07:23:00 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070718 fehlgeschlagen: Update für Windows 8.1 für x64-Systeme (KB3071663) Microsoft Office: ========================= Error: (08/13/2015 12:26:38 PM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: \\?\Volume{28093404-c710-4e21-8095-578ed04ea020}\Falscher Parameter. (0x80070057) Error: (08/08/2015 10:56:00 AM) (Source: Microsoft-Windows-Defrag) (EventID: 257) (User: ) Description: \\?\Volume{28093404-c710-4e21-8095-578ed04ea020}\Falscher Parameter. (0x80070057) Error: (08/08/2015 05:18:41 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/07/2015 05:26:01 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/06/2015 11:32:28 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/05/2015 01:30:47 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/04/2015 12:04:25 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/03/2015 11:58:04 PM) (Source: HlpCtntMgr) (EventID: 1003) (User: ) Description: Help Content Manager exited with error: NoBooksToUninstall Error: (08/03/2015 11:56:21 PM) (Source: HlpCtntMgr) (EventID: 1003) (User: ) Description: Der Hilfeinhalts-Manager wurde mit einem Fehler beendet: NoBooksToUninstall Error: (08/03/2015 11:09:55 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: C:\ProgramData\Package Cache\{8fd9a549-20ac-4daf-8da3-c54b6621ac29}\MDD_VCiOS.exe Cache\{8fd9a549-20ac-4daf-8da3-c54b6621ac29}\MDD_VCiOS.exe" -q -burn.elevated BurnPipe.{28B9D194-A67D-48A2-99B8-9076BDBC5F2D} {4FC03200-4BFC-4BF0-8EDB-73FF7768B8FD} 5300Visual C++ für Mobile-Entwicklung (iOS-Unterstützung)0x8004231f CodeIntegrity: =================================== Date: 2015-08-14 18:55:14.497 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-14 18:55:14.341 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-14 18:26:42.767 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-14 17:00:37.626 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-14 17:00:37.132 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-14 17:00:36.991 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-14 17:00:36.648 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-14 17:00:36.491 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-14 16:58:53.104 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-08-14 16:58:52.916 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Speicherinformationen =========================== Processor: Intel(R) Core(TM) i7-4700MQ CPU @ 2.40GHz Prozentuale Nutzung des RAM: 24% Installierter physikalischer RAM: 8076.43 MB Verfügbarer physikalischer RAM: 6093.93 MB Summe virtueller Speicher: 9356.43 MB Verfügbarer virtueller Speicher: 7262.88 MB ==================== Laufwerke ================================ Drive c: (Boot) (Fixed) (Total:57.92 GB) (Free:15.9 GB) NTFS Drive d: (Data) (Fixed) (Total:871.51 GB) (Free:764.25 GB) NTFS Drive e: (Recover) (Fixed) (Total:60 GB) (Free:43.49 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 59.6 GB) (Disk ID: 00000000) Partition: GPT. ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 45CDFDC5) Partition 1: (Not Active) - (Size=871.5 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=60 GB) - (Type=07 NTFS) ==================== Ende von Ergebnis ============================ |
15.08.2015, 09:57 | #5 |
/// the machine /// TB-Ausbilder | quick_star im Browser Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
15.08.2015, 12:45 | #6 |
| quick_star im Browser mbam: Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 15.08.2015 Suchlaufzeit: 12:44 Protokolldatei: mbam.txt Administrator: Ja Version: 2.1.8.1057 Malware-Datenbank: v2015.08.15.03 Rootkit-Datenbank: v2015.08.06.01 Lizenz: Testversion Malware-Schutz: Aktiviert Schutz vor bösartigen Websites: Aktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 8.1 CPU: x64 Dateisystem: NTFS Benutzer: Rod Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 389388 Abgelaufene Zeit: 5 Min., 47 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 1 PUP.Optional.WProtectManager.A, C:\ProgramData\8WinManPro8\ProtectWindowsManager.exe, 1412, Löschen bei Neustart, [3be474958efdcc6a001cbdc90cf98878] Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 15 PUP.Optional.WProtectManager.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WindowsMangerProtect, In Quarantäne, [3be474958efdcc6a001cbdc90cf98878], PUP.Optional.FFPluginHp.A, HKLM\SOFTWARE\WOW6432NODE\FFPluginHp, In Quarantäne, [9b841dec0c7f92a4b007d548f211758b], PUP.Optional.IHProtect.A, HKLM\SOFTWARE\WOW6432NODE\IHProtect, In Quarantäne, [ef30050402894beb78afc668db286a96], PUP.Optional.IStartSurf.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\istartsurfSoftware, In Quarantäne, [38e7957446454fe755f88fb3758ea759], PUP.Optional.WPM.A, HKLM\SOFTWARE\WOW6432NODE\supWindowsMangerProtect, In Quarantäne, [8b9434d544475dd92dbb9cf40df7ea16], PUP.Optional.MiuiTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPDP, In Quarantäne, [9c83d23798f380b605383777b74dda26], PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB, In Quarantäne, [3fe09f6a95f6072f32b4a0a08f74d62a], PUP.Optional.WindowsMangerProtect.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\WindowsMangerProtect, In Quarantäne, [fe2163a65635999d4a782d0abf44926e], PUP.Optional.InstallCore.A, HKU\S-1-5-21-1054307018-325505745-2950437668-1002\SOFTWARE\ICSW1.11, In Quarantäne, [66b91fea94f740f6bb5b79a30cf7fe02], PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-1054307018-325505745-2950437668-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, In Quarantäne, [cb54b851c6c5ed49ebaf4954c341b34d], PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-1054307018-325505745-2950437668-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [819e0306c1caa98d37631489788c04fc], PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-1054307018-325505745-2950437668-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{AD85C21D-2DD9-462E-B6BE-FA52D8DF3BAB}, In Quarantäne, [7ca3dc2d87044aec009a9c01758f41bf], PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-1054307018-325505745-2950437668-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{E733165D-CBCF-4FDA-883E-ADEF965B476C}, In Quarantäne, [5dc22bde9af17fb72179108d52b27f81], PUP.Optional.DeskCut.A, HKU\S-1-5-21-1054307018-325505745-2950437668-1002\SOFTWARE\MOZILLA\EXTENDS, In Quarantäne, [67b832d73358300631f37d3518ec9f61], PUP.Optional.ProductSetup.A, HKU\S-1-5-21-1054307018-325505745-2950437668-1002\SOFTWARE\PRODUCTSETUP, In Quarantäne, [75aa8c7ddead37ffead59d0b1fe5b24e], Registrierungswerte: 12 PUP.Optional.DefaultSearchProtected.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|defsearchp@gmail.com, C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\extensions\defsearchp@gmail.com, In Quarantäne, [8d928b7ef3981d19379a9b130df7fa06] PUP.Optional.DeskCut.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|deskCutv2@gmail.com, C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\extensions\deskCutv2@gmail.com, In Quarantäne, [7ea1d732088395a18031908afe05916f] PUP.Optional.MiuiTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPDP|dir, C:\Program Files (x86)\MiuiTab, In Quarantäne, [9c83d23798f380b605383777b74dda26] PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB|ptid, cor, In Quarantäne, [3fe09f6a95f6072f32b4a0a08f74d62a] PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-1054307018-325505745-2950437668-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&ts=1438449380&type=default&q={searchTerms}, In Quarantäne, [cb54b851c6c5ed49ebaf4954c341b34d] PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-1054307018-325505745-2950437668-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|DisplayName, istartsurf, In Quarantäne, [819e0306c1caa98d37631489788c04fc] PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-1054307018-325505745-2950437668-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|URL, hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&ts=1438449380&type=default&q={searchTerms}, In Quarantäne, [b76863a6286301353e5c0895b35150b0] PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-1054307018-325505745-2950437668-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|TopResultURL, hxxp://www.istartsurf.com/web/?type=ds&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&q={searchTerms}, In Quarantäne, [b56a60a9a1ea55e10f8b4b52ce36926e] PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-1054307018-325505745-2950437668-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{AD85C21D-2DD9-462E-B6BE-FA52D8DF3BAB}|URL, hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&ts=1438449380&type=default&q={searchTerms}, In Quarantäne, [7ca3dc2d87044aec009a9c01758f41bf] PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-1054307018-325505745-2950437668-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{E733165D-CBCF-4FDA-883E-ADEF965B476C}|URL, hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&ts=1438449380&type=default&q={searchTerms}, In Quarantäne, [5dc22bde9af17fb72179108d52b27f81] PUP.Optional.DeskCut.A, HKU\S-1-5-21-1054307018-325505745-2950437668-1002\SOFTWARE\MOZILLA\EXTENDS|appid, deskCutv2@gmail.com, In Quarantäne, [67b832d73358300631f37d3518ec9f61] PUP.Optional.ProductSetup.A, HKU\S-1-5-21-1054307018-325505745-2950437668-1002\SOFTWARE\PRODUCTSETUP|tb, 0K2Y1J1E2T1S2X0X0Z1S1N1C2S1G, In Quarantäne, [75aa8c7ddead37ffead59d0b1fe5b24e] Registrierungsdaten: 10 PUP.Optional.IStartSurf.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://www.istartsurf.com/web/?type=ds&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/web/?type=ds&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&q={searchTerms}),Ersetzt,[48d7e227dfac61d5c84fd86e709555ab] PUP.Optional.IStartSurf.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://www.istartsurf.com/?type=hp&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/?type=hp&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282),Ersetzt,[869970991d6efa3c6cab8abcc83d1ae6] PUP.Optional.IStartSurf.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://www.istartsurf.com/web/?type=ds&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/web/?type=ds&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&q={searchTerms}),Ersetzt,[c25d83863b509d9922f589bda75ea957] PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[c15eb6531576ca6cef95a1b0f01526da] PUP.Optional.IStartSurf.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://www.istartsurf.com/web/?type=ds&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/web/?type=ds&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&q={searchTerms}),Ersetzt,[cc5365a41c6fe94d1cfb8cba62a3b34d] PUP.Optional.IStartSurf.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://www.istartsurf.com/?type=hp&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/?type=hp&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282),Ersetzt,[62bd93760f7cdb5bc75098aea461e917] PUP.Optional.IStartSurf.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://www.istartsurf.com/web/?type=ds&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/web/?type=ds&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&q={searchTerms}),Ersetzt,[ff202adfc0cb3cfa4fc80046e32219e7] PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[58c741c8fb903006c6befa57a065c53b] PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-1054307018-325505745-2950437668-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://www.istartsurf.com/?type=hp&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/?type=hp&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282),Ersetzt,[e53ab653bbd0fe38c055450108fdda26] PUP.Optional.IStartSurf.ShrtCln, HKU\S-1-5-21-1054307018-325505745-2950437668-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|First Home Page, hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=httpSchlecht: (hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=http%3A%2F%2Fwww.istartsurf.com%2F%3Ftype%3Dhp%26ts%3D1438449320%26z%3D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282&OSP=http%3A%2F%2Fwww.istartsurf.com%2Fweb%2F%3Futm%5Fsource%3Db%26utm%5Fmedium%3Dcor%26utm%5Fcampaign%3Dinstall%5Fie%26utm%5Fcontent%3Dds%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282%26ts%3D1438449380%26type%3Ddefault%26q%3D%7BsearchTerms%7D),Ersetzt,[a17ec445e3a8c274e134ee582adb4db3]AGut: (www.google.com)FGut: (www.google.com)Fwww.istartsurf.comGut: (www.google.com)FSchlecht: (hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=http%3A%2F%2Fwww.istartsurf.com%2F%3Ftype%3Dhp%26ts%3D1438449320%26z%3D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282&OSP=http%3A%2F%2Fwww.istartsurf.com%2Fweb%2F%3Futm%5Fsource%3Db%26utm%5Fmedium%3Dcor%26utm%5Fcampaign%3Dinstall%5Fie%26utm%5Fcontent%3Dds%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282%26ts%3D1438449380%26type%3Ddefault%26q%3D%7BsearchTerms%7D),Ersetzt,[a17ec445e3a8c274e134ee582adb4db3]FtypeSchlecht: (hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=http%3A%2F%2Fwww.istartsurf.com%2F%3Ftype%3Dhp%26ts%3D1438449320%26z%3D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282&OSP=http%3A%2F%2Fwww.istartsurf.com%2Fweb%2F%3Futm%5Fsource%3Db%26utm%5Fmedium%3Dcor%26utm%5Fcampaign%3Dinstall%5Fie%26utm%5Fcontent%3Dds%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282%26ts%3D1438449380%26type%3Ddefault%26q%3D%7BsearchTerms%7D),Ersetzt,[a17ec445e3a8c274e134ee582adb4db3]Dhp%26tsSchlecht: (hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=http%3A%2F%2Fwww.istartsurf.com%2F%3Ftype%3Dhp%26ts%3D1438449320%26z%3D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282&OSP=http%3A%2F%2Fwww.istartsurf.com%2Fweb%2F%3Futm%5Fsource%3Db%26utm%5Fmedium%3Dcor%26utm%5Fcampaign%3Dinstall%5Fie%26utm%5Fcontent%3Dds%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282%26ts%3D1438449380%26type%3Ddefault%26q%3D%7BsearchTerms%7D),Ersetzt,[a17ec445e3a8c274e134ee582adb4db3]D1438449320%26zSchlecht: (hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=http%3A%2F%2Fwww.istartsurf.com%2F%3Ftype%3Dhp%26ts%3D1438449320%26z%3D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282&OSP=http%3A%2F%2Fwww.istartsurf.com%2Fweb%2F%3Futm%5Fsource%3Db%26utm%5Fmedium%3Dcor%26utm%5Fcampaign%3Dinstall%5Fie%26utm%5Fcontent%3Dds%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282%26ts%3D1438449380%26type%3Ddefault%26q%3D%7BsearchTerms%7D),Ersetzt,[a17ec445e3a8c274e134ee582adb4db3]D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26fromSchlecht: (hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=http%3A%2F%2Fwww.istartsurf.com%2F%3Ftype%3Dhp%26ts%3D1438449320%26z%3D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282&OSP=http%3A%2F%2Fwww.istartsurf.com%2Fweb%2F%3Futm%5Fsource%3Db%26utm%5Fmedium%3Dcor%26utm%5Fcampaign%3Dinstall%5Fie%26utm%5Fcontent%3Dds%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282%26ts%3D1438449380%26type%3Ddefault%26q%3D%7BsearchTerms%7D),Ersetzt,[a17ec445e3a8c274e134ee582adb4db3]Dcor%26uidSchlecht: (hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=http%3A%2F%2Fwww.istartsurf.com%2F%3Ftype%3Dhp%26ts%3D1438449320%26z%3D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282&OSP=http%3A%2F%2Fwww.istartsurf.com%2Fweb%2F%3Futm%5Fsource%3Db%26utm%5Fmedium%3Dcor%26utm%5Fcampaign%3Dinstall%5Fie%26utm%5Fcontent%3Dds%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282%26ts%3D1438449380%26type%3Ddefault%26q%3D%7BsearchTerms%7D),Ersetzt,[a17ec445e3a8c274e134ee582adb4db3]DSanDiskXSD6SB1M064G%5F133958401282&OSP=httpSchlecht: (hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=http%3A%2F%2Fwww.istartsurf.com%2F%3Ftype%3Dhp%26ts%3D1438449320%26z%3D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282&OSP=http%3A%2F%2Fwww.istartsurf.com%2Fweb%2F%3Futm%5Fsource%3Db%26utm%5Fmedium%3Dcor%26utm%5Fcampaign%3Dinstall%5Fie%26utm%5Fcontent%3Dds%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282%26ts%3D1438449380%26type%3Ddefault%26q%3D%7BsearchTerms%7D),Ersetzt,[a17ec445e3a8c274e134ee582adb4db3]AGut: (www.google.com)FGut: (www.google.com)Fwww.istartsurf.comGut: (www.google.com)FwebGut: (www.google.com)FSchlecht: (hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=http%3A%2F%2Fwww.istartsurf.com%2F%3Ftype%3Dhp%26ts%3D1438449320%26z%3D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282&OSP=http%3A%2F%2Fwww.istartsurf.com%2Fweb%2F%3Futm%5Fsource%3Db%26utm%5Fmedium%3Dcor%26utm%5Fcampaign%3Dinstall%5Fie%26utm%5Fcontent%3Dds%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282%26ts%3D1438449380%26type%3Ddefault%26q%3D%7BsearchTerms%7D),Ersetzt,[a17ec445e3a8c274e134ee582adb4db3]Futm%5FsourceSchlecht: (hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=http%3A%2F%2Fwww.istartsurf.com%2F%3Ftype%3Dhp%26ts%3D1438449320%26z%3D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282&OSP=http%3A%2F%2Fwww.istartsurf.com%2Fweb%2F%3Futm%5Fsource%3Db%26utm%5Fmedium%3Dcor%26utm%5Fcampaign%3Dinstall%5Fie%26utm%5Fcontent%3Dds%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282%26ts%3D1438449380%26type%3Ddefault%26q%3D%7BsearchTerms%7D),Ersetzt,[a17ec445e3a8c274e134ee582adb4db3]Db%26utm%5FmediumSchlecht: (hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=http%3A%2F%2Fwww.istartsurf.com%2F%3Ftype%3Dhp%26ts%3D1438449320%26z%3D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282&OSP=http%3A%2F%2Fwww.istartsurf.com%2Fweb%2F%3Futm%5Fsource%3Db%26utm%5Fmedium%3Dcor%26utm%5Fcampaign%3Dinstall%5Fie%26utm%5Fcontent%3Dds%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282%26ts%3D1438449380%26type%3Ddefault%26q%3D%7BsearchTerms%7D),Ersetzt,[a17ec445e3a8c274e134ee582adb4db3]Dcor%26utm%5FcampaignSchlecht: (hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=http%3A%2F%2Fwww.istartsurf.com%2F%3Ftype%3Dhp%26ts%3D1438449320%26z%3D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282&OSP=http%3A%2F%2Fwww.istartsurf.com%2Fweb%2F%3Futm%5Fsource%3Db%26utm%5Fmedium%3Dcor%26utm%5Fcampaign%3Dinstall%5Fie%26utm%5Fcontent%3Dds%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282%26ts%3D1438449380%26type%3Ddefault%26q%3D%7BsearchTerms%7D),Ersetzt,[a17ec445e3a8c274e134ee582adb4db3]Dinstall%5Fie%26utm%5FcontentSchlecht: (hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=http%3A%2F%2Fwww.istartsurf.com%2F%3Ftype%3Dhp%26ts%3D1438449320%26z%3D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282&OSP=http%3A%2F%2Fwww.istartsurf.com%2Fweb%2F%3Futm%5Fsource%3Db%26utm%5Fmedium%3Dcor%26utm%5Fcampaign%3Dinstall%5Fie%26utm%5Fcontent%3Dds%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282%26ts%3D1438449380%26type%3Ddefault%26q%3D%7BsearchTerms%7D),Ersetzt,[a17ec445e3a8c274e134ee582adb4db3]Dds%26fromSchlecht: (hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=http%3A%2F%2Fwww.istartsurf.com%2F%3Ftype%3Dhp%26ts%3D1438449320%26z%3D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282&OSP=http%3A%2F%2Fwww.istartsurf.com%2Fweb%2F%3Futm%5Fsource%3Db%26utm%5Fmedium%3Dcor%26utm%5Fcampaign%3Dinstall%5Fie%26utm%5Fcontent%3Dds%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282%26ts%3D1438449380%26type%3Ddefault%26q%3D%7BsearchTerms%7D),Ersetzt,[a17ec445e3a8c274e134ee582adb4db3]Dcor%26uidSchlecht: (hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=http%3A%2F%2Fwww.istartsurf.com%2F%3Ftype%3Dhp%26ts%3D1438449320%26z%3D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282&OSP=http%3A%2F%2Fwww.istartsurf.com%2Fweb%2F%3Futm%5Fsource%3Db%26utm%5Fmedium%3Dcor%26utm%5Fcampaign%3Dinstall%5Fie%26utm%5Fcontent%3Dds%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282%26ts%3D1438449380%26type%3Ddefault%26q%3D%7BsearchTerms%7D),Ersetzt,[a17ec445e3a8c274e134ee582adb4db3]DSanDiskXSD6SB1M064G%5F133958401282%26tsSchlecht: (hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=http%3A%2F%2Fwww.istartsurf.com%2F%3Ftype%3Dhp%26ts%3D1438449320%26z%3D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282&OSP=http%3A%2F%2Fwww.istartsurf.com%2Fweb%2F%3Futm%5Fsource%3Db%26utm%5Fmedium%3Dcor%26utm%5Fcampaign%3Dinstall%5Fie%26utm%5Fcontent%3Dds%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282%26ts%3D1438449380%26type%3Ddefault%26q%3D%7BsearchTerms%7D),Ersetzt,[a17ec445e3a8c274e134ee582adb4db3]D1438449380%26typeSchlecht: (hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=http%3A%2F%2Fwww.istartsurf.com%2F%3Ftype%3Dhp%26ts%3D1438449320%26z%3D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282&OSP=http%3A%2F%2Fwww.istartsurf.com%2Fweb%2F%3Futm%5Fsource%3Db%26utm%5Fmedium%3Dcor%26utm%5Fcampaign%3Dinstall%5Fie%26utm%5Fcontent%3Dds%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282%26ts%3D1438449380%26type%3Ddefault%26q%3D%7BsearchTerms%7D),Ersetzt,[a17ec445e3a8c274e134ee582adb4db3]Ddefault%26qSchlecht: (hxxp://go.microsoft.com/fwlink/?LinkID=226786&Mkt=de-DE&Src=WD8&Tid=0003446E&OHP=http%3A%2F%2Fwww.istartsurf.com%2F%3Ftype%3Dhp%26ts%3D1438449320%26z%3D11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282&OSP=http%3A%2F%2Fwww.istartsurf.com%2Fweb%2F%3Futm%5Fsource%3Db%26utm%5Fmedium%3Dcor%26utm%5Fcampaign%3Dinstall%5Fie%26utm%5Fcontent%3Dds%26from%3Dcor%26uid%3DSanDiskXSD6SB1M064G%5F133958401282%26ts%3D1438449380%26type%3Ddefault%26q%3D%7BsearchTerms%7D),Ersetzt,[a17ec445e3a8c274e134ee582adb4db3]D%7BsearchTerms%7D, %4, %5 Ordner: 7 PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\code, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate, In Quarantäne, [8c93eb1ec0cb79bd4651b752ef148c74], PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate\update, In Quarantäne, [8c93eb1ec0cb79bd4651b752ef148c74], PUP.Optional.ProtectWindowsManager.F, C:\ProgramData\8WinManPro8, Löschen bei Neustart, [f9267d8cc1ca39fd559f5abb9a698080], PUP.Optional.ProtectWindowsManager.F, C:\ProgramData\8WinManPro8\update, In Quarantäne, [f9267d8cc1ca39fd559f5abb9a698080], Dateien: 33 PUP.Optional.WProtectManager.A, C:\ProgramData\8WinManPro8\ProtectWindowsManager.exe, Löschen bei Neustart, [3be474958efdcc6a001cbdc90cf98878], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\searchplugins\istartsurf.xml, In Quarantäne, [a17e9574fe8d2511ed533b0862a1a060], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\593.json, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\MessageBox.xml, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\un.ini, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\uninstallDlg2.xml, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\bg.png, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\bg1.png, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\bk_shadow.png, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\button.png, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\button1.png, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\checkbox.png, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\checkbox_select.png, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\checked.png, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\close.png, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\loading_bg.png, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\loading_light.png, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\min.png, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\scrollbar.bmp, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\Thumbs.db, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\unchecked.png, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\code\code1.jpg, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\code\code2.jpg, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\code\code3.jpg, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\code\code4.jpg, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\code\code5.jpg, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\code\code6.jpg, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\istartsurf\images\code\Thumbs.db, In Quarantäne, [c35c49c0068537ffa73722d78b7751af], PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate\update\conf, In Quarantäne, [8c93eb1ec0cb79bd4651b752ef148c74], PUP.Optional.ProtectWindowsManager.F, C:\ProgramData\8WinManPro8\updateconf, In Quarantäne, [f9267d8cc1ca39fd559f5abb9a698080], PUP.Optional.QuickStart.A, C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\prefs.js, Gut: (), Schlecht: (user_pref("browser.newtab.url", "chrome://quick_start/content/index.html");), Ersetzt,[d34c1eeb2e5d0333a6b9f991ad58dc24] PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\prefs.js, Gut: (), Schlecht: (user_pref("browser.search.defaultenginename", "istartsurf");), Ersetzt,[44db38d17c0fed495027d3b7f80dbd43] PUP.Optional.IStartSurf.ShrtCln, C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\prefs.js, Gut: (), Schlecht: (user_pref("browser.search.selectedEngine", "istartsurf");), Ersetzt,[e43bed1ca3e801357afedab05ca9956b] Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter # AdwCleaner v5.000 - Logfile created 15/08/2015 at 13:35:53 # Updated 14/08/2015 by Xplode # Database : 2015-08-14.3 [Server] # Operating system : Windows 8.1 (x64) # Username : Rod - RECHNER # Running from : D:\Downloads\AdwCleaner_5.000.exe # Option : Cleaning ***** [ Services ] ***** ***** [ Folders ] ***** ***** [ Files ] ***** [-] File Deleted : C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\user.js ***** [ Shortcuts ] ***** ***** [ Scheduled tasks ] ***** ***** [ Registry ] ***** [-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{1F91A9A1-01BA-4C81-863D-3BA0751E1419}] [-] Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} [-] Key Deleted : HKCU\Software\OCS [!] Key Not Deleted : [x64] HKCU\Software\OCS ***** [ Web browsers ] ***** [-] [C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\prefs.js] [Preference] Deleted : user_pref("browser.newtab.url", "chrome://quick_start/content/index.html"); [-] [C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\prefs.js] [Preference] Deleted : user_pref("browser.search.searchengine.alias", "istartsurf"); [-] [C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\prefs.js] [Preference] Deleted : user_pref("browser.search.searchengine.iconURL", "hxxp://www.istartsurf.com/favicon.ico"); [-] [C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\prefs.js] [Preference] Deleted : user_pref("browser.search.searchengine.name", "istartsurf"); [-] [C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\prefs.js] [Preference] Deleted : user_pref("browser.search.searchengine.url", "hxxp://www.istartsurf.com/web/?type=ds&ts=1438449320&z=11f2400323b993dfa9ba214g2z5cfbdz5z2t6o0q2o&from=cor&uid=SanDiskXSD6SB1M064G_133958401282&q={searchT[...] [-] [C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\prefs.js] [Preference] Deleted : user_pref("browser.search.selectedEngine", "istartsurf"); [-] [C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\prefs.js] [Preference] Deleted : user_pref("extensions.quick_start.enable_search1", false); [-] [C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\prefs.js] [Preference] Deleted : user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); ************************* :: Proxy settings cleared :: Winsock settings cleared ************************* C:\AdwCleaner[C1].txt - [2604 octets] - [15/08/2015 13:35:53] C:\AdwCleaner[S1].txt - [2571 octets] - [15/08/2015 13:33:47] ########## EOF - C:\AdwCleaner[C1].txt - [2730 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 7.5.6 (08.10.2015:1) OS: Windows 8.1 x64 Ran by Rod on 15.08.2015 at 13:39:56,03 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Tasks ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{E6E66045-E911-4C01-961D-32387BF12768} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E6E66045-E911-4C01-961D-32387BF12768} Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{E6E66045-E911-4C01-961D-32387BF12768} ~~~ Files ~~~ Folders ~~~ FireFox Successfully deleted the following from C:\Users\Rod\AppData\Roaming\mozilla\firefox\profiles\89zpzkux.default\prefs.js user_pref(browser.search.searchengine.desc, this is my first firefox searchEngine); user_pref(browser.search.searchengine.ptid, cor); user_pref(browser.search.searchengine.uid, SanDiskXSD6SB1M064G_133958401282); ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 15.08.2015 at 13:41:13,03 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
16.08.2015, 06:25 | #7 |
/// the machine /// TB-Ausbilder | quick_star im Browser das frische FRST log fehlt noch
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
16.08.2015, 10:20 | #8 |
| quick_star im BrowserCode:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:13-08-2015 durchgeführt von Rod (Administrator) auf RECHNER (16-08-2015 11:19:01) Gestartet von D:\FRST64Bit Geladene Profile: Rod (Verfügbare Profile: UpdatusUser & Rod) Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (MSI) C:\Program Files (x86)\SCM\SCM.exe () C:\Windows\System32\igfxTray.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Spotify Ltd) C:\Users\Rod\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe () C:\Program Files\Qualcomm Atheros\Killer Network Manager\KillerNetManager.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Skype Technologies S.A.) D:\Meine Programme\Skype\Phone\Skype.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Nicht auf der Ausnahmeliste) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13538376 2013-05-21] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1308232 2013-05-20] (Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2859344 2013-04-30] (ELAN Microelectronics Corp.) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [286704 2013-03-22] (Intel Corporation) HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp HKLM\...\Run: [Radio Manager] => C:\Program Files (x86)\SCM\Radio Manager.exe [403848 2013-05-14] (MSI) HKLM\...\Run: [SCM] => C:\Program Files (x86)\SCM\SCM.exe [399776 2013-05-14] (MSI) HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [393480 2015-03-19] () HKLM\...\Run: [HotKeysCmds] => C:\Windows\system32\hkcmd.exe HKLM\...\Run: [Persistence] => C:\Windows\system32\igfxpers.exe HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation) HKLM\...\Policies\Explorer: [ConfirmFileDelete] 1 HKU\S-1-5-21-1054307018-325505745-2950437668-1002\...\Run: [Spotify Web Helper] => C:\Users\Rod\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2017848 2015-08-01] (Spotify Ltd) HKU\S-1-5-21-1054307018-325505745-2950437668-1002\...\Run: [Steam] => "D:\CProgram Files (x86)\Steam\steam.exe" -silent AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [168616 2013-09-05] (NVIDIA Corporation) AppInit_DLLs: , C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [168616 2013-09-05] (NVIDIA Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Qualcomm Atheros Killer Network Manager.lnk [2013-10-28] ShortcutTarget: Qualcomm Atheros Killer Network Manager.lnk -> C:\Program Files\Qualcomm Atheros\Killer Network Manager\KillerNetManager.exe () ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=MSE1 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=MSE1 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKU\S-1-5-21-1054307018-325505745-2950437668-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=MSE1 SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKU\S-1-5-21-1054307018-325505745-2950437668-1002 -> DefaultScope {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> D:\Program Files (x86)\Java\bin\ssv.dll [2015-08-02] (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> D:\Program Files (x86)\Java\bin\jp2ssv.dll [2015-08-02] (Oracle Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{071837BD-B367-4F29-AA57-BA350E9AF7CB}: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default FF Homepage: about:home FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-08-12] () FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB) FF Plugin: @java.com/DTPlugin,version=11.51.2 -> D:\Program Files (x86)\Java\bin\dtplugin\npDeployJava1.dll [2015-08-02] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> D:\Program Files (x86)\Java\bin\plugin2\npjp2.dll [2015-08-02] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll [2013-01-24] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-12] () FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-03-12] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-03-12] (Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll [2013-01-24] ( Microsoft Corporation) FF Extension: Adblock Plus - C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-08-01] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-11-21] (Microsoft Corporation) S2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15344 2013-03-22] (Intel Corporation) S2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [345864 2015-03-19] (Intel Corporation) S2 Intel(R) Bluetooth Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [160712 2013-03-11] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [Datei ist nicht signiert] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) S2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-03-12] (Intel Corporation) S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-03-12] (Intel Corporation) S2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) S2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [160768 2013-05-14] (Micro-Star International Co., Ltd.) [Datei ist nicht signiert] S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-03-29] () S3 Origin Client Service; D:\Origin\OriginClientService.exe [2007048 2015-08-01] (Electronic Arts) S2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76152 2015-08-02] () S2 Qualcomm Atheros Killer Service; C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe [495616 2013-03-15] () [Datei ist nicht signiert] S2 SkypeUpdate; D:\Meine Programme\Skype\Updater\Updater.exe [327296 2015-06-25] (Skype Technologies) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation) S2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3376880 2013-03-29] (Intel® Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [74096 2013-03-15] (Qualcomm Atheros, Inc.) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-11-21] (Microsoft Corporation) R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsfw.sys [1366328 2013-04-01] (Motorola Solutions, Inc.) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [76744 2013-03-11] (Intel Corporation) R3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [174448 2013-03-15] (Qualcomm Atheros, Inc.) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [113880 2015-08-15] (Malwarebytes Corporation) R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation) R3 NETwNb64; C:\Windows\system32\DRIVERS\NETwbw02.sys [3589600 2013-09-25] (Intel Corporation) S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew02.sys [3545056 2013-04-18] (Intel Corporation) R1 nvkflt; C:\Windows\system32\DRIVERS\nvkflt.sys [300320 2013-09-05] (NVIDIA Corporation) R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [19152 2013-09-30] () S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2013-09-30] () R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [448072 2013-02-01] (RTS Corporation) R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [226304 2014-11-21] (Microsoft Corporation) S3 clwvd; \SystemRoot\system32\DRIVERS\clwvd.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-15 13:41 - 2015-08-15 13:41 - 00001406 _____ C:\Users\Rod\Desktop\JRT.txt 2015-08-15 13:39 - 2015-08-15 13:39 - 01791580 _____ (Malwarebytes Corporation) C:\Users\Rod\Desktop\JRT.exe 2015-08-15 13:38 - 2015-08-15 13:38 - 00002807 _____ C:\Users\Rod\Desktop\AdwCleaner[C1].txt 2015-08-15 13:35 - 2015-08-15 13:35 - 00002807 _____ C:\AdwCleaner[C1].txt 2015-08-15 13:33 - 2015-08-15 13:38 - 00000000 ____D C:\AdwCleaner 2015-08-15 13:33 - 2015-08-15 13:34 - 00002571 _____ C:\AdwCleaner[S1].txt 2015-08-15 12:59 - 2015-08-15 12:59 - 00027763 _____ C:\Users\Rod\Desktop\mbam.txt 2015-08-15 12:37 - 2015-08-15 13:36 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-08-15 12:37 - 2015-08-15 12:37 - 00001118 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-08-15 12:37 - 2015-08-15 12:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-08-15 12:37 - 2015-08-15 12:37 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-08-15 12:37 - 2015-08-15 12:37 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-08-15 12:37 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-08-15 12:37 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-08-15 12:37 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2015-08-15 09:40 - 2015-07-30 16:04 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2015-08-15 09:40 - 2015-07-30 15:48 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-08-14 20:05 - 2015-08-11 12:22 - 03067392 _____ C:\WINDOWS\system32\pwNative.exe 2015-08-14 20:05 - 2013-09-30 15:26 - 00019152 ____N C:\WINDOWS\system32\pwdrvio.sys 2015-08-14 20:05 - 2013-09-30 15:26 - 00012504 ____N C:\WINDOWS\system32\pwdspio.sys 2015-08-14 20:04 - 2015-08-14 20:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Partition Wizard Free 9.1 2015-08-14 19:22 - 2015-08-16 11:19 - 00000000 ____D C:\FRST 2015-08-12 12:06 - 2015-07-16 02:29 - 07458648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-08-12 12:06 - 2015-07-16 02:29 - 01735000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2015-08-12 12:06 - 2015-07-16 02:29 - 00101720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys 2015-08-12 12:06 - 2015-07-16 02:28 - 01499920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2015-08-12 12:06 - 2015-07-10 19:54 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll 2015-08-12 12:06 - 2015-07-02 00:19 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebClnt.dll 2015-08-12 12:06 - 2015-07-02 00:16 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2015-08-12 12:06 - 2015-07-01 23:37 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebClnt.dll 2015-08-12 12:06 - 2015-07-01 23:35 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll 2015-08-12 12:03 - 2015-07-29 16:37 - 01994752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2015-08-12 12:03 - 2015-07-29 16:30 - 01381888 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2015-08-12 12:03 - 2015-07-29 16:23 - 01559552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2015-08-12 12:03 - 2015-07-24 20:57 - 04177408 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2015-08-12 12:03 - 2015-07-24 20:57 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2015-08-12 12:03 - 2015-07-24 20:52 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2015-08-12 12:03 - 2015-07-24 19:27 - 00301568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2015-08-12 12:03 - 2015-07-24 19:23 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2015-08-12 12:03 - 2015-07-14 05:22 - 02529880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2015-08-12 12:03 - 2015-07-14 05:21 - 01901776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2015-08-12 12:03 - 2015-07-10 20:19 - 01101824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2015-08-12 12:03 - 2015-07-10 19:42 - 02345472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2015-08-12 12:03 - 2015-07-10 19:14 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll 2015-08-12 12:03 - 2015-07-10 19:13 - 07032320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2015-08-12 12:03 - 2015-07-10 18:47 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2015-08-12 12:03 - 2015-07-10 18:31 - 06213120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2015-08-12 12:03 - 2015-07-09 19:13 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe 2015-08-12 12:03 - 2015-07-09 19:13 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe 2015-08-12 12:03 - 2015-07-09 18:30 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe 2015-08-09 13:10 - 2015-08-09 13:10 - 00000000 ____D C:\Users\Rod\AppData\Roaming\NVIDIA 2015-08-05 21:05 - 2015-08-05 21:05 - 00000000 ____D C:\Users\Rod\AppData\Local\MediaServer 2015-08-05 21:03 - 2015-08-05 21:03 - 00000032 _____ C:\ProgramData\Temp.log 2015-08-05 20:47 - 2015-08-05 20:47 - 00000000 ____D C:\Users\Rod\Documents\Avatar 2015-08-05 20:46 - 2015-08-05 20:46 - 00000000 ____D C:\Users\Rod\AppData\Roaming\CyberLink 2015-08-05 20:41 - 2015-08-16 11:18 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Skype 2015-08-05 20:41 - 2015-08-05 20:41 - 00000000 ____D C:\Users\Rod\Tracing 2015-08-05 20:41 - 2015-08-05 20:41 - 00000000 ____D C:\Users\Rod\AppData\Local\Skype 2015-08-05 20:41 - 2015-08-05 20:41 - 00000000 ____D C:\ProgramData\Skype 2015-08-05 20:41 - 2015-08-05 20:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-08-05 20:41 - 2015-08-05 20:41 - 00000000 ____D C:\Program Files (x86)\Skype 2015-08-03 23:44 - 2015-08-03 23:45 - 00000000 ____D C:\Users\Rod\Documents\Visual Studio 2015 2015-08-03 23:12 - 2015-08-15 13:36 - 00002363 _____ C:\WINDOWS\setupact.log 2015-08-03 23:12 - 2015-08-03 23:12 - 00000000 _____ C:\WINDOWS\setuperr.log 2015-08-03 23:06 - 2015-08-03 23:08 - 00000000 ___HD C:\$Windows.~BT 2015-08-03 00:02 - 2015-08-03 00:10 - 00000000 ____D C:\Users\Rod\.android 2015-08-02 23:51 - 2015-08-02 23:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android SDK Tools 2015-08-02 23:51 - 2015-08-02 23:51 - 00000000 ____D C:\Program Files (x86)\Android 2015-08-02 23:50 - 2015-08-02 23:50 - 00000000 ____D C:\Program Files (x86)\Java 2015-08-02 23:45 - 2015-08-02 23:45 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2015-08-02 23:38 - 2015-08-02 23:38 - 00000000 ____D C:\ProgramData\Microsoft DNX 2015-08-02 23:34 - 2015-08-02 23:34 - 00000000 ____D C:\Program Files\IIS Express 2015-08-02 23:34 - 2015-08-02 23:34 - 00000000 ____D C:\Program Files (x86)\IIS Express 2015-08-02 23:33 - 2015-08-02 23:33 - 00000000 ____D C:\Program Files\IIS 2015-08-02 23:33 - 2015-08-02 23:33 - 00000000 ____D C:\Program Files (x86)\IIS 2015-08-02 23:20 - 2015-08-04 00:00 - 00000000 ____D C:\WINDOWS\system32\1033 2015-08-02 23:20 - 2015-08-03 23:58 - 00000000 ____D C:\Program Files (x86)\Windows Kits 2015-08-02 23:20 - 2015-08-03 23:57 - 00000000 ____D C:\WINDOWS\SysWOW64\1031 2015-08-02 23:20 - 2015-08-02 23:46 - 00000000 ____D C:\Program Files\Microsoft SQL Server 2015-08-02 23:20 - 2015-08-02 23:45 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2015-08-02 23:20 - 2015-08-02 23:20 - 00000000 ____D C:\WINDOWS\SysWOW64\1033 2015-08-02 23:20 - 2015-08-02 23:20 - 00000000 ____D C:\Program Files (x86)\Microsoft Help Viewer 2015-08-02 23:19 - 2015-08-04 00:02 - 00000000 ____D C:\WINDOWS\system32\1031 2015-08-02 23:19 - 2015-08-03 23:59 - 00000000 ____D C:\Program Files (x86)\Microsoft SDKs 2015-08-02 23:19 - 2015-08-02 23:19 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_SensorsSimulatorDriver_01_11_00.Wdf 2015-08-02 23:16 - 2015-06-22 08:31 - 00027840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspnet_counters.dll 2015-08-02 23:16 - 2015-06-22 08:30 - 00029888 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00961192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00062304 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00883712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00064352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-private-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00022368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-math-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-string-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-time-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-process-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll 2015-08-02 22:58 - 2015-08-02 22:58 - 00000000 ____D C:\ProgramData\VsTelemetry 2015-08-02 21:43 - 2015-08-02 21:44 - 00000000 ____D C:\Users\Rod\Documents\Battlefield 3 2015-08-02 12:50 - 2015-08-02 23:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-08-02 12:50 - 2015-08-02 12:50 - 00110688 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2015-08-02 12:50 - 2015-08-02 12:50 - 00000000 ____D C:\ProgramData\Sun 2015-08-02 12:50 - 2015-08-02 12:50 - 00000000 ____D C:\ProgramData\Oracle 2015-08-02 12:49 - 2015-08-02 23:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2015-08-02 12:26 - 2015-08-02 12:26 - 00000000 ____D C:\Users\Rod\AppData\Local\Macromedia 2015-08-02 10:57 - 2015-08-02 10:57 - 00000000 ____D C:\Users\Rod\AppData\Local\GWX 2015-08-01 23:16 - 2015-08-01 23:16 - 00000000 ___HD C:\$Windows.~WS 2015-08-01 19:19 - 2015-08-16 08:33 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2015-08-01 19:19 - 2015-08-12 12:33 - 00003772 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2015-08-01 19:16 - 2015-08-01 19:19 - 00000000 ____D C:\Users\Rod\AppData\Local\Adobe 2015-08-01 19:15 - 2015-08-01 19:15 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Browser-Security 2015-08-01 18:01 - 2015-08-01 18:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3 2015-08-01 13:39 - 2015-08-01 13:39 - 00000000 ____D C:\Users\Rod\Documents\my games 2015-08-01 11:25 - 2015-08-01 11:31 - 00000000 ____D C:\Users\Rod\Documents\FUSSBALL MANAGER 14 2015-08-01 04:14 - 2015-08-01 14:44 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2015-08-01 04:14 - 2015-08-01 04:14 - 00000223 _____ C:\Users\Rod\Desktop\Total War ATTILA.url 2015-08-01 04:05 - 2015-08-16 07:25 - 00003918 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{09DFCB16-AD9D-4E8B-BE1B-EFD841E16986} 2015-08-01 04:05 - 2015-08-01 04:05 - 00000000 ____D C:\Users\Rod\AppData\Local\Steam 2015-08-01 04:05 - 2015-08-01 04:05 - 00000000 ____D C:\Users\Rod\AppData\Local\CEF 2015-08-01 04:03 - 2015-08-01 04:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2015-08-01 04:02 - 2015-06-11 22:12 - 02476376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2015-08-01 04:02 - 2015-06-11 22:12 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2015-08-01 04:02 - 2015-06-10 00:39 - 00081920 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS 2015-08-01 04:02 - 2015-06-10 00:39 - 00053248 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys 2015-08-01 04:02 - 2015-06-10 00:38 - 01201664 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2015-08-01 04:02 - 2015-06-09 20:27 - 00411133 _____ C:\WINDOWS\system32\ApnDatabase.xml 2015-08-01 04:02 - 2015-05-01 03:13 - 06521800 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2015-08-01 04:02 - 2015-05-01 03:13 - 01488000 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2015-08-01 04:02 - 2015-05-01 03:13 - 00261376 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2015-08-01 03:55 - 2015-08-09 13:07 - 00000000 ____D C:\ProgramData\Origin 2015-08-01 03:53 - 2015-08-01 03:53 - 00000923 _____ C:\Users\Public\Desktop\FUSSBALL MANAGER 14.lnk 2015-08-01 03:53 - 2015-08-01 03:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-08-01 03:53 - 2015-08-01 03:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FUSSBALL MANAGER 14 2015-08-01 03:52 - 2015-08-01 03:52 - 00000000 ____D C:\Users\Rod\Documents\Meine empfangenen Dateien 2015-08-01 02:57 - 2015-08-03 23:06 - 00000000 ___DC C:\WINDOWS\Panther 2015-08-01 02:56 - 2015-08-01 02:56 - 02171904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2015-08-01 02:56 - 2015-08-01 02:56 - 01970432 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2015-08-01 02:56 - 2015-08-01 02:56 - 01612992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2015-08-01 02:56 - 2015-08-01 02:56 - 00672984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2015-08-01 02:56 - 2015-08-01 02:56 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll 2015-08-01 02:56 - 2015-08-01 02:56 - 00273240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2015-08-01 02:56 - 2015-08-01 02:56 - 00262144 _____ C:\WINDOWS\system32\config\userdiff 2015-08-01 02:56 - 2015-08-01 02:56 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe 2015-08-01 02:56 - 2015-08-01 02:56 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe 2015-08-01 02:56 - 2015-08-01 02:56 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsDatabase.dll 2015-08-01 02:56 - 2015-08-01 02:56 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupStatusProvider.dll 2015-08-01 02:56 - 2015-08-01 02:56 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceSetupStatusProvider.dll 2015-08-01 02:55 - 2015-08-03 23:23 - 00000000 ____D C:\Program Files (x86)\MSBuild 2015-08-01 02:55 - 2015-08-01 02:55 - 00000000 ____D C:\Program Files\Reference Assemblies 2015-08-01 02:55 - 2015-08-01 02:55 - 00000000 ____D C:\Program Files\MSBuild 2015-08-01 02:55 - 2015-08-01 02:55 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2015-08-01 02:55 - 2015-08-01 02:02 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2015-08-01 02:55 - 2013-08-03 06:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2015-08-01 02:55 - 2013-08-03 06:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2015-08-01 02:54 - 2015-08-01 02:54 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdbinst.exe 2015-08-01 02:54 - 2015-08-01 02:54 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sdbinst.exe 2015-08-01 02:51 - 2015-08-11 18:36 - 00000000 ____D C:\Users\Rod\AppData\Local\Spotify 2015-08-01 02:51 - 2015-08-11 18:34 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Spotify 2015-08-01 02:51 - 2015-08-01 02:51 - 00146080 _____ (Spotify Ltd) C:\Users\Rod\Downloads\SpotifySetup.exe 2015-08-01 02:51 - 2015-08-01 02:51 - 00001830 _____ C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2015-08-01 02:34 - 2015-08-13 12:27 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-08-01 02:24 - 2015-08-02 22:05 - 00348360 _____ C:\WINDOWS\SysWOW64\PnkBstrB.xtr 2015-08-01 02:24 - 2015-08-01 02:24 - 00000000 ____D C:\Users\Rod\AppData\Local\PunkBuster 2015-08-01 02:24 - 2015-08-01 02:24 - 00000000 ____D C:\Users\Rod\AppData\Local\ESN 2015-08-01 02:24 - 2015-08-01 02:24 - 00000000 ____D C:\Program Files (x86)\Battlelog Web Plugins 2015-08-01 02:23 - 2015-08-01 02:23 - 00000000 ____D C:\Users\Rod\AppData\Local\Origin 2015-08-01 02:23 - 2015-08-01 02:20 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Origin 2015-08-01 02:21 - 2015-08-01 02:21 - 00000536 _____ C:\Users\Public\Desktop\Origin.lnk 2015-08-01 02:21 - 2015-08-01 02:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin 2015-08-01 02:21 - 2015-08-01 01:47 - 00000000 ____D C:\ProgramData\Electronic Arts 2015-08-01 02:21 - 2015-05-25 15:23 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll 2015-08-01 02:21 - 2015-05-25 15:07 - 01430528 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2015-08-01 02:21 - 2015-01-23 09:17 - 00723072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll 2015-08-01 02:21 - 2015-01-23 07:02 - 00560392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll 2015-08-01 02:20 - 2015-08-01 02:21 - 17110336 _____ (Electronic Arts, Inc.) C:\Users\Rod\Downloads\OriginThinSetup.exe 2015-08-01 02:20 - 2015-07-09 21:51 - 00136904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2015-08-01 02:20 - 2015-07-09 20:40 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll 2015-08-01 02:20 - 2015-07-09 18:03 - 03701760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-08-01 02:20 - 2015-07-09 17:54 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2015-08-01 02:20 - 2015-07-09 17:53 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2015-08-01 02:20 - 2015-07-09 17:50 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2015-08-01 02:20 - 2015-07-09 17:50 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2015-08-01 02:20 - 2015-07-09 17:48 - 00891904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2015-08-01 02:20 - 2015-07-09 17:46 - 02229248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2015-08-01 02:20 - 2015-07-09 17:38 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe 2015-08-01 02:20 - 2015-07-09 17:37 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll 2015-08-01 02:20 - 2015-07-09 17:35 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2015-08-01 02:20 - 2015-07-09 17:34 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2015-08-01 02:20 - 2015-06-27 05:08 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2015-08-01 02:20 - 2015-06-27 05:08 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2015-08-01 02:20 - 2015-06-27 04:14 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll 2015-08-01 02:20 - 2015-04-30 01:22 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll 2015-08-01 02:20 - 2015-03-17 19:26 - 00467776 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2015-08-01 02:20 - 2015-03-14 03:51 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll 2015-08-01 02:20 - 2015-02-04 01:58 - 00264000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2015-08-01 02:20 - 2015-02-04 01:58 - 00114496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2015-08-01 02:20 - 2015-02-04 01:58 - 00044024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2015-08-01 02:20 - 2015-02-03 01:53 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll 2015-08-01 02:20 - 2015-02-03 01:53 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll 2015-08-01 02:20 - 2015-01-27 05:44 - 00933888 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe 2015-08-01 02:20 - 2015-01-24 03:51 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\calc.exe 2015-08-01 02:20 - 2014-10-18 08:50 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll 2015-08-01 02:19 - 2015-08-01 02:19 - 00000118 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2015-08-01 02:19 - 2015-06-28 07:07 - 00442712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2015-08-01 02:19 - 2015-06-28 07:07 - 00178008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2015-08-01 02:19 - 2015-06-28 07:06 - 01311960 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2015-08-01 02:19 - 2015-06-28 07:06 - 00332120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2015-08-01 02:19 - 2015-06-27 18:42 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2015-08-01 02:19 - 2015-06-27 05:13 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2015-08-01 02:19 - 2015-06-27 05:12 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2015-08-01 02:19 - 2015-06-27 05:12 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2015-08-01 02:19 - 2015-06-27 04:40 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2015-08-01 02:19 - 2015-06-27 04:05 - 01441792 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2015-08-01 02:19 - 2015-06-27 04:00 - 00989184 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2015-08-01 02:19 - 2015-06-27 03:53 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll 2015-08-01 02:19 - 2015-06-27 03:26 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2015-08-01 02:19 - 2015-03-30 07:47 - 00561928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2015-08-01 02:18 - 2015-08-02 01:39 - 00000000 ___SD C:\WINDOWS\system32\GWX 2015-08-01 02:18 - 2015-08-01 02:18 - 00000000 ___SD C:\WINDOWS\SysWOW64\GWX 2015-08-01 02:18 - 2015-08-01 02:18 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-08-01 02:18 - 2015-06-16 00:41 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe 2015-08-01 02:18 - 2015-06-16 00:24 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2015-08-01 02:18 - 2015-06-15 23:16 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe 2015-08-01 02:18 - 2015-06-15 23:09 - 03607552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2015-08-01 02:18 - 2015-06-15 22:50 - 02774528 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2015-08-01 02:18 - 2015-06-15 21:57 - 02460160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2015-08-01 02:18 - 2015-05-30 23:18 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll 2015-08-01 02:18 - 2015-05-30 21:36 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2015-08-01 02:18 - 2015-05-30 21:35 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2015-08-01 02:18 - 2015-05-07 19:50 - 22292672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2015-08-01 02:18 - 2015-05-07 19:00 - 03109376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2015-08-01 02:18 - 2015-05-07 18:53 - 19734960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2015-08-01 02:18 - 2015-05-07 18:12 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2015-08-01 02:18 - 2015-05-07 17:21 - 00522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2015-08-01 02:18 - 2015-05-07 17:05 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll 2015-08-01 02:18 - 2015-05-03 02:39 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2015-08-01 02:18 - 2015-03-14 10:20 - 01385256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2015-08-01 02:18 - 2015-03-14 10:13 - 01124352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2015-08-01 02:18 - 2015-03-09 04:02 - 00057856 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys 2015-08-01 02:18 - 2014-12-19 10:57 - 00788680 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2015-08-01 02:18 - 2014-12-19 10:25 - 00602776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00535640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00531616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00448792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00413248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00372408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00108944 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00038264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe 2015-08-01 02:18 - 2014-12-08 21:42 - 00033584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe 2015-08-01 02:17 - 2015-06-16 00:39 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-08-01 02:17 - 2015-06-16 00:38 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll 2015-08-01 02:17 - 2015-06-16 00:26 - 00633856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll 2015-08-01 02:17 - 2015-06-16 00:24 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-08-01 02:17 - 2015-06-16 00:02 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx 2015-08-01 02:17 - 2015-06-15 23:58 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll 2015-08-01 02:17 - 2015-06-15 23:57 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2015-08-01 02:17 - 2015-06-15 23:56 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2015-08-01 02:17 - 2015-06-15 23:55 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2015-08-01 02:17 - 2015-06-15 23:49 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2015-08-01 02:17 - 2015-06-15 23:41 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2015-08-01 02:17 - 2015-06-15 23:38 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2015-08-01 02:17 - 2015-06-15 23:36 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2015-08-01 02:17 - 2015-06-15 23:17 - 02880000 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2015-08-01 02:17 - 2015-06-15 23:16 - 02427392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-08-01 02:17 - 2015-06-15 23:15 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-08-01 02:17 - 2015-06-15 23:13 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll 2015-08-01 02:17 - 2015-06-15 23:04 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll 2015-08-01 02:17 - 2015-06-15 23:03 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-08-01 02:17 - 2015-06-15 22:52 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2015-08-01 02:17 - 2015-06-15 22:47 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx 2015-08-01 02:17 - 2015-06-15 22:44 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll 2015-08-01 02:17 - 2015-06-15 22:43 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2015-08-01 02:17 - 2015-06-15 22:42 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll 2015-08-01 02:17 - 2015-06-15 22:41 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2015-08-01 02:17 - 2015-06-15 22:37 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2015-08-01 02:17 - 2015-06-15 22:32 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll 2015-08-01 02:17 - 2015-06-15 22:31 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2015-08-01 02:17 - 2015-06-15 22:30 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2015-08-01 02:17 - 2015-06-15 22:30 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2015-08-01 02:17 - 2015-06-15 22:17 - 01048576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2015-08-01 02:17 - 2015-06-15 22:07 - 01951232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-08-01 02:17 - 2015-06-15 22:02 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2015-08-01 02:17 - 2015-05-23 05:14 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec 2015-08-01 02:17 - 2015-05-23 05:04 - 00620032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2015-08-01 02:17 - 2015-05-22 21:00 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec 2015-08-01 02:17 - 2015-05-22 20:47 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2015-08-01 02:17 - 2015-05-22 20:08 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2015-08-01 02:17 - 2015-05-01 01:05 - 00429568 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2015-08-01 02:17 - 2015-05-01 00:48 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll 2015-08-01 02:17 - 2015-04-21 18:13 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\inseng.dll 2015-08-01 02:17 - 2015-04-21 17:49 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2015-08-01 02:17 - 2015-04-10 02:34 - 02256896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2015-08-01 02:17 - 2015-04-10 02:11 - 01943040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2015-08-01 02:17 - 2015-03-20 05:49 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll 2015-08-01 02:17 - 2015-03-20 05:08 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll 2015-08-01 02:17 - 2015-03-20 04:37 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll 2015-08-01 02:17 - 2015-03-20 04:07 - 01091072 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2015-08-01 02:17 - 2015-03-20 03:56 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys 2015-08-01 02:17 - 2015-03-04 03:32 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll 2015-08-01 02:17 - 2015-03-04 03:12 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll 2015-08-01 02:17 - 2015-03-02 03:43 - 00222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastapi.dll 2015-08-01 02:17 - 2015-03-02 03:21 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastapi.dll 2015-08-01 02:17 - 2015-01-30 02:53 - 02819584 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2015-08-01 02:17 - 2015-01-29 03:58 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\photowiz.dll 2015-08-01 02:17 - 2015-01-29 03:29 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\photowiz.dll 2015-08-01 02:17 - 2015-01-29 03:04 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2015-08-01 02:17 - 2015-01-12 04:21 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll 2015-08-01 02:17 - 2015-01-12 03:45 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll 2015-08-01 02:17 - 2014-12-09 05:45 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scesrv.dll 2015-08-01 02:17 - 2014-12-09 03:56 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll 2015-08-01 02:16 - 2015-07-25 15:34 - 01084928 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2015-08-01 02:16 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-08-01 02:16 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-08-01 02:16 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-08-01 02:16 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-08-01 02:16 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-08-01 02:16 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-08-01 02:16 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-08-01 02:16 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-08-01 02:16 - 2015-07-02 00:08 - 05923840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-08-01 02:16 - 2015-07-01 23:14 - 04520448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-08-01 02:16 - 2015-06-30 00:43 - 00026288 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2015-08-01 02:16 - 2015-06-29 17:07 - 01145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2015-08-01 02:16 - 2015-06-29 17:07 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2015-08-01 02:16 - 2015-06-29 17:07 - 00433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2015-08-01 02:16 - 2015-06-29 17:07 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2015-08-01 02:16 - 2015-06-27 01:21 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2015-08-01 02:16 - 2015-06-27 01:21 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll 2015-08-01 02:16 - 2015-06-16 07:36 - 01661576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2015-08-01 02:16 - 2015-06-16 07:36 - 01212248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2015-08-01 02:16 - 2015-06-11 05:49 - 01380600 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2015-08-01 02:16 - 2015-06-10 18:13 - 01097216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2015-08-01 02:16 - 2015-05-21 15:08 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2015-08-01 02:16 - 2015-05-12 15:19 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2015-08-01 02:16 - 2015-05-11 18:34 - 00332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcpl.dll 2015-08-01 02:16 - 2015-05-07 18:47 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll 2015-08-01 02:16 - 2015-05-03 17:09 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-08-01 02:16 - 2015-05-03 16:58 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-08-01 02:16 - 2015-05-03 16:55 - 00971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2015-08-01 02:16 - 2015-05-03 16:49 - 00811008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll 2015-08-01 02:16 - 2015-04-28 15:13 - 00513480 _____ C:\WINDOWS\SysWOW64\locale.nls 2015-08-01 02:16 - 2015-04-28 15:13 - 00513480 _____ C:\WINDOWS\system32\locale.nls 2015-08-01 02:16 - 2015-04-25 04:34 - 00653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll 2015-08-01 02:16 - 2015-04-25 04:33 - 00549888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll 2015-08-01 02:16 - 2015-04-25 04:25 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usb8023.sys 2015-08-01 02:16 - 2015-04-23 17:47 - 03084288 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2015-08-01 02:16 - 2015-04-23 17:16 - 02471424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2015-08-01 02:16 - 2015-04-16 08:17 - 00325464 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS 2015-08-01 02:16 - 2015-04-14 00:37 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll 2015-08-01 02:16 - 2015-04-14 00:34 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authz.dll 2015-08-01 02:16 - 2015-04-10 02:40 - 01249280 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2015-08-01 02:16 - 2015-04-10 02:17 - 01018880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2015-08-01 02:16 - 2015-04-09 00:55 - 00410128 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2015-08-01 02:16 - 2015-04-09 00:41 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rgb9rast.dll 2015-08-01 02:16 - 2015-04-03 02:35 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll 2015-08-01 02:16 - 2015-04-03 02:14 - 00364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll 2015-08-01 02:16 - 2015-04-02 00:22 - 02985984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll 2015-08-01 02:16 - 2015-04-02 00:20 - 04417536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll 2015-08-01 02:16 - 2015-04-01 06:21 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2015-08-01 02:16 - 2015-04-01 06:18 - 00468480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll 2015-08-01 02:16 - 2015-04-01 06:17 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssphtb.dll 2015-08-01 02:16 - 2015-04-01 06:08 - 00774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll 2015-08-01 02:16 - 2015-04-01 05:46 - 03633664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2015-08-01 02:16 - 2015-04-01 05:45 - 01491456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll 2015-08-01 02:16 - 2015-04-01 05:17 - 02551808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2015-08-01 02:16 - 2015-04-01 05:17 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2015-08-01 02:16 - 2015-04-01 04:53 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll 2015-08-01 02:16 - 2015-04-01 04:53 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2015-08-01 02:16 - 2015-04-01 04:45 - 02749952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2015-08-01 02:16 - 2015-04-01 04:45 - 00699392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll 2015-08-01 02:16 - 2015-04-01 04:31 - 01207296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll 2015-08-01 02:16 - 2015-04-01 04:14 - 01920000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2015-08-01 02:16 - 2015-04-01 04:12 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2015-08-01 02:16 - 2015-03-23 23:59 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll 2015-08-01 02:16 - 2015-03-23 23:45 - 00257216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll 2015-08-01 02:16 - 2015-03-20 06:12 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll 2015-08-01 02:16 - 2015-03-20 06:10 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll 2015-08-01 02:16 - 2015-03-20 06:10 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll 2015-08-01 02:16 - 2015-03-20 05:17 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\tracerpt.exe 2015-08-01 02:16 - 2015-03-20 04:41 - 00369152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tracerpt.exe 2015-08-01 02:16 - 2015-03-20 04:40 - 00950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll 2015-08-01 02:16 - 2015-03-20 04:16 - 00749568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll 2015-08-01 02:16 - 2015-03-14 02:09 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2015-08-01 02:16 - 2015-03-13 06:03 - 00239424 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2015-08-01 02:16 - 2015-03-13 06:03 - 00154432 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2015-08-01 02:16 - 2015-03-13 04:58 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll 2015-08-01 02:16 - 2015-03-13 04:37 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll 2015-08-01 02:16 - 2015-03-13 04:02 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys 2015-08-01 02:16 - 2015-03-13 03:11 - 02162176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2015-08-01 02:16 - 2015-03-13 02:39 - 01812992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll 2015-08-01 02:16 - 2015-03-06 05:08 - 02067968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdshext.dll 2015-08-01 02:16 - 2015-03-06 04:47 - 01696256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2015-08-01 02:16 - 2015-03-06 04:43 - 01969664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpdshext.dll 2015-08-01 02:16 - 2015-03-04 12:25 - 00377152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2015-08-01 02:16 - 2015-03-04 05:04 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll 2015-08-01 02:16 - 2015-03-04 04:19 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll 2015-08-01 02:16 - 2015-02-24 10:32 - 00991552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2015-08-01 02:16 - 2015-02-21 01:49 - 00780800 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll 2015-08-01 02:16 - 2015-02-18 01:19 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll 2015-08-01 02:16 - 2015-02-08 01:57 - 01090048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2015-08-01 02:16 - 2015-02-08 01:49 - 00791040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2015-08-01 02:16 - 2015-02-05 22:24 - 01113920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2015-08-01 02:16 - 2015-02-03 02:03 - 03551744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2015-08-01 02:16 - 2015-02-03 02:02 - 04298240 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2015-08-01 02:16 - 2015-01-31 01:20 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2015-08-01 02:16 - 2015-01-30 05:01 - 00097792 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys 2015-08-01 02:16 - 2015-01-30 05:00 - 00167424 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys 2015-08-01 02:16 - 2015-01-30 04:03 - 01488896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42u.dll 2015-08-01 02:16 - 2015-01-30 04:03 - 01464832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42.dll 2015-08-01 02:16 - 2015-01-30 04:02 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll 2015-08-01 02:16 - 2015-01-30 03:44 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42u.dll 2015-08-01 02:16 - 2015-01-30 03:42 - 01204224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42.dll 2015-08-01 02:16 - 2015-01-30 03:40 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll 2015-08-01 02:16 - 2015-01-30 03:37 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll 2015-08-01 02:16 - 2015-01-30 03:29 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atlthunk.dll 2015-08-01 02:16 - 2015-01-30 03:24 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll 2015-08-01 02:16 - 2015-01-30 03:24 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll 2015-08-01 02:16 - 2015-01-30 03:16 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll 2015-08-01 02:16 - 2015-01-30 03:08 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll 2015-08-01 02:16 - 2015-01-30 03:06 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll 2015-08-01 02:16 - 2015-01-29 20:45 - 01763352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2015-08-01 02:16 - 2015-01-29 20:34 - 01488040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2015-08-01 02:16 - 2015-01-28 04:24 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageContextHandler.dll 2015-08-01 02:16 - 2015-01-28 03:47 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StorageContextHandler.dll 2015-08-01 02:16 - 2015-01-28 03:31 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll 2015-08-01 02:16 - 2015-01-28 03:11 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll 2015-08-01 02:16 - 2015-01-28 01:47 - 02501368 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2015-08-01 02:16 - 2015-01-28 01:41 - 02207488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2015-08-01 02:16 - 2015-01-27 06:22 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2015-08-01 02:16 - 2015-01-27 04:11 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2015-08-01 02:16 - 2014-12-19 08:26 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2015-08-01 02:16 - 2014-12-12 04:04 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe 2015-08-01 02:16 - 2014-12-11 07:36 - 00046456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentServer.exe 2015-08-01 02:16 - 2014-12-06 05:17 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll 2015-08-01 02:16 - 2014-12-06 03:41 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll 2015-08-01 02:16 - 2014-11-04 21:25 - 00059712 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdclass.sys 2015-08-01 02:16 - 2014-11-04 21:25 - 00051008 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouclass.sys 2015-08-01 02:16 - 2014-11-04 08:55 - 00026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sermouse.sys 2015-08-01 02:16 - 2014-11-04 08:54 - 00108544 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\i8042prt.sys 2015-08-01 02:16 - 2014-11-04 08:54 - 00032256 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys 2015-08-01 02:16 - 2014-11-04 08:54 - 00030208 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouhid.sys 2015-08-01 02:16 - 2014-10-29 03:57 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntvdm64.dll 2015-08-01 02:16 - 2014-10-29 03:15 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntvdm64.dll 2015-08-01 02:16 - 2014-10-29 03:15 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wow32.dll 2015-08-01 02:16 - 2014-10-29 03:14 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user.exe 2015-08-01 02:16 - 2014-10-29 03:13 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setup16.exe 2015-08-01 02:16 - 2014-10-29 03:13 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\instnm.exe 2015-08-01 02:16 - 2014-07-24 05:20 - 00875688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll 2015-08-01 02:16 - 2014-07-24 05:20 - 00869544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll 2015-08-01 02:16 - 2014-06-10 00:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2015-08-01 02:16 - 2014-06-10 00:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2015-08-01 02:14 - 2015-05-03 17:07 - 07784448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2015-08-01 02:14 - 2015-05-03 16:57 - 05264384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2015-08-01 02:10 - 2015-08-01 02:10 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2015-08-01 02:09 - 2015-08-01 02:09 - 00001454 _____ C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-08-01 02:09 - 2015-08-01 02:09 - 00000401 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat 2015-08-01 02:09 - 2015-08-01 02:09 - 00000020 ___SH C:\Users\Rod\ntuser.ini 2015-08-01 02:09 - 2015-08-01 02:09 - 00000000 ____D C:\WINDOWS\System32\Tasks\WPD 2015-08-01 02:05 - 2015-08-01 02:05 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Vorlagen 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Startmenü 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Programme 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\ProgramData\Vorlagen 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\ProgramData\Startmenü 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\ProgramData\Dokumente 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Dokumente und Einstellungen 2015-08-01 02:03 - 2015-08-01 02:03 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat 2015-08-01 02:02 - 2015-08-01 02:02 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2015-08-01 02:01 - 2015-08-01 02:01 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate 2015-08-01 02:00 - 2015-08-05 21:12 - 00000000 ____D C:\Users\Rod 2015-08-01 02:00 - 2015-08-01 23:44 - 00035474 _____ C:\WINDOWS\diagerr.xml 2015-08-01 02:00 - 2015-08-01 23:44 - 00035373 _____ C:\WINDOWS\diagwrn.xml 2015-08-01 02:00 - 2015-08-01 02:01 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-01 02:00 - 2015-08-01 02:01 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-08-01 02:00 - 2015-08-01 02:01 - 00000000 ___RD C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-01 02:00 - 2015-08-01 02:01 - 00000000 ___RD C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Vorlagen 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Startmenü 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Netzwerkumgebung 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Lokale Einstellungen 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Eigene Dateien 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Druckumgebung 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Musik 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Bilder 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Verlauf 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Anwendungsdaten 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Anwendungsdaten 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Vorlagen 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Startmenü 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Netzwerkumgebung 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Lokale Einstellungen 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Eigene Dateien 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Druckumgebung 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Documents\Eigene Musik 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Documents\Eigene Bilder 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\AppData\Local\Verlauf 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\AppData\Local\Anwendungsdaten 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Anwendungsdaten 2015-08-01 02:00 - 2014-11-21 12:52 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-01 02:00 - 2014-11-21 12:52 - 00000000 ___RD C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-01 02:00 - 2014-11-21 05:42 - 00000369 _____ C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2015-08-01 02:00 - 2014-11-21 05:42 - 00000369 _____ C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2015-08-01 02:00 - 2014-11-21 05:42 - 00000369 _____ C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2015-08-01 02:00 - 2014-11-21 05:42 - 00000369 _____ C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2015-08-01 02:00 - 2013-08-22 17:36 - 00000000 ____D C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-08-01 02:00 - 2013-08-22 17:36 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-08-01 01:58 - 2015-08-16 09:02 - 01213594 _____ C:\WINDOWS\WindowsUpdate.log 2015-08-01 01:58 - 2015-08-01 02:01 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2015-08-01 01:58 - 2015-08-01 02:01 - 00000000 ____D C:\Program Files\Intel 2015-08-01 01:58 - 2015-08-01 02:01 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2015-08-01 01:58 - 2015-08-01 02:01 - 00000000 ____D C:\Program Files (x86)\Intel 2015-08-01 01:58 - 2015-08-01 01:58 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_btmhsfw_01011.Wdf 2015-08-01 01:58 - 2015-08-01 01:58 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2015-08-01 01:58 - 2015-08-01 01:58 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2015-08-01 01:58 - 2015-08-01 01:58 - 00000000 ____D C:\Program Files\Realtek 2015-08-01 01:58 - 2015-08-01 01:58 - 00000000 ____D C:\Program Files\Elantech 2015-08-01 01:58 - 2015-03-19 21:02 - 00086528 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL 2015-08-01 01:58 - 2015-03-19 21:02 - 00082432 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL 2015-08-01 01:48 - 2015-08-01 02:04 - 00006523 _____ C:\WINDOWS\comsetup.log 2015-08-01 01:42 - 2015-08-01 01:42 - 00000000 ____D C:\ProgramData\EA Core 2015-08-01 01:16 - 2015-08-02 22:05 - 00348360 _____ C:\WINDOWS\SysWOW64\PnkBstrB.exe 2015-08-01 01:16 - 2015-08-02 22:05 - 00280904 _____ C:\WINDOWS\SysWOW64\PnkBstrB.ex0 2015-08-01 01:16 - 2015-08-02 21:44 - 00076152 _____ C:\WINDOWS\SysWOW64\PnkBstrA.exe 2015-08-01 01:16 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll 2015-08-01 01:16 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll 2015-08-01 01:16 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll 2015-08-01 01:16 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll 2015-08-01 01:16 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll 2015-08-01 01:16 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll 2015-08-01 01:16 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll 2015-08-01 01:16 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll 2015-08-01 01:16 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll 2015-08-01 01:16 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll 2015-08-01 01:16 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll 2015-08-01 01:16 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll 2015-08-01 01:16 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll 2015-08-01 01:16 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll 2015-08-01 01:16 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll 2015-08-01 01:16 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll 2015-08-01 01:16 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll 2015-08-01 01:16 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll 2015-08-01 01:16 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll 2015-08-01 01:16 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll 2015-08-01 01:16 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll 2015-08-01 01:16 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll 2015-08-01 01:16 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll 2015-08-01 01:16 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll 2015-08-01 01:16 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll 2015-08-01 01:16 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll 2015-08-01 01:16 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll 2015-08-01 01:16 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll 2015-08-01 01:16 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll 2015-08-01 01:16 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll 2015-08-01 01:16 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll 2015-08-01 01:16 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll 2015-08-01 01:16 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll 2015-08-01 01:16 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll 2015-08-01 01:16 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll 2015-08-01 01:16 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll 2015-08-01 01:16 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll 2015-08-01 01:16 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll 2015-08-01 01:16 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll 2015-08-01 01:16 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll 2015-08-01 01:16 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll 2015-08-01 01:16 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll 2015-08-01 01:16 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll 2015-08-01 01:16 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll 2015-08-01 01:16 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll 2015-08-01 01:16 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll 2015-08-01 01:16 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll 2015-08-01 01:16 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll 2015-08-01 01:16 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll 2015-08-01 01:16 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll 2015-08-01 01:16 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll 2015-08-01 01:16 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll 2015-08-01 01:16 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll 2015-08-01 01:16 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll 2015-08-01 01:16 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll 2015-08-01 01:16 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll 2015-08-01 01:16 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll 2015-08-01 01:16 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll 2015-08-01 01:16 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll 2015-08-01 01:16 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll 2015-08-01 01:16 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll 2015-08-01 01:16 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll 2015-08-01 01:16 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll 2015-08-01 01:16 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll 2015-08-01 01:16 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll 2015-08-01 01:16 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll 2015-08-01 01:16 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll 2015-08-01 01:16 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll 2015-08-01 01:16 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll 2015-08-01 01:16 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll 2015-08-01 01:16 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll 2015-08-01 01:16 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll 2015-08-01 01:16 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll 2015-08-01 01:16 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll 2015-08-01 01:16 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll 2015-08-01 01:16 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll 2015-08-01 01:16 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll 2015-08-01 01:16 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll 2015-08-01 01:16 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll 2015-08-01 01:16 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll 2015-08-01 01:16 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll 2015-08-01 01:16 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll 2015-08-01 01:16 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll 2015-08-01 01:16 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll 2015-08-01 01:16 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll 2015-08-01 01:16 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll 2015-08-01 01:16 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll 2015-08-01 01:16 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll 2015-08-01 01:16 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll 2015-08-01 01:16 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll 2015-08-01 01:16 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll 2015-08-01 01:16 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll 2015-08-01 01:16 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll 2015-08-01 01:16 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll 2015-08-01 01:16 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll 2015-08-01 01:16 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll 2015-08-01 01:16 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll 2015-08-01 01:16 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll 2015-08-01 01:16 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll 2015-08-01 01:16 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll 2015-08-01 01:16 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll 2015-08-01 01:16 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll 2015-08-01 01:16 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll 2015-08-01 01:16 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll 2015-08-01 01:16 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll 2015-08-01 01:16 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll 2015-08-01 01:16 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll 2015-08-01 01:16 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll 2015-08-01 01:16 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll 2015-08-01 01:16 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll 2015-08-01 01:16 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll 2015-08-01 01:16 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll 2015-08-01 01:16 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll 2015-08-01 01:16 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll 2015-08-01 01:16 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll 2015-08-01 01:16 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll 2015-08-01 01:16 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll 2015-08-01 01:16 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll 2015-08-01 01:16 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll 2015-08-01 01:16 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll 2015-08-01 01:16 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll 2015-08-01 01:16 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll 2015-08-01 01:16 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll 2015-08-01 01:16 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll 2015-08-01 01:16 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll 2015-08-01 01:16 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll 2015-08-01 01:16 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll 2015-08-01 01:16 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll 2015-08-01 01:16 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll 2015-08-01 01:16 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll 2015-08-01 01:16 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll 2015-08-01 01:16 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll 2015-08-01 01:16 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll 2015-08-01 01:16 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll 2015-08-01 01:16 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll 2015-08-01 01:16 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll 2015-08-01 01:16 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll 2015-08-01 01:16 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll 2015-08-01 01:16 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll 2015-08-01 01:16 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll 2015-08-01 01:16 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll 2015-08-01 01:16 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll 2015-08-01 01:16 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll 2015-08-01 01:16 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll 2015-08-01 00:40 - 2015-08-01 00:40 - 00000017 _____ C:\Users\Rod\AppData\Local\resmon.resmoncfg 2015-08-01 00:10 - 2015-08-15 12:53 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2015-08-01 00:10 - 2015-08-01 00:10 - 00001163 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-08-01 00:10 - 2015-08-01 00:10 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Mozilla 2015-08-01 00:10 - 2015-08-01 00:10 - 00000000 ____D C:\Users\Rod\AppData\Local\Mozilla 2015-08-01 00:10 - 2015-08-01 00:10 - 00000000 ____D C:\ProgramData\Mozilla 2015-08-01 00:10 - 2015-08-01 00:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-08-01 00:10 - 2015-08-01 00:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-08-01 00:08 - 2015-08-01 00:08 - 00242928 _____ C:\Users\Rod\Downloads\Firefox Setup Stub 39.0.exe 2015-07-31 23:56 - 2015-08-15 13:59 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1054307018-325505745-2950437668-1002 2015-07-31 23:54 - 2015-07-31 23:54 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Macromedia 2015-07-31 23:30 - 2015-08-05 20:46 - 00000000 ____D C:\Users\Rod\Documents\Youcam 2015-07-31 23:30 - 2015-07-31 23:30 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Intel Corporation 2015-07-31 23:30 - 2015-07-31 23:30 - 00000000 ____D C:\Users\Rod\AppData\Local\CyberLink 2015-07-31 23:28 - 2015-07-31 23:28 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Adobe 2015-07-31 23:28 - 2015-07-31 23:28 - 00000000 ____D C:\Users\Rod\AppData\Local\Power2Go8 2015-07-31 23:28 - 2015-07-31 23:28 - 00000000 ____D C:\Users\Rod\AppData\Local\MSI 2015-07-31 23:28 - 2012-08-11 06:25 - 00001193 _____ C:\Users\Default\Desktop\ALDI Foto.lnk 2015-07-31 23:28 - 2012-08-11 06:25 - 00001193 _____ C:\Users\Default User\Desktop\ALDI Foto.lnk 2015-07-31 23:28 - 2012-08-11 06:20 - 00001251 _____ C:\Users\Rod\Desktop\Medion Services.lnk 2015-07-31 23:28 - 2012-08-11 06:20 - 00001251 _____ C:\Users\Default\Desktop\Medion Services.lnk 2015-07-31 23:28 - 2012-08-11 06:20 - 00001251 _____ C:\Users\Default User\Desktop\Medion Services.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001809 _____ C:\Users\Rod\Desktop\ALDI Talk.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001809 _____ C:\Users\Default\Desktop\ALDI Talk.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001809 _____ C:\Users\Default User\Desktop\ALDI Talk.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001093 _____ C:\Users\Default\Desktop\ALDI Nord Reisen.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001093 _____ C:\Users\Default User\Desktop\ALDI Nord Reisen.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001037 _____ C:\Users\Default\Desktop\ALDI Nord Startseite.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001037 _____ C:\Users\Default User\Desktop\ALDI Nord Startseite.lnk 2015-07-31 23:28 - 2012-08-05 13:39 - 00001893 _____ C:\Users\Default\Desktop\ALDI Nord Blumen Service.lnk 2015-07-31 23:28 - 2012-08-05 13:39 - 00001893 _____ C:\Users\Default User\Desktop\ALDI Nord Blumen Service.lnk 2015-07-31 23:27 - 2015-08-14 21:51 - 00000000 ____D C:\Users\Rod\AppData\Local\Packages 2015-07-31 23:27 - 2015-07-31 23:27 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Intel 2015-07-31 23:27 - 2015-07-31 23:27 - 00000000 ____D C:\Users\Rod\AppData\Local\VirtualStore 2015-07-31 23:17 - 2015-08-01 02:09 - 00000000 ____D C:\Intel 2015-07-31 23:17 - 2015-08-01 01:52 - 00846784 _____ C:\WINDOWS\WindowsUpdate (1).log 2015-07-31 23:17 - 2015-07-31 23:17 - 00002324 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1054307018-325505745-2950437668-500 ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-16 09:00 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru 2015-08-15 19:15 - 2013-10-28 14:55 - 00000000 ____D C:\ProgramData\Bigfoot Networks 2015-08-15 13:41 - 2014-11-21 05:35 - 01780340 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-08-15 13:41 - 2014-11-21 04:45 - 00766620 _____ C:\WINDOWS\system32\perfh007.dat 2015-08-15 13:41 - 2014-11-21 04:45 - 00159902 _____ C:\WINDOWS\system32\perfc007.dat 2015-08-15 13:36 - 2014-11-20 20:24 - 00026370 _____ C:\WINDOWS\PFRO.log 2015-08-15 13:36 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-08-15 12:55 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\schemas 2015-08-15 09:37 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-08-15 09:29 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2015-08-14 21:56 - 2013-08-22 16:44 - 00342000 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-08-14 21:51 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-08-13 12:26 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-13 12:26 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-13 12:26 - 2013-03-22 19:03 - 132483416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-08-09 13:10 - 2013-03-25 10:23 - 00080489 _____ C:\WINDOWS\DirectX.log 2015-08-08 20:17 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache 2015-08-08 15:55 - 2014-11-21 13:01 - 00794088 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-08-08 15:55 - 2014-11-21 13:01 - 00179688 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-08-05 21:07 - 2013-10-28 16:34 - 00000000 ____D C:\Users\Public\Documents\CyberLink 2015-08-05 21:07 - 2013-10-28 16:26 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HomeCinema 2015-08-05 21:07 - 2013-10-28 16:26 - 00000000 ____D C:\ProgramData\CLSK 2015-08-05 21:07 - 2013-03-25 12:31 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-08-05 21:06 - 2013-10-28 16:26 - 00000000 ____D C:\ProgramData\CyberLink 2015-08-05 21:05 - 2013-09-18 17:07 - 00000000 ____D C:\Program Files\CyberLink 2015-08-05 20:59 - 2013-10-28 14:57 - 00000000 ____D C:\ProgramData\Package Cache 2015-08-04 00:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-08-02 01:39 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppCompat 2015-08-01 06:37 - 2013-10-28 16:35 - 00000000 ____D C:\Users\Public\CyberLink 2015-08-01 02:57 - 2013-08-22 17:36 - 00262144 _____ C:\WINDOWS\system32\config\BCD-Template 2015-08-01 02:31 - 2014-11-21 05:13 - 00000000 ____D C:\Program Files\Windows Journal 2015-08-01 02:31 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\restore 2015-08-01 02:19 - 2013-10-28 14:52 - 00000000 ____D C:\WINDOWS\SysWOW64\NV 2015-08-01 02:19 - 2013-10-28 14:52 - 00000000 ____D C:\WINDOWS\system32\NV 2015-08-01 02:18 - 2014-11-21 12:51 - 00000000 ___SD C:\WINDOWS\system32\CompatTel 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\WinStore 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-RS 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-CS 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Defender 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2015-08-01 02:18 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2015-08-01 02:18 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM 2015-08-01 02:04 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Registration 2015-08-01 02:04 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows NT 2015-08-01 02:04 - 2013-08-22 15:36 - 00000000 __RHD C:\Users\Default 2015-08-01 02:03 - 2013-08-22 17:36 - 00000000 __RSD C:\WINDOWS\Media 2015-08-01 02:03 - 2013-08-22 17:36 - 00000000 __RHD C:\Users\Public\Libraries 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\system32\winrm 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\system32\WCN 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\system32\slmgr 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts 2015-08-01 02:02 - 2013-10-28 16:30 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PhotoDirector 3 2015-08-01 02:02 - 2013-10-28 16:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Medion MediaPack 3 2015-08-01 02:02 - 2013-10-28 14:57 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless 2015-08-01 02:02 - 2013-10-28 14:56 - 00000000 ____D C:\WINDOWS\SysWOW64\sda 2015-08-01 02:02 - 2013-10-28 14:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby 2015-08-01 02:02 - 2013-10-28 14:44 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2015-08-01 02:02 - 2013-09-18 17:07 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2015-08-01 02:02 - 2013-08-22 17:37 - 00005217 _____ C:\WINDOWS\DtcInstall.log 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\IME 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\en-GB 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\spool 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\MUI 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\IME 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\en-GB 2015-08-01 02:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\SysWOW64\SMI 2015-08-01 02:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe 2015-08-01 02:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2015-08-01 02:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2015-08-01 02:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\oobe 2015-08-01 02:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\Dism 2015-08-01 02:02 - 2013-05-07 15:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-08-01 02:02 - 2012-07-26 11:43 - 00000000 ____D C:\WINDOWS\en-GB 2015-08-01 02:02 - 2012-07-26 07:37 - 00000000 ____D C:\Users\Default.migrated 2015-08-01 02:01 - 2013-10-28 14:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Qualcomm Atheros 2015-08-01 02:01 - 2013-08-22 17:43 - 00000000 ____D C:\WINDOWS\DigitalLocker 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 __SHD C:\Program Files\Windows Sidebar 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\Recovery 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\IME 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Help 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\System 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2015-08-01 02:01 - 2013-03-22 14:27 - 00000000 ____D C:\ProgramData\PRICache 2015-08-01 01:59 - 2014-01-15 23:34 - 00000000 ____D C:\Recovery 2015-07-31 23:24 - 2013-03-22 15:22 - 00782014 _____ C:\WINDOWS\system32\perfh010.dat 2015-07-31 23:24 - 2013-03-22 15:22 - 00153144 _____ C:\WINDOWS\system32\perfc010.dat 2015-07-31 23:24 - 2013-03-22 15:17 - 00791060 _____ C:\WINDOWS\system32\perfh00C.dat 2015-07-31 23:24 - 2013-03-22 15:17 - 00155620 _____ C:\WINDOWS\system32\perfc00C.dat 2015-07-31 23:18 - 2013-10-28 14:49 - 00000000 ____D C:\ProgramData\NVIDIA ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-08-01 00:40 - 2015-08-01 00:40 - 0000017 _____ () C:\Users\Rod\AppData\Local\resmon.resmoncfg 2013-10-28 14:52 - 2013-10-28 14:52 - 0000000 ____H () C:\ProgramData\DP45977C.lfl 2015-08-05 21:03 - 2015-08-05 21:03 - 0000032 _____ () C:\ProgramData\Temp.log 2013-10-28 16:30 - 2013-10-28 16:30 - 0000104 _____ () C:\ProgramData\{01FB4998-33C4-4431-85ED-079E3EEFE75D}.log 2013-10-28 16:30 - 2013-10-28 16:30 - 0000119 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log 2013-10-28 16:27 - 2013-10-28 16:28 - 0000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log 2013-10-28 16:30 - 2013-10-28 16:30 - 0000111 _____ () C:\ProgramData\{39337565-330E-4ab6-A9AE-AC81E0720B10}.log 2013-10-28 16:29 - 2013-10-28 16:29 - 0000032 _____ () C:\ProgramData\{551F492A-01B0-4DC4-866F-875EC4EDC0A8}.log 2013-10-28 16:26 - 2013-10-28 16:26 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log 2013-10-28 16:29 - 2013-10-28 16:29 - 0000108 _____ () C:\ProgramData\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}.log 2013-10-28 16:27 - 2013-10-28 16:27 - 0000110 _____ () C:\ProgramData\{E3739848-5329-48E3-8D28-5BBD6E8BE384}.log 2013-10-28 16:28 - 2013-10-28 16:28 - 0000110 _____ () C:\ProgramData\{E3D04529-6EDB-11D8-A372-0050BAE317E1}.log Einige Dateien in TEMP: ==================== C:\Users\Rod\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-08-15 13:59 ==================== Ende von Ergebnis ============================ |
16.08.2015, 15:50 | #9 |
/// the machine /// TB-Ausbilder | quick_star im BrowserESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
16.08.2015, 21:04 | #10 |
| quick_star im BrowserCode:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=7469aa20faac524a86a620defbee286c # end=init # utc_time=2015-08-16 06:57:04 # local_time=2015-08-16 08:57:04 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.2.9200 NT Update Init Update Download Update Finalize Updated modules version: 25304 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=7469aa20faac524a86a620defbee286c # end=updated # utc_time=2015-08-16 07:06:18 # local_time=2015-08-16 09:06:18 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.2.9200 NT # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7777 # api_version=3.1.1 # EOSSerial=7469aa20faac524a86a620defbee286c # engine=25304 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2015-08-16 08:01:21 # local_time=2015-08-16 10:01:21 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1031 # osver=6.2.9200 NT # compatibility_mode_1='' # compatibility_mode=5893 16776573 100 94 52685 16837673 0 0 # scanned=398350 # found=6 # cleaned=0 # scan_time=3303 sh=F05E9C882D7E05D88AD75095DDA61D5CFDA88311 ft=1 fh=9e2ca68be6503ad6 vn="Variante von Win32/InstallCore.AAJ evtl. unerwünschte Anwendung" ac=I fn="D:\Downloads\Adobe Flash Player Setup.exe" sh=E5934EC333315A9C3BDEA96242D437CA21ACD4A9 ft=1 fh=904f3081875f784f vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="D:\Downloads\Skype - CHIP-Installer.exe" sh=1F2AD5240A4DAEC7189DB2951A0B473C4AFF32CA ft=1 fh=4f61141e0b97ae99 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="D:\Downloads\Windows 10 Final 64 Bit - CHIP-Installer.exe" sh=05943FC495EEC1E921755AF05CF388D2EA49BAB7 ft=1 fh=de7073242cf30196 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="D:\PartitionWizard\Partition Wizard Home Edition - CHIP-Installer.exe" sh=3A20655309510995C8FFDC7AD467499081E824F5 ft=1 fh=283f2c731bb7e745 vn="Variante von Win32/DownloadAssistant.C evtl. unerwünschte Anwendung" ac=I fn="G:\Download D\Firefox_37.0.1_einrichten.exe" sh=EAA59840EC3EDABEA5B8E13E902B17E2E2DADEF2 ft=1 fh=e4e7dfbb1fac40b4 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="G:\Download D\Windows Product Key Viewer - CHIP-Installer.exe" |
17.08.2015, 14:39 | #11 |
/// the machine /// TB-Ausbilder | quick_star im Browser und der Rest?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
17.08.2015, 18:27 | #12 |
| quick_star im Browser Upsa, habs eiskal überlesen. Also ich merke nichts mehr von Problemen Code:
ATTFilter Results of screen317's Security Check version 1.006 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Windows Defender WMI entry may not exist for antivirus; attempting automatic update. `````````Anti-malware/Other Utilities Check:````````` Java SE Development Kit 7 Update 55 Java version 32-bit out of Date! Adobe Flash Player 18.0.0.232 Mozilla Firefox (39.0) ````````Process Check: objlist.exe by Laurent```````` Windows Defender MSMpEng.exe Malwarebytes Anti-Malware mbamservice.exe Malwarebytes Anti-Malware mbam.exe Malwarebytes Anti-Malware mbamscheduler.exe Windows Defender MpCmdRun.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: % ````````````````````End of Log`````````````````````` Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:16-08-2015 durchgeführt von Rod (Administrator) auf RECHNER (17-08-2015 19:25:35) Gestartet von D:\FRST64Bit Geladene Profile: UpdatusUser & Rod (Verfügbare Profile: UpdatusUser & Rod) Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\livecomm.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (MSI) C:\Program Files (x86)\SCM\SCM.exe (Spotify Ltd) C:\Users\Rod\AppData\Roaming\Spotify\SpotifyWebHelper.exe () C:\Program Files\Qualcomm Atheros\Killer Network Manager\KillerNetManager.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Office.OneNote_16.0.3327.1048_x64__8wekyb3d8bbwe\onenoteim.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13538376 2013-05-21] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1308232 2013-05-20] (Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2859344 2013-04-30] (ELAN Microelectronics Corp.) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [286704 2013-03-22] (Intel Corporation) HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp HKLM\...\Run: [Radio Manager] => C:\Program Files (x86)\SCM\Radio Manager.exe [403848 2013-05-14] (MSI) HKLM\...\Run: [SCM] => C:\Program Files (x86)\SCM\SCM.exe [399776 2013-05-14] (MSI) HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [393480 2015-03-19] () HKLM\...\Run: [HotKeysCmds] => C:\Windows\system32\hkcmd.exe HKLM\...\Run: [Persistence] => C:\Windows\system32\igfxpers.exe HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation) HKLM\...\Policies\Explorer: [ConfirmFileDelete] 1 HKU\S-1-5-21-1054307018-325505745-2950437668-1001\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2014-11-21] (Microsoft Corporation) HKU\S-1-5-21-1054307018-325505745-2950437668-1002\...\Run: [Spotify Web Helper] => C:\Users\Rod\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2017848 2015-08-01] (Spotify Ltd) HKU\S-1-5-21-1054307018-325505745-2950437668-1002\...\Run: [Steam] => "D:\CProgram Files (x86)\Steam\steam.exe" -silent AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [168616 2013-09-05] (NVIDIA Corporation) AppInit_DLLs: , C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [168616 2013-09-05] (NVIDIA Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Qualcomm Atheros Killer Network Manager.lnk [2013-10-28] ShortcutTarget: Qualcomm Atheros Killer Network Manager.lnk -> C:\Program Files\Qualcomm Atheros\Killer Network Manager\KillerNetManager.exe () ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=MSE1 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=MSE1 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKU\S-1-5-21-1054307018-325505745-2950437668-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=MSE1 SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKU\S-1-5-21-1054307018-325505745-2950437668-1002 -> DefaultScope {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> D:\Program Files (x86)\Java\bin\ssv.dll [2015-08-02] (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> D:\Program Files (x86)\Java\bin\jp2ssv.dll [2015-08-02] (Oracle Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{071837BD-B367-4F29-AA57-BA350E9AF7CB}: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default FF Homepage: about:home FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-08-12] () FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB) FF Plugin: @java.com/DTPlugin,version=11.51.2 -> D:\Program Files (x86)\Java\bin\dtplugin\npDeployJava1.dll [2015-08-02] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> D:\Program Files (x86)\Java\bin\plugin2\npjp2.dll [2015-08-02] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll [2013-01-24] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-12] () FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-03-12] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-03-12] (Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll [2013-01-24] ( Microsoft Corporation) FF Extension: Adblock Plus - C:\Users\Rod\AppData\Roaming\Mozilla\Firefox\Profiles\89zpzkux.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-08-01] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-11-21] (Microsoft Corporation) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15344 2013-03-22] (Intel Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [345864 2015-03-19] (Intel Corporation) R2 Intel(R) Bluetooth Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [160712 2013-03-11] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [Datei ist nicht signiert] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-03-12] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-03-12] (Intel Corporation) R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) R2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [160768 2013-05-14] (Micro-Star International Co., Ltd.) [Datei ist nicht signiert] S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-03-29] () S3 Origin Client Service; D:\Origin\OriginClientService.exe [2007048 2015-08-01] (Electronic Arts) R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76152 2015-08-02] () R2 Qualcomm Atheros Killer Service; C:\Program Files\Qualcomm Atheros\Killer Network Manager\BFNService.exe [495616 2013-03-15] () [Datei ist nicht signiert] S2 SkypeUpdate; D:\Meine Programme\Skype\Updater\Updater.exe [327296 2015-06-25] (Skype Technologies) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3376880 2013-03-29] (Intel® Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [74096 2013-03-15] (Qualcomm Atheros, Inc.) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-11-21] (Microsoft Corporation) R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsfw.sys [1366328 2013-04-01] (Motorola Solutions, Inc.) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [76744 2013-03-11] (Intel Corporation) R3 Ke2200; C:\Windows\system32\DRIVERS\e22w8x64.sys [174448 2013-03-15] (Qualcomm Atheros, Inc.) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [113880 2015-08-17] (Malwarebytes Corporation) R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation) R3 NETwNb64; C:\Windows\system32\DRIVERS\NETwbw02.sys [3589600 2013-09-25] (Intel Corporation) S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew02.sys [3545056 2013-04-18] (Intel Corporation) R1 nvkflt; C:\Windows\system32\DRIVERS\nvkflt.sys [300320 2013-09-05] (NVIDIA Corporation) R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [19152 2013-09-30] () S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2013-09-30] () R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [448072 2013-02-01] (RTS Corporation) R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [226304 2014-11-21] (Microsoft Corporation) S3 clwvd; \SystemRoot\system32\DRIVERS\clwvd.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-17 19:19 - 2015-08-17 19:19 - 00852684 _____ C:\Users\Rod\Desktop\SecurityCheck.exe 2015-08-16 20:56 - 2015-08-16 20:56 - 00000000 ____D C:\Program Files (x86)\ESET 2015-08-16 11:57 - 2015-08-17 19:17 - 00000000 ___RD C:\Users\Rod\OneDrive 2015-08-15 13:41 - 2015-08-15 13:41 - 00001406 _____ C:\Users\Rod\Desktop\JRT.txt 2015-08-15 13:39 - 2015-08-15 13:39 - 01791580 _____ (Malwarebytes Corporation) C:\Users\Rod\Desktop\JRT.exe 2015-08-15 13:38 - 2015-08-15 13:38 - 00002807 _____ C:\Users\Rod\Desktop\AdwCleaner[C1].txt 2015-08-15 13:35 - 2015-08-15 13:35 - 00002807 _____ C:\AdwCleaner[C1].txt 2015-08-15 13:33 - 2015-08-15 13:38 - 00000000 ____D C:\AdwCleaner 2015-08-15 13:33 - 2015-08-15 13:34 - 00002571 _____ C:\AdwCleaner[S1].txt 2015-08-15 12:59 - 2015-08-15 12:59 - 00027763 _____ C:\Users\Rod\Desktop\mbam.txt 2015-08-15 12:37 - 2015-08-17 19:17 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-08-15 12:37 - 2015-08-15 12:37 - 00001118 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-08-15 12:37 - 2015-08-15 12:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-08-15 12:37 - 2015-08-15 12:37 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-08-15 12:37 - 2015-08-15 12:37 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-08-15 12:37 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-08-15 12:37 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-08-15 12:37 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2015-08-15 09:40 - 2015-07-30 16:04 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2015-08-15 09:40 - 2015-07-30 15:48 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-08-14 20:05 - 2015-08-11 12:22 - 03067392 _____ C:\WINDOWS\system32\pwNative.exe 2015-08-14 20:05 - 2013-09-30 15:26 - 00019152 ____N C:\WINDOWS\system32\pwdrvio.sys 2015-08-14 20:05 - 2013-09-30 15:26 - 00012504 ____N C:\WINDOWS\system32\pwdspio.sys 2015-08-14 20:04 - 2015-08-14 20:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Partition Wizard Free 9.1 2015-08-14 19:22 - 2015-08-17 19:25 - 00000000 ____D C:\FRST 2015-08-12 12:06 - 2015-07-16 02:29 - 07458648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-08-12 12:06 - 2015-07-16 02:29 - 01735000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2015-08-12 12:06 - 2015-07-16 02:29 - 00101720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys 2015-08-12 12:06 - 2015-07-16 02:28 - 01499920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2015-08-12 12:06 - 2015-07-10 19:54 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll 2015-08-12 12:06 - 2015-07-02 00:19 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebClnt.dll 2015-08-12 12:06 - 2015-07-02 00:16 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2015-08-12 12:06 - 2015-07-01 23:37 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebClnt.dll 2015-08-12 12:06 - 2015-07-01 23:35 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll 2015-08-12 12:03 - 2015-07-29 16:37 - 01994752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2015-08-12 12:03 - 2015-07-29 16:30 - 01381888 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2015-08-12 12:03 - 2015-07-29 16:23 - 01559552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2015-08-12 12:03 - 2015-07-24 20:57 - 04177408 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2015-08-12 12:03 - 2015-07-24 20:57 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2015-08-12 12:03 - 2015-07-24 20:52 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2015-08-12 12:03 - 2015-07-24 19:27 - 00301568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2015-08-12 12:03 - 2015-07-24 19:23 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2015-08-12 12:03 - 2015-07-14 05:22 - 02529880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2015-08-12 12:03 - 2015-07-14 05:21 - 01901776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2015-08-12 12:03 - 2015-07-10 20:19 - 01101824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2015-08-12 12:03 - 2015-07-10 19:42 - 02345472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2015-08-12 12:03 - 2015-07-10 19:14 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll 2015-08-12 12:03 - 2015-07-10 19:13 - 07032320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2015-08-12 12:03 - 2015-07-10 18:47 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2015-08-12 12:03 - 2015-07-10 18:31 - 06213120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2015-08-12 12:03 - 2015-07-09 19:13 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe 2015-08-12 12:03 - 2015-07-09 19:13 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe 2015-08-12 12:03 - 2015-07-09 18:30 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe 2015-08-09 13:10 - 2015-08-09 13:10 - 00000000 ____D C:\Users\Rod\AppData\Roaming\NVIDIA 2015-08-05 21:05 - 2015-08-05 21:05 - 00000000 ____D C:\Users\Rod\AppData\Local\MediaServer 2015-08-05 21:03 - 2015-08-05 21:03 - 00000032 _____ C:\ProgramData\Temp.log 2015-08-05 20:47 - 2015-08-05 20:47 - 00000000 ____D C:\Users\Rod\Documents\Avatar 2015-08-05 20:46 - 2015-08-05 20:46 - 00000000 ____D C:\Users\Rod\AppData\Roaming\CyberLink 2015-08-05 20:41 - 2015-08-16 15:22 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Skype 2015-08-05 20:41 - 2015-08-05 20:41 - 00000000 ____D C:\Users\Rod\Tracing 2015-08-05 20:41 - 2015-08-05 20:41 - 00000000 ____D C:\Users\Rod\AppData\Local\Skype 2015-08-05 20:41 - 2015-08-05 20:41 - 00000000 ____D C:\ProgramData\Skype 2015-08-05 20:41 - 2015-08-05 20:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-08-05 20:41 - 2015-08-05 20:41 - 00000000 ____D C:\Program Files (x86)\Skype 2015-08-03 23:44 - 2015-08-03 23:45 - 00000000 ____D C:\Users\Rod\Documents\Visual Studio 2015 2015-08-03 23:12 - 2015-08-17 19:04 - 00002440 _____ C:\WINDOWS\setupact.log 2015-08-03 23:12 - 2015-08-03 23:12 - 00000000 _____ C:\WINDOWS\setuperr.log 2015-08-03 23:06 - 2015-08-03 23:08 - 00000000 ___HD C:\$Windows.~BT 2015-08-03 00:02 - 2015-08-03 00:10 - 00000000 ____D C:\Users\Rod\.android 2015-08-02 23:51 - 2015-08-02 23:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android SDK Tools 2015-08-02 23:51 - 2015-08-02 23:51 - 00000000 ____D C:\Program Files (x86)\Android 2015-08-02 23:50 - 2015-08-02 23:50 - 00000000 ____D C:\Program Files (x86)\Java 2015-08-02 23:45 - 2015-08-02 23:45 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2015-08-02 23:38 - 2015-08-02 23:38 - 00000000 ____D C:\ProgramData\Microsoft DNX 2015-08-02 23:34 - 2015-08-02 23:34 - 00000000 ____D C:\Program Files\IIS Express 2015-08-02 23:34 - 2015-08-02 23:34 - 00000000 ____D C:\Program Files (x86)\IIS Express 2015-08-02 23:33 - 2015-08-02 23:33 - 00000000 ____D C:\Program Files\IIS 2015-08-02 23:33 - 2015-08-02 23:33 - 00000000 ____D C:\Program Files (x86)\IIS 2015-08-02 23:20 - 2015-08-04 00:00 - 00000000 ____D C:\WINDOWS\system32\1033 2015-08-02 23:20 - 2015-08-03 23:58 - 00000000 ____D C:\Program Files (x86)\Windows Kits 2015-08-02 23:20 - 2015-08-03 23:57 - 00000000 ____D C:\WINDOWS\SysWOW64\1031 2015-08-02 23:20 - 2015-08-02 23:46 - 00000000 ____D C:\Program Files\Microsoft SQL Server 2015-08-02 23:20 - 2015-08-02 23:45 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2015-08-02 23:20 - 2015-08-02 23:20 - 00000000 ____D C:\WINDOWS\SysWOW64\1033 2015-08-02 23:20 - 2015-08-02 23:20 - 00000000 ____D C:\Program Files (x86)\Microsoft Help Viewer 2015-08-02 23:19 - 2015-08-04 00:02 - 00000000 ____D C:\WINDOWS\system32\1031 2015-08-02 23:19 - 2015-08-03 23:59 - 00000000 ____D C:\Program Files (x86)\Microsoft SDKs 2015-08-02 23:19 - 2015-08-02 23:19 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_SensorsSimulatorDriver_01_11_00.Wdf 2015-08-02 23:16 - 2015-06-22 08:31 - 00027840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspnet_counters.dll 2015-08-02 23:16 - 2015-06-22 08:30 - 00029888 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00961192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00062304 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:28 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00883712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00064352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-private-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00022368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-math-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-string-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-time-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-process-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll 2015-08-02 23:03 - 2015-06-04 15:26 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll 2015-08-02 22:58 - 2015-08-02 22:58 - 00000000 ____D C:\ProgramData\VsTelemetry 2015-08-02 21:43 - 2015-08-02 21:44 - 00000000 ____D C:\Users\Rod\Documents\Battlefield 3 2015-08-02 12:50 - 2015-08-02 23:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-08-02 12:50 - 2015-08-02 12:50 - 00110688 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2015-08-02 12:50 - 2015-08-02 12:50 - 00000000 ____D C:\ProgramData\Sun 2015-08-02 12:50 - 2015-08-02 12:50 - 00000000 ____D C:\ProgramData\Oracle 2015-08-02 12:49 - 2015-08-02 23:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2015-08-02 12:26 - 2015-08-02 12:26 - 00000000 ____D C:\Users\Rod\AppData\Local\Macromedia 2015-08-02 10:57 - 2015-08-02 10:57 - 00000000 ____D C:\Users\Rod\AppData\Local\GWX 2015-08-01 23:16 - 2015-08-01 23:16 - 00000000 ___HD C:\$Windows.~WS 2015-08-01 19:19 - 2015-08-17 06:33 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2015-08-01 19:19 - 2015-08-12 12:33 - 00003772 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2015-08-01 19:16 - 2015-08-01 19:19 - 00000000 ____D C:\Users\Rod\AppData\Local\Adobe 2015-08-01 19:15 - 2015-08-01 19:15 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Browser-Security 2015-08-01 18:01 - 2015-08-01 18:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3 2015-08-01 13:39 - 2015-08-01 13:39 - 00000000 ____D C:\Users\Rod\Documents\my games 2015-08-01 11:25 - 2015-08-01 11:31 - 00000000 ____D C:\Users\Rod\Documents\FUSSBALL MANAGER 14 2015-08-01 04:14 - 2015-08-01 14:44 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2015-08-01 04:14 - 2015-08-01 04:14 - 00000223 _____ C:\Users\Rod\Desktop\Total War ATTILA.url 2015-08-01 04:05 - 2015-08-17 06:43 - 00003918 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{09DFCB16-AD9D-4E8B-BE1B-EFD841E16986} 2015-08-01 04:05 - 2015-08-01 04:05 - 00000000 ____D C:\Users\Rod\AppData\Local\Steam 2015-08-01 04:05 - 2015-08-01 04:05 - 00000000 ____D C:\Users\Rod\AppData\Local\CEF 2015-08-01 04:03 - 2015-08-01 04:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2015-08-01 04:02 - 2015-07-14 23:59 - 01113944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2015-08-01 04:02 - 2015-07-14 23:59 - 00487256 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2015-08-01 04:02 - 2015-07-14 23:59 - 00393560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll 2015-08-01 04:02 - 2015-06-11 22:12 - 02476376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2015-08-01 04:02 - 2015-06-11 22:12 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2015-08-01 04:02 - 2015-06-10 00:39 - 00081920 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS 2015-08-01 04:02 - 2015-06-10 00:39 - 00053248 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys 2015-08-01 04:02 - 2015-06-10 00:38 - 01201664 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2015-08-01 04:02 - 2015-06-09 20:27 - 00411133 _____ C:\WINDOWS\system32\ApnDatabase.xml 2015-08-01 04:02 - 2015-05-01 03:13 - 06521800 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2015-08-01 04:02 - 2015-05-01 03:13 - 01488000 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2015-08-01 04:02 - 2015-05-01 03:13 - 00261376 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2015-08-01 03:55 - 2015-08-09 13:07 - 00000000 ____D C:\ProgramData\Origin 2015-08-01 03:53 - 2015-08-01 03:53 - 00000923 _____ C:\Users\Public\Desktop\FUSSBALL MANAGER 14.lnk 2015-08-01 03:53 - 2015-08-01 03:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-08-01 03:53 - 2015-08-01 03:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FUSSBALL MANAGER 14 2015-08-01 03:52 - 2015-08-01 03:52 - 00000000 ____D C:\Users\Rod\Documents\Meine empfangenen Dateien 2015-08-01 02:57 - 2015-08-03 23:06 - 00000000 ___DC C:\WINDOWS\Panther 2015-08-01 02:56 - 2015-08-01 02:56 - 02171904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2015-08-01 02:56 - 2015-08-01 02:56 - 01970432 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2015-08-01 02:56 - 2015-08-01 02:56 - 01612992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2015-08-01 02:56 - 2015-08-01 02:56 - 00672984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2015-08-01 02:56 - 2015-08-01 02:56 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll 2015-08-01 02:56 - 2015-08-01 02:56 - 00273240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2015-08-01 02:56 - 2015-08-01 02:56 - 00262144 _____ C:\WINDOWS\system32\config\userdiff 2015-08-01 02:56 - 2015-08-01 02:56 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe 2015-08-01 02:56 - 2015-08-01 02:56 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe 2015-08-01 02:56 - 2015-08-01 02:56 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsDatabase.dll 2015-08-01 02:56 - 2015-08-01 02:56 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupStatusProvider.dll 2015-08-01 02:56 - 2015-08-01 02:56 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceSetupStatusProvider.dll 2015-08-01 02:55 - 2015-08-03 23:23 - 00000000 ____D C:\Program Files (x86)\MSBuild 2015-08-01 02:55 - 2015-08-01 02:55 - 00000000 ____D C:\Program Files\Reference Assemblies 2015-08-01 02:55 - 2015-08-01 02:55 - 00000000 ____D C:\Program Files\MSBuild 2015-08-01 02:55 - 2015-08-01 02:55 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2015-08-01 02:55 - 2015-08-01 02:02 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2015-08-01 02:55 - 2013-08-03 06:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2015-08-01 02:55 - 2013-08-03 06:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2015-08-01 02:54 - 2015-08-01 02:54 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdbinst.exe 2015-08-01 02:54 - 2015-08-01 02:54 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sdbinst.exe 2015-08-01 02:51 - 2015-08-11 18:36 - 00000000 ____D C:\Users\Rod\AppData\Local\Spotify 2015-08-01 02:51 - 2015-08-11 18:34 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Spotify 2015-08-01 02:51 - 2015-08-01 02:51 - 00146080 _____ (Spotify Ltd) C:\Users\Rod\Downloads\SpotifySetup.exe 2015-08-01 02:51 - 2015-08-01 02:51 - 00001830 _____ C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2015-08-01 02:34 - 2015-08-13 12:27 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-08-01 02:24 - 2015-08-02 22:05 - 00348360 _____ C:\WINDOWS\SysWOW64\PnkBstrB.xtr 2015-08-01 02:24 - 2015-08-01 02:24 - 00000000 ____D C:\Users\Rod\AppData\Local\PunkBuster 2015-08-01 02:24 - 2015-08-01 02:24 - 00000000 ____D C:\Users\Rod\AppData\Local\ESN 2015-08-01 02:24 - 2015-08-01 02:24 - 00000000 ____D C:\Program Files (x86)\Battlelog Web Plugins 2015-08-01 02:23 - 2015-08-01 02:23 - 00000000 ____D C:\Users\Rod\AppData\Local\Origin 2015-08-01 02:23 - 2015-08-01 02:20 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Origin 2015-08-01 02:21 - 2015-08-01 02:21 - 00000536 _____ C:\Users\Public\Desktop\Origin.lnk 2015-08-01 02:21 - 2015-08-01 02:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin 2015-08-01 02:21 - 2015-08-01 01:47 - 00000000 ____D C:\ProgramData\Electronic Arts 2015-08-01 02:21 - 2015-05-25 15:23 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll 2015-08-01 02:21 - 2015-05-25 15:07 - 01430528 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2015-08-01 02:21 - 2015-01-23 09:17 - 00723072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll 2015-08-01 02:21 - 2015-01-23 07:02 - 00560392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll 2015-08-01 02:20 - 2015-08-01 02:21 - 17110336 _____ (Electronic Arts, Inc.) C:\Users\Rod\Downloads\OriginThinSetup.exe 2015-08-01 02:20 - 2015-07-09 21:51 - 00136904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2015-08-01 02:20 - 2015-07-09 20:40 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll 2015-08-01 02:20 - 2015-07-09 18:03 - 03701760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-08-01 02:20 - 2015-07-09 17:54 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2015-08-01 02:20 - 2015-07-09 17:53 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2015-08-01 02:20 - 2015-07-09 17:50 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2015-08-01 02:20 - 2015-07-09 17:50 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2015-08-01 02:20 - 2015-07-09 17:48 - 00891904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2015-08-01 02:20 - 2015-07-09 17:46 - 02229248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2015-08-01 02:20 - 2015-07-09 17:38 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe 2015-08-01 02:20 - 2015-07-09 17:37 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll 2015-08-01 02:20 - 2015-07-09 17:35 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2015-08-01 02:20 - 2015-07-09 17:34 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2015-08-01 02:20 - 2015-06-27 05:08 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2015-08-01 02:20 - 2015-06-27 05:08 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2015-08-01 02:20 - 2015-06-27 04:14 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll 2015-08-01 02:20 - 2015-04-30 01:22 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll 2015-08-01 02:20 - 2015-03-17 19:26 - 00467776 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2015-08-01 02:20 - 2015-03-14 03:51 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll 2015-08-01 02:20 - 2015-02-04 01:58 - 00264000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2015-08-01 02:20 - 2015-02-04 01:58 - 00114496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2015-08-01 02:20 - 2015-02-04 01:58 - 00044024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2015-08-01 02:20 - 2015-02-03 01:53 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll 2015-08-01 02:20 - 2015-02-03 01:53 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll 2015-08-01 02:20 - 2015-01-27 05:44 - 00933888 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe 2015-08-01 02:20 - 2015-01-24 03:51 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\calc.exe 2015-08-01 02:20 - 2014-10-18 08:50 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll 2015-08-01 02:19 - 2015-08-01 02:19 - 00000118 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2015-08-01 02:19 - 2015-06-28 07:07 - 00442712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2015-08-01 02:19 - 2015-06-28 07:07 - 00178008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2015-08-01 02:19 - 2015-06-28 07:06 - 01311960 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2015-08-01 02:19 - 2015-06-28 07:06 - 00332120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2015-08-01 02:19 - 2015-06-27 18:42 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2015-08-01 02:19 - 2015-06-27 05:13 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2015-08-01 02:19 - 2015-06-27 05:12 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2015-08-01 02:19 - 2015-06-27 05:12 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2015-08-01 02:19 - 2015-06-27 04:40 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2015-08-01 02:19 - 2015-06-27 04:05 - 01441792 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2015-08-01 02:19 - 2015-06-27 04:00 - 00989184 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2015-08-01 02:19 - 2015-06-27 03:53 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll 2015-08-01 02:19 - 2015-06-27 03:26 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2015-08-01 02:19 - 2015-03-30 07:47 - 00561928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2015-08-01 02:18 - 2015-08-02 01:39 - 00000000 ___SD C:\WINDOWS\system32\GWX 2015-08-01 02:18 - 2015-08-01 02:18 - 00000000 ___SD C:\WINDOWS\SysWOW64\GWX 2015-08-01 02:18 - 2015-08-01 02:18 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-08-01 02:18 - 2015-06-16 00:41 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe 2015-08-01 02:18 - 2015-06-16 00:24 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2015-08-01 02:18 - 2015-06-15 23:16 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe 2015-08-01 02:18 - 2015-06-15 23:09 - 03607552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2015-08-01 02:18 - 2015-06-15 22:50 - 02774528 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2015-08-01 02:18 - 2015-06-15 21:57 - 02460160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2015-08-01 02:18 - 2015-05-30 23:18 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll 2015-08-01 02:18 - 2015-05-30 21:36 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2015-08-01 02:18 - 2015-05-30 21:35 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2015-08-01 02:18 - 2015-05-07 19:50 - 22292672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2015-08-01 02:18 - 2015-05-07 19:00 - 03109376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2015-08-01 02:18 - 2015-05-07 18:53 - 19734960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2015-08-01 02:18 - 2015-05-07 18:12 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2015-08-01 02:18 - 2015-05-07 17:21 - 00522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2015-08-01 02:18 - 2015-05-07 17:05 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll 2015-08-01 02:18 - 2015-05-03 02:39 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2015-08-01 02:18 - 2015-03-14 10:20 - 01385256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2015-08-01 02:18 - 2015-03-14 10:13 - 01124352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2015-08-01 02:18 - 2015-03-09 04:02 - 00057856 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys 2015-08-01 02:18 - 2014-12-19 10:57 - 00788680 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2015-08-01 02:18 - 2014-12-19 10:25 - 00602776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00535640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00531616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00448792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00413248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00372408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00108944 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll 2015-08-01 02:18 - 2014-12-08 21:42 - 00038264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe 2015-08-01 02:18 - 2014-12-08 21:42 - 00033584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe 2015-08-01 02:17 - 2015-06-16 00:39 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-08-01 02:17 - 2015-06-16 00:38 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll 2015-08-01 02:17 - 2015-06-16 00:26 - 00633856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll 2015-08-01 02:17 - 2015-06-16 00:24 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-08-01 02:17 - 2015-06-16 00:02 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx 2015-08-01 02:17 - 2015-06-15 23:58 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll 2015-08-01 02:17 - 2015-06-15 23:57 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2015-08-01 02:17 - 2015-06-15 23:56 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2015-08-01 02:17 - 2015-06-15 23:55 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2015-08-01 02:17 - 2015-06-15 23:49 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2015-08-01 02:17 - 2015-06-15 23:41 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2015-08-01 02:17 - 2015-06-15 23:38 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2015-08-01 02:17 - 2015-06-15 23:36 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2015-08-01 02:17 - 2015-06-15 23:17 - 02880000 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2015-08-01 02:17 - 2015-06-15 23:16 - 02427392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-08-01 02:17 - 2015-06-15 23:15 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-08-01 02:17 - 2015-06-15 23:13 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll 2015-08-01 02:17 - 2015-06-15 23:04 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll 2015-08-01 02:17 - 2015-06-15 23:03 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-08-01 02:17 - 2015-06-15 22:52 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2015-08-01 02:17 - 2015-06-15 22:47 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx 2015-08-01 02:17 - 2015-06-15 22:44 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll 2015-08-01 02:17 - 2015-06-15 22:43 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2015-08-01 02:17 - 2015-06-15 22:42 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll 2015-08-01 02:17 - 2015-06-15 22:41 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2015-08-01 02:17 - 2015-06-15 22:37 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2015-08-01 02:17 - 2015-06-15 22:32 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll 2015-08-01 02:17 - 2015-06-15 22:31 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2015-08-01 02:17 - 2015-06-15 22:30 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2015-08-01 02:17 - 2015-06-15 22:30 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2015-08-01 02:17 - 2015-06-15 22:17 - 01048576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2015-08-01 02:17 - 2015-06-15 22:07 - 01951232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-08-01 02:17 - 2015-06-15 22:02 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2015-08-01 02:17 - 2015-05-23 05:14 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec 2015-08-01 02:17 - 2015-05-23 05:04 - 00620032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2015-08-01 02:17 - 2015-05-22 21:00 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec 2015-08-01 02:17 - 2015-05-22 20:47 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2015-08-01 02:17 - 2015-05-22 20:08 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2015-08-01 02:17 - 2015-05-01 01:05 - 00429568 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2015-08-01 02:17 - 2015-05-01 00:48 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll 2015-08-01 02:17 - 2015-04-21 18:13 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\inseng.dll 2015-08-01 02:17 - 2015-04-21 17:49 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2015-08-01 02:17 - 2015-04-10 02:34 - 02256896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2015-08-01 02:17 - 2015-04-10 02:11 - 01943040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2015-08-01 02:17 - 2015-03-20 05:49 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll 2015-08-01 02:17 - 2015-03-20 05:08 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll 2015-08-01 02:17 - 2015-03-20 04:37 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll 2015-08-01 02:17 - 2015-03-20 04:07 - 01091072 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2015-08-01 02:17 - 2015-03-20 03:56 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys 2015-08-01 02:17 - 2015-03-04 03:32 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll 2015-08-01 02:17 - 2015-03-04 03:12 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll 2015-08-01 02:17 - 2015-03-02 03:43 - 00222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastapi.dll 2015-08-01 02:17 - 2015-03-02 03:21 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastapi.dll 2015-08-01 02:17 - 2015-01-30 02:53 - 02819584 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2015-08-01 02:17 - 2015-01-29 03:58 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\photowiz.dll 2015-08-01 02:17 - 2015-01-29 03:29 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\photowiz.dll 2015-08-01 02:17 - 2015-01-29 03:04 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2015-08-01 02:17 - 2015-01-12 04:21 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll 2015-08-01 02:17 - 2015-01-12 03:45 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll 2015-08-01 02:17 - 2014-12-09 05:45 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scesrv.dll 2015-08-01 02:17 - 2014-12-09 03:56 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll 2015-08-01 02:16 - 2015-07-25 15:34 - 01084928 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2015-08-01 02:16 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-08-01 02:16 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-08-01 02:16 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-08-01 02:16 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-08-01 02:16 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-08-01 02:16 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-08-01 02:16 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-08-01 02:16 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-08-01 02:16 - 2015-07-02 00:08 - 05923840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-08-01 02:16 - 2015-07-01 23:14 - 04520448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-08-01 02:16 - 2015-06-30 00:43 - 00026288 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2015-08-01 02:16 - 2015-06-29 17:07 - 01145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2015-08-01 02:16 - 2015-06-29 17:07 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2015-08-01 02:16 - 2015-06-29 17:07 - 00433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2015-08-01 02:16 - 2015-06-29 17:07 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2015-08-01 02:16 - 2015-06-27 01:21 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2015-08-01 02:16 - 2015-06-27 01:21 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll 2015-08-01 02:16 - 2015-06-16 07:36 - 01661576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2015-08-01 02:16 - 2015-06-16 07:36 - 01212248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2015-08-01 02:16 - 2015-06-11 05:49 - 01380600 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2015-08-01 02:16 - 2015-06-10 18:13 - 01097216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2015-08-01 02:16 - 2015-05-21 15:08 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2015-08-01 02:16 - 2015-05-12 15:19 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2015-08-01 02:16 - 2015-05-11 18:34 - 00332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcpl.dll 2015-08-01 02:16 - 2015-05-07 18:47 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll 2015-08-01 02:16 - 2015-05-03 17:09 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-08-01 02:16 - 2015-05-03 16:58 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-08-01 02:16 - 2015-05-03 16:55 - 00971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2015-08-01 02:16 - 2015-05-03 16:49 - 00811008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll 2015-08-01 02:16 - 2015-04-28 15:13 - 00513480 _____ C:\WINDOWS\SysWOW64\locale.nls 2015-08-01 02:16 - 2015-04-28 15:13 - 00513480 _____ C:\WINDOWS\system32\locale.nls 2015-08-01 02:16 - 2015-04-25 04:34 - 00653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll 2015-08-01 02:16 - 2015-04-25 04:33 - 00549888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll 2015-08-01 02:16 - 2015-04-25 04:25 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usb8023.sys 2015-08-01 02:16 - 2015-04-23 17:47 - 03084288 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2015-08-01 02:16 - 2015-04-23 17:16 - 02471424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2015-08-01 02:16 - 2015-04-16 08:17 - 00325464 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS 2015-08-01 02:16 - 2015-04-14 00:37 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll 2015-08-01 02:16 - 2015-04-14 00:34 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authz.dll 2015-08-01 02:16 - 2015-04-10 02:40 - 01249280 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2015-08-01 02:16 - 2015-04-10 02:17 - 01018880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2015-08-01 02:16 - 2015-04-09 00:55 - 00410128 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2015-08-01 02:16 - 2015-04-09 00:41 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rgb9rast.dll 2015-08-01 02:16 - 2015-04-03 02:35 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll 2015-08-01 02:16 - 2015-04-03 02:14 - 00364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll 2015-08-01 02:16 - 2015-04-02 00:22 - 02985984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll 2015-08-01 02:16 - 2015-04-02 00:20 - 04417536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll 2015-08-01 02:16 - 2015-04-01 06:21 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2015-08-01 02:16 - 2015-04-01 06:18 - 00468480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll 2015-08-01 02:16 - 2015-04-01 06:17 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssphtb.dll 2015-08-01 02:16 - 2015-04-01 06:08 - 00774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll 2015-08-01 02:16 - 2015-04-01 05:46 - 03633664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2015-08-01 02:16 - 2015-04-01 05:45 - 01491456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll 2015-08-01 02:16 - 2015-04-01 05:17 - 02551808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2015-08-01 02:16 - 2015-04-01 05:17 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2015-08-01 02:16 - 2015-04-01 04:53 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll 2015-08-01 02:16 - 2015-04-01 04:53 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2015-08-01 02:16 - 2015-04-01 04:45 - 02749952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2015-08-01 02:16 - 2015-04-01 04:45 - 00699392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll 2015-08-01 02:16 - 2015-04-01 04:31 - 01207296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll 2015-08-01 02:16 - 2015-04-01 04:14 - 01920000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2015-08-01 02:16 - 2015-04-01 04:12 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2015-08-01 02:16 - 2015-03-23 23:59 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll 2015-08-01 02:16 - 2015-03-23 23:45 - 00257216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll 2015-08-01 02:16 - 2015-03-20 06:12 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll 2015-08-01 02:16 - 2015-03-20 06:10 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll 2015-08-01 02:16 - 2015-03-20 06:10 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll 2015-08-01 02:16 - 2015-03-20 05:17 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\tracerpt.exe 2015-08-01 02:16 - 2015-03-20 04:41 - 00369152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tracerpt.exe 2015-08-01 02:16 - 2015-03-20 04:40 - 00950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll 2015-08-01 02:16 - 2015-03-20 04:16 - 00749568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll 2015-08-01 02:16 - 2015-03-14 02:09 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2015-08-01 02:16 - 2015-03-13 06:03 - 00239424 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2015-08-01 02:16 - 2015-03-13 06:03 - 00154432 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2015-08-01 02:16 - 2015-03-13 04:58 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll 2015-08-01 02:16 - 2015-03-13 04:37 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll 2015-08-01 02:16 - 2015-03-13 04:02 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys 2015-08-01 02:16 - 2015-03-13 03:11 - 02162176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2015-08-01 02:16 - 2015-03-13 02:39 - 01812992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll 2015-08-01 02:16 - 2015-03-06 05:08 - 02067968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdshext.dll 2015-08-01 02:16 - 2015-03-06 04:47 - 01696256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2015-08-01 02:16 - 2015-03-06 04:43 - 01969664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpdshext.dll 2015-08-01 02:16 - 2015-03-04 12:25 - 00377152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2015-08-01 02:16 - 2015-03-04 05:04 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll 2015-08-01 02:16 - 2015-03-04 04:19 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll 2015-08-01 02:16 - 2015-02-24 10:32 - 00991552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2015-08-01 02:16 - 2015-02-21 01:49 - 00780800 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll 2015-08-01 02:16 - 2015-02-18 01:19 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll 2015-08-01 02:16 - 2015-02-08 01:57 - 01090048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2015-08-01 02:16 - 2015-02-08 01:49 - 00791040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2015-08-01 02:16 - 2015-02-03 02:03 - 03551744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2015-08-01 02:16 - 2015-02-03 02:02 - 04298240 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2015-08-01 02:16 - 2015-01-31 01:20 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2015-08-01 02:16 - 2015-01-30 05:01 - 00097792 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys 2015-08-01 02:16 - 2015-01-30 05:00 - 00167424 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys 2015-08-01 02:16 - 2015-01-30 04:03 - 01488896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42u.dll 2015-08-01 02:16 - 2015-01-30 04:03 - 01464832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42.dll 2015-08-01 02:16 - 2015-01-30 04:02 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll 2015-08-01 02:16 - 2015-01-30 03:44 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42u.dll 2015-08-01 02:16 - 2015-01-30 03:42 - 01204224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42.dll 2015-08-01 02:16 - 2015-01-30 03:40 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll 2015-08-01 02:16 - 2015-01-30 03:37 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll 2015-08-01 02:16 - 2015-01-30 03:29 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atlthunk.dll 2015-08-01 02:16 - 2015-01-30 03:24 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll 2015-08-01 02:16 - 2015-01-30 03:24 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll 2015-08-01 02:16 - 2015-01-30 03:16 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll 2015-08-01 02:16 - 2015-01-30 03:08 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll 2015-08-01 02:16 - 2015-01-30 03:06 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll 2015-08-01 02:16 - 2015-01-29 20:45 - 01763352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2015-08-01 02:16 - 2015-01-29 20:34 - 01488040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2015-08-01 02:16 - 2015-01-28 04:24 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageContextHandler.dll 2015-08-01 02:16 - 2015-01-28 03:47 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StorageContextHandler.dll 2015-08-01 02:16 - 2015-01-28 03:31 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll 2015-08-01 02:16 - 2015-01-28 03:11 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll 2015-08-01 02:16 - 2015-01-28 01:47 - 02501368 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2015-08-01 02:16 - 2015-01-28 01:41 - 02207488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2015-08-01 02:16 - 2015-01-27 06:22 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2015-08-01 02:16 - 2015-01-27 04:11 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2015-08-01 02:16 - 2014-12-19 08:26 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2015-08-01 02:16 - 2014-12-12 04:04 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe 2015-08-01 02:16 - 2014-12-11 07:36 - 00046456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentServer.exe 2015-08-01 02:16 - 2014-12-06 05:17 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll 2015-08-01 02:16 - 2014-12-06 03:41 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll 2015-08-01 02:16 - 2014-11-04 21:25 - 00059712 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdclass.sys 2015-08-01 02:16 - 2014-11-04 21:25 - 00051008 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouclass.sys 2015-08-01 02:16 - 2014-11-04 08:55 - 00026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sermouse.sys 2015-08-01 02:16 - 2014-11-04 08:54 - 00108544 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\i8042prt.sys 2015-08-01 02:16 - 2014-11-04 08:54 - 00032256 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys 2015-08-01 02:16 - 2014-11-04 08:54 - 00030208 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouhid.sys 2015-08-01 02:16 - 2014-10-29 03:57 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntvdm64.dll 2015-08-01 02:16 - 2014-10-29 03:15 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntvdm64.dll 2015-08-01 02:16 - 2014-10-29 03:15 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wow32.dll 2015-08-01 02:16 - 2014-10-29 03:14 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user.exe 2015-08-01 02:16 - 2014-10-29 03:13 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setup16.exe 2015-08-01 02:16 - 2014-10-29 03:13 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\instnm.exe 2015-08-01 02:16 - 2014-07-24 05:20 - 00875688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll 2015-08-01 02:16 - 2014-07-24 05:20 - 00869544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll 2015-08-01 02:16 - 2014-06-10 00:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2015-08-01 02:16 - 2014-06-10 00:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2015-08-01 02:14 - 2015-05-03 17:07 - 07784448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2015-08-01 02:14 - 2015-05-03 16:57 - 05264384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2015-08-01 02:10 - 2015-08-01 02:10 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2015-08-01 02:09 - 2015-08-01 02:09 - 00001454 _____ C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-08-01 02:09 - 2015-08-01 02:09 - 00000401 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat 2015-08-01 02:09 - 2015-08-01 02:09 - 00000020 ___SH C:\Users\Rod\ntuser.ini 2015-08-01 02:09 - 2015-08-01 02:09 - 00000000 ____D C:\WINDOWS\System32\Tasks\WPD 2015-08-01 02:05 - 2015-08-01 02:05 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Vorlagen 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Startmenü 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Programme 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\ProgramData\Vorlagen 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\ProgramData\Startmenü 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\ProgramData\Dokumente 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2015-08-01 02:04 - 2015-08-01 02:04 - 00000000 _SHDL C:\Dokumente und Einstellungen 2015-08-01 02:03 - 2015-08-01 02:03 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat 2015-08-01 02:02 - 2015-08-01 02:02 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2015-08-01 02:01 - 2015-08-01 02:01 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate 2015-08-01 02:00 - 2015-08-16 11:57 - 00000000 ____D C:\Users\Rod 2015-08-01 02:00 - 2015-08-01 23:44 - 00035474 _____ C:\WINDOWS\diagerr.xml 2015-08-01 02:00 - 2015-08-01 23:44 - 00035373 _____ C:\WINDOWS\diagwrn.xml 2015-08-01 02:00 - 2015-08-01 02:01 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-01 02:00 - 2015-08-01 02:01 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-08-01 02:00 - 2015-08-01 02:01 - 00000000 ___RD C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-01 02:00 - 2015-08-01 02:01 - 00000000 ___RD C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Vorlagen 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Startmenü 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Netzwerkumgebung 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Lokale Einstellungen 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Eigene Dateien 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Druckumgebung 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Musik 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Bilder 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Verlauf 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Anwendungsdaten 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\UpdatusUser\Anwendungsdaten 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Vorlagen 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Startmenü 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Netzwerkumgebung 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Lokale Einstellungen 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Eigene Dateien 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Druckumgebung 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Documents\Eigene Musik 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Documents\Eigene Bilder 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\AppData\Local\Verlauf 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\AppData\Local\Anwendungsdaten 2015-08-01 02:00 - 2015-08-01 02:00 - 00000000 _SHDL C:\Users\Rod\Anwendungsdaten 2015-08-01 02:00 - 2014-11-21 12:52 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-01 02:00 - 2014-11-21 12:52 - 00000000 ___RD C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-01 02:00 - 2014-11-21 05:42 - 00000369 _____ C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2015-08-01 02:00 - 2014-11-21 05:42 - 00000369 _____ C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2015-08-01 02:00 - 2014-11-21 05:42 - 00000369 _____ C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2015-08-01 02:00 - 2014-11-21 05:42 - 00000369 _____ C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2015-08-01 02:00 - 2013-08-22 17:36 - 00000000 ____D C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-08-01 02:00 - 2013-08-22 17:36 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-08-01 01:58 - 2015-08-17 19:15 - 01552857 _____ C:\WINDOWS\WindowsUpdate.log 2015-08-01 01:58 - 2015-08-01 02:01 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2015-08-01 01:58 - 2015-08-01 02:01 - 00000000 ____D C:\Program Files\Intel 2015-08-01 01:58 - 2015-08-01 02:01 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2015-08-01 01:58 - 2015-08-01 02:01 - 00000000 ____D C:\Program Files (x86)\Intel 2015-08-01 01:58 - 2015-08-01 01:58 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_btmhsfw_01011.Wdf 2015-08-01 01:58 - 2015-08-01 01:58 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2015-08-01 01:58 - 2015-08-01 01:58 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2015-08-01 01:58 - 2015-08-01 01:58 - 00000000 ____D C:\Program Files\Realtek 2015-08-01 01:58 - 2015-08-01 01:58 - 00000000 ____D C:\Program Files\Elantech 2015-08-01 01:58 - 2015-03-19 21:02 - 00086528 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL 2015-08-01 01:58 - 2015-03-19 21:02 - 00082432 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL 2015-08-01 01:48 - 2015-08-01 02:04 - 00006523 _____ C:\WINDOWS\comsetup.log 2015-08-01 01:42 - 2015-08-01 01:42 - 00000000 ____D C:\ProgramData\EA Core 2015-08-01 01:16 - 2015-08-02 22:05 - 00348360 _____ C:\WINDOWS\SysWOW64\PnkBstrB.exe 2015-08-01 01:16 - 2015-08-02 22:05 - 00280904 _____ C:\WINDOWS\SysWOW64\PnkBstrB.ex0 2015-08-01 01:16 - 2015-08-02 21:44 - 00076152 _____ C:\WINDOWS\SysWOW64\PnkBstrA.exe 2015-08-01 01:16 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll 2015-08-01 01:16 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll 2015-08-01 01:16 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll 2015-08-01 01:16 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll 2015-08-01 01:16 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll 2015-08-01 01:16 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll 2015-08-01 01:16 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll 2015-08-01 01:16 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll 2015-08-01 01:16 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll 2015-08-01 01:16 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll 2015-08-01 01:16 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll 2015-08-01 01:16 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll 2015-08-01 01:16 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll 2015-08-01 01:16 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll 2015-08-01 01:16 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll 2015-08-01 01:16 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll 2015-08-01 01:16 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll 2015-08-01 01:16 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll 2015-08-01 01:16 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll 2015-08-01 01:16 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll 2015-08-01 01:16 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll 2015-08-01 01:16 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll 2015-08-01 01:16 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll 2015-08-01 01:16 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll 2015-08-01 01:16 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll 2015-08-01 01:16 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll 2015-08-01 01:16 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll 2015-08-01 01:16 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll 2015-08-01 01:16 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll 2015-08-01 01:16 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll 2015-08-01 01:16 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll 2015-08-01 01:16 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll 2015-08-01 01:16 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll 2015-08-01 01:16 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll 2015-08-01 01:16 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll 2015-08-01 01:16 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll 2015-08-01 01:16 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll 2015-08-01 01:16 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll 2015-08-01 01:16 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll 2015-08-01 01:16 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll 2015-08-01 01:16 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll 2015-08-01 01:16 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll 2015-08-01 01:16 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll 2015-08-01 01:16 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll 2015-08-01 01:16 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll 2015-08-01 01:16 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll 2015-08-01 01:16 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll 2015-08-01 01:16 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll 2015-08-01 01:16 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll 2015-08-01 01:16 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll 2015-08-01 01:16 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll 2015-08-01 01:16 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll 2015-08-01 01:16 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll 2015-08-01 01:16 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll 2015-08-01 01:16 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll 2015-08-01 01:16 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll 2015-08-01 01:16 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll 2015-08-01 01:16 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll 2015-08-01 01:16 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll 2015-08-01 01:16 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll 2015-08-01 01:16 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll 2015-08-01 01:16 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll 2015-08-01 01:16 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll 2015-08-01 01:16 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll 2015-08-01 01:16 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll 2015-08-01 01:16 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll 2015-08-01 01:16 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll 2015-08-01 01:16 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll 2015-08-01 01:16 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll 2015-08-01 01:16 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll 2015-08-01 01:16 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll 2015-08-01 01:16 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll 2015-08-01 01:16 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll 2015-08-01 01:16 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll 2015-08-01 01:16 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll 2015-08-01 01:16 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll 2015-08-01 01:16 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll 2015-08-01 01:16 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll 2015-08-01 01:16 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll 2015-08-01 01:16 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll 2015-08-01 01:16 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll 2015-08-01 01:16 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll 2015-08-01 01:16 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll 2015-08-01 01:16 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll 2015-08-01 01:16 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll 2015-08-01 01:16 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll 2015-08-01 01:16 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll 2015-08-01 01:16 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll 2015-08-01 01:16 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll 2015-08-01 01:16 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll 2015-08-01 01:16 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll 2015-08-01 01:16 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll 2015-08-01 01:16 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll 2015-08-01 01:16 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll 2015-08-01 01:16 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll 2015-08-01 01:16 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll 2015-08-01 01:16 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll 2015-08-01 01:16 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll 2015-08-01 01:16 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll 2015-08-01 01:16 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll 2015-08-01 01:16 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll 2015-08-01 01:16 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll 2015-08-01 01:16 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll 2015-08-01 01:16 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll 2015-08-01 01:16 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll 2015-08-01 01:16 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll 2015-08-01 01:16 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll 2015-08-01 01:16 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll 2015-08-01 01:16 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll 2015-08-01 01:16 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll 2015-08-01 01:16 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll 2015-08-01 01:16 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll 2015-08-01 01:16 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll 2015-08-01 01:16 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll 2015-08-01 01:16 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll 2015-08-01 01:16 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll 2015-08-01 01:16 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll 2015-08-01 01:16 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll 2015-08-01 01:16 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll 2015-08-01 01:16 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll 2015-08-01 01:16 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll 2015-08-01 01:16 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll 2015-08-01 01:16 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll 2015-08-01 01:16 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll 2015-08-01 01:16 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll 2015-08-01 01:16 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll 2015-08-01 01:16 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll 2015-08-01 01:16 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll 2015-08-01 01:16 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll 2015-08-01 01:16 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll 2015-08-01 01:16 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll 2015-08-01 01:16 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll 2015-08-01 01:16 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll 2015-08-01 01:16 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll 2015-08-01 01:16 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll 2015-08-01 01:16 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll 2015-08-01 01:16 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll 2015-08-01 01:16 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll 2015-08-01 01:16 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll 2015-08-01 01:16 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll 2015-08-01 01:16 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll 2015-08-01 01:16 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll 2015-08-01 01:16 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll 2015-08-01 01:16 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll 2015-08-01 01:16 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll 2015-08-01 01:16 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll 2015-08-01 01:16 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll 2015-08-01 00:40 - 2015-08-01 00:40 - 00000017 _____ C:\Users\Rod\AppData\Local\resmon.resmoncfg 2015-08-01 00:10 - 2015-08-15 12:53 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2015-08-01 00:10 - 2015-08-01 00:10 - 00001163 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-08-01 00:10 - 2015-08-01 00:10 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Mozilla 2015-08-01 00:10 - 2015-08-01 00:10 - 00000000 ____D C:\Users\Rod\AppData\Local\Mozilla 2015-08-01 00:10 - 2015-08-01 00:10 - 00000000 ____D C:\ProgramData\Mozilla 2015-08-01 00:10 - 2015-08-01 00:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-08-01 00:10 - 2015-08-01 00:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-08-01 00:08 - 2015-08-01 00:08 - 00242928 _____ C:\Users\Rod\Downloads\Firefox Setup Stub 39.0.exe 2015-07-31 23:56 - 2015-08-16 14:14 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1054307018-325505745-2950437668-1002 2015-07-31 23:54 - 2015-07-31 23:54 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Macromedia 2015-07-31 23:30 - 2015-08-05 20:46 - 00000000 ____D C:\Users\Rod\Documents\Youcam 2015-07-31 23:30 - 2015-07-31 23:30 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Intel Corporation 2015-07-31 23:30 - 2015-07-31 23:30 - 00000000 ____D C:\Users\Rod\AppData\Local\CyberLink 2015-07-31 23:28 - 2015-07-31 23:28 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Adobe 2015-07-31 23:28 - 2015-07-31 23:28 - 00000000 ____D C:\Users\Rod\AppData\Local\Power2Go8 2015-07-31 23:28 - 2015-07-31 23:28 - 00000000 ____D C:\Users\Rod\AppData\Local\MSI 2015-07-31 23:28 - 2012-08-11 06:25 - 00001193 _____ C:\Users\Default\Desktop\ALDI Foto.lnk 2015-07-31 23:28 - 2012-08-11 06:25 - 00001193 _____ C:\Users\Default User\Desktop\ALDI Foto.lnk 2015-07-31 23:28 - 2012-08-11 06:20 - 00001251 _____ C:\Users\Rod\Desktop\Medion Services.lnk 2015-07-31 23:28 - 2012-08-11 06:20 - 00001251 _____ C:\Users\Default\Desktop\Medion Services.lnk 2015-07-31 23:28 - 2012-08-11 06:20 - 00001251 _____ C:\Users\Default User\Desktop\Medion Services.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001809 _____ C:\Users\Rod\Desktop\ALDI Talk.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001809 _____ C:\Users\Default\Desktop\ALDI Talk.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001809 _____ C:\Users\Default User\Desktop\ALDI Talk.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001093 _____ C:\Users\Default\Desktop\ALDI Nord Reisen.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001093 _____ C:\Users\Default User\Desktop\ALDI Nord Reisen.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001037 _____ C:\Users\Default\Desktop\ALDI Nord Startseite.lnk 2015-07-31 23:28 - 2012-08-05 14:08 - 00001037 _____ C:\Users\Default User\Desktop\ALDI Nord Startseite.lnk 2015-07-31 23:28 - 2012-08-05 13:39 - 00001893 _____ C:\Users\Default\Desktop\ALDI Nord Blumen Service.lnk 2015-07-31 23:28 - 2012-08-05 13:39 - 00001893 _____ C:\Users\Default User\Desktop\ALDI Nord Blumen Service.lnk 2015-07-31 23:27 - 2015-08-14 21:51 - 00000000 ____D C:\Users\Rod\AppData\Local\Packages 2015-07-31 23:27 - 2015-07-31 23:27 - 00000000 ____D C:\Users\Rod\AppData\Roaming\Intel 2015-07-31 23:27 - 2015-07-31 23:27 - 00000000 ____D C:\Users\Rod\AppData\Local\VirtualStore 2015-07-31 23:17 - 2015-08-01 02:09 - 00000000 ____D C:\Intel 2015-07-31 23:17 - 2015-08-01 01:52 - 00846784 _____ C:\WINDOWS\WindowsUpdate (1).log 2015-07-31 23:17 - 2015-07-31 23:17 - 00002324 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1054307018-325505745-2950437668-500 ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-17 19:17 - 2013-10-28 14:55 - 00000000 ____D C:\ProgramData\Bigfoot Networks 2015-08-17 19:16 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-08-17 19:08 - 2014-11-21 05:35 - 01780340 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-08-17 19:08 - 2014-11-21 04:45 - 00766620 _____ C:\WINDOWS\system32\perfh007.dat 2015-08-17 19:08 - 2014-11-21 04:45 - 00159902 _____ C:\WINDOWS\system32\perfc007.dat 2015-08-17 19:04 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-08-17 07:00 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2015-08-17 05:00 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru 2015-08-17 02:52 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache 2015-08-15 13:36 - 2014-11-20 20:24 - 00026370 _____ C:\WINDOWS\PFRO.log 2015-08-15 12:55 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\schemas 2015-08-14 21:56 - 2013-08-22 16:44 - 00342000 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-08-14 21:51 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-08-13 12:26 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-13 12:26 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-13 12:26 - 2013-03-22 19:03 - 132483416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-08-09 13:10 - 2013-03-25 10:23 - 00080489 _____ C:\WINDOWS\DirectX.log 2015-08-08 15:55 - 2014-11-21 13:01 - 00794088 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-08-08 15:55 - 2014-11-21 13:01 - 00179688 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-08-05 21:07 - 2013-10-28 16:34 - 00000000 ____D C:\Users\Public\Documents\CyberLink 2015-08-05 21:07 - 2013-10-28 16:26 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HomeCinema 2015-08-05 21:07 - 2013-10-28 16:26 - 00000000 ____D C:\ProgramData\CLSK 2015-08-05 21:07 - 2013-03-25 12:31 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-08-05 21:06 - 2013-10-28 16:26 - 00000000 ____D C:\ProgramData\CyberLink 2015-08-05 21:05 - 2013-09-18 17:07 - 00000000 ____D C:\Program Files\CyberLink 2015-08-05 20:59 - 2013-10-28 14:57 - 00000000 ____D C:\ProgramData\Package Cache 2015-08-04 00:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-08-02 01:39 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppCompat 2015-08-01 06:37 - 2013-10-28 16:35 - 00000000 ____D C:\Users\Public\CyberLink 2015-08-01 02:57 - 2013-08-22 17:36 - 00262144 _____ C:\WINDOWS\system32\config\BCD-Template 2015-08-01 02:31 - 2014-11-21 05:13 - 00000000 ____D C:\Program Files\Windows Journal 2015-08-01 02:31 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\restore 2015-08-01 02:19 - 2013-10-28 14:52 - 00000000 ____D C:\WINDOWS\SysWOW64\NV 2015-08-01 02:19 - 2013-10-28 14:52 - 00000000 ____D C:\WINDOWS\system32\NV 2015-08-01 02:18 - 2014-11-21 12:51 - 00000000 ___SD C:\WINDOWS\system32\CompatTel 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\WinStore 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-RS 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-CS 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Defender 2015-08-01 02:18 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2015-08-01 02:18 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2015-08-01 02:18 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM 2015-08-01 02:04 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Registration 2015-08-01 02:04 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows NT 2015-08-01 02:04 - 2013-08-22 15:36 - 00000000 __RHD C:\Users\Default 2015-08-01 02:03 - 2013-08-22 17:36 - 00000000 __RSD C:\WINDOWS\Media 2015-08-01 02:03 - 2013-08-22 17:36 - 00000000 __RHD C:\Users\Public\Libraries 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\system32\winrm 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\system32\WCN 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\system32\slmgr 2015-08-01 02:02 - 2014-11-21 04:45 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts 2015-08-01 02:02 - 2013-10-28 16:30 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PhotoDirector 3 2015-08-01 02:02 - 2013-10-28 16:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Medion MediaPack 3 2015-08-01 02:02 - 2013-10-28 14:57 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless 2015-08-01 02:02 - 2013-10-28 14:56 - 00000000 ____D C:\WINDOWS\SysWOW64\sda 2015-08-01 02:02 - 2013-10-28 14:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby 2015-08-01 02:02 - 2013-10-28 14:44 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2015-08-01 02:02 - 2013-09-18 17:07 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2015-08-01 02:02 - 2013-08-22 17:37 - 00005217 _____ C:\WINDOWS\DtcInstall.log 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\IME 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\en-GB 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\spool 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\MUI 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\IME 2015-08-01 02:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\en-GB 2015-08-01 02:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\SysWOW64\SMI 2015-08-01 02:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe 2015-08-01 02:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2015-08-01 02:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2015-08-01 02:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\oobe 2015-08-01 02:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\Dism 2015-08-01 02:02 - 2013-05-07 15:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-08-01 02:02 - 2012-07-26 11:43 - 00000000 ____D C:\WINDOWS\en-GB 2015-08-01 02:02 - 2012-07-26 07:37 - 00000000 ____D C:\Users\Default.migrated 2015-08-01 02:01 - 2013-10-28 14:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Qualcomm Atheros 2015-08-01 02:01 - 2013-08-22 17:43 - 00000000 ____D C:\WINDOWS\DigitalLocker 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 __SHD C:\Program Files\Windows Sidebar 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\Recovery 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\IME 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Help 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\System 2015-08-01 02:01 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2015-08-01 02:01 - 2013-03-22 14:27 - 00000000 ____D C:\ProgramData\PRICache 2015-08-01 01:59 - 2014-01-15 23:34 - 00000000 ____D C:\Recovery 2015-07-31 23:24 - 2013-03-22 15:22 - 00782014 _____ C:\WINDOWS\system32\perfh010.dat 2015-07-31 23:24 - 2013-03-22 15:22 - 00153144 _____ C:\WINDOWS\system32\perfc010.dat 2015-07-31 23:24 - 2013-03-22 15:17 - 00791060 _____ C:\WINDOWS\system32\perfh00C.dat 2015-07-31 23:24 - 2013-03-22 15:17 - 00155620 _____ C:\WINDOWS\system32\perfc00C.dat 2015-07-31 23:18 - 2013-10-28 14:49 - 00000000 ____D C:\ProgramData\NVIDIA ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-08-01 00:40 - 2015-08-01 00:40 - 0000017 _____ () C:\Users\Rod\AppData\Local\resmon.resmoncfg 2013-10-28 14:52 - 2013-10-28 14:52 - 0000000 ____H () C:\ProgramData\DP45977C.lfl 2015-08-05 21:03 - 2015-08-05 21:03 - 0000032 _____ () C:\ProgramData\Temp.log 2013-10-28 16:30 - 2013-10-28 16:30 - 0000104 _____ () C:\ProgramData\{01FB4998-33C4-4431-85ED-079E3EEFE75D}.log 2013-10-28 16:30 - 2013-10-28 16:30 - 0000119 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log 2013-10-28 16:27 - 2013-10-28 16:28 - 0000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log 2013-10-28 16:30 - 2013-10-28 16:30 - 0000111 _____ () C:\ProgramData\{39337565-330E-4ab6-A9AE-AC81E0720B10}.log 2013-10-28 16:29 - 2013-10-28 16:29 - 0000032 _____ () C:\ProgramData\{551F492A-01B0-4DC4-866F-875EC4EDC0A8}.log 2013-10-28 16:26 - 2013-10-28 16:26 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log 2013-10-28 16:29 - 2013-10-28 16:29 - 0000108 _____ () C:\ProgramData\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}.log 2013-10-28 16:27 - 2013-10-28 16:27 - 0000110 _____ () C:\ProgramData\{E3739848-5329-48E3-8D28-5BBD6E8BE384}.log 2013-10-28 16:28 - 2013-10-28 16:28 - 0000110 _____ () C:\ProgramData\{E3D04529-6EDB-11D8-A372-0050BAE317E1}.log Einige Dateien in TEMP: ==================== C:\Users\Rod\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-08-17 19:15 ==================== Ende von Ergebnis ============================ |
18.08.2015, 10:43 | #13 |
/// the machine /// TB-Ausbilder | quick_star im Browser Java updaten. Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter D:\Downloads\Adobe Flash Player Setup.exe D:\Downloads\Skype - CHIP-Installer.exe D:\Downloads\Windows 10 Final 64 Bit - CHIP-Installer.exe D:\PartitionWizard\Partition Wizard Home Edition - CHIP-Installer.exe G:\Download D\Firefox_37.0.1_einrichten.exe G:\Download D\Windows Product Key Viewer - CHIP-Installer.exe Emptytemp: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Downloadverhalten überdenken: CHIP-Installer - was ist das? - Anleitungen Cleanup: (Die Reihenfolge ist hier entscheidend) Falls Defogger verwendet wurde: Erneut starten und auf Re-enable klicken. Falls Combofix verwendet wurde: Combofix deinstallieren .
Alle Logs gepostet? Dann lade Dir bitte DelFix herunter.
Hinweis: DelFix entfernt u.a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst. Starte Deinen Rechner abschließend neu. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein, kannst Du diese bedenkenlos löschen. Wenn Du möchtest, kannst Du hier sagen, ob Du mit mir und meiner Hilfe zufrieden warst...und/oder das Forum mit einer kleinen Spende unterstützen. Absicherung: Beim Betriebsystem Windows die automatischen Updates aktivieren. Auch die sicherheitsrelevante Software sollte immer nur in der aktuellsten Version vorliegen: Browser Java Flash-Player PDF-Reader Sicherheitslücken in deren alten Versionen werden dazu ausgenutzt, um beim einfachen Besuch einer manipulierten Website per "Drive-by" Malware zu installieren. Ich empfehle z.B. die Verwendung von Mozilla Firefox statt des Internet Explorers. Zudem lassen sich mit dem Firefox auch PDF-Dokumente öffnen. Aktiviere eine Firewall. Die in Windows integrierte genügt im Normalfall völlig. Verwende ein Antivirusprogramm mit Echtzeitscanner und stets aktueller Signaturendatenbank. Meine Empfehlung: Emsisoft Zusätzlich kannst Du Deinen PC regelmäßig mit Malwarebytes Anti-Malware und ESET scannen. Optional: NoScript verhindert das Ausführen von aktiven Inhalten (Java, JavaScript, Flash,...) für sämtliche Websites. Man kann aber nach dem Prinzip einer Whitelist festlegen, auf welchen Seiten Scripts erlaubt werden sollen. Malwarebytes Anti Exploit: Schützt die Anwendungen des Computers vor der Ausnutzung bekannter Schwachstellen. Lade Software von einem sauberen Portal wie . Wähle beim Installieren von Software immer die benutzerdefinierte Option und entferne den Haken bei allen optional angebotenen Toolbars oder sonstigen, fürs Programm, irrelevanten Ergänzungen. Um Adware wieder los zu werden, empfiehlt sich zunächst die Deinstallation sowie die anschließende Resteentfernung mit Adwarecleaner . Abschließend noch ein paar grundsätzliche Bemerkungen: Ändere regelmäßig Deine wichtigen Online-Passwörter und erstelle regelmäßig Backups Deiner wichtigen Dateien oder des Systems. Der Nutzen von Registry-Cleanern, Optimizern usw. zur Performancesteigerung ist umstritten. Ich empfehle deshalb, die Finger von der Registry zu lassen und lieber die windowseigene Datenträgerbereinigung zu verwenden.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
19.08.2015, 18:32 | #14 |
| quick_star im Browser Danke für die Info Hätte sogar gedacht wir wäre durch... Code:
ATTFilter Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version:16-08-2015 durchgeführt von Rod (2015-08-19 19:27:42) Run:1 Gestartet von D:\FRST64Bit Geladene Profile: UpdatusUser & Rod (Verfügbare Profile: UpdatusUser & Rod) Start-Modus: Normal ============================================== fixlist Inhalt: ***************** D:\Downloads\Adobe Flash Player Setup.exe D:\Downloads\Skype - CHIP-Installer.exe D:\Downloads\Windows 10 Final 64 Bit - CHIP-Installer.exe D:\PartitionWizard\Partition Wizard Home Edition - CHIP-Installer.exe G:\Download D\Firefox_37.0.1_einrichten.exe G:\Download D\Windows Product Key Viewer - CHIP-Installer.exe Emptytemp: ***************** D:\Downloads\Adobe Flash Player Setup.exe => erfolgreich verschoben. D:\Downloads\Skype - CHIP-Installer.exe => erfolgreich verschoben. D:\Downloads\Windows 10 Final 64 Bit - CHIP-Installer.exe => erfolgreich verschoben. D:\PartitionWizard\Partition Wizard Home Edition - CHIP-Installer.exe => erfolgreich verschoben. "G:\Download D\Firefox_37.0.1_einrichten.exe" => Datei/Ordner nicht gefunden. "G:\Download D\Windows Product Key Viewer - CHIP-Installer.exe" => Datei/Ordner nicht gefunden. EmptyTemp: => 476.3 MB temporäre Dateien entfernt. Das System musste neu gestartet werden.. ==== Ende von Fixlog 19:27:56 ==== |
20.08.2015, 12:40 | #15 |
/// the machine /// TB-Ausbilder | quick_star im Browser sind wir ja auch
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu quick_star im Browser |
arbeit, bereits, bleibe, browser, deinstalliert, einfach, eingestellt, entferne, entfernen, firefox, freunde, geladen, helft, neue, neuen, niemals, normalen, programm, quick, reste, seite, start, tab, unerwünschtes programm, wisst |