|
Plagegeister aller Art und deren Bekämpfung: HILFE ! fremder host hat sämtliche Geräte eingenommen !!Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
17.09.2015, 09:13 | #1 |
| HILFE ! fremder host hat sämtliche Geräte eingenommen !! Guten Tag, ich weiß nicht was ich tun soll und hoffe ihr könnt mir helfen. habe diese Woche festgestellt das sich sich irgendwer oder was hat sich als benutzer an meinen PC angemeldet und sämtliche Funktionen übernommen. Der Benutzername ähnelt meinen auch sehr (hat nur einen Buchstaben weniger). Egal was ich tue oder unternehme, nach einem Neustart ist alles beim alten. Das schlimmste an der Sache ist da ich mit WLAN verbunden war spinnen jetzt mein Handy und mein Tablet auch. Mir kommt es auch so vor als ob ich auf allen Geräten einen " fremden" Google Browser hab. Da ich nicht gerade der PC Experte bin habe ich jetzt alle geräte + Router aus gemacht und vom Strom genommen. Hier hab ich noch ein paar Daten die ich von meinem Handy noch schnell abgeschrieben hab, gefunden in den Einstellungen unter Info: Kernel Version: 3.4.67 android@localhost#1 Thu Dec 11 13:34:58 CST 2014 Build Nr.: SW-W 98601C5_V009_M11_Archos <-- Archos = Handymarke hardware Version 98601-1-11 Baseband Version: MOLY.WR8.W1315.MP.WG.MP.V34.P23. Ich schreibe jetzt gerade bei Bekannten diesen Post und kann daher nicht allzu oft online sein. Hoffe um schnelle Hilfe. Werde heute Mittag nochmal on sein. Vielen Dank im vorraus |
17.09.2015, 10:19 | #2 |
/// the machine /// TB-Ausbilder | HILFE ! fremder host hat sämtliche Geräte eingenommen !! hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
17.09.2015, 11:58 | #3 |
| HILFE ! fremder host hat sämtliche Geräte eingenommen !!__________________ |
17.09.2015, 14:14 | #4 |
| HILFE ! fremder host hat sämtliche Geräte eingenommen !! Hallo, ich kann nur die Addition.txt hochladen, bei der FRST.txt meckert er. Fehler beim Hochladen FRST.txt: Die Datei, die Sie anhängen möchten, ist zu groß. Die maximale Dateigröße für diesen Dateityp beträgt 97,7 KB. Ihre Datei ist 151,8 KB groß. Info: Habe vergessen beim ersten Post zu erwähnen das ich auch noch einen Laptop besitze. Die Addition.txt + frst.txt lade ich als nächstes hoch. MfG |
17.09.2015, 14:18 | #5 |
| HILFE ! fremder host hat sämtliche Geräte eingenommen !! Anhang 76064 Hier vom Laptop. Auch hier dasselbe mit der fsrt.txt FRST.txt: Die Datei, die Sie anhängen möchten, ist zu groß. Die maximale Dateigröße für diesen Dateityp beträgt 97,7 KB. Ihre Datei ist 134,6 KB groß. MfG |
18.09.2015, 02:33 | #6 |
| HILFE ! fremder host hat sämtliche Geräte eingenommen !! Log File falsch geteilt Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:15-09-2015 durchgeführt von husse (Administrator) auf DESKTOP-7AC9HGK (17-09-2015 12:41:45) Gestartet von C:\Users\husse\Desktop Geladene Profile: husse (Verfügbare Profile: husse) Platform: Windows 10 Home (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (AMD) C:\Windows\System32\atiesrxx.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (Zemana Ltd.) C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [ZAM] => C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe [12326768 2015-08-30] (Zemana Ltd.) HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: Hosts Datei wurde nicht im Standardordner gefunden Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{37cf02e2-bee3-4922-8a33-cb25dceb4e68}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{e3e1174e-5f39-4d51-84b4-29ad479e1398}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130865860293769909&GUID=A1A9C3DE-FD5D-4F96-B999-67DF1661B804 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130865860293772432&GUID=A1A9C3DE-FD5D-4F96-B999-67DF1661B804 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130865860293787265&GUID=A1A9C3DE-FD5D-4F96-B999-67DF1661B804 HKU\S-1-5-21-691138828-2723297468-122099846-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130864882459836890&GUID=A1A9C3DE-FD5D-4F96-B999-67DF1661B804 SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = FireFox: ======== FF ProfilePath: C:\Users\husse\AppData\Roaming\Mozilla\Firefox\Profiles\u4y6kurs.default-1442009551124 FF Homepage: www.google.de FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2015-01-13] (EA Digital Illusions CE AB) FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB) FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN) FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2015-01-13] (EA Digital Illusions CE AB) FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB) FF Plugin-x32: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npNxGameEU.dll [2015-09-14] (Nexon) ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [887128 2015-09-12] (Avira Operations GmbH & Co. KG) S2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [461672 2015-09-12] (Avira Operations GmbH & Co. KG) S2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [461672 2015-09-12] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1213072 2015-09-12] (Avira Operations GmbH & Co. KG) S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1268568 2015-06-18] (Disc Soft Ltd) S2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation) U2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2057736 2015-09-14] (Electronic Arts) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2015-09-14] () R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.) R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [36504 2015-09-11] (VIA Technologies, Inc.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation) R2 ZAMSvc; C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe [12326768 2015-08-30] (Zemana Ltd.) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 amdacpksd; C:\Windows\system32\drivers\amdacpksd.sys [306424 2015-08-09] (Advanced Micro Devices) S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [31992 2015-06-03] (Advanced Micro Devices, Inc.) R2 AODDriver4.3; C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices) R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-09-11] (Advanced Micro Devices) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [137288 2015-09-12] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [148632 2015-09-12] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2014-11-24] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [43576 2015-09-12] (Avira Operations GmbH & Co. KG) R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2015-09-11] (Disc Soft Ltd) R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-09-11] (REALiX(tm)) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [113880 2015-09-15] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation) R3 netr28x; C:\Windows\System32\drivers\netr28x.sys [2512016 2015-07-10] (MediaTek Inc.) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [587264 2015-07-10] (Realtek ) S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] () S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation) S3 xhunter1; C:\Windows\xhunter1.sys [37416 2015-09-14] (Wellbia.com Co., Ltd.) R1 ZAM; C:\Windows\System32\drivers\zam64.sys [109432 2015-09-16] (Zemana Ltd.) R1 ZAM_Guard; C:\Windows\System32\drivers\zamguard64.sys [109432 2015-09-16] (Zemana Ltd.) S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 GDPkIcpt; \??\C:\Windows\system32\drivers\PktIcpt.sys [X] S3 SANDRA; \??\C:\Program Files\SiSoftware\SiSoftware Sandra Business 2015.SP2\WNt600x64\Sandra.sys [X] S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] ========================== MD5 Treiber ======================= C:\Windows\System32\drivers\1394ohci.sys 22CE801AD25C51E2553F41A076BB0CB2 C:\Windows\System32\drivers\3ware.sys 2C49A2441EBB24C6ACFB524C1459115F C:\Windows\System32\drivers\ACPI.sys B87D3D07FE6F15328C6860D542F0E2BD C:\Windows\System32\Drivers\acpiex.sys 1E3C4EDBB7F3F668B7205E351010BB79 C:\Windows\System32\drivers\acpipagr.sys 13B1C26AEDCB40082CDD97506F968129 C:\Windows\System32\drivers\acpipmi.sys B3D64FF927D611721DA73A61BF3A18B3 C:\Windows\System32\drivers\acpitime.sys 19F793B2203D94AC1F8AEDB08B494E2E C:\Windows\System32\drivers\ADP80XX.SYS 2A24E10C1A1DE0E0035E353EED494A1C C:\Windows\system32\drivers\afd.sys 6C12C7E01A4F64E0AA9C88AF66955CC9 C:\Windows\System32\drivers\agp440.sys EF09D07626820F7F89519514C17FE768 C:\Windows\System32\DRIVERS\ahcache.sys 8A289EF0721F95267BF2404BABEE146D C:\Windows\system32\drivers\amdacpksd.sys 3B3A9250EBC097B233168170547B5410 C:\Windows\System32\drivers\amdk8.sys 6763084E8322A4876D1613854640F914 C:\Windows\System32\drivers\amdkmafd.sys BE258C17CFD09F4210602105432E784A C:\Windows\system32\DRIVERS\atikmdag.sys 1F7FD5F70520EE285E708DD7B8560A09 C:\Windows\system32\DRIVERS\atikmpag.sys 5BC406A4BBB2EF7FEFD990B4A48DE059 C:\Windows\System32\drivers\amdppm.sys DE29D8AB57AD67D4940CAB4A48B3E230 C:\Windows\System32\drivers\amdsata.sys 4C1F9BBAF5CCD76D4642F3B92B97B454 C:\Windows\System32\drivers\amdsbs.sys F8195C1A15955180DD663E7FF4C2F6DD C:\Windows\System32\drivers\amdxata.sys DD2F5BBCFAC4D8E48DB1A95A7EEBFF08 C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys C3D487827E48CC5EC17994FEC5BDFF87 C:\Windows\system32\drivers\appid.sys 46AAF119090573A80D603745582229ED C:\Windows\System32\drivers\arcsas.sys 0756EECAC010BE449D07502DF27E7701 C:\Windows\System32\drivers\asyncmac.sys A5792F971EFE86B7F56EE7299ED1082B C:\Windows\System32\drivers\atapi.sys 8921DF6060DB5C7700AA48CB12E9EA08 C:\Windows\system32\drivers\AtihdWT6.sys FD9A5BCC3AFB02E87668B749546B6229 C:\Windows\System32\DRIVERS\avgntflt.sys A900ED612B02CB3A2A8028866ED62E72 C:\Windows\system32\DRIVERS\avipbb.sys 45061BD6F11B80BF1C07A9253A659BF1 C:\Windows\system32\DRIVERS\avkmgr.sys 390184FAD8FCC1B6DA25AEBAE928C3B6 C:\Windows\system32\DRIVERS\avnetflt.sys 83586138F23A4C284EB68AFC852D7AFA C:\Windows\System32\drivers\bxvbda.sys 00D64E82900E4EC9062805ED87C2D75A C:\Windows\System32\drivers\BasicDisplay.sys 5164A66EC1565711A7B4CF2F143B4979 C:\Windows\System32\drivers\BasicRender.sys F4C58BBF2972BD84C73F6A14CA35AC4E C:\Windows\System32\drivers\bcmfn2.sys 25349D0B334E528667980948ED107D89 C:\Windows\System32\Drivers\Beep.sys 1E8A9267F8886803AAE02982FC1B5BC4 C:\Windows\System32\DRIVERS\bowser.sys C9FD65687EF89715999C582D3E568812 C:\Windows\System32\drivers\BthAvrcpTg.sys F8DD3B0EAC1EF1D087AE47E5819540AC C:\Windows\System32\drivers\bthhfenum.sys 647E2A425AD43637EAA01096A58B7089 C:\Windows\System32\drivers\BthHFHid.sys B95040CAD3434D9EE003065363A0FAFF C:\Windows\System32\drivers\bthmodem.sys 29AEE352AED4FCD2191436D263D75347 C:\Windows\System32\drivers\buttonconverter.sys F34AD5A9F944D91BD285D1C29EEECB2B C:\Windows\System32\drivers\capimg.sys A10A1E05A943B10ECE5D57D131B7404D C:\Windows\System32\DRIVERS\cdfs.sys F2829DC6D292DCAC5029893BB2E9FEE3 C:\Windows\System32\drivers\cdrom.sys CA160E02F35A61C6F5C681FB4669C519 C:\Windows\System32\drivers\circlass.sys 60D7D304DF75DFF6A46CF633F583B592 C:\Windows\System32\drivers\CLFS.sys FF9D4BCE19E5D36CB3A845A3286DA6C3 C:\Windows\System32\drivers\CmBatt.sys 8EBA63416EC166EBA6EF6D34A505D8C8 C:\Windows\System32\Drivers\cng.sys 3B64DA873CEA5BEC42570BFF1054A014 C:\Windows\System32\DRIVERS\cnghwassist.sys 5EEA0856000F81B3D709BC81B3AA1EF2 C:\Windows\System32\DriverStore\FileRepository\compositebus.inf_amd64_98334ba6e76853ba\CompositeBus.sys 74CD3BF688E2B408227FE012A2F2D8ED C:\Windows\System32\drivers\condrv.sys D38774D1D383A2CDB9A4F64B7206913B C:\Windows\System32\drivers\dam.sys F038EAF73AAB72A4A89185A5A7B9FD75 C:\Windows\System32\Drivers\dfsc.sys 25435407D97419627F4B10653433BF2B C:\Windows\System32\drivers\disk.sys FDCD449AE9E75D7690593D16ADAF4DB4 C:\Windows\System32\drivers\dmvsc.sys F10A8F6D036CEDD14A5471782C52F041 C:\Windows\system32\drivers\drmkaud.sys 45771610FF181434073B5A0A00F20F8D C:\Windows\System32\drivers\dtlitescsibus.sys 496C3C6BC3D930D0960C9E75AA30F4A7 C:\Windows\System32\drivers\dxgkrnl.sys 310334DAF2C455744703E2D582942DF3 C:\Windows\System32\drivers\evbda.sys 3070013B01EDA42C7EB67D731340C396 C:\Windows\System32\drivers\EhStorClass.sys 59EE187E333EE9914DD9BEA5F4E0D85D C:\Windows\System32\drivers\EhStorTcgDrv.sys 9297F1CC486F24BDFD2874156AC5430F C:\Windows\System32\drivers\errdev.sys F7FCCA6300485EF60CEA6D991D6C8C78 C:\Windows\System32\Drivers\exfat.sys DCCDC3F35F0618692117DF90800A4284 C:\Windows\System32\Drivers\fastfat.sys 435FC0D25ADFD1A2FBA8C98BD4D79E23 C:\Windows\System32\drivers\fcvsc.sys 4E4B7D935DBF522B2F23D3573596181D C:\Windows\System32\drivers\fdc.sys 583EB1C7690E361213BBD0472155128B C:\Windows\System32\drivers\filecrypt.sys CDFD81CACE0E11596A3BB61EC4CF6467 C:\Windows\System32\drivers\fileinfo.sys 3F02FEDAE894CBF4BAADDF8C8E1D53A8 C:\Windows\System32\drivers\filetrace.sys 2824933386E30DE5BA089DF539CE19A3 C:\Windows\System32\drivers\flpydisk.sys 6A598249640F8BEDD79EC73917E1664F C:\Windows\System32\drivers\fltmgr.sys 44B6A6832134DF651E887E941478CA35 C:\Windows\System32\drivers\FsDepends.sys 3F3B9E8CECD5604BC7746EF3A852EB67 C:\Windows\System32\Drivers\Fs_Rec.sys A60583221C7BB7CEC35C63285A297BE1 C:\Windows\System32\DRIVERS\fvevol.sys 58013A50225174EEF1410E37795D7908 C:\Windows\System32\drivers\gagp30kx.sys 0DAAE3EFCE00133AB3E383A36C47CDAF C:\Windows\System32\drivers\vmgencounter.sys F59155B95D01C08F9ED774B626B504A1 C:\Windows\System32\drivers\genericusbfn.sys AE24452F55C6F1784CBD7489D0CDDB02 C:\Windows\System32\Drivers\msgpioclx.sys 96F0D3A583A91B634EE2AC2507356EDC C:\Windows\System32\drivers\gpuenergydrv.sys BA2455D93BD57989A04FE4094AA6F941 C:\Windows\system32\DRIVERS\HdAudio.sys FE85E924C86D6D313D61C28A451EA4DE C:\Windows\System32\drivers\HDAudBus.sys C277A49F8A8295840DEBC9240B75A282 C:\Windows\System32\drivers\HidBatt.sys D5A57EF4822A0388352FFF9F5CD53495 C:\Windows\System32\drivers\hidbth.sys 39575B53EB80C77FF2A3F1449D00B7F5 C:\Windows\System32\drivers\hidi2c.sys 35C3B602664116E737FF729F9A7156AD C:\Windows\System32\drivers\hidinterrupt.sys C4ABE526BBF2A18E8AF70177FBAD9C6E C:\Windows\System32\drivers\hidir.sys 348416C7D7EB05BC3099FE2F2B27985C C:\Windows\System32\drivers\hidusb.sys 01F732724AF6EFE69886DA95A4E51820 C:\Windows\System32\drivers\HpSAMD.sys 3844CE7DD23530CAD59D8CABA57CCB05 C:\Windows\System32\drivers\HTTP.sys CA6EADBB8731CA27BDA4037BF290AC14 C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS E5805896A55D4166C20F216249F40FA3 C:\Windows\System32\drivers\hwpolicy.sys 8841D927EB1F7FFC8B1805BC0CF190ED C:\Windows\System32\drivers\hyperkbd.sys 53436C3835E80F4421652A67F44D6313 C:\Windows\system32\DRIVERS\HyperVideo.sys B2DC6C2F313EBB967B556B4E73A75451 C:\Windows\System32\drivers\i8042prt.sys D4CDEE4A62BDFFF6E8558A9552148EA7 C:\Windows\System32\drivers\iaLPSSi_GPIO.sys 16A10CCEDCF5AC4CAAE43DC9FC40392F C:\Windows\System32\drivers\iaLPSSi_I2C.sys F1DF87463AC308047B089E9F0456B4C8 C:\Windows\System32\drivers\iaStorAV.sys 9FDD4763A115D04F565C38183DE4646F C:\Windows\System32\drivers\iaStorV.sys 4E69EE8F8E5DA036535D433C544AF9E2 C:\Windows\System32\drivers\ibbus.sys 15C59DF20F74A0C2C764B991FED7F4A5 C:\Windows\System32\drivers\intelide.sys 498759139F71142888CF7EFA1ABE18C8 C:\Windows\System32\drivers\intelpep.sys DC270DDCDDC2EF65D484A65CC5166222 C:\Windows\System32\drivers\intelppm.sys B4D9C777762B1F7356958B9C0AA93BEB C:\Windows\System32\drivers\ioqos.sys 22BD83268B80A8C89AAC0BDF46E4EB5D C:\Windows\System32\DRIVERS\ipfltdrv.sys A49E47A6E1429123F46A7CA9C05AEFC1 C:\Windows\System32\drivers\IPMIDrv.sys E0C276985AF968CE295B8E09C121321F C:\Windows\System32\drivers\ipnat.sys 5D3744E6FDEC1A6FB3FA9B1DD4AF0694 C:\Windows\System32\drivers\irenum.sys B18202D72C0EF4B53CEC6F59E3E1B955 C:\Windows\System32\drivers\isapnp.sys CD04CBCCCB4C0E4BB06B98E0F45C888A C:\Windows\System32\drivers\msiscsi.sys 5D90E942C94B20E0F321015C0ABF3EEA C:\Windows\System32\drivers\kbdclass.sys 4192DFE6CA143C0AD8AF42C51A82BECA C:\Windows\System32\drivers\kbdhid.sys B63C0DB341DCB46CF7AA259333A737DD C:\Windows\System32\drivers\kdnic.sys 53C79A7FABDAAFD11EAB31963FB2CED7 C:\Windows\System32\Drivers\ksecdd.sys 1E99B26BDB9B9C9BC775ED4543558560 C:\Windows\System32\Drivers\ksecpkg.sys 6198A79011C67497B324798B3D4272CE C:\Windows\system32\drivers\ksthunk.sys 503597D9B72DBD9998F722F12A51ACFC C:\Windows\System32\drivers\lltdio.sys DB789F57CE94C827FBFF709CA5ABD29E C:\Windows\System32\drivers\lsi_sas.sys 3BB39166E446D456C277C17DFEA3DAC6 C:\Windows\System32\drivers\lsi_sas2i.sys 25CF625E46307A5D6674C8DFA1A289AA C:\Windows\System32\drivers\lsi_sas3i.sys 722C52B12EA4C198D56994934C9DDAB6 C:\Windows\System32\drivers\lsi_sss.sys 3371FF1D5D745C3306C6A2C4E99C25A9 C:\Windows\system32\drivers\luafv.sys C692B9C0352315417CF49FFA664957A3 C:\Windows\system32\drivers\mbam.sys A8D28D5B3E2A528D1EF0E338E44F2820 C:\Windows\system32\drivers\MBAMSwissArmy.sys 8F22037D3F5A6BB676525D825A1388B9 C:\Windows\system32\drivers\mwac.sys 85CFE7AB85B43B6B7AC7961AA3983A9F C:\Windows\System32\drivers\megasas.sys B2ED9A7A5587A128A0EFD0DBE7662E95 C:\Windows\System32\drivers\megasr.sys 083F71488E6780A67290273180256EA5 C:\Windows\System32\drivers\mlx4_bus.sys 5907A10D46747A2B6DBFD6A198254DC2 C:\Windows\system32\drivers\mmcss.sys 91ED6F0EDF4158D63C52194F17D4F42E C:\Windows\System32\drivers\modem.sys 2C4CC9F6ADBED5A6D131FDB97A78FF68 C:\Windows\System32\drivers\monitor.sys D8DB13529C8AD6FBAF8E2F382024374F C:\Windows\System32\drivers\mouclass.sys 2DAAF1EE1C30F2FCF59851A64ADA0422 C:\Windows\System32\drivers\mouhid.sys D30FE074503283829ED194BCAE6239C3 C:\Windows\System32\drivers\mountmgr.sys D5EC9413527B286CFEEB0294C53ABB95 C:\Windows\System32\drivers\mpsdrv.sys 989A1BBD9C49B107B4A47D06E6827A69 C:\Windows\system32\drivers\mrxdav.sys C1E74DD1D84861D8F12FF8BC0BA11975 C:\Windows\System32\DRIVERS\mrxsmb.sys 1DF2C5FD2710A13B07E663A12F0E0EEA C:\Windows\System32\DRIVERS\mrxsmb10.sys 185932B1149BD707F8A13174CDAB365B C:\Windows\System32\DRIVERS\mrxsmb20.sys 99E24D4DBACBC569833B9A67710D65E7 C:\Windows\System32\drivers\bridge.sys 6F8BE4FB6262012E61BBADB5444628DC C:\Windows\System32\Drivers\Msfs.sys 7C55F1751CAC199680D4489D1EE46544 C:\Windows\System32\drivers\msgpiowin32.sys 988588C16A53C2581488C15FF18934BF C:\Windows\System32\drivers\mshidkmdf.sys 09622DBC24D0178F15DB8461BB6970DF C:\Windows\System32\drivers\mshidumdf.sys 34BB07495C0159BE4189841E16F3BC2F C:\Windows\System32\drivers\msisadrv.sys 7BF3F0DA362C053918F5F2EC43CE39E2 C:\Windows\system32\drivers\MSKSSRV.sys B2D0FD21FE67D6434769CC6F7A7883CA C:\Windows\System32\drivers\mslldp.sys FB3801F176376286A3F8F20FFB8CDC53 C:\Windows\system32\drivers\MSPCLOCK.sys 8CBDF0E7A6CD824352F37A682A33DF7E C:\Windows\system32\drivers\MSPQM.sys 33E5B6261D69ACD4948A5C64B9D8F29F C:\Windows\System32\Drivers\MsRPC.sys 557DF8C0DBBBF518AC395C6EB1B179AE C:\Windows\System32\drivers\mssmbios.sys 0A29AFA668F5DD50482A98ECE70C77A7 C:\Windows\system32\drivers\MSTEE.sys 30CE30877FD5BFADE74FA27D7829BF89 C:\Windows\System32\drivers\MTConfig.sys 13D88C0B8A2FA001CD72D454955A6974 C:\Windows\System32\Drivers\mup.sys 00C7F0F06A0A48B9CDB6B3AC3BE288F0 C:\Windows\System32\drivers\mvumis.sys 8E237527CA260C71D39ED4081BDF3419 C:\Windows\System32\DRIVERS\nwifi.sys 48D0587A8302FD3302CFE6F59F7345B0 C:\Windows\System32\drivers\ndfltr.sys CF8296427834CF8BBB3EE1444C17362D C:\Windows\System32\drivers\ndis.sys D43EAFF4887321A07D9F9A9DD7225E07 C:\Windows\System32\drivers\ndiscap.sys A0719D1EBA971DFC5DF5F7CC010385F8 C:\Windows\System32\drivers\NdisImPlatform.sys 0C557932CCCC65AEB37326DD36504527 C:\Windows\System32\DRIVERS\ndistapi.sys 56F9345D1945826135FBAB7589592B1F C:\Windows\System32\drivers\ndisuio.sys AADFC340939D99E5D756E713E1D452EB C:\Windows\System32\drivers\NdisVirtualBus.sys 312DFD787D99D3BF1427B0388BC04F71 C:\Windows\System32\drivers\ndiswan.sys 2103F43E0A1ECFB14B7E1B889F5F24D7 C:\Windows\System32\DRIVERS\ndiswan.sys 2103F43E0A1ECFB14B7E1B889F5F24D7 C:\Windows\System32\DRIVERS\NDProxy.sys 6E98F16983C4AE8703FF9F90AB4B31DD C:\Windows\System32\drivers\Ndu.sys F1B7CC77F412C8D45B2DDCF76EDA4F9D C:\Windows\System32\drivers\netbios.sys 824FDC990A3F79069BE468A132EB6888 C:\Windows\System32\DRIVERS\netbt.sys F0D791348AD254360CC3C3E501CCB745 C:\Windows\System32\drivers\netr28x.sys 2081A822CBCD8F5861863B8C9EA6B1C9 C:\Windows\System32\drivers\netvsc.sys 46E862DA2CF8F351375EF537276B69B5 C:\Windows\System32\Drivers\Npfs.sys 41557BE174E9EC6AC703A8A4ADBC6650 C:\Windows\System32\drivers\npsvctrig.sys AC3F70FCFBCE97AA2F12BA43EE13B86E C:\Windows\System32\drivers\nsiproxy.sys 66A98C407085B8920DF1E6D722F1ADB8 C:\Windows\System32\Drivers\NTFS.sys 466EC5659C02ED53DBD47DC1BC2B8086 C:\Windows\System32\Drivers\Null.sys 383E546EF4982262A0EF6CC2B6E9D525 C:\Windows\System32\drivers\nvraid.sys 466F875F1D4C6ABB46AF28007009237C C:\Windows\System32\drivers\nvstor.sys 76F19EAE7A52CBAF7B8EC428BE6E0DA0 C:\Windows\System32\drivers\nv_agp.sys 0D0CB77D74B38E0EC62341C19E469D8D C:\Windows\System32\drivers\parport.sys 38F1AE32339731F6E5A7281AE8042545 C:\Windows\System32\drivers\partmgr.sys 707889D2F95AAE8C9DD254D8767AD908 C:\Windows\System32\drivers\pci.sys 2834089EA4E550FF3B96E61FB4AA34ED C:\Windows\System32\drivers\pciide.sys 3D587E4295B11B8480F7ACB09A89D718 C:\Windows\System32\drivers\pcmcia.sys B8F07002B5F1DA23CFF979C2806B09F3 C:\Windows\System32\drivers\pcw.sys FF588077D0C6AC2EA3FCBF1903CE08D0 C:\Windows\System32\drivers\pdc.sys 5A4426450501534666F9E6157E258A0B C:\Windows\System32\drivers\peauth.sys 688F47C342E1BBC87A48AB71D316233E C:\Windows\System32\drivers\percsas2i.sys 189265498945593D5256CFF7FEBB9665 C:\Windows\System32\drivers\percsas3i.sys 9B86965114F6831A5130EFE6657B17D9 C:\Windows\System32\drivers\raspptp.sys 1433EB7908E5E1E20FFD50E4126C3484 C:\Windows\System32\drivers\processr.sys 22DE54C3974E4FD98F61D095C22C59B7 C:\Windows\System32\drivers\pacer.sys EDD52C352CBAAAD13FD7BD5DCEA309B3 C:\Windows\system32\drivers\qwavedrv.sys 51590F442C6E5D43244BA30DDB0CE79D C:\Windows\System32\DRIVERS\rasacd.sys E951E70019865B06126AF850BCCA2026 C:\Windows\System32\drivers\AgileVpn.sys 0BF8607133AE264BC3C41A5BAA5FFB7B C:\Windows\System32\drivers\rasl2tp.sys CA60F6C03611AF1710BC903ED9F566FB C:\Windows\System32\drivers\raspppoe.sys E5FA41160F5A3D78D8F7765E5C5F6BB0 C:\Windows\System32\drivers\rassstp.sys DF0834AE921E633E05D1FDC55C318957 C:\Windows\System32\DRIVERS\rdbss.sys FC9B7AC6E2B837EF7CD6C64F7068D41D C:\Windows\System32\drivers\rdpbus.sys FB7375657F8A5932C35EAA45E9B4B416 C:\Windows\System32\drivers\rdpdr.sys A32AED8C644734B283A7C9D08D76064D C:\Windows\System32\drivers\rdpvideominiport.sys 37CC7E41243EFBB4FBC0510E5CA32A02 C:\Windows\System32\drivers\rdyboost.sys DAF957B25A35757E9D814611FAE8FE3B C:\Windows\System32\Drivers\ReFSv1.sys 2C72E029C153D25325CA182A669E4ADE C:\Windows\System32\drivers\rspndr.sys DC66C1D262D64E30A30B68E9F21AC74B C:\Windows\System32\drivers\rt640x64.sys 179E6BCF8D16AD39C137CB4FCFE015C5 C:\Windows\System32\drivers\Rt630x64.sys 0563EF3AFC4F0A3A10A850A2CC4C3121 C:\Windows\System32\drivers\vms3cap.sys 88F7703F2A4677C828124AE2110D3EBC C:\Windows\System32\drivers\sbp2port.sys B467E932FE4E16E201DC7E56870CB559 C:\Windows\System32\DRIVERS\scfilter.sys 31DDA0716EC265CA57DAF9D2295FD76F C:\Windows\System32\drivers\sdbus.sys CC41D16FB823F9BE167BE773F225CD1F C:\Windows\System32\drivers\sdstor.sys F4BF50A7D16A97A887BFA0F193693C42 C:\Windows\System32\drivers\SerCx.sys 9DB0BBE3ABE1F49651AE51EC5BCABE58 C:\Windows\System32\drivers\SerCx2.sys C4AF79C37334D995D95C22C14FDBF7FD C:\Windows\System32\drivers\serenum.sys FC541A272F47BE03E67A9FCB87FA8C3E C:\Windows\System32\drivers\serial.sys 2A5F5F95FCA123DCBF53B5F603B64789 C:\Windows\System32\drivers\sermouse.sys C8738887228B7BFA3B1A906816A8BB12 C:\Windows\System32\drivers\sfloppy.sys 67832B68752CDF7FDE56949E4A2E70BF C:\Windows\System32\drivers\SiSRaid2.sys ED058030296CF9B79C8D48BF43724323 C:\Windows\System32\drivers\sisraid4.sys 633D3D1581E9DCCD5A2D8F039104C9A5 C:\Windows\System32\drivers\spaceport.sys 187B4AD4446C59F8FCC4A10F473EE3D1 C:\Windows\System32\drivers\SpbCx.sys 2799FCA215919FDC9A87C5FCAB530828 C:\Windows\System32\DRIVERS\srv.sys AA1F23501511EFE9CF9771F6B20E8D45 C:\Windows\System32\DRIVERS\srv2.sys F5B169EDF9D5E3C7200D89D30E065D13 C:\Windows\System32\DRIVERS\srvnet.sys 2E142E027F0AA698BA4DCE49CBDB43CD C:\Windows\System32\drivers\stexstor.sys DDE064A4298FD1FBF804D3ED691E7EDB C:\Windows\System32\drivers\storahci.sys 32C95F44108C3E7DB58F773346E3C9D0 C:\Windows\System32\drivers\vmstorfl.sys 8883C8CE4942A99B84E1CC6EFA19738E C:\Windows\System32\drivers\stornvme.sys AE7B7E1E95BFB9340B1956C98CA52C81 C:\Windows\System32\drivers\storqosflt.sys 63513EF3121689B3A59BD217618A2E42 C:\Windows\System32\drivers\storufs.sys 000F5CFCEF0F06DC8FD1D2F568E48AE4 C:\Windows\System32\drivers\storvsc.sys 7415087F9006D6818F85F3CBD79B1A50 C:\Windows\System32\DriverStore\FileRepository\swenum.inf_amd64_2a699e44676b7781\swenum.sys 802278EE4ACCE9EA1F1481DF20EB1667 C:\Windows\System32\drivers\Synth3dVsc.sys 12D0CB1DCAE6725B6CA54CC2038C4C8C C:\Windows\System32\drivers\tcpip.sys BA8CDF0FC9469005A84453A128EEB6AE C:\Windows\System32\drivers\tcpip.sys BA8CDF0FC9469005A84453A128EEB6AE C:\Windows\System32\drivers\tcpipreg.sys D378A1AF58AFA84BB6AC753F2C1BE9F4 C:\Windows\system32\DRIVERS\tdx.sys 28E1E63A1AC65E17B3194238FA2CF3BF C:\Windows\System32\drivers\terminpt.sys CCDBD2817C10A4F631280CBB3AE44FFB C:\Windows\system32\drivers\tpm.sys F4AEDABC8F3A9D632F8206D0C7F8CA09 C:\Windows\System32\drivers\TsUsbFlt.sys 676C801CAA61AADD0C918CC536A74B78 C:\Windows\System32\drivers\TsUsbGD.sys 2BB6CC0DD1CEE86330743B56FA9FE91F C:\Windows\System32\drivers\tunnel.sys 14B46248612DF1B1A695040FFFBCFAFC C:\Windows\System32\drivers\uagp35.sys D0BE5EA1652D55029C9A898FB8ACFCE0 C:\Windows\System32\drivers\uaspstor.sys 13C15E4B238895FE4731DB1D612EEB5F C:\Windows\System32\Drivers\UcmCx.sys BEBB8B55C5F99B69EEE39A9D7BADB21E C:\Windows\System32\drivers\UcmUcsi.sys DE3EDAF609D00EA2E54986E6459796A6 C:\Windows\System32\drivers\ucx01000.sys FB1C1D8B96A482F3581338D6752E1D6C C:\Windows\System32\drivers\udecx.sys 4E1543ACE2F6E2846713E5123D9D4159 C:\Windows\System32\DRIVERS\udfs.sys CDCA9CC1D8293E75218D8FF85F2337A4 C:\Windows\System32\drivers\UEFI.sys BC683E19307C533C7161DB7A58051347 C:\Windows\System32\drivers\ufx01000.sys D14B42C26DE402F316D49667D15446F0 C:\Windows\System32\drivers\UfxChipidea.sys 192470BE4321791FBB25F379D0141D6F C:\Windows\System32\drivers\ufxsynopsys.sys F7BD838E84E6B286DBCE068EFB8C0800 C:\Windows\System32\drivers\uliagpkx.sys A25842AC180F0E8B02380ECB8ADA1AF5 C:\Windows\System32\drivers\umbus.sys 21088F43172525C7E02D335A3327F46C C:\Windows\System32\drivers\umpass.sys 294A291B5D48FE8F38DD94B7272442C5 C:\Windows\System32\drivers\urschipidea.sys A7A52EDDC3FAF183D6AC4774690ADF13 C:\Windows\System32\drivers\urscx01000.sys 2EEA0897DD9E30E958B508D557F0B5E4 C:\Windows\System32\drivers\urssynopsys.sys DC54D775A3A61E4CDE871B4E38A1459A C:\Windows\System32\drivers\usbccgp.sys 18B63A0980F4AA1E6D7879B253980E37 C:\Windows\System32\drivers\usbcir.sys 1C60A1A3C8E1E819E16F12BAEB1C83F8 C:\Windows\System32\drivers\usbehci.sys 9A3E39F85DC6E3B9F792F1095ACFF788 C:\Windows\System32\drivers\usbhub.sys 15FE07A404C8A0CD306661433027FFE4 C:\Windows\System32\drivers\UsbHub3.sys 7E51F2AD1D729F5CDBB6BE21CB58FEB7 C:\Windows\System32\drivers\usbohci.sys 72EA850B59F40C25A4FEDDA5FE84EFEB C:\Windows\System32\drivers\usbprint.sys 47B2B2DE152E25546944049CA1170BB1 C:\Windows\System32\drivers\usbser.sys 1F72E1A7E1858B7B3FF81522FCEBDE95 C:\Windows\System32\drivers\USBSTOR.SYS CD35467670DF1E6FBF36DA308F0C872B C:\Windows\System32\drivers\usbuhci.sys DFA92EA105DD1073B43FB210EEB03DD4 C:\Windows\System32\drivers\USBXHCI.SYS C67A03F54A1EA683F4880A481EE5FF6C C:\Windows\System32\drivers\vdrvroot.sys 26223003DDFB347B5CF3EC0B56DB066B C:\Windows\System32\drivers\VerifierExt.sys A417284BC6B5C2EEF63F2C5154473530 C:\Windows\System32\drivers\vhdmp.sys 4C39C05A72EB14C0567501C7E087E564 C:\Windows\System32\drivers\vhf.sys C42206A15078596FDE8E89BB629DE342 C:\Windows\system32\drivers\viahduaa.sys EF2270C2DF2B61FF1B8C422DC443CEFE C:\Windows\System32\drivers\vmbus.sys 248D9F911A5C94CF8477125DD0C3A291 C:\Windows\System32\drivers\VMBusHID.sys 3E98DD4E0CBD6B4F9CBD0E9E0EDF541E C:\Windows\System32\drivers\volmgr.sys 91F165C5D71D9DCB18D4661CF10D1084 C:\Windows\System32\drivers\volmgrx.sys 17042748AC05862A0283D32575220080 C:\Windows\System32\drivers\volsnap.sys 823A237D871CD652C6BFD47BECB6810A C:\Windows\System32\drivers\vpci.sys 78727FA284C2095EED660D71CD3C9AEF C:\Windows\System32\drivers\vsmraid.sys 2415961D561E02F5E46B7C1C687A6788 C:\Windows\System32\drivers\vstxraid.sys 6AE9A843AE979F2DCCA5A25C07C7A5F8 C:\Windows\System32\drivers\vwifibus.sys BD232C761C59FA8D8EF626CA630E2D2E C:\Windows\System32\drivers\vwififlt.sys 3039687AB65CEE26CF478C1F42FFCD7D C:\Windows\System32\drivers\vwifimp.sys 37C868DDE3103130B00AD1313DAB5ACB C:\Windows\System32\drivers\wacompen.sys FC40A7527D39F06D032A6553D22E4BF6 C:\Windows\System32\DRIVERS\wanarp.sys E9E22E116F810DAC98C5EC207F24C916 C:\Windows\System32\DRIVERS\wanarp.sys E9E22E116F810DAC98C5EC207F24C916 C:\Windows\system32\drivers\WdBoot.sys C8BA574B3BA6AE88741AC86B1FE3C1DC C:\Windows\System32\drivers\Wdf01000.sys 796D1C95894BC15B3FEF090C107CBA31 C:\Windows\system32\drivers\WdFilter.sys C5BB7C612B4C852836BEA39593BA5F46 C:\Windows\System32\DRIVERS\wdiwifi.sys 9B2039C5673EEBF1D4E34ABC0AFB88C7 C:\Windows\System32\Drivers\WdNisDrv.sys BD193A7BD34B2E829FAF56306FEE3B09 C:\Windows\System32\drivers\wfplwfs.sys DBF5255B759212E5217A2748567A0B5C C:\Windows\System32\drivers\wimmount.sys 4375BCBA419D19695CF566082CEF27D3 C:\Windows\System32\drivers\WindowsTrustedRT.sys 037BC6DE5F58D4A74A5BB0C12DCECDCA C:\Windows\System32\drivers\WindowsTrustedRTProxy.sys 70BCD70BD53F2FE660ED94B025A043EB C:\Windows\System32\drivers\winmad.sys 7792AE5403BF8975B6460DFC3428D129 C:\Windows\System32\drivers\WinUSB.SYS 811F30EB6EE8318C4171CB95AE30B9BD C:\Windows\System32\drivers\winverbs.sys DF00381AB8665D48DE3FF794BC6760AB C:\Windows\System32\drivers\wmiacpi.sys 623ED8E10DFEEAB7AE2CD11A0451DB79 C:\Windows\System32\Drivers\Wof.sys 78CA1FF6FE37EEFAFF99DD1C956AF60A C:\Windows\System32\DRIVERS\wpcfltr.sys 388F2A3C771B8BEE76FD1AAF9614D08E C:\Windows\System32\drivers\WpdUpFltr.sys 37DCE976B3935380F2F6E39ABB6BF40D C:\Windows\system32\drivers\ws2ifsl.sys 3CD22DD5A790CF7C24D65455E565EA83 C:\Windows\System32\drivers\WudfPf.sys 835F60262E7E310080EA05F6752BF248 C:\Windows\System32\drivers\WUDFRd.sys 4E848DE29E4279C7F25EF5B34ED94FDD C:\Windows\system32\DRIVERS\WUDFRd.sys 4E848DE29E4279C7F25EF5B34ED94FDD C:\Windows\System32\drivers\xboxgip.sys 30021D1E0407B71E8D5D4F8DAE4E656A C:\Windows\xhunter1.sys 92693510C2636CC86622724FB4581E75 C:\Windows\System32\drivers\xinputhid.sys 6851673B90D8CB332439E0339F81A6B6 C:\Windows\System32\drivers\zam64.sys 9E0659D443A2B9D1AFC75A160F500605 C:\Windows\System32\drivers\zamguard64.sys 9E0659D443A2B9D1AFC75A160F500605 ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-09-17 12:41 - 2015-09-17 21:37 - 02191360 _____ (Farbar) C:\Users\husse\Desktop\FRST64.exe 2015-09-17 12:41 - 2015-09-17 12:41 - 00033741 _____ C:\Users\husse\Desktop\FRST.txt 2015-09-17 12:24 - 2015-09-17 12:24 - 00016148 _____ C:\Windows\system32\DESKTOP-7AC9HGK_husse_HistoryPrediction.bin 2015-09-16 21:12 - 2015-09-16 21:12 - 502759768 _____ C:\Windows\MEMORY.DMP 2015-09-16 21:12 - 2015-09-16 21:12 - 00285472 _____ C:\Windows\Minidump\091615-16312-01.dmp 2015-09-16 21:12 - 2015-09-16 21:12 - 00000000 ____D C:\Windows\Minidump 2015-09-16 21:09 - 2015-09-16 21:09 - 00007598 _____ C:\Users\husse\AppData\Local\Resmon.ResmonCfg 2015-09-16 20:52 - 2015-09-16 20:52 - 00109432 _____ (Zemana Ltd.) C:\Windows\system32\Drivers\zam64.sys 2015-09-16 20:52 - 2015-09-16 20:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zemana AntiMalware 2015-09-16 20:52 - 2015-09-16 20:52 - 00000000 ____D C:\Program Files (x86)\Zemana AntiMalware 2015-09-16 20:51 - 2015-09-16 20:51 - 00109432 _____ (Zemana Ltd.) C:\Windows\system32\Drivers\zamguard64.sys 2015-09-16 20:51 - 2015-09-16 20:51 - 00000000 ____D C:\Users\husse\AppData\Local\Zemana 2015-09-16 20:25 - 2015-09-16 20:25 - 00360345 _____ C:\Users\husse\Desktop\FixDotNet20150916182420208.cab 2015-09-16 20:20 - 2015-09-16 20:26 - 00000000 ____D C:\e946bca29b4a3f8233ce 2015-09-16 19:46 - 2015-09-16 19:46 - 00000000 ____D C:\TDSSKiller_Quarantine 2015-09-16 13:30 - 2015-09-16 13:30 - 00001460 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk 2015-09-16 13:30 - 2015-09-16 13:30 - 00001448 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2015-09-16 13:30 - 2015-09-16 13:30 - 00001448 _____ C:\ProgramData\Desktop\Spybot-S&D Start Center.lnk 2015-09-16 13:30 - 2015-09-16 13:30 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2015-09-16 13:30 - 2015-09-16 13:30 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2015-09-16 13:30 - 2015-09-16 13:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2 2015-09-16 13:30 - 2015-09-16 13:30 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2015-09-16 13:30 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2015-09-16 13:21 - 2015-09-16 13:18 - 03882104 _____ (solvusoft Corporation ) C:\Users\husse\Desktop\Setup_WinThruster_[2015_Edition].exe 2015-09-16 13:21 - 2015-09-16 08:50 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\husse\Desktop\spybot-2.4.40.exe 2015-09-16 13:21 - 2015-09-07 09:44 - 05431152 _____ (Piriform Ltd) C:\Users\husse\Desktop\ccsetup509_slim.exe 2015-09-16 10:56 - 2015-09-17 12:24 - 00000275 _____ C:\Windows\WindowsUpdate.log 2015-09-16 10:33 - 2015-09-16 19:56 - 00000214 _____ C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job 2015-09-16 10:32 - 2015-09-16 20:40 - 00001482 _____ C:\Windows\PFRO.log 2015-09-16 10:32 - 2015-09-16 10:32 - 00341016 _____ C:\Windows\system32\FNTCACHE.DAT 2015-09-16 10:21 - 2015-09-17 12:41 - 00000000 ____D C:\FRST 2015-09-16 10:01 - 2015-09-16 10:01 - 00000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2015-09-16 10:01 - 2015-09-16 10:01 - 00000863 _____ C:\ProgramData\Desktop\CCleaner.lnk 2015-09-16 10:01 - 2015-09-16 10:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2015-09-16 10:00 - 2015-09-16 10:02 - 00000000 ____D C:\Program Files\CCleaner 2015-09-16 09:47 - 2015-09-16 11:43 - 00000000 ____D C:\Users\husse\Desktop\Neuer Ordner 2015-09-16 04:06 - 2015-09-16 09:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2015-09-16 04:06 - 2015-09-16 04:06 - 00000000 ____D C:\Users\husse\AppData\Roaming\TuneUp Software 2015-09-16 04:06 - 2015-09-16 04:06 - 00000000 ____D C:\Users\husse\AppData\Roaming\AVG2015 2015-09-16 04:05 - 2015-09-16 04:06 - 00000000 ____D C:\ProgramData\AVG2015 2015-09-16 04:05 - 2015-09-16 04:05 - 00000000 ____D C:\Program Files (x86)\AVG 2015-09-16 04:04 - 2015-09-16 04:06 - 00000000 ____D C:\Users\husse\AppData\Local\Avg2015 2015-09-16 04:04 - 2015-09-16 04:06 - 00000000 ____D C:\ProgramData\MFAData 2015-09-16 04:04 - 2015-09-16 04:04 - 00000000 ____D C:\Users\husse\AppData\Local\MFAData 2015-09-16 03:24 - 2015-09-16 09:14 - 00000000 ____D C:\Program Files (x86)\IObit 2015-09-16 00:34 - 2015-09-16 00:34 - 00195080 _____ C:\Users\husse\OneDrive\Documents\sys info t killer.log 2015-09-16 00:05 - 2015-09-16 00:05 - 00000000 ____D C:\ProgramData\GridinSoft 2015-09-16 00:02 - 2015-09-16 02:24 - 00000000 ____D C:\Users\husse\AppData\Roaming\Apple Computer 2015-09-16 00:02 - 2015-09-16 00:02 - 00000000 ____D C:\Users\husse\AppData\Local\Apple Computer 2015-09-16 00:01 - 2015-09-16 02:31 - 00000000 ____D C:\Program Files\Common Files\Apple 2015-09-16 00:01 - 2015-09-16 00:01 - 00000000 ____D C:\Users\husse\AppData\Local\Apple 2015-09-16 00:01 - 2015-09-16 00:01 - 00000000 ____D C:\ProgramData\Apple Computer 2015-09-16 00:00 - 2015-09-16 02:30 - 00000000 ____D C:\ProgramData\Apple 2015-09-15 23:57 - 2015-09-15 23:58 - 00000000 ____D C:\Users\husse\Downloads\20WMPSkins 2015-09-15 23:56 - 2015-09-16 00:02 - 00000000 ____D C:\Users\husse\Downloads\KsesyTtaScrtv664 2015-09-15 23:56 - 2015-09-16 00:02 - 00000000 ____D C:\Users\husse\Desktop\Neue Programme 2015-09-15 23:55 - 2015-09-16 00:02 - 00000000 ____D C:\Users\husse\Downloads\Kaspersky PURE 3 0 Total Security MR2 v15 0 2 361 RC 2015-09-15 23:53 - 2015-09-15 23:58 - 00000000 ____D C:\Users\husse\Downloads\KT361-DDLW 2015-09-15 23:53 - 2015-09-15 23:58 - 00000000 ____D C:\Users\husse\Downloads\Advanced SystemCare Ultimate v7 0 1 589 Multilanguage 2015-09-15 23:02 - 2015-09-16 00:23 - 00000000 ____D C:\Users\husse\Downloads\2276-DDLW 2015-09-15 23:02 - 2015-09-15 23:58 - 00000000 ____D C:\Users\husse\Downloads\803123x64-DDLW 2015-09-15 23:02 - 2015-09-15 23:57 - 00000000 ____D C:\Users\husse\Downloads\2015-DDLW 2015-09-15 22:51 - 2015-09-15 23:58 - 00000000 ____D C:\Users\husse\Downloads\6086 x64-DDLW 2015-09-15 20:30 - 2015-09-16 20:29 - 00000000 ____D C:\AdwCleaner 2015-09-15 19:56 - 2015-09-15 19:56 - 00000000 ____D C:\Users\husse\Downloads\Mad Max Ripper Special Edition 2015-09-15 19:14 - 2015-09-15 19:14 - 00000000 ____D C:\Users\husse\AppData\Local\CrashRpt 2015-09-15 13:17 - 2015-09-15 13:17 - 00000000 ____D C:\Users\husse\AppData\Local\ESN 2015-09-15 13:13 - 2015-09-15 13:18 - 00000000 ____D C:\Users\husse\OneDrive\Documents\Battlefield 3 2015-09-15 13:13 - 2015-09-15 13:13 - 00000000 ____D C:\ProgramData\EA Core 2015-09-15 09:56 - 2015-09-16 02:03 - 00000000 ____D C:\Users\husse\Downloads\Mad Max Ripper Special Edition MULTI9 - x.X.RIDDICK.X.x mygully 2015-09-15 09:56 - 2015-09-15 09:59 - 291293252 _____ C:\Users\husse\Desktop\Mad Max CrackFix V3.rar 2015-09-14 20:46 - 2013-04-10 11:09 - 00801864 _____ (Realtek ) C:\Windows\system32\Drivers\Rt630x64.sys 2015-09-14 20:46 - 2013-04-10 11:09 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2015-09-14 19:57 - 2015-09-14 19:57 - 00000000 ____D C:\Users\husse\OneDrive\Documents\CAPCOM 2015-09-14 19:57 - 2015-09-14 19:57 - 00000000 ____D C:\Users\husse\AppData\Roaming\Steam 2015-09-14 19:43 - 2015-09-14 21:48 - 00000000 ____D C:\Program Files (x86)\Resident Evil 5 Gold Edition 2015-09-14 19:02 - 2015-09-14 19:02 - 00037416 _____ (Wellbia.com Co., Ltd.) C:\Windows\xhunter1.sys 2015-09-14 18:08 - 2015-09-14 18:08 - 00000000 ____D C:\ProgramData\Nexon 2015-09-14 17:39 - 2015-09-14 18:05 - 00000000 ____D C:\Users\husse\AppData\Local\NXEPassportClient 2015-09-14 17:36 - 2015-09-14 18:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexon 2015-09-14 17:31 - 2015-09-14 17:31 - 00000000 ____D C:\ProgramData\NexonEU 2015-09-14 17:31 - 2015-09-14 17:31 - 00000000 ____D C:\Nexon 2015-09-14 16:54 - 2015-09-16 09:32 - 00000000 ____D C:\Users\husse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2015-09-14 16:33 - 2015-09-14 16:40 - 2268866788 ____H (Nexon) C:\Users\husse\OneDrive\Documents\Combatarms_eu.exe.part 2015-09-14 12:14 - 2015-09-14 12:15 - 00291496 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2015-09-14 12:14 - 2015-09-14 12:15 - 00076152 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2015-09-14 12:14 - 2015-05-13 14:24 - 04033896 _____ C:\Windows\SysWOW64\pbsvc.exe 2015-09-14 10:05 - 2015-09-16 09:20 - 00000000 ____D C:\Program Files (x86)\Origin Games 2015-09-14 10:04 - 2015-09-15 13:13 - 00000000 ____D C:\Users\husse\AppData\Local\Origin 2015-09-14 10:02 - 2015-09-14 10:04 - 00000000 ____D C:\Program Files (x86)\Origin 2015-09-14 10:02 - 2015-09-14 10:02 - 00001048 _____ C:\Users\Public\Desktop\Origin.lnk 2015-09-14 10:02 - 2015-09-14 10:02 - 00001048 _____ C:\ProgramData\Desktop\Origin.lnk 2015-09-14 05:22 - 2015-09-14 05:22 - 00000000 ____D C:\Users\husse\OneDrive\Documents\My Cheat Tables 2015-09-14 05:09 - 2015-09-16 09:34 - 00000000 ____D C:\Program Files (x86)\Cheat Engine 6.4 2015-09-14 05:02 - 2015-09-14 15:27 - 00000000 ____D C:\Users\husse\OneDrive\Documents\My Games 2015-09-14 05:02 - 2015-09-14 05:02 - 00000000 ____D C:\ProgramData\Steam 2015-09-14 05:00 - 2015-09-14 05:00 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\pzsiltkn.sys 2015-09-14 04:59 - 2015-09-14 04:59 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\pvjtruto.sys 2015-09-14 04:50 - 2015-09-14 04:50 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2015-09-14 04:21 - 2015-09-14 04:31 - 00000000 ____D C:\Program Files (x86)\Dishonored GOTY 2015-09-14 00:32 - 2015-09-14 00:32 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\ljblxsvk.sys 2015-09-14 00:13 - 2011-02-08 14:58 - 01882104 _____ (Codejock Software) C:\Windows\SysWOW64\Codejock.Controls.v15.0.1.ocx 2015-09-14 00:13 - 2005-01-12 11:19 - 00456536 _____ (Xceed Software Inc (450) 442-2626 support@xceedsoft.com www.xceedsoft.com) C:\Windows\SysWOW64\XCEEDZIP.DLL 2015-09-14 00:13 - 2004-09-28 11:13 - 00526184 _____ (Xceed Software Inc (450) 442-2626 support@xceedsoft.com www.xceedsoft.com) C:\Windows\SysWOW64\XceedCry.dll 2015-09-14 00:13 - 2004-03-09 00:00 - 00152848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Comdlg32.ocx 2015-09-14 00:13 - 2004-03-09 00:00 - 00132880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Msinet.ocx 2015-09-13 22:14 - 2015-09-13 22:14 - 00000000 ____D C:\Users\husse\AppData\Roaming\Easeware 2015-09-13 22:14 - 2015-09-13 22:14 - 00000000 ____D C:\Program Files\Easeware 2015-09-13 22:04 - 2015-09-13 22:04 - 00000000 ____D C:\Windows\SysWOW64\XPSViewer 2015-09-13 22:04 - 2015-09-13 22:04 - 00000000 ____D C:\Program Files\Reference Assemblies 2015-09-13 22:04 - 2015-09-13 22:04 - 00000000 ____D C:\Program Files\MSBuild 2015-09-13 22:04 - 2015-09-13 22:04 - 00000000 ____D C:\Program Files (x86)\MSBuild 2015-09-13 20:41 - 2015-09-16 09:27 - 00000000 ____D C:\Users\husse\AppData\Local\PunkBuster 2015-09-13 20:30 - 2015-09-13 20:32 - 00000000 ____D C:\Users\husse\OneDrive\Documents\BFH 2015-09-13 20:27 - 2015-09-16 09:31 - 00000000 ____D C:\Program Files (x86)\Battlelog Web Plugins 2015-09-13 20:27 - 2015-09-14 12:15 - 00291496 _____ C:\Windows\SysWOW64\PnkBstrB.ex0 2015-09-13 19:10 - 2015-09-13 19:10 - 00000000 ____D C:\Users\husse\AppData\Roaming\AMD 2015-09-13 04:56 - 2015-09-16 09:31 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-09-13 04:56 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-09-13 04:56 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-09-13 04:56 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2015-09-13 02:32 - 2015-09-14 20:46 - 00000000 ____D C:\Program Files (x86)\Realtek 2015-09-13 02:32 - 2015-09-13 02:32 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-09-13 00:58 - 2015-09-13 00:58 - 00000000 ____D C:\Windows\system32\SleepStudy 2015-09-13 00:56 - 2015-09-13 00:56 - 00000000 ____D C:\Users\husse\AppData\Local\Google 2015-09-12 23:36 - 2015-09-12 23:36 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2015-09-12 23:35 - 2015-09-14 11:28 - 00000000 ____D C:\Users\husse\AppData\Roaming\Origin 2015-09-12 23:30 - 2015-09-15 19:39 - 00000000 ____D C:\ProgramData\Origin 2015-09-12 23:30 - 2015-09-14 10:02 - 00000000 ____D C:\ProgramData\Electronic Arts 2015-09-12 22:47 - 2015-09-14 15:26 - 00000000 ____D C:\Program Files (x86)\Far Cry 4 2015-09-12 19:38 - 2015-09-13 05:34 - 00000869 _____ C:\Users\husse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PlayTV v3.lnk 2015-09-12 19:18 - 2015-09-14 21:28 - 00097792 ___SH C:\Users\husse\Desktop\Thumbs.db 2015-09-12 16:58 - 2015-09-16 09:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2015-09-12 14:51 - 2015-09-12 14:51 - 00000000 ____D C:\Users\husse\AppData\Local\AviraSpeedup 2015-09-12 14:27 - 2015-09-16 09:31 - 00000000 ____D C:\ProgramData\Avira 2015-09-12 14:27 - 2015-09-16 09:31 - 00000000 ____D C:\Program Files (x86)\Avira 2015-09-12 14:27 - 2015-09-12 16:57 - 00148632 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2015-09-12 14:27 - 2015-09-12 16:57 - 00137288 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2015-09-12 14:27 - 2015-09-12 14:30 - 00043576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2015-09-12 14:27 - 2014-11-24 10:23 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2015-09-12 14:21 - 2015-09-12 14:45 - 00000000 ____D C:\Users\husse\AppData\Roaming\Notepad++ 2015-09-12 14:21 - 2015-09-12 14:45 - 00000000 ____D C:\Program Files (x86)\Notepad++ 2015-09-12 10:05 - 2015-06-17 18:10 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll 2015-09-12 10:05 - 2015-06-17 18:10 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2015-09-12 10:05 - 2015-06-17 18:10 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2015-09-12 10:05 - 2015-05-29 21:07 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll 2015-09-12 10:05 - 2015-05-29 21:07 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-09-12 10:05 - 2015-05-29 21:07 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2015-09-12 09:56 - 2015-09-14 17:39 - 00000000 ____D C:\Users\husse\AppData\Roaming\vlc 2015-09-12 07:45 - 2015-09-16 10:11 - 00000000 ____D C:\Windows\win 2015-09-12 07:26 - 2015-09-12 07:26 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\jdxrtnag.sys 2015-09-12 07:26 - 2015-09-12 07:26 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\dfgeunkr.sys 2015-09-12 07:26 - 2015-09-12 07:26 - 00000000 ____D C:\ProgramData\AVAST Software 2015-09-12 07:02 - 2015-09-12 07:02 - 00000000 ____D C:\ProgramData\VsTelemetry 2015-09-12 06:56 - 2015-09-12 07:02 - 00001908 _____ C:\Windows\diagwrn.xml 2015-09-12 06:56 - 2015-09-12 07:02 - 00001908 _____ C:\Windows\diagerr.xml 2015-09-12 01:37 - 2015-09-15 07:07 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-09-12 01:37 - 2015-09-12 01:37 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-09-12 01:29 - 2015-09-12 01:29 - 00000000 ____D C:\Users\husse\AppData\Roaming\MiniGet 2015-09-12 01:28 - 2015-09-17 12:24 - 00000374 ____H C:\Windows\Tasks\KJEUATNWWMHTLDAK.job 2015-09-12 01:28 - 2015-09-12 01:33 - 00000000 ____D C:\Users\husse\AppData\Roaming\Opera Software 2015-09-12 01:28 - 2015-09-12 01:33 - 00000000 ____D C:\Users\husse\AppData\Local\Opera Software 2015-09-12 01:28 - 2015-09-12 01:28 - 00003450 _____ C:\Windows\System32\Tasks\KJEUATNWWMHTLDAK 2015-09-12 01:01 - 2015-09-16 09:20 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2015-09-12 00:55 - 2015-09-12 00:55 - 00000000 ____D C:\Users\husse\AppData\Local\NetworkTiles 2015-09-12 00:50 - 2015-09-12 00:50 - 00000000 ____D C:\Program Files\Common Files\Bitdefender 2015-09-12 00:25 - 2015-09-12 00:25 - 00000000 ____D C:\Users\husse\AppData\Local\Macromedia 2015-09-11 23:49 - 2015-09-11 23:55 - 00000000 ____D C:\Users\husse\AppData\Local\Adobe 2015-09-11 21:59 - 2015-07-05 12:08 - 00300704 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2015-09-11 20:55 - 2015-09-11 21:59 - 00000000 ____D C:\Program Files\Microsoft Office 2015-09-11 19:59 - 2015-09-16 09:32 - 00000000 ___RD C:\Users\husse\Desktop\Bilder 2015-09-11 19:50 - 2015-09-11 20:40 - 00000000 ____D C:\Users\husse\AppData\Local\mpress 2015-09-11 19:49 - 2015-09-16 11:06 - 00000000 ____D C:\Windows\System32\Tasks\R@1n-KMS 2015-09-11 19:49 - 2015-09-11 21:25 - 00017920 _____ C:\Windows\KMS-QADhook.dll 2015-09-11 19:49 - 2015-09-11 21:25 - 00004608 _____ C:\Windows\KMS-R@1nhook.exe 2015-09-11 19:04 - 2015-09-11 19:04 - 00000000 ____D C:\Windows\Tasks\ImCleanDisabled 2015-09-11 19:03 - 2015-09-16 09:31 - 00000000 ____D C:\ProgramData\IObit 2015-09-11 19:03 - 2015-09-11 19:03 - 00026528 _____ (REALiX(tm)) C:\Windows\SysWOW64\Drivers\HWiNFO64A.SYS 2015-09-11 19:03 - 2015-09-11 19:03 - 00000000 ____D C:\Users\husse\AppData\Roaming\IObit 2015-09-11 19:03 - 2015-09-11 19:03 - 00000000 ____D C:\ProgramData\ProductData 2015-09-11 19:02 - 2015-09-11 19:02 - 00000000 ____D C:\Users\husse\AppData\Roaming\WinRAR 2015-09-11 18:44 - 2015-08-27 08:04 - 21874688 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll 2015-09-11 18:44 - 2015-08-27 07:55 - 24594944 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-09-11 18:44 - 2015-08-27 07:23 - 19324416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-09-11 18:44 - 2015-08-27 07:16 - 18806272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll 2015-09-11 18:43 - 2015-09-02 03:20 - 00077400 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2015-09-11 18:43 - 2015-09-02 02:25 - 03586560 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys 2015-09-11 18:43 - 2015-09-02 02:25 - 01382912 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys 2015-09-11 18:43 - 2015-08-27 08:36 - 03620736 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-09-11 18:43 - 2015-08-27 08:32 - 00608936 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe 2015-09-11 18:43 - 2015-08-27 07:59 - 02880032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-09-11 18:43 - 2015-08-27 07:54 - 00541248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe 2015-09-11 18:43 - 2015-08-27 07:54 - 00365568 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2015-09-11 18:43 - 2015-08-27 07:51 - 02350592 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-09-11 18:43 - 2015-08-27 07:51 - 01774592 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll 2015-09-11 18:43 - 2015-08-27 07:49 - 01008640 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll 2015-09-11 18:43 - 2015-08-27 07:47 - 12503552 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-09-11 18:43 - 2015-08-27 07:43 - 00826880 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-09-11 18:43 - 2015-08-27 07:43 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-09-11 18:43 - 2015-08-27 07:42 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll 2015-09-11 18:43 - 2015-08-27 07:42 - 00578560 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2015-09-11 18:43 - 2015-08-27 07:42 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.PicturePassword.dll 2015-09-11 18:43 - 2015-08-27 07:42 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll 2015-09-11 18:43 - 2015-08-27 07:39 - 00045568 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2015-09-11 18:43 - 2015-08-27 07:23 - 00303104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2015-09-11 18:43 - 2015-08-27 07:16 - 02153472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2015-09-11 18:43 - 2015-08-27 07:16 - 01612288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll 2015-09-11 18:43 - 2015-08-27 07:12 - 00650752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-09-11 18:43 - 2015-08-27 07:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-09-11 18:43 - 2015-08-27 07:11 - 00484352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll 2015-09-11 18:43 - 2015-08-27 07:11 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shacct.dll 2015-09-11 18:43 - 2015-08-27 07:09 - 11262464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-09-11 18:43 - 2015-08-27 07:08 - 00037376 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2015-09-11 18:43 - 2015-08-20 08:07 - 08019296 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-09-11 18:43 - 2015-08-20 08:06 - 00609592 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll 2015-09-11 18:43 - 2015-08-20 08:02 - 22324656 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2015-09-11 18:43 - 2015-08-20 07:26 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe 2015-09-11 18:43 - 2015-08-20 07:21 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseModernAppMgmtCSP.dll 2015-09-11 18:43 - 2015-08-20 07:16 - 20857848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2015-09-11 18:43 - 2015-08-20 07:13 - 02235904 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-09-11 18:43 - 2015-08-18 09:56 - 02498808 _____ C:\Windows\system32\CoreUIComponents.dll 2015-09-11 18:43 - 2015-08-18 09:55 - 00373072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS 2015-09-11 18:43 - 2015-08-18 09:54 - 01396064 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll 2015-09-11 18:43 - 2015-08-18 09:27 - 01771592 _____ C:\Windows\SysWOW64\CoreUIComponents.dll 2015-09-11 18:43 - 2015-08-18 09:24 - 00963920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll 2015-09-11 18:43 - 2015-08-18 09:13 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\WlanMediaManager.dll 2015-09-11 18:43 - 2015-08-18 09:13 - 00387584 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupShim.dll 2015-09-11 18:43 - 2015-08-18 09:12 - 02225664 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll 2015-09-11 18:43 - 2015-08-18 09:07 - 02226688 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll 2015-09-11 18:43 - 2015-08-18 09:04 - 01234944 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe 2015-09-11 18:43 - 2015-08-18 09:04 - 00859136 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll 2015-09-11 18:43 - 2015-08-18 08:59 - 01294336 _____ (Microsoft Corporation) C:\Windows\system32\wcnwiz.dll 2015-09-11 18:43 - 2015-08-18 08:59 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\WcnApi.dll 2015-09-11 18:43 - 2015-08-18 08:58 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupSvc.dll 2015-09-11 18:43 - 2015-08-18 08:58 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\dafWCN.dll 2015-09-11 18:43 - 2015-08-18 08:58 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\fdWCN.dll 2015-09-11 18:43 - 2015-08-18 08:58 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\WcnNetsh.dll 2015-09-11 18:43 - 2015-08-18 08:57 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\wfdprov.dll 2015-09-11 18:43 - 2015-08-18 08:56 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\BthRadioMedia.dll 2015-09-11 18:43 - 2015-08-18 08:55 - 02178560 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll 2015-09-11 18:43 - 2015-08-18 08:54 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\vaultsvc.dll 2015-09-11 18:43 - 2015-08-18 08:54 - 00247296 _____ C:\Windows\system32\facecredentialprovider.dll 2015-09-11 18:43 - 2015-08-18 08:52 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2015-09-11 18:43 - 2015-08-18 08:50 - 01795072 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll 2015-09-11 18:43 - 2015-08-18 08:49 - 01061888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll 2015-09-11 18:43 - 2015-08-18 08:49 - 00274432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupShim.dll 2015-09-11 18:43 - 2015-08-18 08:49 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\PackageStateRoaming.dll 2015-09-11 18:43 - 2015-08-18 08:36 - 01226752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcnwiz.dll 2015-09-11 18:43 - 2015-08-18 08:35 - 00100352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnApi.dll 2015-09-11 18:43 - 2015-08-18 08:35 - 00095744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWCN.dll 2015-09-11 18:43 - 2015-08-18 08:34 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfdprov.dll 2015-09-11 18:43 - 2015-08-18 08:29 - 01593344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2015-09-11 18:43 - 2015-08-18 08:26 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PackageStateRoaming.dll 2015-09-11 18:43 - 2015-08-18 06:44 - 00008847 _____ C:\Windows\system32\ResPriHMImageList 2015-09-11 18:39 - 2015-09-11 18:40 - 00000000 ____D C:\Windows\system32\MRT 2015-09-11 18:39 - 2015-08-26 18:37 - 134753440 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-09-11 18:38 - 2015-08-13 06:22 - 02093056 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll 2015-09-11 18:38 - 2015-08-11 12:04 - 04532304 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2015-09-11 18:38 - 2015-08-11 12:04 - 02462648 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2015-09-11 18:38 - 2015-08-11 12:04 - 01087296 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2015-09-11 18:38 - 2015-08-11 12:02 - 00554744 _____ (Microsoft Corporation) C:\Windows\system32\directmanipulation.dll 2015-09-11 18:38 - 2015-08-11 12:02 - 00292856 _____ (Microsoft Corporation) C:\Windows\system32\LockAppHost.exe 2015-09-11 18:38 - 2015-08-11 11:52 - 00993104 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll 2015-09-11 18:38 - 2015-08-11 11:50 - 01643872 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll 2015-09-11 18:38 - 2015-08-11 11:40 - 04048808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2015-09-11 18:38 - 2015-08-11 11:40 - 02151208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2015-09-11 18:38 - 2015-08-11 11:40 - 00918320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll 2015-09-11 18:38 - 2015-08-11 11:38 - 00454000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\directmanipulation.dll 2015-09-11 18:38 - 2015-08-11 11:37 - 00243800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppHost.exe 2015-09-11 18:38 - 2015-08-11 11:26 - 00845664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll 2015-09-11 18:38 - 2015-08-11 11:23 - 16706560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2015-09-11 18:38 - 2015-08-11 11:19 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Notifications.dll 2015-09-11 18:38 - 2015-08-11 11:18 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\UserMgrProxy.dll 2015-09-11 18:38 - 2015-08-11 11:16 - 02416640 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll 2015-09-11 18:38 - 2015-08-11 11:14 - 00404480 _____ C:\Windows\system32\diagtrack_wininternal.dll 2015-09-11 18:38 - 2015-08-11 11:13 - 00413184 _____ C:\Windows\system32\diagtrack_win.dll 2015-09-11 18:38 - 2015-08-11 11:11 - 02446336 _____ C:\Windows\system32\InputService.dll 2015-09-11 18:38 - 2015-08-11 11:11 - 00553472 _____ (Microsoft Corporation) C:\Windows\system32\GamePanel.exe 2015-09-11 18:38 - 2015-08-11 11:10 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll 2015-09-11 18:38 - 2015-08-11 11:10 - 00293376 _____ C:\Windows\system32\TextInputFramework.dll 2015-09-11 18:38 - 2015-08-11 11:08 - 00893440 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll 2015-09-11 18:38 - 2015-08-11 11:08 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApi.dll 2015-09-11 18:38 - 2015-08-11 11:07 - 01178112 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2015-09-11 18:38 - 2015-08-11 11:07 - 00593920 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll 2015-09-11 18:38 - 2015-08-11 11:06 - 07523328 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll 2015-09-11 18:38 - 2015-08-11 11:06 - 02662400 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll 2015-09-11 18:38 - 2015-08-11 11:05 - 03527168 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2015-09-11 18:38 - 2015-08-11 11:05 - 00996352 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll 2015-09-11 18:38 - 2015-08-11 11:05 - 00137216 _____ (Microsoft Corporation) C:\Windows\system32\LocationPermissions.dll 2015-09-11 18:38 - 2015-08-11 11:03 - 02558976 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2015-09-11 18:38 - 2015-08-11 11:02 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\cloudAP.dll 2015-09-11 18:38 - 2015-08-11 11:01 - 01334784 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll 2015-09-11 18:38 - 2015-08-11 10:59 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll 2015-09-11 18:38 - 2015-08-11 10:57 - 13024768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2015-09-11 18:38 - 2015-08-11 10:51 - 01916928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll 2015-09-11 18:38 - 2015-08-11 10:51 - 01823232 _____ C:\Windows\SysWOW64\InputService.dll 2015-09-11 18:38 - 2015-08-11 10:49 - 00586752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll 2015-09-11 18:38 - 2015-08-11 10:45 - 01820672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Logon.dll 2015-09-11 18:38 - 2015-08-11 10:43 - 02748416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll 2015-09-11 18:38 - 2015-08-11 10:42 - 05454848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll 2015-09-11 18:38 - 2015-08-11 10:40 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll 2015-09-11 18:38 - 2015-08-11 10:40 - 01112064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll 2015-09-11 18:38 - 2015-08-08 09:29 - 01822280 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-09-11 18:38 - 2015-08-08 09:01 - 01533496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2015-09-11 18:38 - 2015-08-08 08:24 - 02415104 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-09-11 18:38 - 2015-08-08 08:24 - 01679360 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-09-11 18:38 - 2015-08-08 08:00 - 01985024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2015-09-11 18:38 - 2015-08-06 05:17 - 00237392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys 2015-09-11 18:38 - 2015-08-06 05:17 - 00200528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys 2015-09-11 18:38 - 2015-08-06 04:22 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdiWiFi.sys 2015-09-11 18:38 - 2015-08-05 06:49 - 00783112 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll 2015-09-11 18:38 - 2015-08-05 06:29 - 00644128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll 2015-09-11 18:38 - 2015-08-05 06:00 - 00310784 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll 2015-09-11 18:38 - 2015-08-05 05:54 - 01274880 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll 2015-09-11 18:38 - 2015-08-05 05:39 - 00261632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll 2015-09-11 18:38 - 2015-08-04 06:07 - 00102752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys 2015-09-11 18:38 - 2015-08-04 06:06 - 00583128 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2015-09-11 18:38 - 2015-08-04 05:23 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\VPNv2CSP.dll 2015-09-11 18:38 - 2015-08-04 04:59 - 01212416 _____ (Microsoft Corporation) C:\Windows\system32\RemoteNaturalLanguage.dll 2015-09-11 18:38 - 2015-08-04 04:47 - 00898560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RemoteNaturalLanguage.dll 2015-09-11 18:38 - 2015-08-03 04:32 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\NotificationObjFactory.dll 2015-09-11 18:38 - 2015-08-03 04:28 - 00268800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NotificationObjFactory.dll 2015-09-11 18:38 - 2015-08-03 04:19 - 00505696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys 2015-09-11 18:38 - 2015-08-03 04:19 - 00393568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2015-09-11 18:38 - 2015-08-03 04:18 - 08613200 _____ (Microsoft Corp.) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll 2015-09-11 18:38 - 2015-08-03 04:18 - 01983840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2015-09-11 18:38 - 2015-08-03 04:18 - 00594472 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Shell.Broker.dll 2015-09-11 18:38 - 2015-08-03 04:17 - 00516960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS 2015-09-11 18:38 - 2015-08-03 04:12 - 00801632 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe 2015-09-11 18:38 - 2015-08-03 03:56 - 06878256 _____ (Microsoft Corp.) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll 2015-09-11 18:38 - 2015-08-03 03:49 - 00700256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe 2015-09-11 18:38 - 2015-08-03 03:31 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\SharedStartModel.dll 2015-09-11 18:38 - 2015-08-03 03:30 - 00253952 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_UserAccount.dll 2015-09-11 18:38 - 2015-08-03 03:24 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\tileobjserver.dll 2015-09-11 18:38 - 2015-08-03 03:24 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\VEEventDispatcher.dll 2015-09-11 18:38 - 2015-08-03 03:24 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\SharedStartModelShim.dll 2015-09-11 18:38 - 2015-08-03 03:23 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\VEDataLayerHelpers.dll 2015-09-11 18:38 - 2015-08-03 03:22 - 01601536 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll 2015-09-11 18:38 - 2015-08-03 03:22 - 00317440 _____ (Microsoft Corporation) C:\Windows\system32\configmanager2.dll 2015-09-11 18:38 - 2015-08-03 03:21 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\coredpus.dll 2015-09-11 18:38 - 2015-08-03 03:19 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe 2015-09-11 18:38 - 2015-08-03 03:19 - 00215040 _____ (Microsoft Corporation) C:\Windows\notepad.exe 2015-09-11 18:38 - 2015-08-03 03:18 - 03780096 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll 2015-09-11 18:38 - 2015-08-03 03:18 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\SubscriptionMgr.dll 2015-09-11 18:38 - 2015-08-03 03:18 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\NetworkStatus.dll 2015-09-11 18:38 - 2015-08-03 03:15 - 01290752 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Shell.dll 2015-09-11 18:38 - 2015-08-03 03:15 - 00595456 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll 2015-09-11 18:38 - 2015-08-03 03:15 - 00573440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.Desktop.dll 2015-09-11 18:38 - 2015-08-03 03:15 - 00384000 _____ (Microsoft Corporation) C:\Windows\system32\LockAppBroker.dll 2015-09-11 18:38 - 2015-08-03 03:15 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\WinBioDataModel.dll 2015-09-11 18:38 - 2015-08-03 03:14 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.LockScreen.dll 2015-09-11 18:38 - 2015-08-03 03:12 - 00217088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VEEventDispatcher.dll 2015-09-11 18:38 - 2015-08-03 03:12 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VEDataLayerHelpers.dll 2015-09-11 18:38 - 2015-08-03 03:11 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\msctfuimanager.dll 2015-09-11 18:38 - 2015-08-03 03:10 - 01162240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll 2015-09-11 18:38 - 2015-08-03 03:06 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe 2015-09-11 18:38 - 2015-08-03 03:03 - 00494592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LogonController.dll 2015-09-11 18:38 - 2015-08-03 03:02 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppBroker.dll 2015-09-11 18:38 - 2015-08-03 03:02 - 00195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2015-09-11 18:38 - 2015-08-03 02:59 - 00752640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfuimanager.dll 2015-09-11 18:38 - 2015-07-30 08:24 - 01561872 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll 2015-09-11 18:38 - 2015-07-30 08:23 - 00527952 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2015-09-11 18:38 - 2015-07-30 08:21 - 00816576 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll 2015-09-11 18:38 - 2015-07-30 08:17 - 01200400 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-09-11 18:38 - 2015-07-30 08:17 - 01025840 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll 2015-09-11 18:38 - 2015-07-30 08:16 - 02147080 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll 2015-09-11 18:38 - 2015-07-30 08:14 - 00333168 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll 2015-09-11 18:38 - 2015-07-30 08:09 - 01562968 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll 2015-09-11 18:38 - 2015-07-30 08:06 - 01043872 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll 2015-09-11 18:38 - 2015-07-30 08:05 - 00501008 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2015-09-11 18:38 - 2015-07-30 08:03 - 02116448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2015-09-11 18:38 - 2015-07-30 07:24 - 00252768 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll 2015-09-11 18:38 - 2015-07-30 06:29 - 00705520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-09-11 18:38 - 2015-07-30 06:26 - 01867160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll 2015-09-11 18:38 - 2015-07-30 06:26 - 00877016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll 2015-09-11 18:38 - 2015-07-30 06:25 - 01356368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll 2015-09-11 18:38 - 2015-07-30 06:25 - 00713312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll 2015-09-11 18:38 - 2015-07-30 06:24 - 00445240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll 2015-09-11 18:38 - 2015-07-30 06:24 - 00407616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll 2015-09-11 18:38 - 2015-07-30 06:24 - 00285632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll 2015-09-11 18:38 - 2015-07-30 06:22 - 00896144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll 2015-09-11 18:38 - 2015-07-30 06:12 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll 2015-09-11 18:38 - 2015-07-30 06:12 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll 2015-09-11 18:38 - 2015-07-30 06:08 - 00494592 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll 2015-09-11 18:38 - 2015-07-30 06:08 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe 2015-09-11 18:38 - 2015-07-30 05:59 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll 2015-09-11 18:38 - 2015-07-30 05:52 - 00521216 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll 2015-09-11 18:38 - 2015-07-30 05:52 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\ACPBackgroundManagerPolicy.dll 2015-09-11 18:38 - 2015-07-30 05:49 - 11557888 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2015-09-11 18:38 - 2015-07-30 05:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll 2015-09-11 18:38 - 2015-07-30 05:46 - 00487424 _____ (Microsoft Corporation) C:\Windows\system32\mfmkvsrcsnk.dll 2015-09-11 18:38 - 2015-07-30 05:46 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll 2015-09-11 18:38 - 2015-07-30 05:45 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\fwpolicyiomgr.dll 2015-09-11 18:38 - 2015-07-30 05:44 - 00280064 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll 2015-09-11 18:38 - 2015-07-30 05:44 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\SensorService.dll Geändert von tomtom333 (18.09.2015 um 02:13 Uhr) Grund: Log File falsch geteilt |
18.09.2015, 02:41 | #7 |
| HILFE ! fremder host hat sämtliche Geräte eingenommen !!Code:
ATTFilter 2015-09-11 18:38 - 2015-07-30 05:42 - 00518144 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll 2015-09-11 18:38 - 2015-07-30 05:41 - 00407040 _____ (Microsoft Corporation) C:\Windows\system32\CredProvDataModel.dll 2015-09-11 18:38 - 2015-07-30 05:40 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll 2015-09-11 18:38 - 2015-07-30 05:38 - 01420288 _____ (Microsoft Corporation) C:\Windows\system32\UserDataService.dll 2015-09-11 18:38 - 2015-07-30 05:38 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll 2015-09-11 18:38 - 2015-07-30 05:34 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll 2015-09-11 18:38 - 2015-07-30 05:29 - 00654848 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll 2015-09-11 18:38 - 2015-07-30 05:15 - 09889792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2015-09-11 18:38 - 2015-07-30 05:07 - 00163328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fwpolicyiomgr.dll 2015-09-11 18:38 - 2015-07-30 05:06 - 00373248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmkvsrcsnk.dll 2015-09-11 18:38 - 2015-07-30 05:04 - 01714176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll 2015-09-11 18:38 - 2015-07-30 05:04 - 00335360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredProvDataModel.dll 2015-09-11 18:38 - 2015-07-30 04:59 - 00473088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll 2015-09-11 18:38 - 2015-07-30 04:58 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll 2015-09-11 18:38 - 2015-07-26 07:16 - 01018568 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2015-09-11 18:38 - 2015-07-26 07:16 - 00858408 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2015-09-11 18:38 - 2015-07-26 07:14 - 01294352 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2015-09-11 18:38 - 2015-07-26 07:14 - 01123400 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2015-09-11 18:38 - 2015-07-26 07:13 - 06488312 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll 2015-09-11 18:38 - 2015-07-26 06:28 - 05118024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll 2015-09-11 18:38 - 2015-07-26 05:49 - 04760576 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2015-09-11 18:38 - 2015-07-26 05:49 - 00872448 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll 2015-09-11 18:38 - 2015-07-26 05:47 - 00356352 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll 2015-09-11 18:38 - 2015-07-26 05:40 - 00850432 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll 2015-09-11 18:38 - 2015-07-26 05:40 - 00542720 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll 2015-09-11 18:38 - 2015-07-26 05:39 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\sendmail.dll 2015-09-11 18:38 - 2015-07-26 05:38 - 04350464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2015-09-11 18:38 - 2015-07-26 05:35 - 00322048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll 2015-09-11 18:38 - 2015-07-26 05:34 - 00798208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll 2015-09-11 18:38 - 2015-07-26 05:30 - 00750592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll 2015-09-11 18:38 - 2015-07-26 05:30 - 00452608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll 2015-09-11 18:38 - 2015-07-26 05:29 - 00104960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sendmail.dll 2015-09-11 18:38 - 2015-07-24 05:30 - 00498016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2015-09-11 18:38 - 2015-07-24 05:18 - 00980832 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi 2015-09-11 18:38 - 2015-07-24 05:17 - 00695136 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll 2015-09-11 18:38 - 2015-07-24 05:12 - 00584544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll 2015-09-11 18:38 - 2015-07-24 04:55 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll 2015-09-11 18:38 - 2015-07-24 04:52 - 00680448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll 2015-09-11 18:38 - 2015-07-24 04:46 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\MBMediaManager.dll 2015-09-11 18:38 - 2015-07-24 04:44 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Privacy.dll 2015-09-11 18:38 - 2015-07-24 04:40 - 03248640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll 2015-09-11 18:38 - 2015-07-24 04:39 - 02646528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll 2015-09-11 18:38 - 2015-07-24 04:34 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll 2015-09-11 18:38 - 2015-07-24 04:25 - 01203200 _____ (Microsoft Corporation) C:\Windows\system32\Unistore.dll 2015-09-11 18:38 - 2015-07-24 04:24 - 01418240 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe 2015-09-11 18:38 - 2015-07-24 04:24 - 00925696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Unistore.dll 2015-09-11 18:38 - 2015-07-24 04:24 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll 2015-09-11 18:38 - 2015-07-22 07:18 - 00808856 _____ (Microsoft Corporation) C:\Windows\system32\CoreMessaging.dll 2015-09-11 18:38 - 2015-07-22 07:02 - 00966424 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll 2015-09-11 18:38 - 2015-07-22 06:13 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe 2015-09-11 18:38 - 2015-07-22 06:02 - 00589824 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll 2015-09-11 18:38 - 2015-07-22 06:00 - 00783872 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-09-11 18:38 - 2015-07-22 06:00 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll 2015-09-11 18:38 - 2015-07-22 05:55 - 01203200 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll 2015-09-11 18:38 - 2015-07-22 05:55 - 00421888 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Bluetooth.dll 2015-09-11 18:38 - 2015-07-22 05:54 - 14241792 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2015-09-11 18:38 - 2015-07-22 05:53 - 00762896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll 2015-09-11 18:38 - 2015-07-22 05:46 - 00856064 _____ (Microsoft Corporation) C:\Windows\system32\ContactApis.dll 2015-09-11 18:38 - 2015-07-22 05:21 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe 2015-09-11 18:38 - 2015-07-22 05:13 - 00677888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-09-11 18:38 - 2015-07-22 05:11 - 12589056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2015-09-11 18:38 - 2015-07-22 05:10 - 00828416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll 2015-09-11 18:38 - 2015-07-22 05:07 - 00458752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll 2015-09-11 18:38 - 2015-07-22 05:03 - 00623616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContactApis.dll 2015-09-11 18:38 - 2015-07-22 04:50 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreMessaging.dll 2015-09-11 18:38 - 2015-07-19 06:04 - 00658568 _____ (Microsoft Corporation) C:\Windows\system32\ClipSVC.dll 2015-09-11 18:38 - 2015-07-19 05:54 - 01168736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2015-09-11 18:38 - 2015-07-19 05:23 - 00505344 _____ C:\Windows\system32\EditionUpgradeManagerObj.dll 2015-09-11 18:38 - 2015-07-19 05:18 - 00430592 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll 2015-09-11 18:38 - 2015-07-19 05:02 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\MessagingDataModel2.dll 2015-09-11 18:38 - 2015-07-19 04:39 - 00465920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MessagingDataModel2.dll 2015-09-11 18:38 - 2015-07-18 09:43 - 00575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Import.dll 2015-09-11 18:38 - 2015-07-18 09:37 - 01043968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Editing.dll 2015-09-11 18:38 - 2015-07-18 09:29 - 03443200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbon.dll 2015-09-11 18:38 - 2015-07-18 07:02 - 00290312 _____ (Microsoft Corporation) C:\Windows\system32\wininit.exe 2015-09-11 18:38 - 2015-07-18 06:06 - 00841728 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Import.dll 2015-09-11 18:38 - 2015-07-18 05:59 - 01411072 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Editing.dll 2015-09-11 18:38 - 2015-07-18 05:59 - 00232960 _____ (Microsoft Corporation) C:\Windows\system32\DevicesFlowBroker.dll 2015-09-11 18:38 - 2015-07-18 05:52 - 04169728 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll 2015-09-11 18:38 - 2015-07-18 05:49 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll 2015-09-11 18:38 - 2015-07-18 05:48 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll 2015-09-11 18:38 - 2015-07-17 06:23 - 00934752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refsv1.sys 2015-09-11 18:38 - 2015-07-17 06:13 - 00601344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2015-09-11 18:38 - 2015-07-17 06:07 - 00425824 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll 2015-09-11 18:38 - 2015-07-17 04:39 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll 2015-09-11 18:38 - 2015-07-17 04:36 - 07569408 _____ (Microsoft Corporation) C:\Windows\system32\mos.dll 2015-09-11 18:38 - 2015-07-17 04:33 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\omadmclient.exe 2015-09-11 18:38 - 2015-07-17 04:32 - 00329728 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll 2015-09-11 18:38 - 2015-07-17 04:31 - 01417216 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-09-11 18:38 - 2015-07-17 04:26 - 00584704 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll 2015-09-11 18:38 - 2015-07-17 04:24 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\efscore.dll 2015-09-11 18:38 - 2015-07-17 04:19 - 00869376 _____ (Microsoft Corporation) C:\Windows\system32\MapControlCore.dll 2015-09-11 18:38 - 2015-07-17 04:18 - 00902656 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2015-09-11 18:38 - 2015-07-17 04:05 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll 2015-09-11 18:38 - 2015-07-17 03:56 - 06101504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll 2015-09-11 18:38 - 2015-07-17 03:53 - 00437248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll 2015-09-11 18:38 - 2015-07-17 03:51 - 05076480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll 2015-09-11 18:38 - 2015-07-17 03:50 - 00589312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efscore.dll 2015-09-11 18:38 - 2015-07-17 03:44 - 00712192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe 2015-09-11 18:38 - 2015-07-16 07:39 - 00061280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys 2015-09-11 18:38 - 2015-07-16 06:09 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe 2015-09-11 18:38 - 2015-07-16 06:04 - 01201664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Cred.dll 2015-09-11 18:38 - 2015-07-16 06:03 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.OneCore.dll 2015-09-11 18:38 - 2015-07-16 05:47 - 00754688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Cred.dll 2015-09-11 18:38 - 2015-07-16 05:45 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll 2015-09-11 18:38 - 2015-07-16 05:44 - 02741760 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-09-11 18:38 - 2015-07-16 05:43 - 01602560 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-09-11 18:38 - 2015-07-16 05:41 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\ConsoleLogon.dll 2015-09-11 18:38 - 2015-07-16 05:40 - 00181760 _____ (Microsoft Corporation) C:\Windows\system32\shutdownux.dll 2015-09-11 18:38 - 2015-07-16 05:36 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\ConhostV2.dll 2015-09-11 18:38 - 2015-07-16 05:35 - 01521664 _____ (Microsoft Corporation) C:\Windows\system32\ActiveSyncProvider.dll 2015-09-11 18:38 - 2015-07-16 05:33 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\srumsvc.dll 2015-09-11 18:38 - 2015-07-16 05:32 - 00667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll 2015-09-11 18:38 - 2015-07-16 05:29 - 01380864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-09-11 18:38 - 2015-07-16 05:27 - 02207744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-09-11 18:38 - 2015-07-16 05:19 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srumsvc.dll 2015-09-11 18:38 - 2015-07-15 05:21 - 01365072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2015-09-11 18:38 - 2015-07-15 04:49 - 01591856 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-09-11 18:38 - 2015-07-15 04:49 - 00325984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys 2015-09-11 18:38 - 2015-07-15 04:41 - 01135312 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe 2015-09-11 18:38 - 2015-07-15 04:22 - 02112512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll 2015-09-11 18:38 - 2015-07-15 04:16 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll 2015-09-11 18:38 - 2015-07-15 03:57 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\OmaDmAgent.dll 2015-09-11 18:38 - 2015-07-15 03:47 - 04611584 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2015-09-11 18:38 - 2015-07-15 03:41 - 00310784 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll 2015-09-11 18:38 - 2015-07-15 03:37 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.ProxyStub.dll 2015-09-11 18:38 - 2015-07-15 03:35 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\unenrollhook.dll 2015-09-11 18:38 - 2015-07-14 05:00 - 00208736 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll 2015-09-11 18:38 - 2015-07-14 04:37 - 00181088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll 2015-09-11 18:38 - 2015-07-14 04:04 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UcmUcsi.sys 2015-09-11 18:38 - 2015-07-14 03:51 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll 2015-09-11 18:38 - 2015-07-14 03:49 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll 2015-09-11 18:38 - 2015-07-14 03:38 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll 2015-09-11 18:38 - 2015-07-14 03:20 - 00279552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systemcpl.dll 2015-09-11 18:38 - 2015-07-13 02:01 - 00342528 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvr.exe 2015-09-11 18:38 - 2015-07-13 01:30 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.exe 2015-09-11 18:38 - 2015-07-12 02:38 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll 2015-09-11 18:38 - 2015-07-12 02:25 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\SensorDataService.exe 2015-09-11 18:38 - 2015-07-12 02:18 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\AppContracts.dll 2015-09-11 18:38 - 2015-07-12 01:46 - 00441344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppContracts.dll 2015-09-11 18:38 - 2015-07-11 03:28 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BioFeedback.dll 2015-09-11 18:38 - 2015-07-11 03:17 - 06305792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll 2015-09-11 18:38 - 2015-07-11 03:07 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BlockedShutdown.dll 2015-09-11 18:38 - 2015-07-11 03:05 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\DisplayManager.dll 2015-09-11 18:38 - 2015-07-11 03:04 - 03362816 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-09-11 18:38 - 2015-07-11 03:03 - 03248128 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll 2015-09-11 18:38 - 2015-07-11 03:03 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe 2015-09-11 18:38 - 2015-07-11 03:02 - 00283648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BioFeedback.dll 2015-09-11 18:38 - 2015-07-11 02:57 - 00670208 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll 2015-09-11 18:38 - 2015-07-11 02:51 - 04398080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll 2015-09-11 18:38 - 2015-07-11 02:43 - 00322048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BlockedShutdown.dll 2015-09-11 18:38 - 2015-07-11 02:42 - 00191488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplayManager.dll 2015-09-11 18:38 - 2015-07-11 02:41 - 03687936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2015-09-11 18:38 - 2015-07-11 02:40 - 02606080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll 2015-09-11 18:38 - 2015-07-11 02:34 - 00294912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll 2015-09-11 18:38 - 2015-07-10 17:51 - 00823336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll 2015-09-11 18:38 - 2015-07-10 17:47 - 00265480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2015-09-11 18:38 - 2015-07-10 17:00 - 01101792 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll 2015-09-11 18:38 - 2015-07-10 16:52 - 00335248 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2015-09-11 18:38 - 2015-07-10 12:59 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_SignInOptions.dll 2015-09-11 18:38 - 2015-07-10 12:05 - 00480256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll 2015-09-11 18:38 - 2015-07-10 11:53 - 01169408 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll 2015-09-11 18:38 - 2015-07-10 11:35 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2015-09-11 18:38 - 2015-07-10 11:31 - 01067520 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2015-09-11 18:38 - 2015-07-10 11:29 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll 2015-09-11 18:37 - 2015-08-13 06:20 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll 2015-09-11 18:37 - 2015-08-13 05:53 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll 2015-09-11 18:37 - 2015-08-11 12:03 - 00442208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2015-09-11 18:37 - 2015-08-11 12:02 - 00080720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys 2015-09-11 18:37 - 2015-08-11 11:21 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\tetheringservice.dll 2015-09-11 18:37 - 2015-08-11 11:21 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\tetheringclient.dll 2015-09-11 18:37 - 2015-08-11 11:20 - 00483328 _____ (Microsoft Corporation) C:\Windows\system32\OneDriveSettingSyncProvider.dll 2015-09-11 18:37 - 2015-08-11 11:10 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-09-11 18:37 - 2015-08-11 11:09 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\wuautoappupdate.dll 2015-09-11 18:37 - 2015-08-11 11:07 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\MbaeParserTask.exe 2015-09-11 18:37 - 2015-08-11 11:05 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\LocationGeofences.dll 2015-09-11 18:37 - 2015-08-11 11:05 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\LocationFramework.dll 2015-09-11 18:37 - 2015-08-11 11:05 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\LocationFrameworkInternalPS.dll 2015-09-11 18:37 - 2015-08-11 11:02 - 00621056 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll 2015-09-11 18:37 - 2015-08-11 11:00 - 00336384 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe 2015-09-11 18:37 - 2015-08-11 11:00 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\syncutil.dll 2015-09-11 18:37 - 2015-08-11 10:59 - 00642560 _____ (Microsoft Corporation) C:\Windows\system32\rdbui.dll 2015-09-11 18:37 - 2015-08-11 10:59 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll 2015-09-11 18:37 - 2015-08-11 10:59 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tetheringclient.dll 2015-09-11 18:37 - 2015-08-11 10:58 - 00372224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSettingSyncProvider.dll 2015-09-11 18:37 - 2015-08-11 10:57 - 00159744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserMgrProxy.dll 2015-09-11 18:37 - 2015-08-11 10:50 - 00420352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GamePanel.exe 2015-09-11 18:37 - 2015-08-11 10:50 - 00200704 _____ C:\Windows\SysWOW64\TextInputFramework.dll 2015-09-11 18:37 - 2015-08-11 10:50 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Core.TextInput.dll 2015-09-11 18:37 - 2015-08-11 10:49 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-09-11 18:37 - 2015-08-11 10:48 - 00671232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll 2015-09-11 18:37 - 2015-08-11 10:47 - 00448512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApi.dll 2015-09-11 18:37 - 2015-08-11 10:39 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe 2015-09-11 18:37 - 2015-08-11 10:38 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll 2015-09-11 18:37 - 2015-08-04 06:06 - 00243248 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2015-09-11 18:37 - 2015-08-03 04:18 - 00046432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpiowin32.sys 2015-09-11 18:37 - 2015-08-03 04:17 - 00052264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys 2015-09-11 18:37 - 2015-07-30 08:15 - 00632168 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2015-09-11 18:37 - 2015-07-30 06:22 - 00507696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2015-09-11 18:37 - 2015-07-30 06:09 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManagerShellext.exe 2015-09-11 18:37 - 2015-07-30 05:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys 2015-09-11 18:37 - 2015-07-30 05:44 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\SensorsNativeApi.V2.dll 2015-09-11 18:37 - 2015-07-30 05:44 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthhfenum.sys 2015-09-11 18:37 - 2015-07-30 05:44 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\VoiceActivationManager.dll 2015-09-11 18:37 - 2015-07-30 05:41 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\NotificationControllerPS.dll 2015-09-11 18:37 - 2015-07-30 05:06 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsNativeApi.V2.dll 2015-09-11 18:37 - 2015-07-30 05:06 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VoiceActivationManager.dll 2015-09-11 18:37 - 2015-07-24 05:17 - 00521568 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe 2015-09-11 18:37 - 2015-07-24 04:30 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll 2015-09-11 18:37 - 2015-07-24 04:29 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbser.sys 2015-09-11 18:37 - 2015-07-22 07:15 - 00565088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys 2015-09-11 18:37 - 2015-07-22 05:09 - 00296960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Bluetooth.dll 2015-09-11 18:37 - 2015-07-18 10:47 - 00082616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcd.dll 2015-09-11 18:37 - 2015-07-18 09:28 - 00584704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll 2015-09-11 18:37 - 2015-07-18 09:26 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spbcd.dll 2015-09-11 18:37 - 2015-07-18 07:17 - 00097128 _____ (Microsoft Corporation) C:\Windows\system32\bcd.dll 2015-09-11 18:37 - 2015-07-18 05:50 - 00584704 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll 2015-09-11 18:37 - 2015-07-18 05:49 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe 2015-09-11 18:37 - 2015-07-18 05:49 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll 2015-09-11 18:37 - 2015-07-18 05:48 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\bcdboot.exe 2015-09-11 18:37 - 2015-07-18 05:47 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2015-09-11 18:37 - 2015-07-17 06:12 - 00630160 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2015-09-11 18:37 - 2015-07-17 04:39 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\MapConfiguration.dll 2015-09-11 18:37 - 2015-07-17 04:33 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\omadmprc.exe 2015-09-11 18:37 - 2015-07-17 04:26 - 07051264 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll 2015-09-11 18:37 - 2015-07-17 04:19 - 00832512 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll 2015-09-11 18:37 - 2015-07-17 04:05 - 00328704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapConfiguration.dll 2015-09-11 18:37 - 2015-07-16 05:54 - 00137216 _____ (Microsoft Corporation) C:\Windows\system32\VEStoreEventHandlers.dll 2015-09-11 18:37 - 2015-07-15 04:04 - 00032768 _____ C:\Windows\system32\LicenseManagerApi.dll 2015-09-11 18:37 - 2015-07-15 03:27 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.PAL.Desktop.dll 2015-09-11 18:37 - 2015-07-11 03:01 - 04791296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-09-11 18:37 - 2015-07-11 02:40 - 03579904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-09-11 18:37 - 2015-07-11 02:40 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe 2015-09-11 18:37 - 2015-07-10 12:42 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hmkd.dll 2015-09-11 18:37 - 2015-07-10 12:10 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\hmkd.dll 2015-09-11 18:25 - 2015-09-11 18:25 - 00016944 _____ (G Data Software) C:\Windows\system32\Drivers\GdPhyMem.sys 2015-09-11 18:18 - 2015-09-16 09:32 - 00000000 ___RD C:\Users\husse\Desktop\Spiele 2015-09-11 18:03 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2015-09-11 18:03 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2015-09-11 18:03 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2015-09-11 18:03 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2015-09-11 18:03 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2015-09-11 18:03 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2015-09-11 18:03 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2015-09-11 18:03 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2015-09-11 18:03 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2015-09-11 18:03 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2015-09-11 18:03 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2015-09-11 18:03 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2015-09-11 18:03 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2015-09-11 18:03 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2015-09-11 18:03 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2015-09-11 18:03 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2015-09-11 18:03 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2015-09-11 18:03 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2015-09-11 18:03 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2015-09-11 18:03 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2015-09-11 18:03 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2015-09-11 18:03 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2015-09-11 18:03 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2015-09-11 18:03 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2015-09-11 18:03 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2015-09-11 18:03 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2015-09-11 18:03 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2015-09-11 18:03 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2015-09-11 18:03 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2015-09-11 18:03 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2015-09-11 18:03 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2015-09-11 18:03 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2015-09-11 18:03 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2015-09-11 18:03 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2015-09-11 18:03 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2015-09-11 18:03 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2015-09-11 18:03 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2015-09-11 18:03 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2015-09-11 18:03 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2015-09-11 18:03 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2015-09-11 18:03 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2015-09-11 18:03 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2015-09-11 18:03 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2015-09-11 18:03 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2015-09-11 18:03 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2015-09-11 18:03 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2015-09-11 18:03 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2015-09-11 18:03 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2015-09-11 18:03 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2015-09-11 18:03 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2015-09-11 18:03 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2015-09-11 18:03 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2015-09-11 18:03 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2015-09-11 18:03 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2015-09-11 18:03 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2015-09-11 18:03 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2015-09-11 18:03 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2015-09-11 18:03 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2015-09-11 18:03 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2015-09-11 18:03 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2015-09-11 18:03 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2015-09-11 18:03 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2015-09-11 18:03 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2015-09-11 18:03 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2015-09-11 18:03 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2015-09-11 18:03 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2015-09-11 18:03 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2015-09-11 18:03 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2015-09-11 18:03 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2015-09-11 18:03 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2015-09-11 18:03 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2015-09-11 18:03 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2015-09-11 18:03 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2015-09-11 18:03 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2015-09-11 18:03 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2015-09-11 18:03 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2015-09-11 18:03 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2015-09-11 18:03 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2015-09-11 18:03 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2015-09-11 18:03 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2015-09-11 18:03 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2015-09-11 18:03 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2015-09-11 18:03 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2015-09-11 18:03 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2015-09-11 18:03 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2015-09-11 18:03 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2015-09-11 18:03 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2015-09-11 18:03 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2015-09-11 18:03 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2015-09-11 18:03 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2015-09-11 18:03 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2015-09-11 18:03 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2015-09-11 18:03 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2015-09-11 18:03 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2015-09-11 18:03 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2015-09-11 18:03 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2015-09-11 18:03 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2015-09-11 18:03 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2015-09-11 18:03 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2015-09-11 18:03 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2015-09-11 18:03 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2015-09-11 18:03 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2015-09-11 18:03 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2015-09-11 18:03 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2015-09-11 18:03 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2015-09-11 18:03 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2015-09-11 18:03 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2015-09-11 18:03 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2015-09-11 18:03 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2015-09-11 18:03 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2015-09-11 18:03 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2015-09-11 18:03 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2015-09-11 18:03 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2015-09-11 18:03 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2015-09-11 18:03 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2015-09-11 18:03 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2015-09-11 18:03 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2015-09-11 18:03 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2015-09-11 18:03 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2015-09-11 18:03 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2015-09-11 18:03 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2015-09-11 18:03 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2015-09-11 18:03 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2015-09-11 18:03 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2015-09-11 18:03 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2015-09-11 18:03 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2015-09-11 18:03 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2015-09-11 18:03 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2015-09-11 18:03 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2015-09-11 18:03 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2015-09-11 18:03 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2015-09-11 18:03 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2015-09-11 18:03 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2015-09-11 18:03 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2015-09-11 18:03 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2015-09-11 18:03 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2015-09-11 18:03 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2015-09-11 18:03 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2015-09-11 18:03 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2015-09-11 18:03 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2015-09-11 18:03 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2015-09-11 18:03 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2015-09-11 18:03 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2015-09-11 18:03 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2015-09-11 18:03 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2015-09-11 18:03 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2015-09-11 18:03 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2015-09-11 18:03 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2015-09-11 18:03 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2015-09-11 18:03 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2015-09-11 18:03 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2015-09-11 18:03 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2015-09-11 18:03 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2015-09-11 18:03 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2015-09-11 18:03 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2015-09-11 18:03 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2015-09-11 18:03 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2015-09-11 18:03 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2015-09-11 18:03 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2015-09-11 18:03 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2015-09-11 18:03 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2015-09-11 18:03 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2015-09-11 18:03 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2015-09-11 18:03 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2015-09-11 18:03 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2015-09-11 18:03 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2015-09-11 18:03 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2015-09-11 18:03 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2015-09-11 18:03 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2015-09-11 18:03 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2015-09-11 18:03 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2015-09-11 18:03 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2015-09-11 18:03 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2015-09-11 18:03 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2015-09-11 18:03 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2015-09-11 18:03 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2015-09-11 18:03 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2015-09-11 18:03 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2015-09-11 18:03 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2015-09-11 18:03 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2015-09-11 18:03 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2015-09-11 18:03 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2015-09-11 17:56 - 2015-09-11 17:56 - 00000000 ____D C:\Users\husse\AppData\Local\ashampoo 2015-09-11 17:55 - 2015-09-11 17:56 - 00000000 ____D C:\ProgramData\Ashampoo 2015-09-11 17:54 - 2015-09-16 10:20 - 00000000 ___RD C:\Users\husse\Desktop\Programme 2015-09-11 17:53 - 2015-09-15 18:22 - 00000000 ____D C:\Users\husse\AppData\Roaming\DAEMON Tools Lite 2015-09-11 17:53 - 2015-09-11 17:53 - 00030264 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtlitescsibus.sys 2015-09-11 17:52 - 2015-09-16 09:31 - 00000000 ____D C:\Program Files\DAEMON Tools Lite 2015-09-11 17:52 - 2015-09-11 17:52 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite 2015-09-11 17:34 - 2015-09-16 09:32 - 00000000 ____D C:\Users\husse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-09-11 17:34 - 2015-09-16 09:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-09-11 17:34 - 2015-09-11 17:34 - 00000000 ____D C:\Program Files\WinRAR 2015-09-11 17:31 - 2015-09-16 09:32 - 00000000 ____D C:\Users\husse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader 2015-09-11 17:30 - 2015-09-16 09:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2015-09-11 17:30 - 2015-09-16 09:21 - 00000000 ____D C:\Users\husse\AppData\Local\JDownloader v2.0 2015-09-11 17:30 - 2015-09-11 17:30 - 00000000 ____D C:\Program Files\VideoLAN 2015-09-11 17:25 - 2015-09-13 05:05 - 00000000 ____D C:\Users\husse\AppData\Local\Mozilla 2015-09-11 17:25 - 2015-09-11 17:25 - 00000000 ____D C:\Users\husse\AppData\Roaming\Mozilla 2015-09-11 17:11 - 2015-09-12 14:46 - 00000000 ____D C:\Windows\Panther 2015-09-11 16:49 - 2015-09-11 16:49 - 00000000 ____D C:\ProgramData\ATI 2015-09-11 16:45 - 2015-09-16 09:31 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-09-11 16:45 - 2015-09-11 16:45 - 00000000 ____D C:\Users\husse\AppData\Roaming\library_dir 2015-09-11 16:44 - 2015-09-16 09:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2015-09-11 16:44 - 2015-09-11 16:47 - 00000000 ____D C:\Program Files (x86)\Raptr 2015-09-11 16:43 - 2015-09-11 16:43 - 00000000 ____D C:\Program Files (x86)\AMD 2015-09-11 16:37 - 2015-09-15 05:51 - 00004168 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{A9F085E8-5C49-4D7F-AF69-0EEEA999317F} 2015-09-11 16:36 - 2015-09-11 16:36 - 00000000 ____D C:\Users\husse\AppData\Roaming\ATI 2015-09-11 16:36 - 2015-09-11 16:36 - 00000000 ____D C:\Users\husse\AppData\Local\ATI 2015-09-11 16:36 - 2015-09-11 16:36 - 00000000 ____D C:\Users\husse\AppData\Local\AMD 2015-09-11 16:30 - 2015-09-11 21:57 - 00000000 ____D C:\ProgramData\G Data 2015-09-11 16:30 - 2015-09-11 16:30 - 00000000 ____D C:\Users\husse\AppData\Roaming\Macromedia 2015-09-11 16:30 - 2015-09-11 16:30 - 00000000 ____D C:\Users\husse\AppData\Local\Steam 2015-09-11 16:30 - 2015-09-11 16:30 - 00000000 ____D C:\Users\husse\AppData\Local\CEF 2015-09-11 16:28 - 2015-09-16 09:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2015-09-11 16:28 - 2015-09-16 09:31 - 00000000 ____D C:\Program Files (x86)\Steam 2015-09-11 16:27 - 2015-09-15 22:24 - 00000000 ____D C:\Users\husse\OneDrive 2015-09-11 16:27 - 2015-09-13 05:34 - 00002354 _____ C:\Users\husse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-09-11 16:27 - 2015-09-13 00:14 - 00000000 ____D C:\Users\husse\AppData\Local\MicrosoftEdge 2015-09-11 16:26 - 2015-09-17 12:31 - 01790124 _____ C:\Windows\system32\PerfStringBackup.INI 2015-09-11 16:26 - 2015-09-14 12:16 - 00000000 ____D C:\ProgramData\Package Cache 2015-09-11 16:26 - 2015-09-11 16:43 - 00000000 ____D C:\ProgramData\AMD 2015-09-11 16:26 - 2015-09-11 16:28 - 00000000 ____D C:\Users\husse\AppData\Local\Comms 2015-09-11 16:26 - 2015-09-11 16:26 - 27898680 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 07235584 _____ (Dolby Laboratories) C:\Windows\system32\EEP64H.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 07235584 _____ (Dolby Laboratories) C:\Windows\system32\EEP64A.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 03309264 _____ (VIA Technologies, Inc.) C:\Windows\system32\VIAPropPageExt.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 02130448 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 02027184 _____ (Creative Technology Ltd.) C:\Windows\system32\VMAPO264.DLL 2015-09-11 16:26 - 2015-09-11 16:26 - 02012496 _____ (VIA Technologies, Inc.) C:\Windows\system32\ViaMicArrayAPO.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 01752904 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\VMAPO232.DLL 2015-09-11 16:26 - 2015-09-11 16:26 - 01192784 _____ (VIA Technologies, Inc.) C:\Windows\system32\VIASysFx.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 01180496 _____ (VIA Technologies, Inc.) C:\Windows\system32\ViaKaraokeApo.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 01031376 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 00896344 _____ (Creative Technology Ltd.) C:\Windows\system32\VMAPO64.DLL 2015-09-11 16:26 - 2015-09-11 16:26 - 00754760 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\VMAPO32.DLL 2015-09-11 16:26 - 2015-09-11 16:26 - 00701136 _____ (VIA Technologies, Inc.) C:\Windows\system32\Drivers\viahduaa.sys 2015-09-11 16:26 - 2015-09-11 16:26 - 00678176 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 00633904 _____ (Creative Technology Ltd.) C:\Windows\system32\VMTHX64.DLL 2015-09-11 16:26 - 2015-09-11 16:26 - 00568304 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\VMTHX32.DLL 2015-09-11 16:26 - 2015-09-11 16:26 - 00446224 _____ (Dolby Laboratories) C:\Windows\system32\EED64H.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 00446224 _____ (Dolby Laboratories) C:\Windows\system32\EED64A.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 00400504 _____ (Creative Technology Ltd.) C:\Windows\system32\VMWRP64.DLL 2015-09-11 16:26 - 2015-09-11 16:26 - 00260120 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\system32\Dts2APO.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 00147224 _____ (Dolby Laboratories) C:\Windows\system32\EEL64A.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 00147216 _____ (Dolby Laboratories) C:\Windows\system32\EEL64H.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 00132248 _____ (VIA Technologies,Inc.) C:\Windows\system32\ViaKaraokePropPageExt.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 00130144 _____ (Dolby Laboratories) C:\Windows\system32\EEA64H.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 00130144 _____ (Dolby Laboratories) C:\Windows\system32\EEA64A.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 00104088 _____ (VIA Technologies,Inc.) C:\Windows\system32\ViaMicArrayPropPageExt.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 00103424 _____ (Advanced Micro Devices) C:\Windows\system32\DelayAPO.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 00102912 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\AtihdWT6.sys 2015-09-11 16:26 - 2015-09-11 16:26 - 00101016 _____ (VIA Technologies, Inc.) C:\Windows\system32\Dts2PropPageExt.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 00094720 _____ (QSound Labs, Inc.) C:\Windows\system32\nQPropPageExt.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 00093712 _____ (QSound Labs, Inc.) C:\Windows\system32\nQAPO.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 00084688 _____ (Dolby Laboratories) C:\Windows\system32\EEG64H.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 00084688 _____ (Dolby Laboratories) C:\Windows\system32\EEG64A.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 00080400 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\system32\VtSrdAPO.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 00067272 _____ (Creative Technology Ltd.) C:\Windows\system32\VMPPLD64.DLL 2015-09-11 16:26 - 2015-09-11 16:26 - 00064152 _____ (TODO: <Company name>) C:\Windows\system32\PropPageExt.dll 2015-09-11 16:26 - 2015-09-11 16:26 - 00063144 _____ (Creative Technology Ltd.) C:\Windows\system32\VMPPCN64.DLL 2015-09-11 16:26 - 2015-09-11 16:26 - 00042192 _____ (Creative Technology Ltd.) C:\Windows\system32\Drivers\VMfilt64.sys 2015-09-11 16:26 - 2015-09-11 16:26 - 00036504 _____ (VIA Technologies, Inc.) C:\Windows\system32\ViakaraokeSrv.exe 2015-09-11 16:26 - 2015-09-11 16:26 - 00000000 ____D C:\Windows\system32\SRSLabs 2015-09-11 16:26 - 2015-09-11 16:26 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2015-09-11 16:26 - 2015-09-11 16:26 - 00000000 ____D C:\Program Files\VIA 2015-09-11 16:25 - 2015-09-17 12:23 - 00065536 _____ C:\Windows\system32\spu_storage.bin 2015-09-11 16:25 - 2015-09-14 08:32 - 00000000 ____D C:\Program Files\AMD 2015-09-11 16:25 - 2015-09-11 17:35 - 00000000 ____D C:\AMD 2015-09-11 16:25 - 2015-09-11 16:25 - 00833798 _____ C:\Windows\system32\amdicdxx.dat 2015-09-11 16:25 - 2015-09-11 16:25 - 00737410 _____ C:\Windows\system32\atiicdxx.dat 2015-09-11 16:25 - 2015-09-11 16:25 - 00322868 _____ C:\Windows\system32\ativvaxy_vi.dat 2015-09-11 16:25 - 2015-09-11 16:25 - 00321200 _____ C:\Windows\system32\ativvaxy_vi_nd.dat 2015-09-11 16:25 - 2015-09-11 16:25 - 00255808 _____ C:\Windows\system32\ativvaxy_cz_nd.dat 2015-09-11 16:25 - 2015-09-11 16:25 - 00250884 _____ C:\Windows\system32\ativvaxy_FJ.dat 2015-09-11 16:25 - 2015-09-11 16:25 - 00249088 _____ C:\Windows\system32\ativvaxy_FJ_nd.dat 2015-09-11 16:25 - 2015-09-11 16:25 - 00234420 _____ C:\Windows\system32\ativvaxy_cik.dat 2015-09-11 16:25 - 2015-09-11 16:25 - 00232752 _____ C:\Windows\system32\ativvaxy_cik_nd.dat 2015-09-11 16:25 - 2015-09-11 16:25 - 00204952 _____ C:\Windows\SysWOW64\ativvsvl.dat 2015-09-11 16:25 - 2015-09-11 16:25 - 00204952 _____ C:\Windows\system32\ativvsvl.dat 2015-09-11 16:25 - 2015-09-11 16:25 - 00169152 _____ C:\Windows\system32\ativce03.dat 2015-09-11 16:25 - 2015-09-11 16:25 - 00167456 _____ C:\Windows\system32\amde31a.dat 2015-09-11 16:25 - 2015-09-11 16:25 - 00157144 _____ C:\Windows\SysWOW64\ativvsva.dat 2015-09-11 16:25 - 2015-09-11 16:25 - 00157144 _____ C:\Windows\system32\ativvsva.dat 2015-09-11 16:25 - 2015-09-11 16:25 - 00140240 _____ C:\Windows\system32\samu_krnl_ci.sbin 2015-09-11 16:25 - 2015-09-11 16:25 - 00138832 _____ C:\Windows\system32\samu_krnl_isv_ci.sbin 2015-09-11 16:25 - 2015-09-11 16:25 - 00100816 _____ C:\Windows\system32\ativce02.dat 2015-09-11 16:25 - 2015-09-11 16:25 - 00047664 _____ C:\Windows\system32\kapp_ci.sbin 2015-09-11 16:25 - 2015-09-11 16:25 - 00043408 _____ C:\Windows\system32\kapp_si.sbin 2015-09-11 16:25 - 2015-09-11 16:25 - 00000000 ____D C:\Users\husse\AppData\Local\Publishers 2015-09-11 16:25 - 2015-09-11 16:25 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies 2015-09-11 16:25 - 2015-09-11 16:25 - 00000000 _____ C:\Windows\ativpsrm.bin 2015-09-11 16:25 - 2015-08-09 07:13 - 12062080 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll 2015-09-11 16:25 - 2015-08-09 07:13 - 01466744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll 2015-09-11 16:25 - 2015-08-09 07:13 - 00162272 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll 2015-09-11 16:25 - 2015-08-09 07:10 - 21631512 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2015-09-11 16:25 - 2015-08-09 07:10 - 00874520 _____ (AMD) C:\Windows\system32\coinst_15.20.dll 2015-09-11 16:25 - 2015-08-09 07:10 - 00673816 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2015-09-11 16:24 - 2015-09-16 09:31 - 00000000 ____D C:\Users\husse\AppData\Local\Packages 2015-09-11 16:24 - 2015-09-16 09:30 - 00000000 ____D C:\Users\husse\AppData\Local\VirtualStore 2015-09-11 16:24 - 2015-09-11 16:38 - 00000000 ____D C:\Users\husse\AppData\Local\PackageStaging 2015-09-11 16:24 - 2015-09-11 16:24 - 00016148 _____ C:\Windows\system32\DESKTOP-7AC9HGK_defaultuser0_HistoryPrediction.bin 2015-09-11 16:24 - 2015-09-11 16:24 - 00000000 ____D C:\Users\husse\AppData\Roaming\Adobe 2015-09-11 16:24 - 2015-09-11 16:24 - 00000000 ____D C:\Users\husse\AppData\Local\TileDataLayer 2015-09-11 16:22 - 2015-09-16 21:19 - 00000000 ____D C:\Users\husse 2015-09-11 16:22 - 2015-09-16 09:34 - 00000000 ___RD C:\Users\husse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-09-11 16:22 - 2015-09-16 09:32 - 00000000 __RSD C:\Users\husse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-09-11 16:22 - 2015-09-16 09:32 - 00000000 ___RD C:\Users\husse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-09-11 16:22 - 2015-09-16 09:32 - 00000000 ___RD C:\Users\husse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-09-11 16:22 - 2015-09-11 16:22 - 00000020 ___SH C:\Users\husse\ntuser.ini 2015-09-11 16:22 - 2015-09-11 16:22 - 00000000 _SHDL C:\Users\husse\Vorlagen 2015-09-11 16:22 - 2015-09-11 16:22 - 00000000 _SHDL C:\Users\husse\Startmenü 2015-09-11 16:22 - 2015-09-11 16:22 - 00000000 _SHDL C:\Users\husse\Netzwerkumgebung 2015-09-11 16:22 - 2015-09-11 16:22 - 00000000 _SHDL C:\Users\husse\Lokale Einstellungen 2015-09-11 16:22 - 2015-09-11 16:22 - 00000000 _SHDL C:\Users\husse\Eigene Dateien 2015-09-11 16:22 - 2015-09-11 16:22 - 00000000 _SHDL C:\Users\husse\Druckumgebung 2015-09-11 16:22 - 2015-09-11 16:22 - 00000000 _SHDL C:\Users\husse\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-09-11 16:22 - 2015-09-11 16:22 - 00000000 _SHDL C:\Users\husse\AppData\Local\Verlauf 2015-09-11 16:22 - 2015-09-11 16:22 - 00000000 _SHDL C:\Users\husse\AppData\Local\Anwendungsdaten 2015-09-11 16:22 - 2015-09-11 16:22 - 00000000 _SHDL C:\Users\husse\Anwendungsdaten 2015-09-11 16:22 - 2015-07-10 13:04 - 00000000 ____D C:\Users\husse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\Users\Default\Vorlagen 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\Users\Default\Startmenü 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\Programme 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\ProgramData\Vorlagen 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\ProgramData\Startmenü 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\ProgramData\Dokumente 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2015-09-11 16:15 - 2015-09-11 16:15 - 00000000 _SHDL C:\Dokumente und Einstellungen 2015-09-11 16:14 - 2015-07-10 12:59 - 02718208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2015-09-11 16:13 - 2015-09-12 03:19 - 00000000 __SHD C:\Recovery 2015-09-11 16:12 - 2015-09-11 16:12 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2015-09-05 22:21 - 2015-09-05 22:21 - 00625848 _____ (Microsoft Corporation) C:\Windows\system32\msvcp140.dll 2015-09-05 22:21 - 2015-09-05 22:21 - 00431704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp140.dll 2015-09-05 22:21 - 2015-09-05 22:21 - 00381128 _____ (Microsoft Corporation) C:\Windows\system32\vccorlib140.dll 2015-09-05 22:21 - 2015-09-05 22:21 - 00325232 _____ (Microsoft Corporation) C:\Windows\system32\concrt140.dll 2015-09-05 22:21 - 2015-09-05 22:21 - 00257736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vccorlib140.dll 2015-09-05 22:21 - 2015-09-05 22:21 - 00235632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\concrt140.dll 2015-09-05 22:21 - 2015-09-05 22:21 - 00080984 _____ (Microsoft Corporation) C:\Windows\system32\vcruntime140.dll 2015-09-05 22:21 - 2015-09-05 22:21 - 00077400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vcruntime140.dll ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-09-17 12:31 - 2015-07-10 18:34 - 00771100 _____ C:\Windows\system32\perfh007.dat 2015-09-17 12:31 - 2015-07-10 18:34 - 00153964 _____ C:\Windows\system32\perfc007.dat 2015-09-17 12:24 - 2015-07-10 14:21 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-09-17 12:23 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\sru 2015-09-17 12:23 - 2015-07-10 11:05 - 00262144 ___SH C:\Windows\system32\config\BBI 2015-09-16 19:42 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\AppReadiness 2015-09-16 09:32 - 2015-07-10 13:04 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools 2015-09-16 09:32 - 2015-07-10 13:04 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-09-16 09:32 - 2015-07-10 13:04 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-09-16 09:32 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\appcompat 2015-09-16 09:27 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\registration 2015-09-16 04:02 - 2015-07-10 11:05 - 00032768 ___SH C:\Windows\system32\config\ELAM 2015-09-16 02:04 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\NDF 2015-09-14 17:22 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\rescache 2015-09-14 10:12 - 2015-07-10 12:55 - 00000000 ____D C:\Windows\CbsTemp 2015-09-13 23:02 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\Help 2015-09-13 22:04 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\SysWOW64\MUI 2015-09-13 22:04 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\MUI 2015-09-13 05:10 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\SysWOW64\WinMetadata 2015-09-13 05:10 - 2015-07-10 11:05 - 00000000 ____D C:\Windows\system32\Sysprep 2015-09-13 05:10 - 2015-07-10 11:05 - 00000000 ____D C:\Windows\system32\Dism 2015-09-12 20:07 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\LiveKernelReports 2015-09-12 14:46 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\MsDtc 2015-09-12 01:49 - 2015-07-10 13:04 - 00000000 ___RD C:\Windows\PurchaseDialog 2015-09-12 01:35 - 2015-07-10 13:04 - 00000000 ___HD C:\Windows\ELAMBKUP 2015-09-11 21:59 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-09-11 19:50 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\oobe 2015-09-11 19:13 - 2015-07-10 18:46 - 00000000 ____D C:\Program Files\Windows Journal 2015-09-11 19:13 - 2015-07-10 13:04 - 00000000 ___RD C:\Windows\ImmersiveControlPanel 2015-09-11 19:13 - 2015-07-10 13:04 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-09-11 19:13 - 2015-07-10 13:04 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-09-11 19:13 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\SysWOW64\oobe 2015-09-11 19:13 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\WinBioPlugIns 2015-09-11 19:13 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\SystemResetPlatform 2015-09-11 19:13 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\appraiser 2015-09-11 19:13 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\Provisioning 2015-09-11 19:13 - 2015-07-10 11:05 - 00000000 ____D C:\Windows\SysWOW64\Dism 2015-09-11 17:11 - 2015-07-10 13:04 - 00028672 _____ C:\Windows\system32\config\BCD-Template 2015-09-11 16:38 - 2015-07-10 13:04 - 00000000 ___SD C:\Windows\SysWOW64\DiagSvcs 2015-09-11 16:38 - 2015-07-10 13:04 - 00000000 ___SD C:\Windows\SysWOW64\Configuration 2015-09-11 16:38 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\SysWOW64\Speech_OneCore 2015-09-11 16:38 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\SysWOW64\setup 2015-09-11 16:38 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\SysWOW64\Com 2015-09-11 16:24 - 2015-07-10 13:04 - 00000000 ___RD C:\Windows\PrintDialog 2015-09-11 16:24 - 2015-07-10 13:04 - 00000000 ___RD C:\Windows\MiracastView 2015-09-11 16:23 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\WinBioDatabase 2015-09-11 16:18 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\restore 2015-09-11 16:16 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\spool 2015-09-11 16:15 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Windows NT 2015-09-11 16:15 - 2015-07-10 11:05 - 00000000 __RHD C:\Users\Default 2015-09-11 16:14 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\FxsTmp 2015-09-11 16:13 - 2015-07-10 13:04 - 00000000 ____D C:\Windows\system32\Recovery ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\husse\AppData\Roaming\6X31rW5TVp8g3UXJ 2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\husse\AppData\Roaming\cB82Cses 2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\husse\AppData\Roaming\H3QQEsvH1EExpE63PBCXpDmrIcM 2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\husse\AppData\Roaming\ibMCw6B4 2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\husse\AppData\Roaming\j6Jag5TzJIYFrz2kn 2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\husse\AppData\Roaming\Jven1sO6I6PW1nCPGAkODb9SOk 2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\husse\AppData\Roaming\LtgNp6le2iAKYbfBj9QpWqetF3 2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\husse\AppData\Roaming\lug2HI3abwVdj2DyozSLJu 2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\husse\AppData\Roaming\nCbp28L1xY 2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\husse\AppData\Roaming\rrOKzW2HXnGSVJE 2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\husse\AppData\Roaming\X21uYa3p02H1ncOM6kJ 2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\husse\AppData\Roaming\yHKuQrDNQv 2015-09-16 21:09 - 2015-09-16 21:09 - 0007598 _____ () C:\Users\husse\AppData\Local\Resmon.ResmonCfg Einige Dateien in TEMP: ==================== C:\Users\husse\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert ==================== BCD ================================ Start-Manager fr Firmware -------------------------- Bezeichner {fwbootmgr} displayorder {10eb6f9b-54b3-11e5-a896-c0b70cdaab54} {10eb6f97-54b3-11e5-a896-c0b70cdaab54} {10eb6f98-54b3-11e5-a896-c0b70cdaab54} {10eb6f96-54b3-11e5-a896-c0b70cdaab54} {10eb6f99-54b3-11e5-a896-c0b70cdaab54} {bootmgr} {10eb6f9a-54b3-11e5-a896-c0b70cdaab54} {906091e9-5ca1-11e5-9bf2-806e6f6e6963} timeout 3 Windows-Start-Manager --------------------- Bezeichner {bootmgr} device partition=\Device\HarddiskVolume2 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager locale de-DE inherit {globalsettings} default {current} resumeobject {10eb6fa2-54b3-11e5-a896-c0b70cdaab54} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Firmwareanwendung (101fffff) ---------------------------- Bezeichner {10eb6f96-54b3-11e5-a896-c0b70cdaab54} description Generic-SD/MMC 1.00 Firmwareanwendung (101fffff) ---------------------------- Bezeichner {10eb6f97-54b3-11e5-a896-c0b70cdaab54} description Generic-Compact Flash 1.01 Firmwareanwendung (101fffff) ---------------------------- Bezeichner {10eb6f98-54b3-11e5-a896-c0b70cdaab54} description Generic-SM/xD-Picture 1.02 Firmwareanwendung (101fffff) ---------------------------- Bezeichner {10eb6f99-54b3-11e5-a896-c0b70cdaab54} description Generic-MS/MS-Pro 1.03 Firmwareanwendung (101fffff) ---------------------------- Bezeichner {10eb6f9a-54b3-11e5-a896-c0b70cdaab54} description ST1000DM003-1CH162 Firmwareanwendung (101fffff) ---------------------------- Bezeichner {10eb6f9b-54b3-11e5-a896-c0b70cdaab54} description ASUS DRW-24F1ST a Firmwareanwendung (101fffff) ---------------------------- Bezeichner {906091e9-5ca1-11e5-9bf2-806e6f6e6963} description Realtek PXE B04 D00 Windows-Startladeprogramm ------------------------- Bezeichner {10eb6fa0-54b3-11e5-a896-c0b70cdaab54} device ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{10eb6fa1-54b3-11e5-a896-c0b70cdaab54} path \windows\system32\winload.efi description Windows Recovery Environment locale de-DE inherit {bootloadersettings} displaymessage Recovery displaymessageoverride Recovery osdevice ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{10eb6fa1-54b3-11e5-a896-c0b70cdaab54} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Windows-Startladeprogramm ------------------------- Bezeichner {current} device partition=C: path \Windows\system32\winload.efi description Windows 10 locale de-DE inherit {bootloadersettings} recoverysequence {10eb6fa4-54b3-11e5-a896-c0b70cdaab54} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \Windows resumeobject {10eb6fa2-54b3-11e5-a896-c0b70cdaab54} nx OptIn bootmenupolicy Standard useplatformclock Yes Windows-Startladeprogramm ------------------------- Bezeichner {10eb6fa4-54b3-11e5-a896-c0b70cdaab54} device ramdisk=[C:]\Recovery\WindowsRE\Winre.wim,{10eb6fa5-54b3-11e5-a896-c0b70cdaab54} path \windows\system32\winload.efi description Windows Recovery Environment locale de-DE inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[C:]\Recovery\WindowsRE\Winre.wim,{10eb6fa5-54b3-11e5-a896-c0b70cdaab54} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Wiederaufnahme aus dem Ruhezustand ---------------------------------- Bezeichner {10eb6fa2-54b3-11e5-a896-c0b70cdaab54} device partition=C: path \Windows\system32\winresume.efi description Windows Resume Application locale de-DE inherit {resumeloadersettings} recoverysequence {10eb6fa4-54b3-11e5-a896-c0b70cdaab54} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Windows-Speichertestprogramm ---------------------------- Bezeichner {memdiag} device partition=\Device\HarddiskVolume2 path \EFI\Microsoft\Boot\memtest.efi description Windows-Speicherdiagnose locale de-DE inherit {globalsettings} badmemoryaccess Yes EMS-Einstellungen ----------------- Bezeichner {emssettings} bootems No Debuggereinstellungen --------------------- Bezeichner {dbgsettings} debugtype Serial debugport 1 baudrate 115200 RAM-Defekte ----------- Bezeichner {badmemory} Globale Einstellungen --------------------- Bezeichner {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Startladeprogramm-Einstellungen ------------------------------- Bezeichner {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Hypervisoreinstellungen ----------------------- Bezeichner {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Einstellungen zur Ladeprogrammfortsetzung ----------------------------------------- Bezeichner {resumeloadersettings} inherit {globalsettings} Ger„teoptionen -------------- Bezeichner {10eb6fa1-54b3-11e5-a896-c0b70cdaab54} description Windows Recovery ramdisksdidevice unknown ramdisksdipath \Recovery\WindowsRE\boot.sdi Ger„teoptionen -------------- Bezeichner {10eb6fa5-54b3-11e5-a896-c0b70cdaab54} description Windows Recovery ramdisksdidevice partition=C: ramdisksdipath \Recovery\WindowsRE\boot.sdi LastRegBack: 2015-09-11 16:11 ==================== Ende von FRST.txt ============================ Ich hoffe das ist richtig so. Also die oberen beiden letzten Posts sind die FRST.txt vom PC. ...die FRST.txt vom Laptop werde ich als nächstes aufgeteilt Posten, wenn ich es nochmal hin bekomme ich muss nämlich gleich auf Arbeit. MfG |
18.09.2015, 02:45 | #8 |
| HILFE ! fremder host hat sämtliche Geräte eingenommen !!Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:15-09-2015 durchgeführt von Yo (Administrator) auf DESKTOP-BM9L3JF (17-09-2015 12:40:38) Gestartet von C:\Users\Yo\Desktop Geladene Profile: Yo (Verfügbare Profile: Yo) Platform: Windows 10 Education (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Edge) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Zemana Ltd.) C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Zemana Ltd.) C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe (Microsoft Corporation) C:\Windows\System32\SppExtComObj.Exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [ZAM] => C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe [12326768 2015-08-30] (Zemana Ltd.) HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{c007434a-d717-4aaa-8052-f111129a81d8}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== FireFox: ======== FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [247968 2015-09-12] (Synaptics Incorporated) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation) R2 ZAMSvc; C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe [12326768 2015-08-30] (Zemana Ltd.) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 athr; C:\Windows\System32\drivers\athwnx.sys [4207104 2015-07-10] (Qualcomm Atheros Communications, Inc.) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [44192 2015-09-12] (Synaptics Incorporated) S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] () S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation) R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation) R1 ZAM; C:\WINDOWS\System32\drivers\zam64.sys [109432 2015-09-16] (Zemana Ltd.) R1 ZAM_Guard; C:\WINDOWS\System32\drivers\zamguard64.sys [109432 2015-09-16] (Zemana Ltd.) S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] ========================== MD5 Treiber ======================= C:\Windows\System32\drivers\1394ohci.sys 22CE801AD25C51E2553F41A076BB0CB2 C:\Windows\System32\drivers\3ware.sys 2C49A2441EBB24C6ACFB524C1459115F C:\Windows\System32\drivers\ACPI.sys B87D3D07FE6F15328C6860D542F0E2BD C:\Windows\System32\Drivers\acpiex.sys 1E3C4EDBB7F3F668B7205E351010BB79 C:\Windows\System32\drivers\acpipagr.sys 13B1C26AEDCB40082CDD97506F968129 C:\Windows\System32\drivers\acpipmi.sys B3D64FF927D611721DA73A61BF3A18B3 C:\Windows\System32\drivers\acpitime.sys 19F793B2203D94AC1F8AEDB08B494E2E C:\Windows\System32\drivers\ADP80XX.SYS 2A24E10C1A1DE0E0035E353EED494A1C C:\Windows\system32\drivers\afd.sys 6C12C7E01A4F64E0AA9C88AF66955CC9 C:\Windows\System32\drivers\agp440.sys EF09D07626820F7F89519514C17FE768 C:\Windows\System32\DRIVERS\ahcache.sys 8A289EF0721F95267BF2404BABEE146D C:\Windows\System32\drivers\amdk8.sys 6763084E8322A4876D1613854640F914 C:\Windows\System32\drivers\amdppm.sys DE29D8AB57AD67D4940CAB4A48B3E230 C:\Windows\System32\drivers\amdsata.sys 4C1F9BBAF5CCD76D4642F3B92B97B454 C:\Windows\System32\drivers\amdsbs.sys F8195C1A15955180DD663E7FF4C2F6DD C:\Windows\System32\drivers\amdxata.sys DD2F5BBCFAC4D8E48DB1A95A7EEBFF08 C:\Windows\system32\drivers\appid.sys 46AAF119090573A80D603745582229ED C:\Windows\System32\drivers\arcsas.sys 0756EECAC010BE449D07502DF27E7701 C:\Windows\System32\drivers\asyncmac.sys A5792F971EFE86B7F56EE7299ED1082B C:\Windows\System32\drivers\atapi.sys 8921DF6060DB5C7700AA48CB12E9EA08 C:\Windows\System32\drivers\athwnx.sys F1F16542AC6404DDC44A447A875AD13A C:\Windows\System32\drivers\bxvbda.sys 00D64E82900E4EC9062805ED87C2D75A C:\Windows\System32\drivers\BasicDisplay.sys 5164A66EC1565711A7B4CF2F143B4979 C:\Windows\System32\drivers\BasicRender.sys F4C58BBF2972BD84C73F6A14CA35AC4E C:\Windows\System32\drivers\bcmfn2.sys 25349D0B334E528667980948ED107D89 C:\Windows\System32\Drivers\Beep.sys 1E8A9267F8886803AAE02982FC1B5BC4 C:\Windows\System32\DRIVERS\bowser.sys C9FD65687EF89715999C582D3E568812 C:\Windows\System32\drivers\BthAvrcpTg.sys F8DD3B0EAC1EF1D087AE47E5819540AC C:\Windows\System32\drivers\bthhfenum.sys 647E2A425AD43637EAA01096A58B7089 C:\Windows\System32\drivers\BthHFHid.sys B95040CAD3434D9EE003065363A0FAFF C:\Windows\System32\drivers\bthmodem.sys 29AEE352AED4FCD2191436D263D75347 C:\Windows\System32\drivers\buttonconverter.sys F34AD5A9F944D91BD285D1C29EEECB2B C:\Windows\System32\drivers\capimg.sys A10A1E05A943B10ECE5D57D131B7404D C:\Windows\System32\DRIVERS\cdfs.sys F2829DC6D292DCAC5029893BB2E9FEE3 C:\Windows\System32\drivers\cdrom.sys CA160E02F35A61C6F5C681FB4669C519 C:\Windows\System32\drivers\circlass.sys 60D7D304DF75DFF6A46CF633F583B592 C:\Windows\System32\drivers\CLFS.sys FF9D4BCE19E5D36CB3A845A3286DA6C3 C:\Windows\System32\drivers\CmBatt.sys 8EBA63416EC166EBA6EF6D34A505D8C8 C:\Windows\System32\Drivers\cng.sys 3B64DA873CEA5BEC42570BFF1054A014 C:\Windows\System32\DRIVERS\cnghwassist.sys 5EEA0856000F81B3D709BC81B3AA1EF2 C:\Windows\System32\DriverStore\FileRepository\compositebus.inf_amd64_98334ba6e76853ba\CompositeBus.sys 74CD3BF688E2B408227FE012A2F2D8ED C:\Windows\System32\drivers\condrv.sys D38774D1D383A2CDB9A4F64B7206913B C:\Windows\System32\drivers\csc.sys 838755238B2BAE5A4802B038443B8A22 C:\Windows\System32\drivers\dam.sys F038EAF73AAB72A4A89185A5A7B9FD75 C:\Windows\System32\Drivers\dfsc.sys 25435407D97419627F4B10653433BF2B C:\Windows\System32\drivers\disk.sys FDCD449AE9E75D7690593D16ADAF4DB4 C:\Windows\System32\drivers\dmvsc.sys F10A8F6D036CEDD14A5471782C52F041 C:\Windows\system32\drivers\drmkaud.sys 45771610FF181434073B5A0A00F20F8D C:\Windows\System32\drivers\dxgkrnl.sys 310334DAF2C455744703E2D582942DF3 C:\Windows\System32\drivers\evbda.sys 3070013B01EDA42C7EB67D731340C396 C:\Windows\System32\drivers\EhStorClass.sys 59EE187E333EE9914DD9BEA5F4E0D85D C:\Windows\System32\drivers\EhStorTcgDrv.sys 9297F1CC486F24BDFD2874156AC5430F C:\Windows\System32\drivers\errdev.sys F7FCCA6300485EF60CEA6D991D6C8C78 C:\Windows\System32\Drivers\exfat.sys DCCDC3F35F0618692117DF90800A4284 C:\Windows\System32\Drivers\fastfat.sys 435FC0D25ADFD1A2FBA8C98BD4D79E23 C:\Windows\System32\drivers\fcvsc.sys 4E4B7D935DBF522B2F23D3573596181D C:\Windows\System32\drivers\fdc.sys 583EB1C7690E361213BBD0472155128B C:\Windows\System32\drivers\filecrypt.sys CDFD81CACE0E11596A3BB61EC4CF6467 C:\Windows\System32\drivers\fileinfo.sys 3F02FEDAE894CBF4BAADDF8C8E1D53A8 C:\Windows\System32\drivers\filetrace.sys 2824933386E30DE5BA089DF539CE19A3 C:\Windows\System32\drivers\flpydisk.sys 6A598249640F8BEDD79EC73917E1664F C:\Windows\System32\drivers\fltmgr.sys 44B6A6832134DF651E887E941478CA35 C:\Windows\System32\drivers\FsDepends.sys 3F3B9E8CECD5604BC7746EF3A852EB67 C:\Windows\System32\Drivers\Fs_Rec.sys A60583221C7BB7CEC35C63285A297BE1 C:\Windows\System32\DRIVERS\fvevol.sys 58013A50225174EEF1410E37795D7908 C:\Windows\System32\drivers\gagp30kx.sys 0DAAE3EFCE00133AB3E383A36C47CDAF C:\Windows\System32\drivers\vmgencounter.sys F59155B95D01C08F9ED774B626B504A1 C:\Windows\System32\drivers\genericusbfn.sys AE24452F55C6F1784CBD7489D0CDDB02 C:\Windows\System32\Drivers\msgpioclx.sys 96F0D3A583A91B634EE2AC2507356EDC C:\Windows\System32\drivers\gpuenergydrv.sys BA2455D93BD57989A04FE4094AA6F941 C:\Windows\system32\DRIVERS\HdAudio.sys FE85E924C86D6D313D61C28A451EA4DE C:\Windows\System32\drivers\HDAudBus.sys C277A49F8A8295840DEBC9240B75A282 C:\Windows\System32\drivers\HECIx64.sys B6AC71AAA2B10848F57FC49D55A651AF C:\Windows\System32\drivers\HidBatt.sys D5A57EF4822A0388352FFF9F5CD53495 C:\Windows\System32\drivers\hidbth.sys 39575B53EB80C77FF2A3F1449D00B7F5 C:\Windows\System32\drivers\hidi2c.sys 35C3B602664116E737FF729F9A7156AD C:\Windows\System32\drivers\hidinterrupt.sys C4ABE526BBF2A18E8AF70177FBAD9C6E C:\Windows\System32\drivers\hidir.sys 348416C7D7EB05BC3099FE2F2B27985C C:\Windows\System32\drivers\hidusb.sys 01F732724AF6EFE69886DA95A4E51820 C:\Windows\System32\drivers\HpSAMD.sys 3844CE7DD23530CAD59D8CABA57CCB05 C:\Windows\System32\drivers\HTTP.sys CA6EADBB8731CA27BDA4037BF290AC14 C:\Windows\System32\drivers\hwpolicy.sys 8841D927EB1F7FFC8B1805BC0CF190ED C:\Windows\System32\drivers\hyperkbd.sys 53436C3835E80F4421652A67F44D6313 C:\Windows\System32\drivers\i8042prt.sys D4CDEE4A62BDFFF6E8558A9552148EA7 C:\Windows\System32\drivers\iaLPSSi_GPIO.sys 16A10CCEDCF5AC4CAAE43DC9FC40392F C:\Windows\System32\drivers\iaLPSSi_I2C.sys F1DF87463AC308047B089E9F0456B4C8 C:\Windows\System32\drivers\iaStorAV.sys 9FDD4763A115D04F565C38183DE4646F C:\Windows\System32\drivers\iaStorV.sys 4E69EE8F8E5DA036535D433C544AF9E2 C:\Windows\System32\drivers\ibbus.sys 15C59DF20F74A0C2C764B991FED7F4A5 C:\Windows\system32\DRIVERS\igdkmd64.sys E6D200304A8D739597678807820ABB43 C:\Windows\System32\drivers\intelide.sys 498759139F71142888CF7EFA1ABE18C8 C:\Windows\System32\drivers\intelpep.sys DC270DDCDDC2EF65D484A65CC5166222 C:\Windows\System32\drivers\intelppm.sys B4D9C777762B1F7356958B9C0AA93BEB C:\Windows\System32\drivers\ioqos.sys 22BD83268B80A8C89AAC0BDF46E4EB5D C:\Windows\System32\DRIVERS\ipfltdrv.sys A49E47A6E1429123F46A7CA9C05AEFC1 C:\Windows\System32\drivers\IPMIDrv.sys E0C276985AF968CE295B8E09C121321F C:\Windows\System32\drivers\ipnat.sys 5D3744E6FDEC1A6FB3FA9B1DD4AF0694 C:\Windows\System32\drivers\irenum.sys B18202D72C0EF4B53CEC6F59E3E1B955 C:\Windows\System32\drivers\isapnp.sys CD04CBCCCB4C0E4BB06B98E0F45C888A C:\Windows\System32\drivers\msiscsi.sys 5D90E942C94B20E0F321015C0ABF3EEA C:\Windows\System32\drivers\k57nd60a.sys 45369E037410609D769852A1CE46A184 C:\Windows\System32\drivers\kbdclass.sys 4192DFE6CA143C0AD8AF42C51A82BECA C:\Windows\System32\drivers\kbdhid.sys B63C0DB341DCB46CF7AA259333A737DD C:\Windows\System32\drivers\kdnic.sys 53C79A7FABDAAFD11EAB31963FB2CED7 C:\Windows\System32\Drivers\ksecdd.sys 1E99B26BDB9B9C9BC775ED4543558560 C:\Windows\System32\Drivers\ksecpkg.sys 6198A79011C67497B324798B3D4272CE C:\Windows\system32\drivers\ksthunk.sys 503597D9B72DBD9998F722F12A51ACFC C:\Windows\System32\drivers\lltdio.sys DB789F57CE94C827FBFF709CA5ABD29E C:\Windows\System32\drivers\lsi_sas.sys 3BB39166E446D456C277C17DFEA3DAC6 C:\Windows\System32\drivers\lsi_sas2i.sys 25CF625E46307A5D6674C8DFA1A289AA C:\Windows\System32\drivers\lsi_sas3i.sys 722C52B12EA4C198D56994934C9DDAB6 C:\Windows\System32\drivers\lsi_sss.sys 3371FF1D5D745C3306C6A2C4E99C25A9 C:\Windows\system32\drivers\luafv.sys C692B9C0352315417CF49FFA664957A3 C:\Windows\System32\drivers\megasas.sys B2ED9A7A5587A128A0EFD0DBE7662E95 C:\Windows\System32\drivers\megasr.sys 083F71488E6780A67290273180256EA5 C:\Windows\System32\drivers\mlx4_bus.sys 5907A10D46747A2B6DBFD6A198254DC2 C:\Windows\system32\drivers\mmcss.sys 91ED6F0EDF4158D63C52194F17D4F42E C:\Windows\System32\drivers\modem.sys 2C4CC9F6ADBED5A6D131FDB97A78FF68 C:\Windows\System32\drivers\monitor.sys D8DB13529C8AD6FBAF8E2F382024374F C:\Windows\System32\drivers\mouclass.sys 2DAAF1EE1C30F2FCF59851A64ADA0422 C:\Windows\System32\drivers\mouhid.sys D30FE074503283829ED194BCAE6239C3 C:\Windows\System32\drivers\mountmgr.sys D5EC9413527B286CFEEB0294C53ABB95 C:\Windows\System32\drivers\mpsdrv.sys 989A1BBD9C49B107B4A47D06E6827A69 C:\Windows\system32\drivers\mrxdav.sys C1E74DD1D84861D8F12FF8BC0BA11975 C:\Windows\System32\DRIVERS\mrxsmb.sys 1DF2C5FD2710A13B07E663A12F0E0EEA C:\Windows\System32\DRIVERS\mrxsmb10.sys 185932B1149BD707F8A13174CDAB365B C:\Windows\System32\DRIVERS\mrxsmb20.sys 99E24D4DBACBC569833B9A67710D65E7 C:\Windows\System32\drivers\bridge.sys 6F8BE4FB6262012E61BBADB5444628DC C:\Windows\System32\Drivers\Msfs.sys 7C55F1751CAC199680D4489D1EE46544 C:\Windows\System32\drivers\msgpiowin32.sys 988588C16A53C2581488C15FF18934BF C:\Windows\System32\drivers\mshidkmdf.sys 09622DBC24D0178F15DB8461BB6970DF C:\Windows\System32\drivers\mshidumdf.sys 34BB07495C0159BE4189841E16F3BC2F C:\Windows\System32\drivers\msisadrv.sys 7BF3F0DA362C053918F5F2EC43CE39E2 C:\Windows\system32\drivers\MSKSSRV.sys B2D0FD21FE67D6434769CC6F7A7883CA C:\Windows\System32\drivers\mslldp.sys FB3801F176376286A3F8F20FFB8CDC53 C:\Windows\system32\drivers\MSPCLOCK.sys 8CBDF0E7A6CD824352F37A682A33DF7E C:\Windows\system32\drivers\MSPQM.sys 33E5B6261D69ACD4948A5C64B9D8F29F C:\Windows\System32\Drivers\MsRPC.sys 557DF8C0DBBBF518AC395C6EB1B179AE C:\Windows\System32\drivers\mssmbios.sys 0A29AFA668F5DD50482A98ECE70C77A7 C:\Windows\system32\drivers\MSTEE.sys 30CE30877FD5BFADE74FA27D7829BF89 C:\Windows\System32\drivers\MTConfig.sys 13D88C0B8A2FA001CD72D454955A6974 C:\Windows\System32\Drivers\mup.sys 00C7F0F06A0A48B9CDB6B3AC3BE288F0 C:\Windows\System32\drivers\mvumis.sys 8E237527CA260C71D39ED4081BDF3419 C:\Windows\System32\DRIVERS\nwifi.sys 48D0587A8302FD3302CFE6F59F7345B0 C:\Windows\System32\drivers\ndfltr.sys CF8296427834CF8BBB3EE1444C17362D C:\Windows\System32\drivers\ndis.sys D43EAFF4887321A07D9F9A9DD7225E07 C:\Windows\System32\drivers\ndiscap.sys A0719D1EBA971DFC5DF5F7CC010385F8 C:\Windows\System32\drivers\NdisImPlatform.sys 0C557932CCCC65AEB37326DD36504527 C:\Windows\System32\DRIVERS\ndistapi.sys 56F9345D1945826135FBAB7589592B1F C:\Windows\System32\drivers\ndisuio.sys AADFC340939D99E5D756E713E1D452EB C:\Windows\System32\drivers\NdisVirtualBus.sys 312DFD787D99D3BF1427B0388BC04F71 C:\Windows\System32\drivers\ndiswan.sys 2103F43E0A1ECFB14B7E1B889F5F24D7 C:\Windows\System32\DRIVERS\ndiswan.sys 2103F43E0A1ECFB14B7E1B889F5F24D7 C:\Windows\System32\DRIVERS\NDProxy.sys 6E98F16983C4AE8703FF9F90AB4B31DD C:\Windows\System32\drivers\Ndu.sys F1B7CC77F412C8D45B2DDCF76EDA4F9D C:\Windows\System32\drivers\netbios.sys 824FDC990A3F79069BE468A132EB6888 C:\Windows\System32\DRIVERS\netbt.sys F0D791348AD254360CC3C3E501CCB745 C:\Windows\System32\Drivers\Npfs.sys 41557BE174E9EC6AC703A8A4ADBC6650 C:\Windows\System32\drivers\npsvctrig.sys AC3F70FCFBCE97AA2F12BA43EE13B86E C:\Windows\System32\drivers\nsiproxy.sys 66A98C407085B8920DF1E6D722F1ADB8 C:\Windows\System32\Drivers\NTFS.sys 466EC5659C02ED53DBD47DC1BC2B8086 C:\Windows\System32\Drivers\Null.sys 383E546EF4982262A0EF6CC2B6E9D525 C:\Windows\System32\drivers\nvraid.sys 466F875F1D4C6ABB46AF28007009237C C:\Windows\System32\drivers\nvstor.sys 76F19EAE7A52CBAF7B8EC428BE6E0DA0 C:\Windows\System32\drivers\nv_agp.sys 0D0CB77D74B38E0EC62341C19E469D8D C:\Windows\System32\drivers\parport.sys 38F1AE32339731F6E5A7281AE8042545 C:\Windows\System32\drivers\partmgr.sys 707889D2F95AAE8C9DD254D8767AD908 C:\Windows\System32\drivers\pci.sys 2834089EA4E550FF3B96E61FB4AA34ED C:\Windows\System32\drivers\pciide.sys 3D587E4295B11B8480F7ACB09A89D718 C:\Windows\System32\drivers\pcmcia.sys B8F07002B5F1DA23CFF979C2806B09F3 C:\Windows\System32\drivers\pcw.sys FF588077D0C6AC2EA3FCBF1903CE08D0 C:\Windows\System32\drivers\pdc.sys 5A4426450501534666F9E6157E258A0B C:\Windows\System32\drivers\peauth.sys 688F47C342E1BBC87A48AB71D316233E C:\Windows\System32\drivers\percsas2i.sys 189265498945593D5256CFF7FEBB9665 C:\Windows\System32\drivers\percsas3i.sys 9B86965114F6831A5130EFE6657B17D9 C:\Windows\System32\drivers\raspptp.sys 1433EB7908E5E1E20FFD50E4126C3484 C:\Windows\System32\drivers\processr.sys 22DE54C3974E4FD98F61D095C22C59B7 C:\Windows\System32\drivers\pacer.sys EDD52C352CBAAAD13FD7BD5DCEA309B3 C:\Windows\system32\drivers\qwavedrv.sys 51590F442C6E5D43244BA30DDB0CE79D C:\Windows\System32\DRIVERS\rasacd.sys E951E70019865B06126AF850BCCA2026 C:\Windows\System32\drivers\AgileVpn.sys 0BF8607133AE264BC3C41A5BAA5FFB7B C:\Windows\System32\drivers\rasl2tp.sys CA60F6C03611AF1710BC903ED9F566FB C:\Windows\System32\DRIVERS\raspppoe.sys E5FA41160F5A3D78D8F7765E5C5F6BB0 C:\Windows\System32\drivers\rassstp.sys DF0834AE921E633E05D1FDC55C318957 C:\Windows\System32\DRIVERS\rdbss.sys FC9B7AC6E2B837EF7CD6C64F7068D41D C:\Windows\System32\drivers\rdpbus.sys FB7375657F8A5932C35EAA45E9B4B416 C:\Windows\System32\drivers\rdpdr.sys A32AED8C644734B283A7C9D08D76064D C:\Windows\System32\drivers\rdpvideominiport.sys 37CC7E41243EFBB4FBC0510E5CA32A02 C:\Windows\System32\drivers\rdyboost.sys DAF957B25A35757E9D814611FAE8FE3B C:\Windows\System32\Drivers\ReFSv1.sys 2C72E029C153D25325CA182A669E4ADE C:\Windows\System32\drivers\rspndr.sys DC66C1D262D64E30A30B68E9F21AC74B C:\Windows\System32\drivers\vms3cap.sys 88F7703F2A4677C828124AE2110D3EBC C:\Windows\System32\drivers\sbp2port.sys B467E932FE4E16E201DC7E56870CB559 C:\Windows\System32\DRIVERS\scfilter.sys 31DDA0716EC265CA57DAF9D2295FD76F C:\Windows\System32\drivers\sdbus.sys CC41D16FB823F9BE167BE773F225CD1F C:\Windows\System32\drivers\sdstor.sys F4BF50A7D16A97A887BFA0F193693C42 C:\Windows\System32\drivers\SerCx.sys 9DB0BBE3ABE1F49651AE51EC5BCABE58 C:\Windows\System32\drivers\SerCx2.sys C4AF79C37334D995D95C22C14FDBF7FD C:\Windows\System32\drivers\serenum.sys FC541A272F47BE03E67A9FCB87FA8C3E C:\Windows\System32\drivers\serial.sys 2A5F5F95FCA123DCBF53B5F603B64789 C:\Windows\System32\drivers\sermouse.sys C8738887228B7BFA3B1A906816A8BB12 C:\Windows\System32\drivers\sfloppy.sys 67832B68752CDF7FDE56949E4A2E70BF C:\Windows\System32\drivers\SiSRaid2.sys ED058030296CF9B79C8D48BF43724323 C:\Windows\System32\drivers\sisraid4.sys 633D3D1581E9DCCD5A2D8F039104C9A5 C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys 1FE05A4F787ED7DD39EA968172F20AFC C:\Windows\System32\drivers\spaceport.sys 187B4AD4446C59F8FCC4A10F473EE3D1 C:\Windows\System32\drivers\SpbCx.sys 2799FCA215919FDC9A87C5FCAB530828 C:\Windows\System32\DRIVERS\srv.sys AA1F23501511EFE9CF9771F6B20E8D45 C:\Windows\System32\DRIVERS\srv2.sys F5B169EDF9D5E3C7200D89D30E065D13 C:\Windows\System32\DRIVERS\srvnet.sys 2E142E027F0AA698BA4DCE49CBDB43CD C:\Windows\System32\drivers\stexstor.sys DDE064A4298FD1FBF804D3ED691E7EDB C:\Windows\System32\drivers\storahci.sys 32C95F44108C3E7DB58F773346E3C9D0 C:\Windows\System32\drivers\vmstorfl.sys 8883C8CE4942A99B84E1CC6EFA19738E C:\Windows\System32\drivers\stornvme.sys AE7B7E1E95BFB9340B1956C98CA52C81 C:\Windows\System32\drivers\storqosflt.sys 63513EF3121689B3A59BD217618A2E42 C:\Windows\System32\drivers\storufs.sys 000F5CFCEF0F06DC8FD1D2F568E48AE4 C:\Windows\System32\drivers\storvsc.sys 7415087F9006D6818F85F3CBD79B1A50 C:\Windows\System32\DriverStore\FileRepository\swenum.inf_amd64_2a699e44676b7781\swenum.sys 802278EE4ACCE9EA1F1481DF20EB1667 C:\Windows\System32\drivers\Synth3dVsc.sys 12D0CB1DCAE6725B6CA54CC2038C4C8C C:\Windows\system32\DRIVERS\SynTP.sys A3BBF71752E47CDF444DFD49E971E16B C:\Windows\System32\drivers\tcpip.sys BA8CDF0FC9469005A84453A128EEB6AE C:\Windows\System32\drivers\tcpip.sys BA8CDF0FC9469005A84453A128EEB6AE C:\Windows\System32\drivers\tcpipreg.sys D378A1AF58AFA84BB6AC753F2C1BE9F4 C:\Windows\system32\DRIVERS\tdx.sys 28E1E63A1AC65E17B3194238FA2CF3BF C:\Windows\System32\drivers\terminpt.sys CCDBD2817C10A4F631280CBB3AE44FFB C:\Windows\system32\drivers\tpm.sys F4AEDABC8F3A9D632F8206D0C7F8CA09 C:\Windows\System32\drivers\TsUsbFlt.sys 676C801CAA61AADD0C918CC536A74B78 C:\Windows\System32\drivers\TsUsbGD.sys 2BB6CC0DD1CEE86330743B56FA9FE91F C:\Windows\System32\drivers\tsusbhub.sys 57263291838560F78EEE783999A52EE3 C:\Windows\System32\drivers\tunnel.sys 14B46248612DF1B1A695040FFFBCFAFC C:\Windows\System32\drivers\uagp35.sys D0BE5EA1652D55029C9A898FB8ACFCE0 C:\Windows\System32\drivers\uaspstor.sys 13C15E4B238895FE4731DB1D612EEB5F C:\Windows\System32\Drivers\UcmCx.sys BEBB8B55C5F99B69EEE39A9D7BADB21E C:\Windows\System32\drivers\UcmUcsi.sys DE3EDAF609D00EA2E54986E6459796A6 C:\Windows\System32\drivers\ucx01000.sys FB1C1D8B96A482F3581338D6752E1D6C C:\Windows\System32\drivers\udecx.sys 4E1543ACE2F6E2846713E5123D9D4159 C:\Windows\System32\DRIVERS\udfs.sys CDCA9CC1D8293E75218D8FF85F2337A4 C:\Windows\System32\drivers\UEFI.sys BC683E19307C533C7161DB7A58051347 C:\Windows\System32\drivers\ufx01000.sys D14B42C26DE402F316D49667D15446F0 C:\Windows\System32\drivers\UfxChipidea.sys 192470BE4321791FBB25F379D0141D6F C:\Windows\System32\drivers\ufxsynopsys.sys F7BD838E84E6B286DBCE068EFB8C0800 C:\Windows\System32\drivers\uliagpkx.sys A25842AC180F0E8B02380ECB8ADA1AF5 C:\Windows\System32\drivers\umbus.sys 21088F43172525C7E02D335A3327F46C C:\Windows\System32\drivers\umpass.sys 294A291B5D48FE8F38DD94B7272442C5 C:\Windows\System32\drivers\urschipidea.sys A7A52EDDC3FAF183D6AC4774690ADF13 C:\Windows\System32\drivers\urscx01000.sys 2EEA0897DD9E30E958B508D557F0B5E4 C:\Windows\System32\drivers\urssynopsys.sys DC54D775A3A61E4CDE871B4E38A1459A C:\Windows\System32\drivers\usbccgp.sys 18B63A0980F4AA1E6D7879B253980E37 C:\Windows\System32\drivers\usbcir.sys 1C60A1A3C8E1E819E16F12BAEB1C83F8 C:\Windows\System32\drivers\usbehci.sys 9A3E39F85DC6E3B9F792F1095ACFF788 C:\Windows\System32\drivers\usbhub.sys 15FE07A404C8A0CD306661433027FFE4 C:\Windows\System32\drivers\UsbHub3.sys 7E51F2AD1D729F5CDBB6BE21CB58FEB7 C:\Windows\System32\drivers\usbohci.sys 72EA850B59F40C25A4FEDDA5FE84EFEB C:\Windows\System32\drivers\usbprint.sys 47B2B2DE152E25546944049CA1170BB1 C:\Windows\System32\drivers\usbser.sys 1F72E1A7E1858B7B3FF81522FCEBDE95 C:\Windows\System32\drivers\USBSTOR.SYS CD35467670DF1E6FBF36DA308F0C872B C:\Windows\System32\drivers\usbuhci.sys DFA92EA105DD1073B43FB210EEB03DD4 C:\Windows\System32\Drivers\usbvideo.sys B1484D4BBC6B7B424F1CD1554B0AFB84 C:\Windows\System32\drivers\USBXHCI.SYS C67A03F54A1EA683F4880A481EE5FF6C C:\Windows\System32\drivers\vdrvroot.sys 26223003DDFB347B5CF3EC0B56DB066B C:\Windows\System32\drivers\VerifierExt.sys A417284BC6B5C2EEF63F2C5154473530 C:\Windows\System32\drivers\vhdmp.sys 4C39C05A72EB14C0567501C7E087E564 C:\Windows\System32\drivers\vhf.sys C42206A15078596FDE8E89BB629DE342 C:\Windows\System32\drivers\vmbus.sys 248D9F911A5C94CF8477125DD0C3A291 C:\Windows\System32\drivers\VMBusHID.sys 3E98DD4E0CBD6B4F9CBD0E9E0EDF541E C:\Windows\System32\drivers\volmgr.sys 91F165C5D71D9DCB18D4661CF10D1084 C:\Windows\System32\drivers\volmgrx.sys 17042748AC05862A0283D32575220080 C:\Windows\System32\drivers\volsnap.sys 823A237D871CD652C6BFD47BECB6810A C:\Windows\System32\drivers\vpci.sys 78727FA284C2095EED660D71CD3C9AEF C:\Windows\System32\drivers\vsmraid.sys 2415961D561E02F5E46B7C1C687A6788 C:\Windows\System32\drivers\vstxraid.sys 6AE9A843AE979F2DCCA5A25C07C7A5F8 C:\Windows\System32\drivers\vwifibus.sys BD232C761C59FA8D8EF626CA630E2D2E C:\Windows\System32\drivers\vwififlt.sys 3039687AB65CEE26CF478C1F42FFCD7D C:\Windows\System32\drivers\vwifimp.sys 37C868DDE3103130B00AD1313DAB5ACB C:\Windows\System32\drivers\wacompen.sys FC40A7527D39F06D032A6553D22E4BF6 C:\Windows\System32\DRIVERS\wanarp.sys E9E22E116F810DAC98C5EC207F24C916 C:\Windows\System32\DRIVERS\wanarp.sys E9E22E116F810DAC98C5EC207F24C916 C:\Windows\System32\drivers\WdBoot.sys C8BA574B3BA6AE88741AC86B1FE3C1DC C:\Windows\System32\drivers\Wdf01000.sys 796D1C95894BC15B3FEF090C107CBA31 C:\Windows\System32\drivers\WdFilter.sys C5BB7C612B4C852836BEA39593BA5F46 C:\Windows\System32\DRIVERS\wdiwifi.sys 9B2039C5673EEBF1D4E34ABC0AFB88C7 C:\Windows\System32\Drivers\WdNisDrv.sys BD193A7BD34B2E829FAF56306FEE3B09 C:\Windows\System32\drivers\wfplwfs.sys DBF5255B759212E5217A2748567A0B5C C:\Windows\System32\drivers\wimmount.sys 4375BCBA419D19695CF566082CEF27D3 C:\Windows\System32\drivers\WindowsTrustedRT.sys 037BC6DE5F58D4A74A5BB0C12DCECDCA C:\Windows\System32\drivers\WindowsTrustedRTProxy.sys 70BCD70BD53F2FE660ED94B025A043EB C:\Windows\System32\drivers\winmad.sys 7792AE5403BF8975B6460DFC3428D129 C:\Windows\System32\drivers\WinUSB.SYS 811F30EB6EE8318C4171CB95AE30B9BD C:\Windows\System32\drivers\winverbs.sys DF00381AB8665D48DE3FF794BC6760AB C:\Windows\System32\drivers\wmiacpi.sys 623ED8E10DFEEAB7AE2CD11A0451DB79 C:\Windows\System32\Drivers\Wof.sys 78CA1FF6FE37EEFAFF99DD1C956AF60A C:\Windows\System32\DRIVERS\wpcfltr.sys 388F2A3C771B8BEE76FD1AAF9614D08E C:\Windows\System32\drivers\WpdUpFltr.sys 37DCE976B3935380F2F6E39ABB6BF40D C:\Windows\system32\drivers\ws2ifsl.sys 3CD22DD5A790CF7C24D65455E565EA83 C:\Windows\System32\drivers\WudfPf.sys 835F60262E7E310080EA05F6752BF248 C:\Windows\System32\drivers\WUDFRd.sys 4E848DE29E4279C7F25EF5B34ED94FDD C:\Windows\system32\DRIVERS\WUDFRd.sys 4E848DE29E4279C7F25EF5B34ED94FDD C:\Windows\System32\drivers\xboxgip.sys 30021D1E0407B71E8D5D4F8DAE4E656A C:\Windows\System32\drivers\xinputhid.sys 6851673B90D8CB332439E0339F81A6B6 C:\WINDOWS\System32\drivers\zam64.sys 9E0659D443A2B9D1AFC75A160F500605 C:\WINDOWS\System32\drivers\zamguard64.sys 9E0659D443A2B9D1AFC75A160F500605 ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-09-17 12:40 - 2015-09-17 12:40 - 00027214 _____ C:\Users\Yo\Desktop\FRST.txt 2015-09-17 12:40 - 2015-09-17 12:37 - 02191360 _____ (Farbar) C:\Users\Yo\Desktop\FRST64.exe 2015-09-17 12:34 - 2015-09-17 12:34 - 00016148 _____ C:\WINDOWS\system32\DESKTOP-BM9L3JF_Yo_HistoryPrediction.bin 2015-09-17 12:28 - 2015-09-17 12:40 - 00000000 ____D C:\FRST 2015-09-16 20:49 - 2015-09-16 20:49 - 00109432 _____ (Zemana Ltd.) C:\WINDOWS\system32\Drivers\zam64.sys 2015-09-16 20:49 - 2015-09-16 20:49 - 00001217 _____ C:\Users\Public\Desktop\Zemana AntiMalware.lnk 2015-09-16 20:49 - 2015-09-16 20:49 - 00001217 _____ C:\ProgramData\Desktop\Zemana AntiMalware.lnk 2015-09-16 20:49 - 2015-09-16 20:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zemana AntiMalware 2015-09-16 20:48 - 2015-09-16 20:49 - 00000000 ____D C:\Program Files (x86)\Zemana AntiMalware 2015-09-16 20:48 - 2015-09-16 20:48 - 00109432 _____ (Zemana Ltd.) C:\WINDOWS\system32\Drivers\zamguard64.sys 2015-09-16 20:48 - 2015-09-16 20:48 - 00000000 ____D C:\Users\Yo\AppData\Local\Zemana 2015-09-16 20:43 - 2015-09-16 21:25 - 00000000 ____D C:\TDSSKiller_Quarantine 2015-09-16 13:44 - 2015-09-16 13:44 - 00000000 ____D C:\Users\Yo\Documents\ProcAlyzer Dumps 2015-09-16 13:30 - 2015-09-16 13:30 - 00001460 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk 2015-09-16 13:30 - 2015-09-16 13:30 - 00000656 _____ C:\WINDOWS\Tasks\Check for updates (Spybot - Search & Destroy).job 2015-09-16 13:30 - 2015-09-16 13:30 - 00000628 _____ C:\WINDOWS\Tasks\Refresh immunization (Spybot - Search & Destroy).job 2015-09-16 13:30 - 2015-09-16 13:30 - 00000458 _____ C:\WINDOWS\Tasks\Scan the system (Spybot - Search & Destroy).job 2015-09-16 13:29 - 2015-09-16 13:40 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2015-09-16 13:29 - 2015-09-16 13:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2 2015-09-16 13:29 - 2015-09-16 13:30 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2015-09-16 13:29 - 2015-09-16 13:29 - 00001448 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2015-09-16 13:29 - 2015-09-16 13:29 - 00001448 _____ C:\ProgramData\Desktop\Spybot-S&D Start Center.lnk 2015-09-16 13:29 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\WINDOWS\system32\sdnclean64.exe 2015-09-16 13:20 - 2015-09-16 13:20 - 00001112 _____ C:\Users\Public\Desktop\WinThruster.lnk 2015-09-16 13:20 - 2015-09-16 13:20 - 00001112 _____ C:\ProgramData\Desktop\WinThruster.lnk 2015-09-16 13:20 - 2015-09-16 13:20 - 00000000 ____D C:\Users\Yo\AppData\Roaming\Solvusoft 2015-09-16 13:20 - 2015-09-16 13:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinThruster 2015-09-16 13:20 - 2015-09-16 13:20 - 00000000 ____D C:\Program Files (x86)\WinThruster 2015-09-16 13:20 - 2015-09-16 13:18 - 03882104 _____ (solvusoft Corporation ) C:\Users\Yo\Desktop\Setup_WinThruster_[2015_Edition].exe 2015-09-16 13:20 - 2015-09-16 08:50 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Yo\Desktop\spybot-2.4.40.exe 2015-09-16 13:20 - 2015-09-07 09:44 - 05431152 _____ (Piriform Ltd) C:\Users\Yo\Desktop\ccsetup509_slim.exe 2015-09-16 13:20 - 2015-03-23 17:36 - 00020304 _____ (solvusoft) C:\WINDOWS\system32\roboot64.exe 2015-09-16 12:12 - 2015-09-16 12:24 - 00001908 _____ C:\WINDOWS\diagwrn.xml 2015-09-16 12:12 - 2015-09-16 12:24 - 00001908 _____ C:\WINDOWS\diagerr.xml 2015-09-16 12:12 - 2015-09-16 12:12 - 00000364 _____ C:\WINDOWS\setupact.log 2015-09-16 12:12 - 2015-09-16 12:12 - 00000000 _____ C:\WINDOWS\setuperr.log 2015-09-16 11:26 - 2015-09-17 12:24 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log 2015-09-16 11:26 - 2015-09-16 20:47 - 00001128 _____ C:\WINDOWS\PFRO.log 2015-09-16 11:26 - 2015-09-16 11:26 - 00189344 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-09-16 11:13 - 2015-09-16 11:15 - 00000000 ____D C:\Program Files\CCleaner 2015-09-16 11:13 - 2015-09-16 11:13 - 00000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2015-09-16 11:13 - 2015-09-16 11:13 - 00000863 _____ C:\ProgramData\Desktop\CCleaner.lnk 2015-09-16 11:13 - 2015-09-16 11:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2015-09-16 10:22 - 2015-09-16 21:29 - 00000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2015-09-16 09:16 - 2015-08-06 12:19 - 3533060096 _____ C:\Users\Yo\Desktop\MICROSOFT.WINDOWS.10.x64.AIO.ESD.BTF-TRIBAL.iso 2015-09-16 08:36 - 2015-09-12 22:52 - 00630944 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\SynTP.sys 2015-09-16 08:36 - 2015-09-12 22:52 - 00044192 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel.sys 2015-09-16 05:41 - 2015-09-16 05:41 - 00000000 ____D C:\Users\Yo\AppData\Roaming\Synaptics 2015-09-16 05:16 - 2015-09-16 05:16 - 00000000 ____D C:\WINDOWS\system32\appmgmt 2015-09-16 03:01 - 2015-09-16 05:44 - 00000000 ____D C:\Users\Yo\Desktop\Neue Programme 2015-09-15 18:31 - 2015-09-15 18:31 - 00000000 ____D C:\ProgramData\McAfee 2015-09-15 18:30 - 2015-09-15 18:31 - 00000000 ____D C:\Users\Yo\AppData\Local\Adobe 2015-09-15 14:07 - 2015-09-15 14:10 - 00000000 ____D C:\Users\Yo\AppData\Local\CSO 2015-09-15 14:07 - 2015-09-15 14:07 - 00000000 ____D C:\ProgramData\Nexon 2015-09-14 23:34 - 2015-09-15 18:34 - 00000000 ____D C:\Users\Yo\AppData\Local\Mozilla 2015-09-14 23:34 - 2015-09-14 23:34 - 00000000 ____D C:\Users\Yo\AppData\Roaming\Mozilla 2015-09-14 23:30 - 2015-09-14 23:32 - 00000000 ____D C:\Users\Yo\AppData\Local\Comms 2015-09-14 12:40 - 2015-09-16 10:05 - 00000000 ____D C:\Program Files\Mozilla Firefox 2015-09-14 12:40 - 2015-09-16 10:05 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-09-14 11:54 - 2015-09-14 11:54 - 00000000 ____D C:\Program Files\Broadcom 2015-09-14 11:51 - 2015-09-14 11:51 - 00000000 ____D C:\Program Files (x86)\Realtek 2015-09-14 11:51 - 2015-09-14 11:51 - 00000000 ____D C:\Program Files (x86)\InstallShield Installation Information 2015-09-14 10:45 - 2015-09-14 10:45 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2015-09-14 08:45 - 2015-09-15 02:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexon 2015-09-14 08:41 - 2015-09-15 02:25 - 00000000 ____D C:\Nexon 2015-09-14 08:40 - 2015-09-14 08:40 - 00000000 ____D C:\ProgramData\NexonEU 2015-09-14 08:34 - 2015-09-14 08:34 - 00000219 _____ C:\Users\Yo\Desktop\Team Fortress 2.url 2015-09-14 03:02 - 2015-09-14 03:02 - 00000000 ____D C:\Users\Yo\AppData\Local\Origin 2015-09-14 02:59 - 2015-09-16 10:05 - 00000000 ____D C:\Program Files (x86)\Origin 2015-09-14 02:59 - 2015-09-14 02:59 - 00000000 ____D C:\ProgramData\Electronic Arts 2015-09-14 02:30 - 2015-09-14 02:53 - 00000000 ____D C:\Users\Yo\AppData\Roaming\Origin 2015-09-14 02:27 - 2015-09-14 03:02 - 00000000 ____D C:\ProgramData\Origin 2015-09-14 02:27 - 2015-09-14 02:29 - 00000000 ____D C:\ProgramData\Package Cache 2015-09-14 02:25 - 2015-09-14 02:26 - 18588552 _____ (Electronic Arts, Inc.) C:\Users\Yo\Downloads\OriginThinSetup (1).exe 2015-09-13 21:08 - 2015-09-13 21:08 - 00001032 _____ C:\Users\Public\Desktop\Steam.lnk 2015-09-13 21:08 - 2015-09-13 21:08 - 00001032 _____ C:\ProgramData\Desktop\Steam.lnk 2015-09-13 21:08 - 2015-09-13 21:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2015-09-13 21:01 - 2015-09-13 21:05 - 01476720 _____ C:\Users\Yo\Downloads\SteamSetup__17 (1).exe 2015-09-13 20:39 - 2015-09-13 20:39 - 00000000 ____D C:\Users\Yo\AppData\Local\NetworkTiles 2015-09-13 16:24 - 2015-09-13 16:24 - 00000000 ____D C:\Users\Yo\AppData\Local\Steam 2015-09-13 16:24 - 2015-09-13 16:24 - 00000000 ____D C:\Users\Yo\AppData\Local\CEF 2015-09-13 16:20 - 2015-09-16 11:23 - 00000000 ____D C:\Program Files (x86)\Steam 2015-09-13 16:19 - 2015-09-13 16:20 - 01476720 _____ C:\Users\Yo\Downloads\SteamSetup__17.exe 2015-09-13 16:19 - 2015-09-13 16:19 - 00000000 ____D C:\Users\Yo\AppData\Roaming\Macromedia 2015-09-13 07:42 - 2015-09-17 12:37 - 01790124 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-09-13 07:40 - 2015-07-10 03:59 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2015-09-13 07:39 - 2015-09-13 07:39 - 00000000 ____D C:\ProgramData\USOShared 2015-09-13 07:37 - 2015-09-17 12:24 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default\Vorlagen 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default\Startmenü 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default User\Vorlagen 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default User\Startmenü 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default User\Netzwerkumgebung 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default User\Lokale Einstellungen 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default User\Eigene Dateien 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default User\Druckumgebung 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Users\Default User\Anwendungsdaten 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Programme 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\ProgramData\Vorlagen 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\ProgramData\Startmenü 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\ProgramData\Dokumente 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2015-09-13 07:37 - 2015-09-13 07:37 - 00000000 _SHDL C:\Dokumente und Einstellungen 2015-09-13 07:34 - 2015-09-13 07:34 - 00000000 ____D C:\Intel 2015-09-13 05:04 - 2015-09-16 10:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-09-13 05:02 - 2015-09-16 10:05 - 00000000 ____D C:\Users\Yo\Desktop\PlayTV v3 2015-09-13 05:02 - 2015-09-13 05:02 - 00000000 ____D C:\Program Files\VideoLAN 2015-09-13 03:43 - 2015-09-16 11:23 - 00000000 ____D C:\WINDOWS\Minidump 2015-09-13 03:19 - 2015-09-16 10:05 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-09-13 03:19 - 2015-09-13 13:47 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-09-13 03:19 - 2015-09-13 05:04 - 00001171 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-09-13 03:19 - 2015-09-13 05:04 - 00001171 _____ C:\ProgramData\Desktop\ Malwarebytes Anti-Malware .lnk 2015-09-13 03:19 - 2015-09-13 03:19 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-09-13 03:19 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-09-13 03:19 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-09-13 03:19 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2015-09-13 02:55 - 2015-09-13 03:32 - 00000000 ____D C:\Users\Yo\AppData\Local\mpress 2015-09-13 02:55 - 2015-09-13 02:55 - 00000000 ____D C:\WINDOWS\System32\Tasks\R@1n-KMS 2015-09-13 02:54 - 2015-09-13 02:54 - 00004608 _____ C:\WINDOWS\KMS-R@1nhook.exe 2015-09-13 02:54 - 2015-09-13 02:54 - 00000000 ____D C:\Users\Yo\AppData\Roaming\WinRAR 2015-09-13 02:54 - 2015-09-13 02:54 - 00000000 ____D C:\Users\Yo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-09-13 02:54 - 2015-09-13 02:54 - 00000000 ____D C:\Users\Yo\AppData\Local\PeerDistRepub 2015-09-13 02:54 - 2015-09-13 02:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-09-13 02:54 - 2015-09-13 02:54 - 00000000 ____D C:\Program Files\WinRAR 2015-09-12 23:47 - 2015-09-16 10:05 - 00000000 ____D C:\Users\Yo\AppData\Roaming\vlc 2015-09-12 23:45 - 2015-09-16 10:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2015-09-12 23:45 - 2015-09-16 09:57 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2015-09-12 23:45 - 2015-09-13 05:02 - 00000916 _____ C:\Users\Public\Desktop\VLC media player.lnk 2015-09-12 23:45 - 2015-09-13 05:02 - 00000916 _____ C:\ProgramData\Desktop\VLC media player.lnk 2015-09-12 23:44 - 2015-09-12 23:45 - 29833438 _____ C:\Users\Yo\Downloads\vlc-2.2.1-win64.exe 2015-09-12 23:43 - 2015-09-12 23:44 - 28849904 _____ C:\Users\Yo\Downloads\vlc-2.2.1-win32.exe 2015-09-12 23:42 - 2015-09-13 16:20 - 00000000 ____D C:\Users\Yo\AppData\Local\MicrosoftEdge 2015-09-12 23:42 - 2015-09-12 23:53 - 00000000 ____D C:\Users\Yo\Desktop\Luca 2015-09-12 23:40 - 2015-09-12 23:40 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2015-09-12 23:14 - 2015-07-05 03:08 - 00300704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2015-09-12 23:12 - 2015-09-12 23:14 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-09-12 23:12 - 2015-08-26 18:37 - 134753440 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-09-12 23:08 - 2015-09-16 12:24 - 00000000 ___DC C:\WINDOWS\Panther 2015-09-12 23:08 - 2015-09-12 23:08 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2015-09-12 23:07 - 2015-09-12 23:07 - 00028672 ___SH C:\WINDOWS\system32\config\BCD-Template.LOG 2015-09-12 23:07 - 2015-09-12 23:07 - 00008192 __RSH C:\BOOTSECT.BAK 2015-09-12 23:07 - 2015-09-12 23:07 - 00000000 ____D C:\WINDOWS\Setup 2015-09-12 23:07 - 2015-07-10 04:00 - 00395268 __RSH C:\bootmgr 2015-09-12 23:07 - 2015-07-10 04:00 - 00000001 ___SH C:\BOOTNXT 2015-09-12 23:05 - 2015-09-12 23:05 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2015-09-12 23:05 - 2015-09-12 23:05 - 00000000 ____D C:\WINDOWS\OCR 2015-09-12 23:05 - 2015-09-12 23:05 - 00000000 ____D C:\Program Files\Reference Assemblies 2015-09-12 23:05 - 2015-09-12 23:05 - 00000000 ____D C:\Program Files\MSBuild 2015-09-12 23:05 - 2015-09-12 23:05 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2015-09-12 23:05 - 2015-09-12 23:05 - 00000000 ____D C:\Program Files (x86)\MSBuild 2015-09-12 23:04 - 2015-09-17 12:37 - 00772342 _____ C:\WINDOWS\system32\perfh007.dat 2015-09-12 23:04 - 2015-09-17 12:37 - 00154170 _____ C:\WINDOWS\system32\perfc007.dat 2015-09-12 23:04 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm 2015-09-12 23:04 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN 2015-09-12 23:04 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep 2015-09-12 23:04 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr 2015-09-12 23:04 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts 2015-09-12 23:04 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\SysWOW64\de 2015-09-12 23:04 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\SysWOW64\0409 2015-09-12 23:04 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\system32\winrm 2015-09-12 23:04 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\system32\WCN 2015-09-12 23:04 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\system32\slmgr 2015-09-12 23:04 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts 2015-09-12 23:04 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\system32\de 2015-09-12 23:04 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\system32\0409 2015-09-12 23:04 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\DigitalLocker 2015-09-12 23:04 - 2015-09-12 23:03 - 00305634 _____ C:\WINDOWS\system32\perfi007.dat 2015-09-12 23:04 - 2015-09-12 23:03 - 00040390 _____ C:\WINDOWS\system32\perfd007.dat 2015-09-12 23:00 - 2015-08-08 08:38 - 00794088 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-09-12 23:00 - 2015-08-08 08:38 - 00179688 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-09-12 22:58 - 2015-09-16 21:27 - 00000000 ____D C:\WINDOWS\system32\sru 2015-09-12 22:58 - 2015-09-16 20:20 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-09-12 22:58 - 2015-09-16 11:23 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-09-12 22:58 - 2015-09-16 10:05 - 00000000 __SHD C:\WINDOWS\BitLockerDiscoveryVolumeContents 2015-09-12 22:58 - 2015-09-16 10:05 - 00000000 __RHD C:\Users\Public\Libraries 2015-09-12 22:58 - 2015-09-16 10:05 - 00000000 ____D C:\WINDOWS\rescache 2015-09-12 22:58 - 2015-09-16 10:04 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy 2015-09-12 22:58 - 2015-09-16 10:04 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2015-09-12 22:58 - 2015-09-16 09:59 - 00000000 ____D C:\WINDOWS\registration 2015-09-12 22:58 - 2015-09-16 03:02 - 00000000 ____D C:\WINDOWS\system32\NDF 2015-09-12 22:58 - 2015-09-13 14:15 - 00000000 ____D C:\WINDOWS\InputMethod 2015-09-12 22:58 - 2015-09-13 07:40 - 00000000 ____D C:\WINDOWS\system32\spool 2015-09-12 22:58 - 2015-09-13 07:40 - 00000000 ____D C:\WINDOWS\system32\FxsTmp 2015-09-12 22:58 - 2015-09-13 07:40 - 00000000 ____D C:\WINDOWS\CSC 2015-09-12 22:58 - 2015-09-13 07:39 - 00000000 ____D C:\ProgramData\USOPrivate 2015-09-12 22:58 - 2015-09-13 07:37 - 00000000 ____D C:\Program Files\Windows NT 2015-09-12 22:58 - 2015-09-13 07:35 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2015-09-12 22:58 - 2015-09-12 23:19 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-09-12 22:58 - 2015-09-12 23:19 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-09-12 22:58 - 2015-09-12 23:18 - 00000000 ___RD C:\WINDOWS\PurchaseDialog 2015-09-12 22:58 - 2015-09-12 23:18 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2015-09-12 22:58 - 2015-09-12 23:18 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe 2015-09-12 22:58 - 2015-09-12 23:18 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2015-09-12 22:58 - 2015-09-12 23:18 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2015-09-12 22:58 - 2015-09-12 23:18 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2015-09-12 22:58 - 2015-09-12 23:18 - 00000000 ____D C:\WINDOWS\system32\oobe 2015-09-12 22:58 - 2015-09-12 23:18 - 00000000 ____D C:\WINDOWS\system32\Dism 2015-09-12 22:58 - 2015-09-12 23:18 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-09-12 22:58 - 2015-09-12 23:18 - 00000000 ____D C:\WINDOWS\Provisioning 2015-09-12 22:58 - 2015-09-12 23:18 - 00000000 ____D C:\Program Files\Windows Journal 2015-09-12 22:58 - 2015-09-12 23:08 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template 2015-09-12 22:58 - 2015-09-12 23:05 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI 2015-09-12 22:58 - 2015-09-12 23:05 - 00000000 ____D C:\WINDOWS\system32\MUI 2015-09-12 22:58 - 2015-09-12 23:04 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12 2015-09-12 22:58 - 2015-09-12 23:04 - 00000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2015-09-12 22:58 - 2015-09-12 23:04 - 00000000 ___SD C:\WINDOWS\system32\F12 2015-09-12 22:58 - 2015-09-12 23:04 - 00000000 ___SD C:\WINDOWS\system32\dsc 2015-09-12 22:58 - 2015-09-12 23:04 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs 2015-09-12 22:58 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\SysWOW64\setup 2015-09-12 22:58 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\SysWOW64\Com 2015-09-12 22:58 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\system32\setup 2015-09-12 22:58 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\system32\migwiz 2015-09-12 22:58 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\system32\Com 2015-09-12 22:58 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2015-09-12 22:58 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\IME 2015-09-12 22:58 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\Help 2015-09-12 22:58 - 2015-09-12 23:04 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2015-09-12 22:58 - 2015-09-12 23:04 - 00000000 ____D C:\Program Files\Windows Defender 2015-09-12 22:58 - 2015-09-12 23:04 - 00000000 ____D C:\Program Files\Common Files\System 2015-09-12 22:58 - 2015-09-12 23:04 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-09-12 22:58 - 2015-09-12 23:04 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2015-09-12 22:58 - 2015-09-12 23:04 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 __SHD C:\Program Files\Windows Sidebar 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 __RSD C:\WINDOWS\Media 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 __RSD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 __RSD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 __RHD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ___SD C:\WINDOWS\SysWOW64\Nui 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ___SD C:\WINDOWS\SysWOW64\Configuration 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ___SD C:\WINDOWS\system32\Nui 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ___SD C:\WINDOWS\system32\Configuration 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ___SD C:\Program Files\WindowsPowerShell 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ___SD C:\Program Files (x86)\WindowsPowerShell 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ___RD C:\WINDOWS\Offline Web Pages 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ___RD C:\WINDOWS\DesktopTileResources 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ___HD C:\WINDOWS\ELAMBKUP 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\Web 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\Vss 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\tracing 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\TAPI 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\zh-HK 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\WindowsPowerShell 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\uk-UA 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\tr-TR 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\th-TH 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\sru 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\sr-Latn-RS 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\sr-Latn-CS 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\sppui 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\spp 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\Speech_OneCore 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\Speech 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\SMI 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\sl-SI 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\sk-SK 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\ro-RO 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\restore 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\Recovery 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\RasToast 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\ras 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\networklist 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\NDF 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\MsDtc 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\MSDRM 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\Licenses 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\Ipmi 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\InstallShield 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\InputMethod 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\IME 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\icsxml 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\hr-HR 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\he-IL 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\FxsTmp 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\fr-CA 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\et-EE 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\es-MX 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\en-GB 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\downlevel 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\Bthprops 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\bg-BG 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\ar-SA 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\AppLocker 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SystemResources 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\zh-HK 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\WinMetadata 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\winevt 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\WindowsPowerShell 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\uk-UA 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\tr-TR 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\th-TH 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-RS 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-CS 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\sppui 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\spp 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\Speech_OneCore 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\Speech 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\sl-SI 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\sk-SK 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\ro-RO 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\Recovery 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\RasToast 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\ras 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\ProximityToast 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\PointOfService 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\networklist 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\MsDtc 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\MSDRM 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\Macromed 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\lv-LV 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\lt-LT 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\Licenses 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\Ipmi 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\InputMethod 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\inetsrv 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\IME 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\icsxml 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\ias 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\hr-HR 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\he-IL 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\fr-CA 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\et-EE 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\es-MX 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\en-GB 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\downlevel 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\config\Journal 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\Bthprops 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\bg-BG 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\ar-SA 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\AppLocker 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system\Speech 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\System 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\Speech_OneCore 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\Speech 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SKB 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\ShellNew 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\security 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\schemas 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\SchCache 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\Resources 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\RemotePackages 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\PLA 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\Performance 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\L2Schemas 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\Globalization 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\Cursors 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\Branding 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\appcompat 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\addins 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\ProgramData\Comms 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\Program Files\Windows Portable Devices 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\Program Files\Windows Multimedia Platform 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\Program Files\Common Files\Services 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\Program Files (x86)\Windows NT 2015-09-12 22:58 - 2015-09-12 22:58 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform 2015-09-12 22:58 - 2015-09-12 22:56 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll 2015-09-12 22:58 - 2015-09-12 22:56 - 00215943 _____ C:\WINDOWS\SysWOW64\dssec.dat 2015-09-12 22:58 - 2015-09-12 22:56 - 00215943 _____ C:\WINDOWS\system32\dssec.dat 2015-09-12 22:58 - 2015-09-12 22:56 - 00208384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll 2015-09-12 22:58 - 2015-09-12 22:56 - 00017463 _____ C:\WINDOWS\system32\Drivers\etc\services 2015-09-12 22:58 - 2015-09-12 22:56 - 00015462 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2015-09-12 22:58 - 2015-09-12 22:56 - 00008798 _____ C:\WINDOWS\SysWOW64\icrav03.rat 2015-09-12 22:58 - 2015-09-12 22:56 - 00008798 _____ C:\WINDOWS\system32\icrav03.rat 2015-09-12 22:58 - 2015-09-12 22:56 - 00003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam 2015-09-12 22:58 - 2015-09-12 22:56 - 00001988 _____ C:\WINDOWS\SysWOW64\ticrf.rat 2015-09-12 22:58 - 2015-09-12 22:56 - 00001988 _____ C:\WINDOWS\system32\ticrf.rat 2015-09-12 22:58 - 2015-09-12 22:56 - 00001358 _____ C:\WINDOWS\system32\Drivers\etc\protocol 2015-09-12 22:58 - 2015-09-12 22:56 - 00000858 _____ C:\WINDOWS\system32\DefaultQuestions.json 2015-09-12 22:58 - 2015-09-12 22:56 - 00000741 _____ C:\WINDOWS\SysWOW64\NOISE.DAT 2015-09-12 22:58 - 2015-09-12 22:56 - 00000741 _____ C:\WINDOWS\system32\NOISE.DAT 2015-09-12 22:58 - 2015-09-12 22:56 - 00000407 _____ C:\WINDOWS\system32\Drivers\etc\networks 2015-09-12 22:58 - 2015-09-12 22:55 - 00000219 _____ C:\WINDOWS\system.ini 2015-09-12 22:58 - 2015-09-12 22:55 - 00000092 _____ C:\WINDOWS\win.ini 2015-09-12 22:58 - 2015-09-12 22:52 - 00000000 ___RD C:\WINDOWS\PrintDialog 2015-09-12 22:58 - 2015-09-12 22:52 - 00000000 ___RD C:\WINDOWS\MiracastView 2015-09-12 22:58 - 2015-09-12 22:45 - 00000000 ____D C:\WINDOWS\system32\restore 2015-09-12 22:56 - 2015-09-12 22:57 - 00002345 _____ C:\Users\Yo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-09-12 22:56 - 2015-09-12 22:57 - 00000000 ___RD C:\Users\Yo\OneDrive 2015-09-12 22:56 - 2015-09-12 22:56 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2015-09-12 22:54 - 2015-09-12 22:54 - 00000000 ____D C:\Users\Yo\AppData\Local\Publishers 2015-09-12 22:53 - 2015-09-16 09:58 - 00000000 ____D C:\Program Files\Synaptics 2015-09-12 22:53 - 2015-09-12 22:53 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf 2015-09-12 22:53 - 2015-09-12 22:53 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf 2015-09-12 22:52 - 2015-09-12 22:52 - 01806192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01011.dll 2015-09-12 22:52 - 2015-09-12 22:52 - 00770720 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynCOM.dll 2015-09-12 22:52 - 2015-09-12 22:52 - 00422048 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynCom.dll 2015-09-12 22:52 - 2015-09-12 22:52 - 00270496 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPAPI.dll 2015-09-12 22:52 - 2015-09-12 22:52 - 00267936 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPCo35.dll 2015-09-12 22:52 - 2015-09-12 22:52 - 00231456 _____ C:\WINDOWS\system32\pca-manta.bin 2015-09-12 22:52 - 2015-09-12 22:52 - 00044192 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel_Aux.sys 2015-09-12 22:52 - 2015-09-12 22:52 - 00043680 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_AMDASF_Aux.sys 2015-09-12 22:52 - 2015-09-12 22:52 - 00000092 _____ C:\WINDOWS\system32\calibration.bin 2015-09-12 22:52 - 2015-09-12 22:52 - 00000000 ____D C:\Users\Yo\AppData\Roaming\Adobe 2015-09-12 22:51 - 2015-09-16 11:23 - 00000000 ___RD C:\Users\Yo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-09-12 22:51 - 2015-09-16 10:07 - 00000000 ____D C:\Users\Yo 2015-09-12 22:51 - 2015-09-16 10:05 - 00000000 ____D C:\Users\Yo\AppData\Local\Packages 2015-09-12 22:51 - 2015-09-16 01:12 - 00000000 ____D C:\Users\Yo\AppData\Local\VirtualStore 2015-09-12 22:51 - 2015-09-12 22:58 - 00000000 __RSD C:\Users\Yo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-09-12 22:51 - 2015-09-12 22:58 - 00000000 ___RD C:\Users\Yo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-09-12 22:51 - 2015-09-12 22:58 - 00000000 ____D C:\Users\Yo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-09-12 22:51 - 2015-09-12 22:52 - 00000000 ___RD C:\Users\Yo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-09-12 22:51 - 2015-09-12 22:51 - 00016148 _____ C:\WINDOWS\system32\DESKTOP-BM9L3JF_defaultuser0_HistoryPrediction.bin 2015-09-12 22:51 - 2015-09-12 22:51 - 00000020 ___SH C:\Users\Yo\ntuser.ini 2015-09-12 22:51 - 2015-09-12 22:51 - 00000000 _SHDL C:\Users\Yo\Vorlagen 2015-09-12 22:51 - 2015-09-12 22:51 - 00000000 _SHDL C:\Users\Yo\Startmenü 2015-09-12 22:51 - 2015-09-12 22:51 - 00000000 _SHDL C:\Users\Yo\Netzwerkumgebung 2015-09-12 22:51 - 2015-09-12 22:51 - 00000000 _SHDL C:\Users\Yo\Lokale Einstellungen 2015-09-12 22:51 - 2015-09-12 22:51 - 00000000 _SHDL C:\Users\Yo\Eigene Dateien 2015-09-12 22:51 - 2015-09-12 22:51 - 00000000 _SHDL C:\Users\Yo\Druckumgebung 2015-09-12 22:51 - 2015-09-12 22:51 - 00000000 _SHDL C:\Users\Yo\Documents\Eigene Musik 2015-09-12 22:51 - 2015-09-12 22:51 - 00000000 _SHDL C:\Users\Yo\Documents\Eigene Bilder 2015-09-12 22:51 - 2015-09-12 22:51 - 00000000 _SHDL C:\Users\Yo\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-09-12 22:51 - 2015-09-12 22:51 - 00000000 _SHDL C:\Users\Yo\AppData\Local\Verlauf 2015-09-12 22:51 - 2015-09-12 22:51 - 00000000 _SHDL C:\Users\Yo\AppData\Local\Anwendungsdaten 2015-09-12 22:51 - 2015-09-12 22:51 - 00000000 _SHDL C:\Users\Yo\Anwendungsdaten 2015-09-12 22:51 - 2015-09-12 22:51 - 00000000 ____D C:\Users\Yo\AppData\Local\TileDataLayer 2015-09-12 22:50 - 2015-09-13 01:28 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-09-12 22:42 - 2015-09-17 12:23 - 00131072 ___SH C:\WINDOWS\system32\config\BBI 2015-09-12 22:42 - 2015-09-13 07:38 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2015-09-12 22:42 - 2015-09-13 07:37 - 00000000 __RHD C:\Users\Default 2015-09-12 22:42 - 2015-09-12 23:04 - 00000000 ____D C:\WINDOWS\servicing 2015-09-12 22:42 - 2015-09-12 22:58 - 00000000 ____D C:\WINDOWS\system32\SMI 2015-09-12 22:42 - 2015-07-10 02:11 - 00000164 _____ C:\WINDOWS\system32\config\FP 2015-09-11 20:15 - 2015-08-26 22:59 - 02880032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-09-11 20:15 - 2015-08-26 22:16 - 02153472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2015-09-11 20:15 - 2015-08-26 22:16 - 01612288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2015-09-11 20:15 - 2015-08-26 22:11 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll 2015-09-11 20:15 - 2015-08-26 22:11 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll 2015-09-11 20:15 - 2015-08-18 00:24 - 00963920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2015-09-11 20:15 - 2015-08-17 23:36 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wcnwiz.dll 2015-09-11 20:15 - 2015-08-17 23:35 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WcnApi.dll 2015-09-11 20:15 - 2015-08-17 23:35 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWCN.dll 2015-09-11 20:15 - 2015-08-17 23:34 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll 2015-09-11 20:14 - 2015-09-01 18:20 - 00077400 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2015-09-11 20:14 - 2015-09-01 17:25 - 03586560 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2015-09-11 20:14 - 2015-09-01 17:25 - 01382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2015-09-11 20:14 - 2015-08-26 23:36 - 03620736 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-09-11 20:14 - 2015-08-26 23:32 - 00608936 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2015-09-11 20:14 - 2015-08-26 23:04 - 21874688 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2015-09-11 20:14 - 2015-08-26 22:55 - 24594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-09-11 20:14 - 2015-08-26 22:54 - 00541248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2015-09-11 20:14 - 2015-08-26 22:54 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2015-09-11 20:14 - 2015-08-26 22:51 - 02350592 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2015-09-11 20:14 - 2015-08-26 22:51 - 01774592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2015-09-11 20:14 - 2015-08-26 22:49 - 01008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll 2015-09-11 20:14 - 2015-08-26 22:47 - 12503552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-09-11 20:14 - 2015-08-26 22:43 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-09-11 20:14 - 2015-08-26 22:43 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-09-11 20:14 - 2015-08-26 22:42 - 00596480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll 2015-09-11 20:14 - 2015-08-26 22:42 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2015-09-11 20:14 - 2015-08-26 22:42 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.PicturePassword.dll 2015-09-11 20:14 - 2015-08-26 22:42 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll 2015-09-11 20:14 - 2015-08-26 22:39 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll |
18.09.2015, 02:50 | #9 |
| HILFE ! fremder host hat sämtliche Geräte eingenommen !!Code:
ATTFilter 2015-09-11 20:14 - 2015-08-26 22:23 - 19324416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-09-11 20:14 - 2015-08-26 22:23 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2015-09-11 20:14 - 2015-08-26 22:16 - 18806272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2015-09-11 20:14 - 2015-08-26 22:12 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-09-11 20:14 - 2015-08-26 22:12 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-09-11 20:14 - 2015-08-26 22:09 - 11262464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-09-11 20:14 - 2015-08-26 22:08 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2015-09-11 20:14 - 2015-08-19 23:07 - 08019296 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-09-11 20:14 - 2015-08-19 23:06 - 00609592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2015-09-11 20:14 - 2015-08-19 23:02 - 22324656 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2015-09-11 20:14 - 2015-08-19 22:26 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2015-09-11 20:14 - 2015-08-19 22:21 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll 2015-09-11 20:14 - 2015-08-19 22:16 - 20857848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2015-09-11 20:14 - 2015-08-19 22:13 - 02235904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-09-11 20:14 - 2015-08-18 00:56 - 02498808 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2015-09-11 20:14 - 2015-08-18 00:55 - 00373072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS 2015-09-11 20:14 - 2015-08-18 00:54 - 01396064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2015-09-11 20:14 - 2015-08-18 00:27 - 01771592 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2015-09-11 20:14 - 2015-08-18 00:13 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll 2015-09-11 20:14 - 2015-08-18 00:13 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll 2015-09-11 20:14 - 2015-08-18 00:12 - 02225664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2015-09-11 20:14 - 2015-08-18 00:07 - 02226688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2015-09-11 20:14 - 2015-08-18 00:04 - 01234944 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe 2015-09-11 20:14 - 2015-08-18 00:04 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2015-09-11 20:14 - 2015-08-17 23:59 - 01294336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll 2015-09-11 20:14 - 2015-08-17 23:59 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll 2015-09-11 20:14 - 2015-08-17 23:58 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll 2015-09-11 20:14 - 2015-08-17 23:58 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWCN.dll 2015-09-11 20:14 - 2015-08-17 23:58 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWCN.dll 2015-09-11 20:14 - 2015-08-17 23:58 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnNetsh.dll 2015-09-11 20:14 - 2015-08-17 23:57 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll 2015-09-11 20:14 - 2015-08-17 23:56 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll 2015-09-11 20:14 - 2015-08-17 23:55 - 02178560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2015-09-11 20:14 - 2015-08-17 23:54 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll 2015-09-11 20:14 - 2015-08-17 23:54 - 00247296 _____ C:\WINDOWS\system32\facecredentialprovider.dll 2015-09-11 20:14 - 2015-08-17 23:52 - 01888768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2015-09-11 20:14 - 2015-08-17 23:50 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2015-09-11 20:14 - 2015-08-17 23:49 - 01061888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2015-09-11 20:14 - 2015-08-17 23:49 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll 2015-09-11 20:14 - 2015-08-17 23:49 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll 2015-09-11 20:14 - 2015-08-17 23:29 - 01593344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2015-09-11 20:14 - 2015-08-17 23:26 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll 2015-09-11 20:14 - 2015-08-17 21:44 - 00008847 _____ C:\WINDOWS\system32\ResPriHMImageList 2015-09-11 20:08 - 2015-06-17 09:10 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2015-09-11 20:08 - 2015-06-17 09:10 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2015-09-11 20:08 - 2015-06-17 09:10 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2015-09-11 20:08 - 2015-05-29 12:07 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2015-09-11 20:08 - 2015-05-29 12:07 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-09-11 20:08 - 2015-05-29 12:07 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2015-09-11 18:10 - 2015-09-13 07:35 - 00000000 __SHD C:\Recovery 2015-09-11 17:43 - 2015-08-12 21:22 - 02093056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll 2015-09-11 17:43 - 2015-08-11 03:04 - 04532304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2015-09-11 17:43 - 2015-08-11 03:04 - 02462648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2015-09-11 17:43 - 2015-08-11 03:02 - 00292856 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe 2015-09-11 17:43 - 2015-08-11 02:50 - 01643872 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2015-09-11 17:43 - 2015-08-11 02:40 - 04048808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2015-09-11 17:43 - 2015-08-11 02:40 - 02151208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2015-09-11 17:43 - 2015-08-11 02:23 - 16706560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2015-09-11 17:43 - 2015-08-11 02:16 - 02416640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2015-09-11 17:43 - 2015-08-11 02:11 - 02446336 _____ C:\WINDOWS\system32\InputService.dll 2015-09-11 17:43 - 2015-08-11 02:10 - 00778752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2015-09-11 17:43 - 2015-08-11 02:07 - 01178112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2015-09-11 17:43 - 2015-08-11 02:06 - 07523328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2015-09-11 17:43 - 2015-08-11 02:06 - 02662400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2015-09-11 17:43 - 2015-08-11 02:05 - 03527168 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2015-09-11 17:43 - 2015-08-11 02:05 - 00996352 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2015-09-11 17:43 - 2015-08-11 02:03 - 02558976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2015-09-11 17:43 - 2015-08-11 01:57 - 13024768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2015-09-11 17:43 - 2015-08-11 01:51 - 01916928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2015-09-11 17:43 - 2015-08-11 01:49 - 00586752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2015-09-11 17:43 - 2015-08-11 01:45 - 01820672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2015-09-11 17:43 - 2015-08-11 01:43 - 02748416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2015-09-11 17:43 - 2015-08-11 01:42 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2015-09-11 17:43 - 2015-08-11 01:40 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2015-09-11 17:43 - 2015-08-07 23:24 - 02415104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2015-09-11 17:43 - 2015-08-07 23:24 - 01679360 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2015-09-11 17:43 - 2015-08-07 23:00 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2015-09-11 17:43 - 2015-08-04 21:49 - 00783112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2015-09-11 17:43 - 2015-08-04 21:29 - 00644128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2015-09-11 17:43 - 2015-08-04 20:54 - 01274880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2015-09-11 17:43 - 2015-08-03 21:06 - 00583128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2015-09-11 17:43 - 2015-08-03 19:59 - 01212416 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll 2015-09-11 17:43 - 2015-08-03 19:47 - 00898560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll 2015-09-11 17:43 - 2015-08-02 19:19 - 00505696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2015-09-11 17:43 - 2015-08-02 19:18 - 08613200 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2015-09-11 17:43 - 2015-08-02 19:18 - 01983840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2015-09-11 17:43 - 2015-08-02 19:18 - 00594472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll 2015-09-11 17:43 - 2015-08-02 19:12 - 00801632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2015-09-11 17:43 - 2015-08-02 18:56 - 06878256 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2015-09-11 17:43 - 2015-08-02 18:49 - 00700256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2015-09-11 17:43 - 2015-08-02 18:31 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2015-09-11 17:43 - 2015-08-02 18:30 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll 2015-09-11 17:43 - 2015-08-02 18:24 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2015-09-11 17:43 - 2015-08-02 18:22 - 01601536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2015-09-11 17:43 - 2015-08-02 18:18 - 03780096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2015-09-11 17:43 - 2015-08-02 18:15 - 01290752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2015-09-11 17:43 - 2015-08-02 18:15 - 00595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2015-09-11 17:43 - 2015-08-02 18:15 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll 2015-09-11 17:43 - 2015-08-02 18:15 - 00384000 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll 2015-09-11 17:43 - 2015-08-02 18:14 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2015-09-11 17:43 - 2015-08-02 18:12 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll 2015-09-11 17:43 - 2015-08-02 18:10 - 01162240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2015-09-11 17:43 - 2015-08-02 18:03 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll 2015-09-11 17:43 - 2015-08-02 18:02 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll 2015-09-11 17:43 - 2015-08-02 18:02 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2015-09-11 17:43 - 2015-07-29 23:24 - 01561872 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2015-09-11 17:43 - 2015-07-29 23:21 - 00816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2015-09-11 17:43 - 2015-07-29 23:17 - 01200400 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2015-09-11 17:43 - 2015-07-29 23:17 - 01025840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll 2015-09-11 17:43 - 2015-07-29 23:16 - 02147080 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2015-09-11 17:43 - 2015-07-29 23:09 - 01562968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2015-09-11 17:43 - 2015-07-29 23:06 - 01043872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2015-09-11 17:43 - 2015-07-29 23:05 - 00501008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2015-09-11 17:43 - 2015-07-29 23:03 - 02116448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2015-09-11 17:43 - 2015-07-29 21:29 - 00705520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2015-09-11 17:43 - 2015-07-29 21:26 - 01867160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll 2015-09-11 17:43 - 2015-07-29 21:26 - 00877016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2015-09-11 17:43 - 2015-07-29 21:25 - 01356368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2015-09-11 17:43 - 2015-07-29 21:25 - 00713312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2015-09-11 17:43 - 2015-07-29 21:24 - 00445240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2015-09-11 17:43 - 2015-07-29 21:12 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2015-09-11 17:43 - 2015-07-29 20:52 - 00521216 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2015-09-11 17:43 - 2015-07-29 20:49 - 11557888 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2015-09-11 17:43 - 2015-07-29 20:46 - 02125312 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2015-09-11 17:43 - 2015-07-29 20:42 - 00518144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll 2015-09-11 17:43 - 2015-07-29 20:41 - 00407040 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2015-09-11 17:43 - 2015-07-29 20:40 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2015-09-11 17:43 - 2015-07-29 20:38 - 01420288 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll 2015-09-11 17:43 - 2015-07-29 20:34 - 00599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2015-09-11 17:43 - 2015-07-29 20:29 - 00654848 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll 2015-09-11 17:43 - 2015-07-29 20:15 - 09889792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2015-09-11 17:43 - 2015-07-29 20:04 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2015-09-11 17:43 - 2015-07-29 20:04 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2015-09-11 17:43 - 2015-07-29 19:59 - 00473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll 2015-09-11 17:43 - 2015-07-29 19:58 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll 2015-09-11 17:43 - 2015-07-25 22:16 - 01018568 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2015-09-11 17:43 - 2015-07-25 22:16 - 00858408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2015-09-11 17:43 - 2015-07-25 22:14 - 01294352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2015-09-11 17:43 - 2015-07-25 22:14 - 01123400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2015-09-11 17:43 - 2015-07-25 22:13 - 06488312 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2015-09-11 17:43 - 2015-07-25 21:28 - 05118024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2015-09-11 17:43 - 2015-07-25 20:49 - 04760576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2015-09-11 17:43 - 2015-07-25 20:49 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll 2015-09-11 17:43 - 2015-07-25 20:40 - 00850432 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll 2015-09-11 17:43 - 2015-07-25 20:40 - 00542720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2015-09-11 17:43 - 2015-07-25 20:38 - 04350464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2015-09-11 17:43 - 2015-07-25 20:34 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll 2015-09-11 17:43 - 2015-07-25 20:30 - 00750592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll 2015-09-11 17:43 - 2015-07-25 20:30 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll 2015-09-11 17:43 - 2015-07-23 20:30 - 00498016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys 2015-09-11 17:43 - 2015-07-23 20:18 - 00980832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2015-09-11 17:43 - 2015-07-23 20:17 - 00695136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll 2015-09-11 17:43 - 2015-07-23 20:12 - 00584544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll 2015-09-11 17:43 - 2015-07-23 19:46 - 00303616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2015-09-11 17:43 - 2015-07-23 19:40 - 03248640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2015-09-11 17:43 - 2015-07-23 19:39 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2015-09-11 17:43 - 2015-07-23 19:25 - 01203200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2015-09-11 17:43 - 2015-07-23 19:24 - 01418240 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe 2015-09-11 17:43 - 2015-07-23 19:24 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2015-09-11 17:43 - 2015-07-21 22:18 - 00808856 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2015-09-11 17:43 - 2015-07-21 22:02 - 00966424 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2015-09-11 17:43 - 2015-07-21 21:00 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2015-09-11 17:43 - 2015-07-21 20:55 - 01203200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2015-09-11 17:43 - 2015-07-21 20:54 - 14241792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2015-09-11 17:43 - 2015-07-21 20:53 - 00762896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2015-09-11 17:43 - 2015-07-21 20:46 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll 2015-09-11 17:43 - 2015-07-21 20:13 - 00677888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2015-09-11 17:43 - 2015-07-21 20:11 - 12589056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2015-09-11 17:43 - 2015-07-21 20:10 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2015-09-11 17:43 - 2015-07-21 20:03 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll 2015-09-11 17:43 - 2015-07-18 21:04 - 00658568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2015-09-11 17:43 - 2015-07-18 19:39 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll 2015-09-11 17:43 - 2015-07-18 00:43 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll 2015-09-11 17:43 - 2015-07-18 00:37 - 01043968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll 2015-09-11 17:43 - 2015-07-18 00:29 - 03443200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll 2015-09-11 17:43 - 2015-07-17 21:06 - 00841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll 2015-09-11 17:43 - 2015-07-17 20:59 - 01411072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll 2015-09-11 17:43 - 2015-07-17 20:52 - 04169728 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll 2015-09-11 17:43 - 2015-07-16 19:31 - 01417216 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2015-09-11 17:43 - 2015-07-16 19:26 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2015-09-11 17:43 - 2015-07-16 19:24 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll 2015-09-11 17:43 - 2015-07-16 19:19 - 00869376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2015-09-11 17:43 - 2015-07-16 18:53 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2015-09-11 17:43 - 2015-07-16 18:50 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efscore.dll 2015-09-11 17:43 - 2015-07-16 18:44 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2015-09-11 17:43 - 2015-07-15 21:04 - 01201664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll 2015-09-11 17:43 - 2015-07-15 20:47 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll 2015-09-11 17:43 - 2015-07-15 20:44 - 02741760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-09-11 17:43 - 2015-07-15 20:43 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-09-11 17:43 - 2015-07-15 20:35 - 01521664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2015-09-11 17:43 - 2015-07-15 20:29 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-09-11 17:43 - 2015-07-15 20:27 - 02207744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-09-11 17:43 - 2015-07-14 20:21 - 01365072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2015-09-11 17:43 - 2015-07-14 19:49 - 01591856 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2015-09-11 17:43 - 2015-07-14 19:41 - 01135312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe 2015-09-11 17:43 - 2015-07-14 19:22 - 02112512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2015-09-11 17:43 - 2015-07-14 19:16 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2015-09-11 17:43 - 2015-07-14 18:57 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\OmaDmAgent.dll 2015-09-11 17:43 - 2015-07-14 18:47 - 04611584 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2015-09-11 17:43 - 2015-07-14 18:35 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\unenrollhook.dll 2015-09-11 17:43 - 2015-07-11 17:25 - 01031680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe 2015-09-11 17:43 - 2015-07-11 17:18 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll 2015-09-11 17:43 - 2015-07-11 16:46 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll 2015-09-11 17:43 - 2015-07-10 18:28 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll 2015-09-11 17:43 - 2015-07-10 18:17 - 06305792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2015-09-11 17:43 - 2015-07-10 18:07 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll 2015-09-11 17:43 - 2015-07-10 18:04 - 03362816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2015-09-11 17:43 - 2015-07-10 18:03 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2015-09-11 17:43 - 2015-07-10 17:57 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2015-09-11 17:43 - 2015-07-10 17:51 - 04398080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2015-09-11 17:43 - 2015-07-10 17:43 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll 2015-09-11 17:43 - 2015-07-10 17:41 - 03687936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2015-09-11 17:43 - 2015-07-10 17:40 - 02606080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2015-09-11 17:43 - 2015-07-10 08:51 - 00823336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2015-09-11 17:43 - 2015-07-10 08:00 - 01101792 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2015-09-11 17:43 - 2015-07-10 02:53 - 01169408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2015-09-11 17:43 - 2015-07-10 02:35 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll 2015-09-11 17:43 - 2015-07-10 02:31 - 01067520 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 18664960 _____ (Intel Corporation) C:\WINDOWS\system32\ig4icd64.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 13913600 _____ C:\WINDOWS\SysWOW64\ig4icd32.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 12311776 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd64.sys 2015-09-11 17:42 - 2015-09-11 17:42 - 09014784 _____ (Intel Corporation) C:\WINDOWS\system32\igfxress.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 08369024 _____ (Intel Corporation) C:\WINDOWS\system32\igdumd64.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 06367216 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumd32.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 05721376 _____ (Intel Corporation) C:\WINDOWS\system32\igd10umd64.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 04834040 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10umd32.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 04379680 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUI.exe 2015-09-11 17:42 - 2015-09-11 17:42 - 02780160 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 02191872 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 01981696 _____ C:\WINDOWS\system32\iglhxa64.cpa 2015-09-11 17:42 - 2015-09-11 17:42 - 00867020 _____ C:\WINDOWS\SysWOW64\igkrng575.bin 2015-09-11 17:42 - 2015-09-11 17:42 - 00867020 _____ C:\WINDOWS\system32\igkrng575.bin 2015-09-11 17:42 - 2015-09-11 17:42 - 00590440 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumdx32.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00510496 _____ (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe 2015-09-11 17:42 - 2015-09-11 17:42 - 00418336 _____ (Intel Corporation) C:\WINDOWS\system32\igfxpers.exe 2015-09-11 17:42 - 2015-09-11 17:42 - 00393760 _____ (Intel Corporation) C:\WINDOWS\system32\hkcmd.exe 2015-09-11 17:42 - 2015-09-11 17:42 - 00390144 _____ (Intel Corporation) C:\WINDOWS\system32\igfxdev.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00384904 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00384832 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00378368 _____ (Intel Corporation) C:\WINDOWS\system32\igfxTMM.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00376320 _____ (Intel Corporation) C:\WINDOWS\system32\igfxpph.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00293888 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxdv32.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00287232 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrfra.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00287232 _____ (Intel Corporation) C:\WINDOWS\system32\igfxresn.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00287232 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrell.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00286720 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrsky.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00286720 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrrus.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00286720 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrrom.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00286720 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrptg.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00286720 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrplk.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00286720 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrnld.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00286720 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrita.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00286720 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrhrv.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00286720 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrdeu.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00286720 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrcsy.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00286208 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrtrk.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00286208 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrsve.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00286208 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrslv.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00286208 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrptb.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00286208 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrnor.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00286208 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrhun.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00286208 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrfin.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00285696 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrtha.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00285696 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrenu.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00285696 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrdan.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00285184 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrheb.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00285184 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrara.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00283648 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrjpn.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00283136 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrkor.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00282624 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrcht.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00282624 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrchs.lrc 2015-09-11 17:42 - 2015-09-11 17:42 - 00246784 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00240672 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe 2015-09-11 17:42 - 2015-09-11 17:42 - 00219136 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00211303 _____ C:\WINDOWS\system32\Gfxres.th-TH.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00198139 _____ C:\WINDOWS\system32\Gfxres.el-GR.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00185376 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe 2015-09-11 17:42 - 2015-09-11 17:42 - 00182706 _____ C:\WINDOWS\system32\Gfxres.ru-RU.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00168480 _____ (Intel Corporation) C:\WINDOWS\system32\igfxtray.exe 2015-09-11 17:42 - 2015-09-11 17:42 - 00156233 _____ C:\WINDOWS\system32\Gfxres.ar-SA.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00153167 _____ C:\WINDOWS\system32\Gfxres.ja-JP.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00149009 _____ C:\WINDOWS\system32\Gfxres.he-IL.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00146432 _____ (Intel Corporation) C:\WINDOWS\system32\gfxSrvc.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00142336 _____ (Intel Corporation) C:\WINDOWS\system32\igfxdo.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00140216 _____ C:\WINDOWS\system32\Gfxres.it-IT.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00138727 _____ C:\WINDOWS\system32\Gfxres.ko-KR.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00137846 _____ C:\WINDOWS\system32\Gfxres.de-DE.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00137668 _____ C:\WINDOWS\system32\Gfxres.es-ES.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00136603 _____ C:\WINDOWS\system32\Gfxres.ro-RO.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00135628 _____ C:\WINDOWS\system32\Gfxres.fr-FR.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00135370 _____ C:\WINDOWS\system32\Gfxres.tr-TR.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00134836 _____ C:\WINDOWS\system32\Gfxres.pt-BR.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00134412 _____ C:\WINDOWS\system32\Gfxres.nl-NL.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00134384 _____ C:\WINDOWS\system32\Gfxres.hu-HU.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00133846 _____ C:\WINDOWS\system32\Gfxres.sv-SE.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00133709 _____ C:\WINDOWS\system32\Gfxres.pt-PT.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00133404 _____ C:\WINDOWS\system32\Gfxres.cs-CZ.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00133178 _____ C:\WINDOWS\system32\Gfxres.pl-PL.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00132889 _____ C:\WINDOWS\system32\Gfxres.fi-FI.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00132788 _____ C:\WINDOWS\system32\Gfxres.sk-SK.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00131839 _____ C:\WINDOWS\system32\Gfxres.hr-HR.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00128996 _____ C:\WINDOWS\system32\Gfxres.sl-SI.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00128831 _____ C:\WINDOWS\system32\Gfxres.nb-NO.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00128535 _____ C:\WINDOWS\system32\Gfxres.da-DK.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00128204 _____ C:\WINDOWS\SysWOW64\igcompkrng575.bin 2015-09-11 17:42 - 2015-09-11 17:42 - 00128204 _____ C:\WINDOWS\system32\igcompkrng575.bin 2015-09-11 17:42 - 2015-09-11 17:42 - 00126976 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcpl.cpl 2015-09-11 17:42 - 2015-09-11 17:42 - 00124052 _____ C:\WINDOWS\system32\Gfxres.en-US.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00117636 _____ C:\WINDOWS\system32\Gfxres.zh-TW.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00116348 _____ C:\WINDOWS\system32\Gfxres.zh-CN.resources 2015-09-11 17:42 - 2015-09-11 17:42 - 00110080 _____ (Intel Corporation) C:\WINDOWS\system32\hccutils.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00105608 _____ C:\WINDOWS\SysWOW64\igfcg575m.bin 2015-09-11 17:42 - 2015-09-11 17:42 - 00105608 _____ C:\WINDOWS\system32\igfcg575m.bin 2015-09-11 17:42 - 2015-09-11 17:42 - 00104792 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00104720 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00094208 _____ C:\WINDOWS\system32\IccLibDll_x64.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00090112 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v2858.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00062464 _____ (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00059243 _____ C:\WINDOWS\system32\iglhxo64.vp 2015-09-11 17:42 - 2015-09-11 17:42 - 00059174 _____ C:\WINDOWS\system32\iglhxg64.vp 2015-09-11 17:42 - 2015-09-11 17:42 - 00059062 _____ C:\WINDOWS\system32\iglhxc64.vp 2015-09-11 17:42 - 2015-09-11 17:42 - 00056344 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\HECIx64.sys 2015-09-11 17:42 - 2015-09-11 17:42 - 00034824 _____ (Intel Corporation) C:\WINDOWS\system32\igfxexps.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00024576 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00017448 _____ C:\WINDOWS\system32\iglhxs64.vp 2015-09-11 17:42 - 2015-09-11 17:42 - 00004096 _____ ( ) C:\WINDOWS\system32\IGFXDEVLib.dll 2015-09-11 17:42 - 2015-09-11 17:42 - 00001074 _____ C:\WINDOWS\system32\iglhxa64.vp 2015-09-11 17:42 - 2015-08-12 21:20 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2015-09-11 17:42 - 2015-08-12 20:53 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2015-09-11 17:42 - 2015-08-11 03:04 - 01087296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2015-09-11 17:42 - 2015-08-11 03:03 - 00442208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2015-09-11 17:42 - 2015-08-11 03:02 - 00554744 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll 2015-09-11 17:42 - 2015-08-11 03:02 - 00080720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2015-09-11 17:42 - 2015-08-11 02:52 - 00993104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2015-09-11 17:42 - 2015-08-11 02:40 - 00918320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2015-09-11 17:42 - 2015-08-11 02:38 - 00454000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll 2015-09-11 17:42 - 2015-08-11 02:37 - 00243800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe 2015-09-11 17:42 - 2015-08-11 02:26 - 00845664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2015-09-11 17:42 - 2015-08-11 02:21 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll 2015-09-11 17:42 - 2015-08-11 02:21 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll 2015-09-11 17:42 - 2015-08-11 02:20 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2015-09-11 17:42 - 2015-08-11 02:19 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll 2015-09-11 17:42 - 2015-08-11 02:18 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll 2015-09-11 17:42 - 2015-08-11 02:13 - 00413184 _____ C:\WINDOWS\system32\diagtrack_win.dll 2015-09-11 17:42 - 2015-08-11 02:11 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe 2015-09-11 17:42 - 2015-08-11 02:10 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-09-11 17:42 - 2015-08-11 02:10 - 00293376 _____ C:\WINDOWS\system32\TextInputFramework.dll 2015-09-11 17:42 - 2015-08-11 02:09 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll 2015-09-11 17:42 - 2015-08-11 02:08 - 00893440 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll 2015-09-11 17:42 - 2015-08-11 02:08 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll 2015-09-11 17:42 - 2015-08-11 02:07 - 00593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2015-09-11 17:42 - 2015-08-11 02:07 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeParserTask.exe 2015-09-11 17:42 - 2015-08-11 02:05 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationGeofences.dll 2015-09-11 17:42 - 2015-08-11 02:05 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll 2015-09-11 17:42 - 2015-08-11 02:05 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPermissions.dll 2015-09-11 17:42 - 2015-08-11 02:05 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll 2015-09-11 17:42 - 2015-08-11 02:02 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2015-09-11 17:42 - 2015-08-11 02:02 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll 2015-09-11 17:42 - 2015-08-11 02:01 - 01334784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2015-09-11 17:42 - 2015-08-11 02:00 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2015-09-11 17:42 - 2015-08-11 02:00 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll 2015-09-11 17:42 - 2015-08-11 01:59 - 01106432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll 2015-09-11 17:42 - 2015-08-11 01:59 - 00642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll 2015-09-11 17:42 - 2015-08-11 01:59 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2015-09-11 17:42 - 2015-08-11 01:59 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tetheringclient.dll 2015-09-11 17:42 - 2015-08-11 01:58 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll 2015-09-11 17:42 - 2015-08-11 01:57 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll 2015-09-11 17:42 - 2015-08-11 01:51 - 01823232 _____ C:\WINDOWS\SysWOW64\InputService.dll 2015-09-11 17:42 - 2015-08-11 01:50 - 00420352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe 2015-09-11 17:42 - 2015-08-11 01:50 - 00200704 _____ C:\WINDOWS\SysWOW64\TextInputFramework.dll 2015-09-11 17:42 - 2015-08-11 01:50 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll 2015-09-11 17:42 - 2015-08-11 01:49 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-09-11 17:42 - 2015-08-11 01:48 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll 2015-09-11 17:42 - 2015-08-11 01:47 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll 2015-09-11 17:42 - 2015-08-11 01:40 - 01112064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2015-09-11 17:42 - 2015-08-11 01:39 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2015-09-11 17:42 - 2015-08-11 01:38 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll 2015-09-11 17:42 - 2015-08-08 00:29 - 01822280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2015-09-11 17:42 - 2015-08-08 00:01 - 01533496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2015-09-11 17:42 - 2015-08-05 20:17 - 00237392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdyboost.sys 2015-09-11 17:42 - 2015-08-05 20:17 - 00200528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2015-09-11 17:42 - 2015-08-05 19:22 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys 2015-09-11 17:42 - 2015-08-04 21:00 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll 2015-09-11 17:42 - 2015-08-04 20:39 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenter.dll 2015-09-11 17:42 - 2015-08-03 21:07 - 00102752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys 2015-09-11 17:42 - 2015-08-03 21:06 - 00243248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2015-09-11 17:42 - 2015-08-03 20:23 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll 2015-09-11 17:42 - 2015-08-02 19:32 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll 2015-09-11 17:42 - 2015-08-02 19:28 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NotificationObjFactory.dll 2015-09-11 17:42 - 2015-08-02 19:19 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2015-09-11 17:42 - 2015-08-02 19:18 - 00046432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpiowin32.sys 2015-09-11 17:42 - 2015-08-02 19:17 - 00516960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2015-09-11 17:42 - 2015-08-02 19:17 - 00052264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys 2015-09-11 17:42 - 2015-08-02 18:24 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll 2015-09-11 17:42 - 2015-08-02 18:24 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll 2015-09-11 17:42 - 2015-08-02 18:23 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll 2015-09-11 17:42 - 2015-08-02 18:22 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll 2015-09-11 17:42 - 2015-08-02 18:21 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll 2015-09-11 17:42 - 2015-08-02 18:19 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe 2015-09-11 17:42 - 2015-08-02 18:19 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe 2015-09-11 17:42 - 2015-08-02 18:18 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll 2015-09-11 17:42 - 2015-08-02 18:18 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkStatus.dll 2015-09-11 17:42 - 2015-08-02 18:15 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll 2015-09-11 17:42 - 2015-08-02 18:12 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll 2015-09-11 17:42 - 2015-08-02 18:11 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll 2015-09-11 17:42 - 2015-08-02 18:06 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe 2015-09-11 17:42 - 2015-08-02 17:59 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll 2015-09-11 17:42 - 2015-07-29 23:23 - 00527952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2015-09-11 17:42 - 2015-07-29 23:15 - 00632168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2015-09-11 17:42 - 2015-07-29 23:14 - 00333168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll 2015-09-11 17:42 - 2015-07-29 22:24 - 00252768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll 2015-09-11 17:42 - 2015-07-29 21:24 - 00407616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2015-09-11 17:42 - 2015-07-29 21:24 - 00285632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll 2015-09-11 17:42 - 2015-07-29 21:22 - 00896144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll 2015-09-11 17:42 - 2015-07-29 21:22 - 00507696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2015-09-11 17:42 - 2015-07-29 21:12 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2015-09-11 17:42 - 2015-07-29 21:09 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe 2015-09-11 17:42 - 2015-07-29 21:08 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2015-09-11 17:42 - 2015-07-29 21:08 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2015-09-11 17:42 - 2015-07-29 20:59 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2015-09-11 17:42 - 2015-07-29 20:52 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll 2015-09-11 17:42 - 2015-07-29 20:46 - 00487424 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll 2015-09-11 17:42 - 2015-07-29 20:46 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2015-09-11 17:42 - 2015-07-29 20:45 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll 2015-09-11 17:42 - 2015-07-29 20:45 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys 2015-09-11 17:42 - 2015-07-29 20:44 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2015-09-11 17:42 - 2015-07-29 20:44 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2015-09-11 17:42 - 2015-07-29 20:44 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll 2015-09-11 17:42 - 2015-07-29 20:44 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys 2015-09-11 17:42 - 2015-07-29 20:44 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoiceActivationManager.dll 2015-09-11 17:42 - 2015-07-29 20:41 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll 2015-09-11 17:42 - 2015-07-29 20:38 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll 2015-09-11 17:42 - 2015-07-29 20:07 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll 2015-09-11 17:42 - 2015-07-29 20:06 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll 2015-09-11 17:42 - 2015-07-29 20:06 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.V2.dll 2015-09-11 17:42 - 2015-07-29 20:06 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VoiceActivationManager.dll 2015-09-11 17:42 - 2015-07-25 20:47 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll 2015-09-11 17:42 - 2015-07-25 20:39 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll 2015-09-11 17:42 - 2015-07-25 20:35 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll 2015-09-11 17:42 - 2015-07-25 20:29 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sendmail.dll 2015-09-11 17:42 - 2015-07-23 20:17 - 00521568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe 2015-09-11 17:42 - 2015-07-23 19:55 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll 2015-09-11 17:42 - 2015-07-23 19:52 - 00680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2015-09-11 17:42 - 2015-07-23 19:44 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll 2015-09-11 17:42 - 2015-07-23 19:34 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2015-09-11 17:42 - 2015-07-23 19:30 - 00799232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll 2015-09-11 17:42 - 2015-07-23 19:29 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys 2015-09-11 17:42 - 2015-07-23 19:24 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2015-09-11 17:42 - 2015-07-21 22:15 - 00565088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys 2015-09-11 17:42 - 2015-07-21 21:13 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe 2015-09-11 17:42 - 2015-07-21 21:02 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll 2015-09-11 17:42 - 2015-07-21 21:00 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2015-09-11 17:42 - 2015-07-21 20:55 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2015-09-11 17:42 - 2015-07-21 20:21 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\calc.exe 2015-09-11 17:42 - 2015-07-21 20:09 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2015-09-11 17:42 - 2015-07-21 20:07 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll 2015-09-11 17:42 - 2015-07-21 19:50 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2015-09-11 17:42 - 2015-07-18 20:54 - 01168736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2015-09-11 17:42 - 2015-07-18 20:23 - 00505344 _____ C:\WINDOWS\system32\EditionUpgradeManagerObj.dll 2015-09-11 17:42 - 2015-07-18 20:18 - 00430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll 2015-09-11 17:42 - 2015-07-18 20:02 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll 2015-09-11 17:42 - 2015-07-18 01:47 - 00082616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcd.dll 2015-09-11 17:42 - 2015-07-18 00:28 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll 2015-09-11 17:42 - 2015-07-18 00:26 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spbcd.dll 2015-09-11 17:42 - 2015-07-17 22:17 - 00097128 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll 2015-09-11 17:42 - 2015-07-17 22:02 - 00290312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe 2015-09-11 17:42 - 2015-07-17 20:59 - 00232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll 2015-09-11 17:42 - 2015-07-17 20:50 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll 2015-09-11 17:42 - 2015-07-17 20:49 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe 2015-09-11 17:42 - 2015-07-17 20:49 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2015-09-11 17:42 - 2015-07-17 20:49 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll 2015-09-11 17:42 - 2015-07-17 20:48 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2015-09-11 17:42 - 2015-07-17 20:48 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe 2015-09-11 17:42 - 2015-07-17 20:47 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\setbcdlocale.dll 2015-09-11 17:42 - 2015-07-16 21:23 - 00934752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys 2015-09-11 17:42 - 2015-07-16 21:13 - 00601344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2015-09-11 17:42 - 2015-07-16 21:12 - 00630160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2015-09-11 17:42 - 2015-07-16 21:07 - 00425824 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2015-09-11 17:42 - 2015-07-16 19:39 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2015-09-11 17:42 - 2015-07-16 19:39 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2015-09-11 17:42 - 2015-07-16 19:36 - 07569408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2015-09-11 17:42 - 2015-07-16 19:33 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe 2015-09-11 17:42 - 2015-07-16 19:33 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmprc.exe 2015-09-11 17:42 - 2015-07-16 19:32 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2015-09-11 17:42 - 2015-07-16 19:26 - 07051264 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2015-09-11 17:42 - 2015-07-16 19:19 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2015-09-11 17:42 - 2015-07-16 19:18 - 00902656 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2015-09-11 17:42 - 2015-07-16 19:05 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2015-09-11 17:42 - 2015-07-16 19:05 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll 2015-09-11 17:42 - 2015-07-16 18:56 - 06101504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2015-09-11 17:42 - 2015-07-16 18:51 - 05076480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2015-09-11 17:42 - 2015-07-15 22:39 - 00061280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys 2015-09-11 17:42 - 2015-07-15 21:09 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2015-09-11 17:42 - 2015-07-15 21:03 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll 2015-09-11 17:42 - 2015-07-15 20:54 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll 2015-09-11 17:42 - 2015-07-15 20:45 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2015-09-11 17:42 - 2015-07-15 20:41 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll 2015-09-11 17:42 - 2015-07-15 20:40 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll 2015-09-11 17:42 - 2015-07-15 20:36 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV2.dll 2015-09-11 17:42 - 2015-07-15 20:33 - 00208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll 2015-09-11 17:42 - 2015-07-15 20:32 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2015-09-11 17:42 - 2015-07-15 20:19 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srumsvc.dll 2015-09-11 17:42 - 2015-07-14 19:49 - 00325984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2015-09-11 17:42 - 2015-07-14 19:04 - 00032768 _____ C:\WINDOWS\system32\LicenseManagerApi.dll 2015-09-11 17:42 - 2015-07-14 18:41 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2015-09-11 17:42 - 2015-07-14 18:37 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll 2015-09-11 17:42 - 2015-07-14 18:27 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll 2015-09-11 17:42 - 2015-07-13 20:00 - 00208736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2015-09-11 17:42 - 2015-07-13 19:37 - 00181088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2015-09-11 17:42 - 2015-07-13 19:04 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys 2015-09-11 17:42 - 2015-07-13 18:51 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll 2015-09-11 17:42 - 2015-07-13 18:49 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2015-09-11 17:42 - 2015-07-13 18:38 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemcpl.dll 2015-09-11 17:42 - 2015-07-13 18:20 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\systemcpl.dll 2015-09-11 17:42 - 2015-07-12 17:01 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2015-09-11 17:42 - 2015-07-12 16:30 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe 2015-09-11 17:42 - 2015-07-11 17:38 - 00242176 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll 2015-09-11 17:42 - 2015-07-10 18:05 - 00263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll 2015-09-11 17:42 - 2015-07-10 18:03 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe 2015-09-11 17:42 - 2015-07-10 18:02 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll 2015-09-11 17:42 - 2015-07-10 18:01 - 04791296 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-09-11 17:42 - 2015-07-10 17:42 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll 2015-09-11 17:42 - 2015-07-10 17:40 - 03579904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-09-11 17:42 - 2015-07-10 17:40 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe 2015-09-11 17:42 - 2015-07-10 17:34 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2015-09-11 17:42 - 2015-07-10 08:47 - 00265480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll 2015-09-11 17:42 - 2015-07-10 07:52 - 00335248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2015-09-11 17:42 - 2015-07-10 03:59 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll 2015-09-11 17:42 - 2015-07-10 03:42 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll 2015-09-11 17:42 - 2015-07-10 03:10 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll 2015-09-11 17:42 - 2015-07-10 03:07 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageInspector.exe 2015-09-11 17:42 - 2015-07-10 03:05 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll 2015-09-11 17:42 - 2015-07-10 02:29 - 00569344 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert ==================== BCD ================================ Windows-Start-Manager --------------------- Bezeichner {bootmgr} device partition=C: description Windows Boot Manager locale de-DE inherit {globalsettings} default {current} resumeobject {c658c843-59dd-11e5-b2de-b3f20db7249f} displayorder {current} toolsdisplayorder {memdiag} timeout 0 Windows-Startladeprogramm ------------------------- Bezeichner {13af139c-58e4-11e5-9bc2-abd8daf08517} device ramdisk=[C:]\Recovery\WindowsRE\Winre.wim,{13af139d-58e4-11e5-9bc2-abd8daf08517} path \windows\system32\winload.exe description Windows Recovery Environment locale de-DE inherit {bootloadersettings} displaymessage Recovery displaymessageoverride PushButtonReset osdevice ramdisk=[C:]\Recovery\WindowsRE\Winre.wim,{13af139d-58e4-11e5-9bc2-abd8daf08517} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Windows-Startladeprogramm ------------------------- Bezeichner {current} device partition=C: path \WINDOWS\system32\winload.exe description Windows 10 locale de-DE inherit {bootloadersettings} allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {c658c843-59dd-11e5-b2de-b3f20db7249f} nx OptIn bootmenupolicy Standard Wiederaufnahme aus dem Ruhezustand ---------------------------------- Bezeichner {c658c843-59dd-11e5-b2de-b3f20db7249f} device partition=C: path \WINDOWS\system32\winresume.exe description Windows Resume Application locale de-DE inherit {resumeloadersettings} allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Windows-Speichertestprogramm ---------------------------- Bezeichner {memdiag} device partition=C: path \boot\memtest.exe description Windows-Speicherdiagnose locale de-DE inherit {globalsettings} badmemoryaccess Yes EMS-Einstellungen ----------------- Bezeichner {emssettings} bootems No Debuggereinstellungen --------------------- Bezeichner {dbgsettings} debugtype Serial debugport 1 baudrate 115200 RAM-Defekte ----------- Bezeichner {badmemory} Globale Einstellungen --------------------- Bezeichner {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Startladeprogramm-Einstellungen ------------------------------- Bezeichner {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Hypervisoreinstellungen ----------------------- Bezeichner {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Einstellungen zur Ladeprogrammfortsetzung ----------------------------------------- Bezeichner {resumeloadersettings} inherit {globalsettings} Ger„teoptionen -------------- Bezeichner {13af139d-58e4-11e5-9bc2-abd8daf08517} description Windows Recovery ramdisksdidevice partition=C: ramdisksdipath \Recovery\WindowsRE\boot.sdi LastRegBack: 2015-09-13 07:29 ==================== Ende von FRST.txt ============================ Scans liefen ohne Probleme durch. |
18.09.2015, 20:48 | #10 |
/// the machine /// TB-Ausbilder | HILFE ! fremder host hat sämtliche Geräte eingenommen !! Fehlt noch die Addition.txt Downloade dir bitte Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
19.09.2015, 12:40 | #11 | |
| HILFE ! fremder host hat sämtliche Geräte eingenommen !!Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:15-09-2015 durchgeführt von husse (2015-09-17 12:42:13) Gestartet von C:\Users\husse\Desktop Windows 10 Home (X64) (2015-09-11 14:20:11) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-691138828-2723297468-122099846-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-691138828-2723297468-122099846-503 - Limited - Disabled) Gast (S-1-5-21-691138828-2723297468-122099846-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-691138828-2723297468-122099846-1006 - Limited - Enabled) husse (S-1-5-21-691138828-2723297468-122099846-1001 - Administrator - Enabled) => C:\Users\husse ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avira Antivirus (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Antivirus (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) ACP Application (Version: 2.15.30.0019 - Advanced Micro Devices, Inc.) Hidden AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD) AMD Catalyst Install Manager (HKLM\...\{66AFB595-BC05-2913-7696-6D58F9B733E1}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.12.420 - Avira Operations GmbH & Co. KG) Battlefield™ Hardline (HKLM-x32\...\{CB4AC3DA-8CC1-4516-86DA-4078B57DB229}) (Version: 1.1.0.5 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.6.2 - EA Digital Illusions CE AB) Call of Duty: Advanced Warfare - Multiplayer (HKLM-x32\...\Steam App 209660) (Version: - Sledgehammer Games) Call of Duty: Advanced Warfare (HKLM-x32\...\Steam App 209650) (Version: - Sledgehammer Games) Call of Duty: Ghosts - Multiplayer (HKLM-x32\...\Steam App 209170) (Version: - Infinity Ward) Call of Duty: Ghosts (HKLM-x32\...\Steam App 209160) (Version: - Infinity Ward) Call of Duty: Modern Warfare 3 - Multiplayer (HKLM-x32\...\Steam App 42690) (Version: - Infinity Ward) Call of Duty: Modern Warfare 3 (HKLM-x32\...\Steam App 42680) (Version: - Infinity Ward) CCleaner (HKLM\...\CCleaner) (Version: 5.08 - Piriform) Cheat Engine 6.4 (HKLM-x32\...\Cheat Engine 6.4_is1) (Version: - Cheat Engine) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.1.0.0074 - Disc Soft Ltd) Dishonored GOTY Version 1.4.1 u5 (HKLM-x32\...\Dishonored GOTY_is1) (Version: 1.4.1 u5 - Bethesda Softworks) Far Cry 4 Gold Edition Incl. Update 4 & Hotfix MULTi2 v1.6.0 (HKLM-x32\...\Far Cry 4 Gold Edition Incl. Update 4 & Hotfix MULTi2 v1.6.0) (Version: - ) JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) Malwarebytes Anti-Malware Version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{9634d50a-0c4d-4f52-8a9f-894a2baae370}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{307a22b8-8353-4c5e-b67b-2404c5734558}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation) Mozilla Firefox 40.0.3 (x86 de) (HKLM-x32\...\Mozilla Firefox 40.0.3 (x86 de)) (Version: 40.0.3 - Mozilla) NVIDIA PhysX (HKLM-x32\...\{80407BA7-7763-4395-AB98-5233F1B34E65}) (Version: 9.13.1220 - NVIDIA Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.7.2.53208 - Electronic Arts, Inc.) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.994 - Even Balance, Inc.) Zitat:
Übrigens kann ich mit meinem Laptop komischerweise keine Internetverbindung aufbauen, soll ich Malwarebytes Rootkit ohne Update laufen lassen ? |
20.09.2015, 11:28 | #12 |
/// the machine /// TB-Ausbilder | HILFE ! fremder host hat sämtliche Geräte eingenommen !! Von welchem Rechner sind die Logs oben? Von deinem? Den können wir ja machen. MBAR ohne Updates, Addition.txt nochmal posten, die ist nicht vollständig.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
23.09.2015, 15:32 | #13 |
| HILFE ! fremder host hat sämtliche Geräte eingenommen !! Hallo, also die Posts mit dem Benutzernamen Yo sind von meinem Laptop. die Logs von Malwarebytes Toolkit werde ich heute spät. morgen noch posten da ich zur zeit viel arbeiten muss is das bissel schwierig. bis dann und gruss Code:
ATTFilter Malwarebytes Anti-Rootkit BETA 1.9.3.1001 www.malwarebytes.org Database version: main: v2014.11.18.05 rootkit: v2014.11.12.01 Windows 10 x64 NTFS Internet Explorer 11.0.10240.16431 Yo :: DESKTOP-BM9L3JF [administrator] 23.09.2015 11:03:34 mbar-log-2015-09-23 (11-03-34).txt Scan type: Quick scan Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken Scan options disabled: Objects scanned: 301231 Time elapsed: 19 minute(s), 53 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 6 HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\MRT.exe (Trojan.Agent) -> Delete on reboot. [2b12d667611bf5417954ad47996ac63a] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\MsMpEng.exe (Security.Hijack) -> Delete on reboot. [1d203607adcf55e1489e29cbb74c8f71] HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\svchost.exe (Security.Hijack) -> Delete on reboot. [89b451ec017be5514fb713e4877c3dc3] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\MRT.exe (Trojan.Agent) -> Delete on reboot. [83ba340993e9eb4bca03876db64de61a] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\MsMpEng.exe (Security.Hijack) -> Delete on reboot. [0f2eb68749331d198b5b589c22e16d93] HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\svchost.exe (Security.Hijack) -> Delete on reboot. [b18c3a03e993ff379373ee09f80bae52] Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) Physical Sectors Detected: 0 (No malicious items detected) (end) Hier der Log von Malwarebytes Rootkit ohne Updates. Nach dem Neustart war alles beim alten. Immer noch Gefühl eines "fremden Desktops". MfG |
24.09.2015, 14:12 | #14 |
/// the machine /// TB-Ausbilder | HILFE ! fremder host hat sämtliche Geräte eingenommen !! Nochmal scannen, schauen ob die Funde weg sind, Addition.txt fehlt immer noch
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
25.09.2015, 23:19 | #15 |
| HILFE ! fremder host hat sämtliche Geräte eingenommen !! Hallo schrauber, bitte vergib mir PC Niete, aber da ich jetzt fast garnicht mehr durch blicke und eig. garnicht weiß welche addition.txt du meinst hab ich heut neue erstellt <--- verfluche mich ruhig falls das falsch war Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:23-09-2015 durchgeführt von tOm (Administrator) auf TOM-PC (25-09-2015 19:09:04) Gestartet von C:\Users\tOm\Desktop Geladene Profile: tOm (Verfügbare Profile: tOm) Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 8 (Standard-Browser: Chrome) Start-Modus: Safe Mode (with Networking) Anleitung für Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Geeks to Go Forum ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6134544 2015-09-25] (AVAST Software) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-09-25] (AVAST Software) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{C2A6826A-3B31-40A1-9969-DF5A1011E61D}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== HKU\S-1-5-21-4134077176-2680830686-2640539102-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.de/?gws_rd=ssl HKU\S-1-5-21-4134077176-2680830686-2640539102-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-09-25] (AVAST Software) BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-09-25] (Google Inc.) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-09-25] (AVAST Software) BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-09-25] (Google Inc.) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-09-25] (Google Inc.) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-09-25] (Google Inc.) Toolbar: HKU\S-1-5-21-4134077176-2680830686-2640539102-1000 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-09-25] (Google Inc.) Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation) Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation) Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2010-11-21] (Microsoft Corporation) Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2010-11-21] (Microsoft Corporation) FireFox: ======== FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-25] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-25] (Google Inc.) FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-09-25] Chrome: ======= CHR StartupUrls: Default -> "hxxp://www.google.com/" CHR Profile: C:\Users\tOm\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\tOm\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-25] CHR Extension: (Google Docs) - C:\Users\tOm\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-25] CHR Extension: (Google Drive) - C:\Users\tOm\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-09-25] CHR Extension: (YouTube) - C:\Users\tOm\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25] CHR Extension: (Google-Suche) - C:\Users\tOm\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-09-25] CHR Extension: (Google Text & Tabellen Offline) - C:\Users\tOm\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-25] CHR Extension: (Avast Online Security) - C:\Users\tOm\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-09-25] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\tOm\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-09-25] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\tOm\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-09-25] CHR Extension: (Google Mail) - C:\Users\tOm\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-25] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-09-25] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-09-25] (AVAST Software) S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-09-25] (AVAST Software) S2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [90968 2015-09-25] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-09-25] (AVAST Software) S0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-09-25] (AVAST Software) S1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1049880 2015-09-25] (AVAST Software) S1 aswSP; C:\Windows\system32\drivers\aswSP.sys [448968 2015-09-25] (AVAST Software) S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [153744 2015-09-25] (AVAST Software) S0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [274808 2015-09-25] (AVAST Software) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) ========================== MD5 Treiber ======================= C:\Windows\system32\drivers\1394ohci.sys ==> MD5 ist legitim C:\Windows\System32\drivers\ACPI.sys ==> MD5 ist legitim C:\Windows\system32\drivers\acpipmi.sys ==> MD5 ist legitim C:\Windows\system32\drivers\adp94xx.sys ==> MD5 ist legitim C:\Windows\system32\drivers\adpahci.sys ==> MD5 ist legitim C:\Windows\system32\drivers\adpu320.sys ==> MD5 ist legitim C:\Windows\system32\drivers\afd.sys ==> MD5 ist legitim C:\Windows\system32\drivers\agp440.sys ==> MD5 ist legitim C:\Windows\system32\drivers\aliide.sys ==> MD5 ist legitim C:\Windows\system32\drivers\amdide.sys ==> MD5 ist legitim C:\Windows\system32\drivers\amdk8.sys ==> MD5 ist legitim C:\Windows\system32\drivers\amdppm.sys ==> MD5 ist legitim C:\Windows\system32\drivers\amdsata.sys ==> MD5 ist legitim C:\Windows\system32\drivers\amdsbs.sys ==> MD5 ist legitim C:\Windows\System32\drivers\amdxata.sys ==> MD5 ist legitim C:\Windows\system32\drivers\appid.sys ==> MD5 ist legitim C:\Windows\system32\drivers\arc.sys ==> MD5 ist legitim C:\Windows\system32\drivers\arcsas.sys ==> MD5 ist legitim C:\Windows\system32\drivers\aswHwid.sys 30E7D7B63BE378C6DCD31434E1C5EBEB C:\Windows\system32\drivers\aswMonFlt.sys 6C3B7781075271AD9DFBD77BC7FBB9F7 C:\Windows\system32\drivers\aswRdr2.sys 3C04B80B49697EB7DFE5FA43620F8728 C:\Windows\System32\Drivers\aswRvrt.sys AA8CB23B3B4A4B16F49CB54CA04FE0D9 C:\Windows\system32\drivers\aswSnx.sys E40965585B901AA60AF26279E09959E0 C:\Windows\system32\drivers\aswSP.sys B54E400C1B044D6D7D9EF95BA865741E C:\Windows\system32\drivers\aswStm.sys 0652346DF90731A87E4C7C9A9C45A8E0 C:\Windows\System32\Drivers\aswVmm.sys 54230972D23E6E4D034D7CB577DC784C C:\Windows\System32\DRIVERS\asyncmac.sys ==> MD5 ist legitim C:\Windows\System32\drivers\atapi.sys ==> MD5 ist legitim C:\Windows\system32\drivers\bxvbda.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\b57nd60a.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\Beep.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\blbdrive.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\bowser.sys 91CE0D3DC57DD377E690A2D324022B08 C:\Windows\system32\drivers\BrFiltLo.sys ==> MD5 ist legitim C:\Windows\system32\drivers\BrFiltUp.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\Brserid.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\BrSerWdm.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\BrUsbMdm.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\BrUsbSer.sys ==> MD5 ist legitim C:\Windows\system32\drivers\bthmodem.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\cdfs.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\cdrom.sys ==> MD5 ist legitim C:\Windows\system32\drivers\circlass.sys ==> MD5 ist legitim C:\Windows\System32\CLFS.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\CmBatt.sys ==> MD5 ist legitim C:\Windows\system32\drivers\cmdide.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\cng.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\compbatt.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\CompositeBus.sys ==> MD5 ist legitim C:\Windows\system32\drivers\crcdisk.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\dfsc.sys ==> MD5 ist legitim C:\Windows\System32\drivers\discache.sys ==> MD5 ist legitim C:\Windows\System32\drivers\disk.sys ==> MD5 ist legitim C:\Windows\System32\drivers\drmkaud.sys ==> MD5 ist legitim C:\Windows\System32\drivers\dxgkrnl.sys ==> MD5 ist legitim C:\Windows\system32\drivers\evbda.sys ==> MD5 ist legitim C:\Windows\system32\drivers\elxstor.sys ==> MD5 ist legitim C:\Windows\system32\drivers\errdev.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\exfat.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\fastfat.sys ==> MD5 ist legitim C:\Windows\system32\drivers\fdc.sys ==> MD5 ist legitim C:\Windows\System32\drivers\fileinfo.sys ==> MD5 ist legitim C:\Windows\System32\drivers\filetrace.sys ==> MD5 ist legitim C:\Windows\system32\drivers\flpydisk.sys ==> MD5 ist legitim C:\Windows\System32\drivers\fltmgr.sys ==> MD5 ist legitim C:\Windows\System32\drivers\FsDepends.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\Fs_Rec.sys 6BD9295CC032DD3077C671FCCF579A7B C:\Windows\System32\DRIVERS\fvevol.sys ==> MD5 ist legitim C:\Windows\system32\drivers\gagp30kx.sys ==> MD5 ist legitim C:\Windows\system32\drivers\hcw85cir.sys ==> MD5 ist legitim C:\Windows\System32\drivers\HdAudio.sys 975761C778E33CD22498059B91E7373A C:\Windows\System32\DRIVERS\HDAudBus.sys ==> MD5 ist legitim C:\Windows\system32\drivers\HidBatt.sys ==> MD5 ist legitim C:\Windows\system32\drivers\hidbth.sys ==> MD5 ist legitim C:\Windows\system32\drivers\hidir.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\hidusb.sys ==> MD5 ist legitim C:\Windows\system32\drivers\HpSAMD.sys ==> MD5 ist legitim C:\Windows\System32\drivers\HTTP.sys ==> MD5 ist legitim C:\Windows\System32\drivers\hwpolicy.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\i8042prt.sys ==> MD5 ist legitim C:\Windows\system32\drivers\iaStorV.sys ==> MD5 ist legitim C:\Windows\system32\drivers\iirsp.sys ==> MD5 ist legitim C:\Windows\system32\drivers\intelide.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\intelppm.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\ipfltdrv.sys ==> MD5 ist legitim C:\Windows\system32\drivers\IPMIDrv.sys ==> MD5 ist legitim C:\Windows\System32\drivers\ipnat.sys ==> MD5 ist legitim C:\Windows\System32\drivers\irenum.sys ==> MD5 ist legitim C:\Windows\system32\drivers\isapnp.sys ==> MD5 ist legitim C:\Windows\system32\drivers\msiscsi.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\k57nd60a.sys 249EE2D26CB1530F3BEDE0AC8B9E3099 C:\Windows\System32\DRIVERS\kbdclass.sys ==> MD5 ist legitim C:\Windows\system32\drivers\kbdhid.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\ksecdd.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\ksecpkg.sys ==> MD5 ist legitim C:\Windows\system32\drivers\ksthunk.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\lltdio.sys ==> MD5 ist legitim C:\Windows\system32\drivers\lsi_fc.sys ==> MD5 ist legitim C:\Windows\system32\drivers\lsi_sas.sys ==> MD5 ist legitim C:\Windows\system32\drivers\lsi_sas2.sys ==> MD5 ist legitim C:\Windows\system32\drivers\lsi_scsi.sys ==> MD5 ist legitim C:\Windows\system32\drivers\luafv.sys ==> MD5 ist legitim C:\Windows\system32\drivers\megasas.sys ==> MD5 ist legitim C:\Windows\system32\drivers\MegaSR.sys ==> MD5 ist legitim C:\Windows\System32\drivers\modem.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\monitor.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\mouclass.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\mouhid.sys ==> MD5 ist legitim C:\Windows\System32\drivers\mountmgr.sys ==> MD5 ist legitim C:\Windows\system32\drivers\mpio.sys ==> MD5 ist legitim C:\Windows\System32\drivers\mpsdrv.sys ==> MD5 ist legitim C:\Windows\system32\drivers\mrxdav.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\mrxsmb.sys FAF015B07E3A2874A790A39B7D2C579F C:\Windows\System32\DRIVERS\mrxsmb10.sys 08E2345DF129082BCDFFDC1440F9C00D C:\Windows\System32\DRIVERS\mrxsmb20.sys 108D87409C5812EF47D81E22843E8C9D C:\Windows\System32\drivers\msahci.sys ==> MD5 ist legitim C:\Windows\system32\drivers\msdsm.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\Msfs.sys ==> MD5 ist legitim C:\Windows\System32\drivers\mshidkmdf.sys ==> MD5 ist legitim C:\Windows\System32\drivers\msisadrv.sys ==> MD5 ist legitim C:\Windows\System32\drivers\MSKSSRV.sys ==> MD5 ist legitim C:\Windows\System32\drivers\MSPCLOCK.sys ==> MD5 ist legitim C:\Windows\System32\drivers\MSPQM.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\MsRPC.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\mssmbios.sys ==> MD5 ist legitim C:\Windows\System32\drivers\MSTEE.sys ==> MD5 ist legitim C:\Windows\system32\drivers\MTConfig.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\mup.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\nwifi.sys ==> MD5 ist legitim C:\Windows\System32\drivers\ndis.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\ndiscap.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\ndistapi.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\ndisuio.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\ndiswan.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\NDProxy.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\netbios.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\netbt.sys ==> MD5 ist legitim C:\Windows\system32\drivers\nfrd960.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\Npfs.sys ==> MD5 ist legitim C:\Windows\System32\drivers\nsiproxy.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\Ntfs.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\Null.sys ==> MD5 ist legitim C:\Windows\system32\drivers\nvraid.sys ==> MD5 ist legitim C:\Windows\system32\drivers\nvstor.sys ==> MD5 ist legitim C:\Windows\system32\drivers\nv_agp.sys ==> MD5 ist legitim C:\Windows\system32\drivers\ohci1394.sys ==> MD5 ist legitim C:\Windows\system32\drivers\parport.sys ==> MD5 ist legitim C:\Windows\System32\drivers\partmgr.sys ==> MD5 ist legitim C:\Windows\System32\drivers\pci.sys ==> MD5 ist legitim C:\Windows\system32\drivers\pciide.sys ==> MD5 ist legitim C:\Windows\system32\drivers\pcmcia.sys ==> MD5 ist legitim C:\Windows\System32\drivers\pcw.sys ==> MD5 ist legitim C:\Windows\System32\drivers\peauth.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\raspptp.sys ==> MD5 ist legitim C:\Windows\system32\drivers\processr.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\pacer.sys ==> MD5 ist legitim C:\Windows\system32\drivers\ql2300.sys ==> MD5 ist legitim C:\Windows\system32\drivers\ql40xx.sys ==> MD5 ist legitim C:\Windows\system32\drivers\qwavedrv.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\rasacd.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\AgileVpn.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\rasl2tp.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\raspppoe.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\rassstp.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\rdbss.sys ==> MD5 ist legitim C:\Windows\system32\drivers\rdpbus.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\RDPCDD.sys ==> MD5 ist legitim C:\Windows\System32\drivers\rdpencdd.sys ==> MD5 ist legitim C:\Windows\System32\drivers\rdprefmp.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\RDPWD.sys 6D76E6433574B058ADCB0C50DF834492 C:\Windows\System32\drivers\rdyboost.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\rspndr.sys ==> MD5 ist legitim C:\Windows\system32\drivers\sbp2port.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\scfilter.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\secdrv.sys ==> MD5 ist legitim C:\Windows\system32\drivers\serenum.sys ==> MD5 ist legitim C:\Windows\system32\drivers\serial.sys ==> MD5 ist legitim C:\Windows\system32\drivers\sermouse.sys ==> MD5 ist legitim C:\Windows\system32\drivers\sffdisk.sys ==> MD5 ist legitim C:\Windows\system32\drivers\sffp_mmc.sys ==> MD5 ist legitim C:\Windows\system32\drivers\sffp_sd.sys ==> MD5 ist legitim C:\Windows\system32\drivers\sfloppy.sys ==> MD5 ist legitim C:\Windows\system32\drivers\SiSRaid2.sys ==> MD5 ist legitim C:\Windows\system32\drivers\sisraid4.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\smb.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\spldr.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\srv.sys 2098B8556D1CEC2ACA9A29CD479E3692 C:\Windows\System32\DRIVERS\srv2.sys D0F73A42040F21F92FD314B42AC5C9E7 C:\Windows\System32\DRIVERS\srvnet.sys 2BA8F3250828CCDB4204ECF2C6F40B6A C:\Windows\system32\drivers\stexstor.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\swenum.sys ==> MD5 ist legitim C:\Windows\System32\drivers\tcpip.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\tcpip.sys ==> MD5 ist legitim C:\Windows\System32\drivers\tcpipreg.sys ==> MD5 ist legitim C:\Windows\System32\drivers\tdpipe.sys ==> MD5 ist legitim C:\Windows\System32\drivers\tdtcp.sys 51C5ECEB1CDEE2468A1748BE550CFBC8 C:\Windows\System32\DRIVERS\tdx.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\termdd.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\tssecsrv.sys ==> MD5 ist legitim C:\Windows\System32\drivers\tsusbflt.sys ==> MD5 ist legitim C:\Windows\system32\drivers\TsUsbGD.sys 9CC2CCAE8A84820EAECB886D477CBCB8 C:\Windows\System32\DRIVERS\tunnel.sys ==> MD5 ist legitim C:\Windows\system32\drivers\uagp35.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\udfs.sys ==> MD5 ist legitim C:\Windows\system32\drivers\uliagpkx.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\umbus.sys ==> MD5 ist legitim C:\Windows\system32\drivers\umpass.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\usbccgp.sys ==> MD5 ist legitim C:\Windows\system32\drivers\usbcir.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\usbehci.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\usbhub.sys ==> MD5 ist legitim C:\Windows\system32\drivers\usbohci.sys ==> MD5 ist legitim C:\Windows\system32\drivers\usbprint.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\USBSTOR.SYS ==> MD5 ist legitim C:\Windows\system32\drivers\usbuhci.sys ==> MD5 ist legitim C:\Windows\System32\Drivers\usbvideo.sys 454800C2BC7F3927CE030141EE4F4C50 C:\Windows\System32\drivers\vdrvroot.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\vgapnp.sys ==> MD5 ist legitim C:\Windows\System32\drivers\vga.sys ==> MD5 ist legitim C:\Windows\system32\drivers\vhdmp.sys ==> MD5 ist legitim C:\Windows\system32\drivers\viaide.sys ==> MD5 ist legitim C:\Windows\System32\drivers\volmgr.sys ==> MD5 ist legitim C:\Windows\System32\drivers\volmgrx.sys ==> MD5 ist legitim C:\Windows\System32\drivers\volsnap.sys ==> MD5 ist legitim C:\Windows\system32\drivers\vsmraid.sys ==> MD5 ist legitim C:\Windows\System32\drivers\vwifibus.sys ==> MD5 ist legitim C:\Windows\system32\drivers\wacompen.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\wanarp.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\wanarp.sys ==> MD5 ist legitim C:\Windows\system32\drivers\wd.sys ==> MD5 ist legitim C:\Windows\System32\drivers\Wdf01000.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\wfplwf.sys ==> MD5 ist legitim C:\Windows\System32\drivers\wimmount.sys ==> MD5 ist legitim C:\Windows\SysWOW64\drivers\wimmount.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\WinUsb.sys FE88B288356E7B47B74B13372ADD906D C:\Windows\System32\DRIVERS\wmiacpi.sys ==> MD5 ist legitim C:\Windows\system32\drivers\ws2ifsl.sys ==> MD5 ist legitim C:\Windows\System32\drivers\WudfPf.sys ==> MD5 ist legitim C:\Windows\System32\DRIVERS\WUDFRd.sys ==> MD5 ist legitim ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-09-25 19:09 - 2015-09-25 19:09 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2015-09-25 19:08 - 2015-09-25 19:08 - 359768284 _____ C:\Windows\MEMORY.DMP 2015-09-25 19:08 - 2015-09-25 19:08 - 00270648 _____ C:\Windows\Minidump\092515-22058-01.dmp 2015-09-25 19:08 - 2015-09-25 19:08 - 00000000 ____D C:\Windows\Minidump 2015-09-25 18:55 - 2015-02-10 02:05 - 621754368 _____ C:\Users\tOm\Desktop\MICROSOFT.WINDOWS.7.ULTIMATE.x64.FEBRUAR.2015.BTF-TRIBAL.iso 2015-09-25 18:46 - 2012-03-01 08:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys 2015-09-25 18:46 - 2012-03-01 08:38 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2015-09-25 18:46 - 2012-03-01 08:33 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2015-09-25 18:46 - 2012-03-01 08:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll 2015-09-25 18:46 - 2012-03-01 07:37 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2015-09-25 18:46 - 2012-03-01 07:33 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2015-09-25 18:46 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll 2015-09-25 18:44 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll 2015-09-25 18:44 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll 2015-09-25 18:44 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2015-09-25 18:44 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2015-09-25 18:44 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe 2015-09-25 18:44 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll 2015-09-25 18:44 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe 2015-09-25 18:44 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll 2015-09-25 18:36 - 2012-02-17 08:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll 2015-09-25 18:36 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll 2015-09-25 18:36 - 2012-02-17 06:58 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2015-09-25 18:36 - 2012-02-17 06:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys 2015-09-25 18:27 - 2015-09-25 18:29 - 00012333 _____ C:\Users\tOm\Desktop\Addition.txt 2015-09-25 18:26 - 2015-09-25 19:09 - 00022987 _____ C:\Users\tOm\Desktop\FRST.txt 2015-09-25 18:25 - 2015-09-25 19:09 - 00000000 ____D C:\FRST 2015-09-25 18:05 - 2015-09-25 18:42 - 00000306 __RSH C:\ProgramData\ntuser.pol 2015-09-25 18:05 - 2015-09-25 18:05 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2015-09-25 18:03 - 2015-09-25 18:24 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2015-09-25 18:03 - 2015-09-25 18:03 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-09-25 18:03 - 2015-09-25 18:03 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-09-25 18:02 - 2015-09-25 18:02 - 00837032 _____ (Akeo Consulting (Akeo Consulting)) C:\Users\tOm\Desktop\rufus-2.3.exe 2015-09-25 18:01 - 2015-09-25 18:01 - 02192384 _____ (Farbar) C:\Users\tOm\Desktop\FRST64.exe 2015-09-25 17:51 - 2015-09-25 17:52 - 00000000 ____D C:\Users\tOm\AppData\Roaming\Google 2015-09-25 17:42 - 2015-09-25 17:42 - 00000000 ____D C:\Users\tOm\AppData\Roaming\AVAST Software 2015-09-25 17:41 - 2015-09-25 17:41 - 00003924 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2015-09-25 17:41 - 2015-09-25 17:41 - 00001922 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk 2015-09-25 17:41 - 2015-09-25 17:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2015-09-25 17:40 - 2015-09-25 17:40 - 00002251 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-09-25 17:40 - 2015-09-25 17:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-09-25 17:40 - 2015-09-25 17:40 - 00000000 ____D C:\ProgramData\Google 2015-09-25 17:40 - 2015-09-25 17:40 - 00000000 ____D C:\Program Files\Google 2015-09-25 17:39 - 2015-09-25 18:49 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-09-25 17:39 - 2015-09-25 18:04 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-09-25 17:39 - 2015-09-25 18:03 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-09-25 17:39 - 2015-09-25 17:57 - 00004106 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-09-25 17:39 - 2015-09-25 17:57 - 00003854 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-09-25 17:39 - 2015-09-25 17:51 - 00000000 ____D C:\Users\tOm\AppData\Local\Google 2015-09-25 17:39 - 2015-09-25 17:40 - 00000000 ____D C:\Program Files (x86)\Google 2015-09-25 17:38 - 2015-09-25 17:38 - 01049880 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2015-09-25 17:38 - 2015-09-25 17:38 - 00448968 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2015-09-25 17:38 - 2015-09-25 17:38 - 00378880 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2015-09-25 17:38 - 2015-09-25 17:38 - 00274808 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys 2015-09-25 17:38 - 2015-09-25 17:38 - 00153744 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2015-09-25 17:38 - 2015-09-25 17:38 - 00093528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2015-09-25 17:38 - 2015-09-25 17:38 - 00090968 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2015-09-25 17:38 - 2015-09-25 17:38 - 00065224 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys 2015-09-25 17:38 - 2015-09-25 17:38 - 00043112 _____ (AVAST Software) C:\Windows\avastSS.scr 2015-09-25 17:38 - 2015-09-25 17:38 - 00028656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys 2015-09-25 17:36 - 2015-09-25 17:36 - 00000000 ____D C:\Program Files\AVAST Software 2015-09-25 17:35 - 2015-09-25 17:35 - 00000000 ____D C:\ProgramData\AVAST Software 2015-09-25 17:27 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-09-25 17:27 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-09-25 17:27 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-09-25 17:27 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-09-25 17:27 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-09-25 17:27 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-09-25 17:27 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-09-25 17:27 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-09-25 17:27 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-09-25 17:27 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-09-25 17:27 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-09-25 17:27 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-09-25 17:27 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-09-25 17:27 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-09-25 17:26 - 2015-09-25 17:26 - 00000000 ____D C:\Program Files\Broadcom 2015-09-25 17:21 - 2015-09-25 17:21 - 00057560 _____ C:\Users\tOm\AppData\Local\GDIPFONTCACHEV1.DAT 2015-09-25 17:21 - 2015-09-25 17:21 - 00000000 ____D C:\Program Files (x86)\Realtek 2015-09-25 17:17 - 2015-09-25 17:21 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-09-25 17:17 - 2015-09-25 17:17 - 00000000 ____D C:\ProgramData\Ralink Driver 2015-09-25 17:17 - 2015-09-25 17:17 - 00000000 ____D C:\Program Files (x86)\Ralink 2015-09-25 17:17 - 2012-05-24 13:39 - 00014119 _____ C:\Windows\SysWOW64\RaCoInst.dat 2015-09-25 17:17 - 2012-05-24 13:39 - 00014119 _____ C:\Windows\system32\RaCoInst.dat 2015-09-25 17:17 - 2012-05-10 22:01 - 01503744 _____ (The OpenSSL Project, OpenSSL) C:\Windows\system32\libeay32.dll 2015-09-25 17:17 - 2012-05-10 22:01 - 00308736 _____ (The OpenSSL Project, OpenSSL) C:\Windows\system32\ssleay32.dll 2015-09-25 17:16 - 2015-09-25 17:16 - 00000000 ____D C:\Users\tOm\AppData\Roaming\InstallShield 2015-09-25 16:28 - 2015-09-25 17:43 - 00000000 ____D C:\Users\tOm\AppData\Local\VirtualStore 2015-09-25 16:28 - 2015-09-25 16:28 - 00001443 _____ C:\Users\tOm\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-09-25 16:28 - 2015-09-25 16:28 - 00001409 _____ C:\Users\tOm\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2015-09-25 16:27 - 2015-09-25 16:28 - 00000000 ____D C:\Users\tOm 2015-09-25 16:27 - 2015-09-25 16:27 - 00000020 ___SH C:\Users\tOm\ntuser.ini 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\tOm\Vorlagen 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\tOm\Startmenü 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\tOm\Netzwerkumgebung 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\tOm\Lokale Einstellungen 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\tOm\Eigene Dateien 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\tOm\Druckumgebung 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\tOm\Documents\Eigene Musik 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\tOm\Documents\Eigene Bilder 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\tOm\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\tOm\AppData\Local\Verlauf 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\tOm\AppData\Local\Anwendungsdaten 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\tOm\Anwendungsdaten 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\Default\Vorlagen 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\Default\Startmenü 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Programme 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\ProgramData\Vorlagen 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\ProgramData\Startmenü 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\ProgramData\Favoriten 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\ProgramData\Dokumente 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 _SHDL C:\Dokumente und Einstellungen 2015-09-25 16:27 - 2015-09-25 16:27 - 00000000 __SHD C:\Recovery 2015-09-25 16:27 - 2009-07-14 06:54 - 00000000 ___RD C:\Users\tOm\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-09-25 16:27 - 2009-07-14 06:49 - 00000000 ___RD C:\Users\tOm\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-09-25 16:14 - 2015-09-25 16:27 - 00000000 ____D C:\Windows\Panther 2015-09-25 16:14 - 2015-09-25 16:14 - 00008192 __RSH C:\BOOTSECT.BAK 2015-09-25 16:14 - 2010-11-21 05:23 - 00383786 __RSH C:\bootmgr 2015-09-25 15:19 - 2015-09-25 15:19 - 00001345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk 2015-09-25 15:19 - 2015-09-25 15:19 - 00001326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk 2015-09-25 15:18 - 2015-09-25 15:18 - 00001355 _____ C:\Windows\TSSysprep.log 2015-09-25 15:17 - 2015-09-25 18:59 - 02062161 _____ C:\Windows\WindowsUpdate.log ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-09-25 19:09 - 2009-07-14 06:51 - 00023195 _____ C:\Windows\setupact.log 2015-09-25 18:56 - 2011-04-12 09:43 - 00643866 _____ C:\Windows\system32\perfh007.dat 2015-09-25 18:56 - 2011-04-12 09:43 - 00126394 _____ C:\Windows\system32\perfc007.dat 2015-09-25 18:56 - 2009-07-14 07:13 - 01472002 _____ C:\Windows\system32\PerfStringBackup.INI 2015-09-25 18:51 - 2009-07-14 06:45 - 00016640 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-09-25 18:51 - 2009-07-14 06:45 - 00016640 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-09-25 18:49 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-09-25 18:48 - 2010-11-21 05:47 - 00005652 _____ C:\Windows\PFRO.log 2015-09-25 18:05 - 2009-07-14 05:20 - 00000000 ___HD C:\Windows\system32\GroupPolicy 2015-09-25 18:05 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\GroupPolicy 2015-09-25 17:27 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Public\Libraries 2015-09-25 17:19 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2015-09-25 17:16 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\restore 2015-09-25 16:27 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Default 2015-09-25 16:27 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2015-09-25 16:27 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Windows NT 2015-09-25 16:14 - 2009-07-14 07:38 - 00025600 ___SH C:\Windows\system32\config\BCD-Template.LOG 2015-09-25 16:14 - 2009-07-14 07:32 - 00028672 _____ C:\Windows\system32\config\BCD-Template 2015-09-25 15:20 - 2009-07-14 06:45 - 00274464 _____ C:\Windows\system32\FNTCACHE.DAT 2015-09-25 15:19 - 2009-07-14 05:20 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-09-25 15:18 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-09-25 15:18 - 2009-07-14 06:46 - 00002790 _____ C:\Windows\DtcInstall.log 2015-09-25 15:18 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\sysprep ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-09-25 15:14 ==================== Ende von FRST.txt ============================ Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:23-09-2015 durchgeführt von tOm (2015-09-25 19:09:45) Gestartet von C:\Users\tOm\Desktop Windows 7 Home Premium Service Pack 1 (X64) (2015-09-25 14:27:40) Start-Modus: Safe Mode (with Networking) ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-4134077176-2680830686-2640539102-500 - Administrator - Disabled) Gast (S-1-5-21-4134077176-2680830686-2640539102-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-4134077176-2680830686-2640539102-1003 - Limited - Enabled) tOm (S-1-5-21-4134077176-2680830686-2640539102-1000 - Administrator - Enabled) => C:\Users\tOm ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.4.2233 - AVAST Software) Broadcom Gigabit NetLink Controller (HKLM\...\{96F70DF8-160F-4F9C-9B9E-2A9B439B4EB9}) (Version: 12.26.02 - Broadcom Corporation) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 45.0.2454.101 - Google Inc.) Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.6904.2028 - Google Inc.) Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.21.169 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden Ralink RT2860 Wireless LAN Card (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}) (Version: 1.5.24.0 - Ralink) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0032 - Realtek) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Wiederherstellungspunkte ========================= 25-09-2015 17:16:53 Installiert Ralink Wireless LAN 25-09-2015 17:21:26 Installiert Realtek Ethernet Controller Driver 25-09-2015 17:25:36 Installed Broadcom Gigabit NetLink Controller. 25-09-2015 17:27:11 Windows Update 25-09-2015 17:36:36 avast! antivirus system restore point 25-09-2015 18:43:05 Windows Update ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {11E3CC84-3322-4513-8848-6978EB5A4956} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-25] (Google Inc.) Task: {43216135-8F11-4450-94B2-E6FF18191A0D} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-09-25] (AVAST Software) Task: {DA8F2597-0F1B-4686-8C8C-099A92256493} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-25] (Google Inc.) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="2" ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\S-1-5-21-4134077176-2680830686-2640539102-1000\...\chip.de -> hxxps://www.chip.de ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-4134077176-2680830686-2640539102-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\tOm\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{8318B3BE-2759-4871-8F26-40B675B8F44D}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: Netzwerkcontroller Description: Netzwerkcontroller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: avast! Revert Description: avast! Revert Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: aswRvrt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: ARCHOS 50b Neon Description: ARCHOS 50b Neon Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a} Manufacturer: Service: Problem: : This device is not configured correctly. (Code1) Resolution: You may be prompted to provide the path of the driver. Windows may have the driver built-in, or may still have the driver files installed from the last time that you set up the device. If you are asked for the driver and you do not have it, you can try to download the latest driver from the hardware vendor�s Web site. In the device properties dialog box, click the "Driver" tab, and then click "Update Driver" to start the "Hardware Update Wizard". Follow the instructions to update the driver. If updating the driver does not work, see your hardware documentation for more information. Name: avast! VM Monitor Description: avast! VM Monitor Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: aswVmm Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: PCI-Kommunikationscontroller (einfach) Description: PCI-Kommunikationscontroller (einfach) Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Security Processor Loader Driver Description: Security Processor Loader Driver Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: spldr Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (09/25/2015 06:49:37 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/25/2015 05:46:09 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Fehler beim Extrahieren der Drittanbieterstammliste aus der automatischen Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>. Fehler: Ein erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei. . Error: (09/25/2015 05:40:56 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Fehler beim Extrahieren der Drittanbieterstammliste aus der automatischen Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>. Fehler: Ein erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei. . Error: (09/25/2015 05:31:55 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/25/2015 05:31:05 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 4107) (User: ) Description: Fehler beim Extrahieren der Drittanbieterstammliste aus der automatischen Aktualisierungs-CAB-Datei bei <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>. Fehler: Ein erforderliches Zertifikat befindet sich nicht im Gültigkeitszeitraum gemessen an der aktuellen Systemzeit oder dem Zeitstempel in der signierten Datei. . Error: (09/25/2015 05:25:10 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/25/2015 04:27:23 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Systemfehler: ============= Error: (09/25/2015 07:08:47 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error: (09/25/2015 07:08:47 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error: (09/25/2015 07:08:47 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error: (09/25/2015 07:08:47 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error: (09/25/2015 07:08:47 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error: (09/25/2015 07:08:47 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error: (09/25/2015 07:08:47 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error: (09/25/2015 07:08:45 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error: (09/25/2015 07:08:45 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 Error: (09/25/2015 07:08:45 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Computerbrowser" ist vom Dienst "Server" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1068 ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i3 CPU M 370 @ 2.40GHz Prozentuale Nutzung des RAM: 17% Installierter physikalischer RAM: 3764.43 MB Verfügbarer physikalischer RAM: 3104.01 MB Summe virtueller Speicher: 7527.07 MB Verfügbarer virtueller Speicher: 6882.72 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:595.19 GB) (Free:572.26 GB) NTFS ==>[Laufwerk mit Startkomponenten (eingeholt von BCD)] Drive d: () (Fixed) (Total:0.98 GB) (Free:0.94 GB) NTFS Drive e: (Rt5392) (CDROM) (Total:0.05 GB) (Free:0 GB) CDFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596.2 GB) (Disk ID: 8ECE1BC0) Partition 1: (Not Active) - (Size=1000 MB) - (Type=07 NTFS) Partition 2: (Active) - (Size=595.2 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ nochmals vielen dank an schrauber und das team das ihr auch soviel geduld mit nieten wie mir habt )))))) achso hier noch mbar rootkit Code:
ATTFilter Malwarebytes Anti-Rootkit BETA 1.9.3.1001 www.malwarebytes.org Database version: main: v2015.09.25.03 rootkit: v2015.09.22.01 Windows 7 Service Pack 1 x64 NTFS (Safe Mode/Networking) Internet Explorer 8.0.7601.17514 tOm :: TOM-PC [administrator] 25.09.2015 19:15:52 mbar-log-2015-09-25 (19-15-52).txt Scan type: Quick scan Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken Scan options disabled: Objects scanned: 326198 Time elapsed: 15 minute(s), 54 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) Physical Sectors Detected: 0 (No malicious items detected) (end) |
Themen zu HILFE ! fremder host hat sämtliche Geräte eingenommen !! |
angemeldet, benutzer, browser, daten, einstellungen, festgestellt, fremde, fremden, funktionen, google, guten, handy, heute, localhost, neustart, online, router, sache, schnell, schnelle, spinnen, sämtliche, version, wlan, woche |