|
Plagegeister aller Art und deren Bekämpfung: Junkware PUP gefunden von GDATA gemeldetWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
30.10.2015, 20:21 | #1 |
| Junkware PUP gefunden von GDATA gemeldet Hallo liebe Trojaner Boardler, gestern habe ich einen gebrauchten Laptop mit den gleichen Meldungen von GDATA nach Anweisungen des Threads:"Junkware(PUP) Meldungen über GDATA !" vom 22.08.15 nach den Anweisungen hoffentlich gereinigt bekommen. Heute lese ich genauer und erfahre, dass jeder Befall anders gehändelt werden muss. Deshalbe jetzt meine eigentliche Frage: Der Spiele PC meines Sohnes zeigt in den GDATA Protokollen einige Meldungen. Laufen tut er normal: mehrere Male: "Junkware PUP gefunden" Beim Öffnen der Datei "C:\Users\PC\Downloads\OpenOffice_4.1.1_Win_x86_install_de.exe->[NSIS].nsi" wurde die Junkware (PUP) "NSIS.Adware.Narn.A" entdeckt. Zugriff verweigert. Beim Öffnen der Datei "C:\Users\PC\Downloads\OpenOffice_4.1.1_Win_x86_install_de.exe" wurde die Junkware (PUP) "NSIS.Adware.Narn.A (Engine B)" entdeckt. Zugriff verweigert. mehrere Male im Leerlaufscan:Virenfund Datei C:\Users\PC\Downloads\OpenOffice_4.1.1_Win_x86_install_de.exe Virus NSIS.Adware.Narn.A (Engine B) Einmal beim Prüfen von Webinhalten: Phishing Phishingprüfung von Web-Seiten Adresse: hxxp://nosite01.domainparkingserver.net/?domain_name=kinzland.org&a_id=101960 Status: Der Zugriff wurde verweigert. Daraufhin habe ich vorsichtshalber Open Office gelöscht und den CCleaner laufen lassen - auch die Registry Reinigung. Im Anhang schicke ich euch schonmal FRST txt und TDSS txt. Wie soll ich vorgehen ? Liebe Grüsse Jörg |
30.10.2015, 20:24 | #2 |
| Junkware PUP gefunden von GDATA gemeldetCode:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:29-10-2015 durchgeführt von PC (Administrator) auf PC-PC (30-10-2015 19:20:30) Gestartet von C:\Users\PC\Desktop Geladene Profile: PC (Verfügbare Profile: PC & DefaultAppPool) Platform: Windows 10 Home (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe (G Data Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\AVK\AVKWCtlx64.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (G Data Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\AVK\AVKService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (Realtek) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtlService.exe (G Data Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFwSvcx64.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKBap64.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (G Data Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\AVKTray\AVKTray.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\GDKBFltExe32.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Realtek Semiconductor Corp.) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (G DATA Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (G DATA Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\GUI\GDSC.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2654512 2015-10-04] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-27] (Intel Corporation) HKLM-x32\...\Run: [GDFirewallTray] => C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe [1864312 2015-06-16] (G DATA Software AG) HKLM-x32\...\Run: [Skiller Pro] => C:\Program Files (x86)\Skiller Pro\Monitor.exe [475136 2014-02-26] () HKLM-x32\...\Run: [G Data ASM] => C:\Program Files (x86)\G DATA\InternetSecurity\DelayLoader\AutorunDelayLoader.exe [434296 2015-02-20] (G Data Software AG) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation) HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [921208 2015-08-11] (BlueStack Systems, Inc.) HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Program Files (x86)\G DATA\InternetSecurity\AVKTray\AVKTray.exe,c:\program files (x86)\g data\internetsecurity\avkkid\avkcks.exe HKU\S-1-5-21-823076904-883910654-2515392582-1000\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIHRE.EXE [283232 2015-08-23] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-823076904-883910654-2515392582-1000\...\Run: [Spotify Web Helper] => C:\Users\PC\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2030912 2015-10-22] (Spotify Ltd) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{26c55a27-e1e3-482d-ba43-dd33bda9061e}: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{6f7b1a29-ef94-4b8b-a72a-cd8bbfc2bda4}: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{9a454c67-255c-4440-9464-b6c5851e001c}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{ce8e99dc-9382-402a-9169-96b0c85e1e25}: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{facf96a9-41e8-4d31-a479-bbd2e92f64a2}: [DhcpNameServer] 192.168.42.129 Internet Explorer: ================== HKU\S-1-5-21-823076904-883910654-2515392582-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.startseite24.net HKU\S-1-5-21-823076904-883910654-2515392582-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp SearchScopes: HKLM -> DefaultScope {4BF98619-BB47-4040-AFCE-5D5E1C197726} URL = hxxp://www.startseite24.net/?q={searchTerms} SearchScopes: HKLM -> {4BF98619-BB47-4040-AFCE-5D5E1C197726} URL = hxxp://www.startseite24.net/?q={searchTerms} SearchScopes: HKU\S-1-5-21-823076904-883910654-2515392582-1000 -> DefaultScope {4BF98619-BB47-4040-AFCE-5D5E1C197726} URL = hxxp://www.startseite24.net/?q={searchTerms} SearchScopes: HKU\S-1-5-21-823076904-883910654-2515392582-1000 -> {4BF98619-BB47-4040-AFCE-5D5E1C197726} URL = hxxp://www.startseite24.net/?q={searchTerms} BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_60\bin\ssv.dll [2015-09-02] (Oracle Corporation) BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26] (SEIKO EPSON CORPORATION) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-09-02] (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-08-13] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-13] (Oracle Corporation) Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26] (SEIKO EPSON CORPORATION) FireFox: ======== FF ProfilePath: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default FF Homepage: google.de FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_185.dll [2015-10-01] () FF Plugin: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-09-02] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-09-02] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_185.dll [2015-10-01] () FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-08-13] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-08-13] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-08-07] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-08-07] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-18] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-18] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-07-03] (Adobe Systems Inc.) FF SearchPlugin: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\searchplugins\idealode.xml [2015-08-12] FF SearchPlugin: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\searchplugins\websuche.xml [2015-08-23] FF Extension: WOT - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2015-08-12] FF Extension: Self-Destructing Cookies - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\Extensions\jid0-9XfBwUWnvPx4wWsfBWMCm4Jj69E@jetpack.xpi [2015-10-12] FF Extension: Adblock Plus - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-09-25] FF Extension: BetterPrivacy - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\Extensions\{d40f5e7b-d2cf-4856-b441-cc613eeffbe3}.xpi [2015-08-12] Chrome: ======= CHR Profile: C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-08-12] CHR Extension: (Google Docs) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-08-12] CHR Extension: (Google Drive) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-08-12] CHR Extension: (YouTube) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-08-12] CHR Extension: (Google-Suche) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-08-12] CHR Extension: (Google Tabellen) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-08-12] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-08-12] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-12] CHR Extension: (Google Mail) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-08-12] CHR Profile: C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1 CHR Extension: (Google Docs) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2015-08-31] CHR Extension: (Google Drive) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-08-31] CHR Extension: (YouTube) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-08-31] CHR Extension: (Google-Suche) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-08-31] CHR Extension: (Google Text & Tabellen Offline) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-09] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-08-31] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-31] CHR Extension: (Google Mail) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-08-31] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AVKProxy; C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe [2558072 2015-06-19] (G Data Software AG) R2 AVKService; C:\Program Files (x86)\G DATA\InternetSecurity\AVK\AVKService.exe [966776 2015-06-16] (G Data Software AG) R2 AVKWCtl; C:\Program Files (x86)\G DATA\InternetSecurity\AVK\AVKWCtlx64.exe [3711712 2015-06-16] (G Data Software AG) S3 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [437880 2015-08-11] (BlueStack Systems, Inc.) R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [417400 2015-08-11] (BlueStack Systems, Inc.) R2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [847480 2015-08-11] (BlueStack Systems, Inc.) S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342240 2015-06-03] (Futuremark) R3 GDFwSvc; C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFwSvcx64.exe [3202368 2015-06-19] (G Data Software AG) R3 GDScan; C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe [789624 2015-06-16] (G Data Software AG) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155376 2015-10-04] (NVIDIA Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [330136 2015-10-23] (Intel Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-07-05] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-08-21] (Intel Corporation) R2 MSMQ; C:\Windows\system32\mqsvc.exe [26112 2015-10-23] (Microsoft Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872688 2015-10-04] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5568816 2015-10-04] (NVIDIA Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2007048 2015-08-10] (Electronic Arts) R2 Realtek11nSU; C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtlService.exe [36864 2010-04-16] (Realtek) [Datei ist nicht signiert] S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [84480 2015-10-23] (Microsoft Corporation) R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [578560 2015-10-23] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R0 asahci64; C:\Windows\System32\drivers\asahci64.sys [49760 2011-09-21] (Asmedia Technology) S2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [146040 2015-08-11] (BlueStack Systems) R0 GDBehave; C:\Windows\System32\drivers\GDBehave.sys [158720 2015-08-13] (G Data Software AG) R3 GDKBB; C:\Windows\system32\drivers\GDKBB64.sys [27648 2015-08-12] (G Data Software AG) R3 GDKBFlt; C:\Windows\system32\drivers\GDKBFlt64.sys [20992 2015-08-12] (G Data Software AG) R1 GDMnIcpt; C:\Windows\system32\drivers\MiniIcpt.sys [230912 2015-08-13] (G Data Software AG) R3 GDPkIcpt; C:\Windows\system32\drivers\PktIcpt.sys [76288 2015-08-13] (G Data Software AG) R1 gdwfpcd; C:\Windows\System32\drivers\gdwfpcd64.sys [65024 2015-08-13] (G Data Software AG) R1 GRD; C:\WINDOWS\system32\drivers\GRD.sys [106272 2015-10-29] (G Data Software) R1 HookCentre; C:\Windows\system32\drivers\HookCentre.sys [125952 2015-08-13] (G Data Software AG) R3 MQAC; C:\Windows\System32\drivers\mqac.sys [175104 2015-10-23] (Microsoft Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19760 2015-10-04] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation) S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] () S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation) U3 idsvc; kein ImagePath S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] U3 wpcsvc; kein ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-10-30 19:20 - 2015-10-30 19:20 - 02198016 _____ (Farbar) C:\Users\PC\Desktop\FRST64.exe 2015-10-30 19:20 - 2015-10-30 19:20 - 00020325 _____ C:\Users\PC\Desktop\FRST.txt 2015-10-30 18:12 - 2015-10-30 18:12 - 06762072 _____ (Piriform Ltd) C:\Users\PC\Downloads\ccsetup511.exe 2015-10-30 17:38 - 2015-10-30 19:20 - 00000000 ____D C:\FRST 2015-10-30 17:10 - 2015-10-30 17:10 - 00016148 _____ C:\WINDOWS\system32\PC-PC_PC_HistoryPrediction.bin 2015-10-29 22:15 - 2015-08-31 16:04 - 00000030 _____ C:\AVScanner.ini 2015-10-29 20:40 - 2015-10-29 20:40 - 00106272 _____ (G Data Software) C:\WINDOWS\system32\Drivers\GRD.sys 2015-10-29 20:40 - 2015-10-29 20:40 - 00018160 _____ (G Data Software) C:\WINDOWS\system32\Drivers\GdPhyMem.sys 2015-10-29 19:38 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll 2015-10-29 19:38 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll 2015-10-29 19:38 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll 2015-10-29 19:38 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll 2015-10-29 19:38 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll 2015-10-29 19:38 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll 2015-10-29 19:38 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll 2015-10-29 19:38 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll 2015-10-29 19:38 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll 2015-10-29 19:38 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll 2015-10-29 19:38 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll 2015-10-29 19:38 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll 2015-10-29 19:38 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll 2015-10-29 19:38 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll 2015-10-29 19:38 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll 2015-10-29 19:38 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll 2015-10-29 19:38 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll 2015-10-29 19:38 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll 2015-10-29 19:38 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll 2015-10-29 19:38 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll 2015-10-29 19:38 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll 2015-10-29 19:38 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll 2015-10-29 19:38 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll 2015-10-29 19:38 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll 2015-10-29 19:38 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll 2015-10-29 19:38 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll 2015-10-29 19:38 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll 2015-10-29 19:38 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll 2015-10-29 19:38 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll 2015-10-29 19:38 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll 2015-10-29 19:38 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll 2015-10-29 19:38 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll 2015-10-29 19:38 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll 2015-10-29 19:38 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll 2015-10-29 19:38 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll 2015-10-29 19:38 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll 2015-10-29 19:38 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll 2015-10-29 19:38 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll 2015-10-29 19:38 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll 2015-10-29 19:38 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll 2015-10-29 19:38 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll 2015-10-29 19:38 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll 2015-10-29 19:38 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll 2015-10-29 19:38 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll 2015-10-29 19:38 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll 2015-10-29 19:38 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll 2015-10-29 19:38 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll 2015-10-29 19:38 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll 2015-10-29 19:38 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll 2015-10-29 19:38 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll 2015-10-29 19:38 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll 2015-10-29 19:38 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll 2015-10-29 19:38 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll 2015-10-29 19:38 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll 2015-10-29 19:38 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll 2015-10-29 19:38 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll 2015-10-29 19:38 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll 2015-10-29 19:38 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll 2015-10-29 19:38 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll 2015-10-29 19:38 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll 2015-10-29 19:38 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll 2015-10-29 19:38 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll 2015-10-29 19:38 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll 2015-10-29 19:38 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll 2015-10-29 19:38 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll 2015-10-29 19:38 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll 2015-10-29 19:38 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll 2015-10-29 19:38 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll 2015-10-29 19:38 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll 2015-10-29 19:38 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll 2015-10-29 19:38 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll 2015-10-29 19:38 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll 2015-10-29 19:38 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll 2015-10-29 19:38 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll 2015-10-29 19:38 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll 2015-10-29 19:38 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll 2015-10-29 19:38 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll 2015-10-29 19:38 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll 2015-10-29 19:38 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll 2015-10-29 19:38 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll 2015-10-29 19:38 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll 2015-10-29 19:38 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll 2015-10-29 19:38 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll 2015-10-29 19:38 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll 2015-10-29 19:38 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll 2015-10-29 19:38 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll 2015-10-29 19:38 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll 2015-10-29 19:38 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll 2015-10-29 19:38 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll 2015-10-29 19:38 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll 2015-10-29 19:38 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll 2015-10-29 19:38 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll 2015-10-29 19:38 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll 2015-10-29 19:38 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll 2015-10-29 19:38 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll 2015-10-29 19:38 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll 2015-10-29 19:38 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll 2015-10-29 19:38 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll 2015-10-29 19:38 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll 2015-10-29 19:38 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll 2015-10-29 19:38 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll 2015-10-29 19:38 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll 2015-10-29 19:38 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll 2015-10-29 19:38 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll 2015-10-29 19:38 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll 2015-10-29 19:38 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll 2015-10-29 19:38 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll 2015-10-29 19:38 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll 2015-10-29 19:38 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll 2015-10-29 19:38 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll 2015-10-29 19:38 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll 2015-10-29 19:38 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll 2015-10-29 19:38 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll 2015-10-29 19:38 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll 2015-10-29 19:38 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll 2015-10-29 19:38 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll 2015-10-29 19:38 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll 2015-10-29 19:38 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll 2015-10-29 19:38 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll 2015-10-29 19:38 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll 2015-10-29 19:38 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll 2015-10-29 19:38 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll 2015-10-29 19:38 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll 2015-10-29 19:38 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll 2015-10-29 19:38 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll 2015-10-29 19:38 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll 2015-10-29 19:38 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll 2015-10-29 19:38 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll 2015-10-29 19:38 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll 2015-10-29 19:38 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll 2015-10-29 19:38 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll 2015-10-29 19:38 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll 2015-10-29 19:38 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll 2015-10-29 19:38 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll 2015-10-29 19:38 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll 2015-10-29 19:38 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll 2015-10-29 19:38 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll 2015-10-29 19:38 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll 2015-10-29 19:38 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll 2015-10-29 19:38 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll 2015-10-29 19:38 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll 2015-10-29 19:38 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll 2015-10-29 19:38 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll 2015-10-29 19:35 - 2015-10-29 19:35 - 00000219 _____ C:\Users\PC\Desktop\Counter-Strike Global Offensive - SDK.url 2015-10-29 19:24 - 2015-10-29 19:24 - 00000000 ____D C:\Users\PC\AppData\Local\NetworkTiles 2015-10-28 21:00 - 2015-10-28 21:00 - 00001352 _____ C:\Users\PC\Desktop\Twitter.lnk 2015-10-28 16:54 - 2015-10-28 16:54 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Vorlagen 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Startmenü 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Netzwerkumgebung 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Lokale Einstellungen 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Eigene Dateien 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Druckumgebung 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Musik 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Bilder 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Verlauf 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Anwendungsdaten 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Anwendungsdaten 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 ____D C:\Users\DefaultAppPool 2015-10-28 16:54 - 2015-10-23 18:05 - 00000000 ___RD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-28 16:54 - 2015-07-30 23:42 - 00000000 __RSD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-10-28 16:54 - 2015-07-30 23:42 - 00000000 ___RD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-10-28 16:54 - 2015-07-30 23:42 - 00000000 ___RD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-10-28 16:54 - 2015-07-30 23:42 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-10-25 11:49 - 2015-10-25 11:49 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2015-10-25 11:03 - 2015-10-25 11:03 - 00000144 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2015-10-23 21:43 - 2015-10-27 19:20 - 00000000 ____D C:\Users\PC\AppData\Local\Comms 2015-10-23 19:04 - 2015-10-23 19:04 - 22915568 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 17846272 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 12335600 _____ (Intel Corporation) C:\WINDOWS\system32\igd10iumd64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 11905432 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10iumd32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 11053048 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 10574992 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumdim32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 08528896 _____ (Intel Corporation) C:\WINDOWS\system32\ig7icd64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 06513648 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig7icd32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 04637640 _____ (Intel Corporation) C:\WINDOWS\system32\igdusc64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 04371888 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 04369816 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 04025864 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAAC64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 03672344 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdusc32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 02506960 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiVAD64.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 02037232 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 01995760 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 01793024 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 01768432 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 01470472 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSecureSourceFilter64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 01156000 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 01151840 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00970656 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00866824 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiWinNextAgent64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00661000 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAudioFilter64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00618992 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00617992 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMux64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00556960 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00554928 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00469216 _____ (Intel Corporation) C:\WINDOWS\system32\igdmd64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00444832 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUMS64.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00410528 _____ (Intel Corporation) C:\WINDOWS\system32\CustomModeAppv2_0.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00409520 _____ (Intel Corporation) C:\WINDOWS\system32\CustomModeApp.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00395168 _____ (Intel Corporation) C:\WINDOWS\system32\igfxTray.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00394224 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00387056 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00378824 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmd32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00374272 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00357912 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSilenceFilter64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00329216 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00316245 _____ C:\WINDOWS\system32\DisplayAudiox64.cab 2015-10-23 19:04 - 2015-10-23 19:04 - 00296944 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00265712 _____ C:\WINDOWS\system32\igfxCPL.cpl 2015-10-23 19:04 - 2015-10-23 19:04 - 00258456 _____ (Intel Corporation) C:\WINDOWS\system32\igfxHK.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00232960 _____ C:\WINDOWS\system32\igdde64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00230384 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00229664 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00225288 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUtils64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00216552 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v4276.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00205728 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00199088 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00194560 _____ C:\WINDOWS\SysWOW64\igdde32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00194368 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00193536 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00192520 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiDDEAgent64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00188884 _____ C:\WINDOWS\system32\resTHA.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00181524 _____ C:\WINDOWS\system32\resELL.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00177300 _____ C:\WINDOWS\system32\resRUS.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00172528 _____ C:\WINDOWS\system32\igdail64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00169368 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00165808 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00163840 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00163044 _____ C:\WINDOWS\system32\resARA.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00162500 _____ C:\WINDOWS\system32\resHEB.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00162484 _____ C:\WINDOWS\system32\resJPN.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00157860 _____ C:\WINDOWS\system32\resHUN.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00157844 _____ C:\WINDOWS\system32\resFRA.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00156100 _____ C:\WINDOWS\system32\resKOR.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00156020 _____ C:\WINDOWS\system32\resDEU.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00155988 _____ C:\WINDOWS\system32\resITA.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00155828 _____ C:\WINDOWS\system32\resROM.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00155716 _____ C:\WINDOWS\system32\resESN.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00155268 _____ C:\WINDOWS\system32\resPLK.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00155172 _____ C:\WINDOWS\system32\resSKY.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00154980 _____ C:\WINDOWS\system32\resNLD.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00154372 _____ C:\WINDOWS\system32\resPTB.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00154260 _____ C:\WINDOWS\system32\resTRK.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00154212 _____ C:\WINDOWS\system32\resCSY.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00154096 _____ C:\WINDOWS\SysWOW64\igdail32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00154084 _____ C:\WINDOWS\system32\resPTG.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00153620 _____ C:\WINDOWS\system32\resFIN.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00153236 _____ C:\WINDOWS\system32\resHRV.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00152772 _____ C:\WINDOWS\system32\resSVE.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00152644 _____ C:\WINDOWS\system32\resSLV.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00151668 _____ C:\WINDOWS\system32\resNOR.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00151156 _____ C:\WINDOWS\system32\resDAN.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00149812 _____ C:\WINDOWS\system32\resENU.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00148052 _____ C:\WINDOWS\system32\resCHT.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00147188 _____ C:\WINDOWS\system32\resCHS.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00143368 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMCUMD64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00109064 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiLogServer64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00102912 _____ C:\WINDOWS\system32\IccLibDll_x64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00096752 _____ C:\WINDOWS\system32\igfxCUIServicePS.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00078336 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00072704 _____ (Khronos Group) C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00069616 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00069120 _____ (Khronos Group) C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00042232 _____ (Intel Corporation) C:\WINDOWS\system32\igfxexps.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00039424 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00020976 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00018944 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00018944 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00018944 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00015344 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00013824 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00002560 _____ C:\WINDOWS\system32\iglhxs64.vp 2015-10-23 19:02 - 2015-10-29 22:20 - 00000000 ____D C:\Users\PC\OneDrive 2015-10-23 19:02 - 2015-10-23 19:03 - 00002380 _____ C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-10-23 19:02 - 2015-10-23 19:02 - 00000000 ____D C:\Users\PC\AppData\Local\MicrosoftEdge 2015-10-23 19:02 - 2015-07-09 19:39 - 04847104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll 2015-10-23 19:02 - 2015-07-09 19:36 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll 2015-10-23 19:02 - 2015-07-09 19:28 - 06358016 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll 2015-10-23 19:02 - 2015-07-09 19:25 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll 2015-10-23 19:02 - 2015-07-09 19:25 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll 2015-10-23 19:01 - 2015-10-23 19:01 - 00001047 _____ C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optionale Features.lnk 2015-10-23 19:00 - 2015-10-28 21:00 - 00000000 ____D C:\Users\PC\AppData\Local\Packages 2015-10-23 19:00 - 2015-10-23 19:00 - 00000000 ____D C:\Users\PC\AppData\Local\Publishers 2015-10-23 18:59 - 2015-10-24 09:44 - 00000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat 2015-10-23 18:59 - 2015-10-23 18:59 - 00000020 ___SH C:\Users\PC\ntuser.ini 2015-10-23 18:59 - 2015-10-23 18:59 - 00000000 ____D C:\Users\PC\AppData\Local\TileDataLayer 2015-10-23 18:55 - 2015-10-23 22:25 - 00000000 ___DC C:\WINDOWS\Panther 2015-10-23 18:55 - 2015-10-23 18:01 - 00000000 __SHD C:\Recovery 2015-10-23 18:52 - 2015-10-23 18:52 - 00000000 ____D C:\Windows.old 2015-10-23 18:51 - 2015-10-23 18:51 - 24595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 22322624 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 21875712 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 20858360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 19325952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 18806272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 16708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 13027840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 12504064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 11262976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 08020320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 07569408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 07523840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 07055872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 06487248 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 06101504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 05120056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 05079552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 04792320 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 03781120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 03586560 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 03580416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 03248640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02987520 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02824248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02740224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02660864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02639872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02573768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02494712 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02464216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02446648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02432336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 02417664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02236416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02228736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02226688 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02207232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02178560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02156400 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02154808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02093056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01997336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01983824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 01918464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01895568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01871360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01844736 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01812480 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01766952 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01601536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01594368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01563472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01563392 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01423872 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01397088 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01382400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 01357888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01331200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01295712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01294352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2015-10-23 18:51 - 2015-10-23 18:51 - 01290240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01276416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01216512 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcenter.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01205248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01203712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01181696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01171456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcenter.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01168736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 01162240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01123400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 01104384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01067520 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01018568 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2015-10-23 18:51 - 2015-10-23 18:51 - 01010176 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00980832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2015-10-23 18:51 - 2015-10-23 18:51 - 00966416 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00962400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00928256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00928256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00910848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00899584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00894256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Wdf01000.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00869376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00858408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00856576 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00856576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00809352 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00796160 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00784136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00781976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00780288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00766976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00764416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00757760 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00690688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00677888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx02000.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00658528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00650240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00646672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00627712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00625152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00591360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00587264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00584656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00579584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00574464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00555768 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00553808 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00537080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00525312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00516448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2015-10-23 18:51 - 2015-10-23 18:51 - 00513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00508248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00505696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00501008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00498016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00476760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00454512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00441168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationWebproxy.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00434376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00428128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00407608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00406864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2015-10-23 18:51 - 2015-10-23 18:51 - 00403456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00395088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00378368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationGeofences.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00332624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00278352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00253440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00243760 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeWiFi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationCrowdsource.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeCell.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeIP.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00160256 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\KeywordDetectorMsftSidAdapter.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00102304 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00099664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationWiFiAdapter.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00088384 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00078528 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00074880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Speech.Pal.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Speech.Pal.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\buttonconverter.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncmlhook.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe 2015-10-23 18:47 - 2015-10-23 18:47 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\WINDOWS\SysWOW64\BestPractices 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\WINDOWS\system32\msmq 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\WINDOWS\system32\BestPractices 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\Program Files\Reference Assemblies 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\Program Files\MSBuild 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\Program Files (x86)\MSBuild 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\inetpub 2015-10-23 18:43 - 2015-06-17 18:10 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2015-10-23 18:43 - 2015-06-17 18:10 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2015-10-23 18:43 - 2015-06-17 18:10 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2015-10-23 18:43 - 2015-05-29 21:07 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2015-10-23 18:43 - 2015-05-29 21:07 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-10-23 18:43 - 2015-05-29 21:07 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Vorlagen 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Startmenü 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-10-23 18:12 - 2015-10-23 18:12 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat 2015-10-23 18:05 - 2015-10-23 18:05 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2015-10-23 18:03 - 2015-10-23 18:03 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines 2015-10-23 18:02 - 2015-10-25 10:55 - 00000000 ____D C:\Users\PC 2015-10-23 18:02 - 2015-10-23 18:59 - 00000000 ___RD C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Vorlagen 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Startmenü 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Netzwerkumgebung 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Lokale Einstellungen 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Eigene Dateien 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Druckumgebung 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Documents\Eigene Musik 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Documents\Eigene Bilder 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\AppData\Local\Verlauf 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\AppData\Local\Anwendungsdaten 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Anwendungsdaten 2015-10-23 18:02 - 2015-07-30 23:42 - 00000000 __RSD C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-10-23 18:02 - 2015-07-30 23:42 - 00000000 ___RD C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-10-23 18:02 - 2015-07-30 23:42 - 00000000 ___RD C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-10-23 18:02 - 2015-07-30 23:42 - 00000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-10-23 18:01 - 2015-10-30 15:15 - 02077062 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-10-23 18:01 - 2015-10-23 18:01 - 01980268 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2015-10-23 17:59 - 2015-10-30 15:09 - 00000000 ____D C:\ProgramData\NVIDIA 2015-10-23 17:59 - 2015-10-23 18:04 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2015-10-23 17:59 - 2015-10-23 17:59 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2015-10-23 17:59 - 2015-08-07 01:24 - 06873904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2015-10-23 17:59 - 2015-08-07 01:24 - 03492984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2015-10-23 17:59 - 2015-08-07 01:24 - 02558768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2015-10-23 17:59 - 2015-08-07 01:24 - 00937592 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe 2015-10-23 17:59 - 2015-08-07 01:24 - 00385328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2015-10-23 17:59 - 2015-08-07 01:24 - 00062584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2015-10-23 17:59 - 2015-08-03 11:04 - 05133709 _____ C:\WINDOWS\system32\nvcoproc.bin 2015-10-23 17:58 - 2015-10-23 19:04 - 00072704 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL 2015-10-23 17:58 - 2015-10-23 19:04 - 00069120 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL 2015-10-23 17:58 - 2015-10-23 18:04 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2015-10-23 17:58 - 2015-10-23 18:03 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2015-10-23 17:58 - 2015-10-23 18:03 - 00000000 ____D C:\Program Files\Intel 2015-10-23 17:57 - 2015-10-23 17:57 - 00032645 _____ C:\WINDOWS\system32\NetSetupMig.log 2015-10-23 17:33 - 2015-03-27 22:33 - 00000001 ___SH C:\BOOTNXT 2015-10-23 17:30 - 2015-10-23 18:14 - 00010449 _____ C:\WINDOWS\diagerr.xml 2015-10-23 17:30 - 2015-10-23 18:14 - 00009528 _____ C:\WINDOWS\diagwrn.xml 2015-10-18 15:28 - 2015-10-19 17:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-10-14 22:34 - 2015-10-14 22:34 - 00000000 ____D C:\Users\PC\AppData\Local\CrashRpt 2015-10-14 22:31 - 2015-10-16 10:38 - 00000000 ____D C:\ProgramData\GFACE 2015-10-14 22:30 - 2015-10-16 10:48 - 00000000 ____D C:\Users\PC\AppData\Local\wf-launcher 2015-10-14 12:32 - 2015-09-25 19:06 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll 2015-10-14 12:32 - 2015-09-16 05:01 - 00968704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.exe 2015-10-14 12:32 - 2015-09-16 04:28 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmlmedia.dll 2015-10-14 12:32 - 2015-09-16 03:55 - 01155072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmlmedia.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00066400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-private-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00063840 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00022368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-math-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-string-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-time-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-localization-l1-2-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-localization-l1-2-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-process-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-synch-l1-2-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-synch-l1-2-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-processthreads-l1-1-1.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-eventing-provider-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-file-l2-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-file-l1-2-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-eventing-provider-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-xstate-l2-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-timezone-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-file-l2-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-file-l1-2-0.dll 2015-10-13 12:55 - 2015-10-13 12:55 - 00000000 ____D C:\Users\PC\AppData\LocalLow\WARTEAM 2015-10-13 12:55 - 2015-10-13 12:55 - 00000000 ____D C:\Users\PC\AppData\LocalLow\Unity 2015-10-13 12:31 - 2015-10-13 12:31 - 00000222 _____ C:\Users\PC\Desktop\WARMODE.url 2015-10-12 21:55 - 2015-10-23 18:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-10-12 21:55 - 2015-10-12 21:55 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2015-10-12 21:55 - 2015-10-12 21:55 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2015-10-12 19:14 - 2015-10-12 19:14 - 00000000 ____D C:\Users\PC\AppData\Roaming\com.playsaurus.heroclicker 2015-10-12 19:13 - 2015-10-12 19:14 - 00000222 _____ C:\Users\PC\Desktop\Clicker Heroes.url 2015-10-05 16:15 - 2015-10-05 16:16 - 04757856 _____ () C:\Users\PC\Desktop\TechnicLauncher.exe 2015-10-01 19:14 - 2015-10-01 19:14 - 00000000 ___RD C:\Users\PC\Desktop\376079739 ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-10-30 19:14 - 2015-07-30 23:25 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-10-30 19:12 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\sru 2015-10-30 18:14 - 2015-07-10 10:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2015-10-30 18:12 - 2015-09-07 18:51 - 00000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2015-10-30 18:12 - 2015-08-12 21:35 - 00002232 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2015-10-30 18:10 - 2015-08-12 02:13 - 00000000 ____D C:\Program Files (x86)\Steam 2015-10-30 15:15 - 2015-09-10 06:10 - 00883584 _____ C:\WINDOWS\system32\perfh007.dat 2015-10-30 15:15 - 2015-09-10 06:10 - 00195718 _____ C:\WINDOWS\system32\perfc007.dat 2015-10-30 15:15 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-10-30 15:09 - 2015-07-30 22:52 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-10-30 15:09 - 2015-07-30 22:49 - 00193800 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-10-29 22:20 - 2015-07-10 10:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2015-10-29 19:39 - 2015-08-13 20:06 - 00000000 ____D C:\Users\PC\AppData\Local\Spotify 2015-10-29 19:37 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\restore 2015-10-29 19:28 - 2015-08-14 14:51 - 00000000 ____D C:\Users\PC\AppData\Roaming\Skype 2015-10-29 19:26 - 2015-08-13 20:04 - 00000000 ____D C:\Users\PC\AppData\Roaming\Spotify 2015-10-27 19:21 - 2015-08-12 02:05 - 00002294 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-10-25 17:52 - 2015-09-07 18:47 - 00000000 ____D C:\Users\PC\Documents\Schule 2015-10-24 23:14 - 2015-08-17 16:44 - 00000000 ____D C:\Users\PC\AppData\Roaming\TS3Client 2015-10-24 16:25 - 2015-08-17 16:44 - 00000000 ____D C:\Users\PC\AppData\Local\TeamSpeak 3 Client 2015-10-24 09:54 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\appcompat 2015-10-23 19:06 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase 2015-10-23 19:04 - 2015-07-30 21:45 - 03797424 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd64.sys 2015-10-23 19:04 - 2015-07-30 21:45 - 00680432 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDH.dll 2015-10-23 19:04 - 2015-07-30 21:45 - 00541600 _____ (Intel Corporation) C:\WINDOWS\system32\igfxEM.exe 2015-10-23 19:04 - 2015-07-30 21:45 - 00330136 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCUIService.exe 2015-10-23 19:04 - 2015-07-30 21:45 - 00291744 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe 2015-10-23 19:04 - 2015-07-30 21:45 - 00285184 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDI.dll 2015-10-23 19:04 - 2015-07-30 21:45 - 00262640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxLHM.dll 2015-10-23 19:02 - 2015-09-10 06:13 - 00000000 ____D C:\WINDOWS\OCR 2015-10-23 18:55 - 2015-07-30 23:42 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ___SD C:\WINDOWS\system32\F12 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ___RD C:\WINDOWS\PurchaseDialog 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\Provisioning 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\L2Schemas 2015-10-23 18:44 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI 2015-10-23 18:44 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2015-10-23 18:44 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\MUI 2015-10-23 18:44 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\inetsrv 2015-10-23 18:44 - 2015-07-10 06:13 - 00009096 _____ C:\WINDOWS\SysWOW64\msmqtrc.mof 2015-10-23 18:44 - 2015-07-10 06:02 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof 2015-10-23 18:44 - 2015-07-10 04:36 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqutil.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqrt.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.tlb 2015-10-23 18:44 - 2015-07-10 04:36 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa30.tlb 2015-10-23 18:44 - 2015-07-10 04:36 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa20.tlb 2015-10-23 18:44 - 2015-07-10 04:36 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa10.tlb 2015-10-23 18:44 - 2015-07-10 04:36 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe 2015-10-23 18:44 - 2015-07-10 04:36 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll 2015-10-23 18:44 - 2015-07-10 04:26 - 01417728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys 2015-10-23 18:44 - 2015-07-10 04:25 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb 2015-10-23 18:44 - 2015-07-10 04:25 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb 2015-10-23 18:44 - 2015-07-10 04:25 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb 2015-10-23 18:44 - 2015-07-10 04:25 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe 2015-10-23 18:44 - 2015-07-10 04:25 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb 2015-10-23 18:44 - 2015-07-10 04:25 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe 2015-10-23 18:44 - 2015-07-10 04:25 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe 2015-10-23 18:44 - 2015-07-10 04:25 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll 2015-10-23 18:44 - 2015-07-10 04:20 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll 2015-10-23 18:17 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\rescache 2015-10-23 18:14 - 2015-07-30 23:42 - 00000000 ____D C:\Program Files\Windows NT 2015-10-23 18:14 - 2015-07-10 10:47 - 00000000 __RHD C:\Users\Default 2015-10-23 18:13 - 2015-09-07 19:39 - 00003934 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2015-10-23 18:13 - 2015-08-31 16:04 - 00003998 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2015-10-23 18:13 - 2015-08-14 16:08 - 00003208 _____ C:\WINDOWS\System32\Tasks\{2302CB6C-894A-4B1F-89D1-6D57C5B9E375} 2015-10-23 18:13 - 2015-08-12 02:05 - 00004228 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2015-10-23 18:13 - 2015-08-12 02:05 - 00003976 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2015-10-23 18:13 - 2015-08-10 18:45 - 00003604 _____ C:\WINDOWS\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d 2015-10-23 18:13 - 2015-08-10 18:45 - 00003300 _____ C:\WINDOWS\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon 2015-10-23 18:13 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\Registration 2015-10-23 18:12 - 2015-07-30 23:42 - 00000000 __RSD C:\WINDOWS\Media 2015-10-23 18:12 - 2015-07-30 23:42 - 00000000 __RHD C:\Users\Public\Libraries 2015-10-23 18:06 - 2015-09-20 09:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone 2015-10-23 18:06 - 2015-08-23 16:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software 2015-10-23 18:06 - 2015-08-23 14:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON 2015-10-23 18:06 - 2015-08-18 14:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK 11n USB Wireless LAN Utility 2015-10-23 18:06 - 2015-08-17 16:44 - 00000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 2015-10-23 18:06 - 2015-08-16 18:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks 2015-10-23 18:06 - 2015-08-14 16:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skiller Pro 2015-10-23 18:06 - 2015-08-13 15:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone 2015-10-23 18:06 - 2015-08-13 15:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2015-10-23 18:06 - 2015-08-13 14:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-10-23 18:06 - 2015-08-13 12:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\G DATA INTERNET SECURITY 2015-10-23 18:06 - 2015-08-12 02:39 - 00000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2015-10-23 18:06 - 2015-08-12 02:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2015-10-23 18:06 - 2015-08-12 02:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-10-23 18:06 - 2015-08-10 18:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2015-10-23 18:06 - 2015-07-30 23:42 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-23 18:06 - 2009-07-14 06:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-10-23 18:05 - 2015-07-30 23:42 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-23 18:05 - 2015-07-30 23:42 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-23 18:05 - 2009-07-14 04:20 - 00000000 ____D C:\Users\Default.migrated 2015-10-23 18:04 - 2015-09-10 06:10 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep 2015-10-23 18:04 - 2015-08-14 22:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft 2015-10-23 18:04 - 2015-08-14 14:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-10-23 18:04 - 2015-08-10 18:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2015-10-23 18:04 - 2015-08-10 18:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Asmedia Technology 2015-10-23 18:04 - 2015-07-30 23:47 - 00000000 ____D C:\WINDOWS\DigitalLocker 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\zh-HK 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\tr-TR 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\IME 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\zh-HK 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\tr-TR 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\NDF 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\IME 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\schemas 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2015-10-23 18:04 - 2011-04-12 08:54 - 00000000 ___RD C:\Users\Public\Recorded TV 2015-10-23 18:03 - 2015-08-14 22:11 - 00000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2015-10-23 18:03 - 2015-07-30 23:42 - 00000000 __SHD C:\Program Files\Windows Sidebar 2015-10-23 18:03 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\Recovery 2015-10-23 18:03 - 2015-07-30 23:42 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-10-23 18:03 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Microsoft Games 2015-10-23 18:03 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\DVD Maker 2015-10-23 18:01 - 2015-07-10 10:47 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2015-10-23 17:59 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\Help 2015-10-23 17:35 - 2009-07-14 05:45 - 00021856 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-10-23 17:35 - 2009-07-14 05:45 - 00021856 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-10-23 17:33 - 2015-08-10 19:10 - 00008192 __RSH C:\BOOTSECT.BAK 2015-10-23 17:30 - 2015-09-10 07:42 - 00000000 ___HD C:\$Windows.~BT 2015-10-21 16:33 - 2015-09-07 18:46 - 00070144 ___SH C:\Users\PC\Documents\Thumbs.db 2015-10-19 17:41 - 2015-08-12 19:34 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-10-18 15:16 - 2015-08-12 20:27 - 00000000 ____D C:\Users\PC\AppData\Roaming\.minecraft 2015-10-17 15:30 - 2015-08-16 17:12 - 00000000 ____D C:\Users\PC\.gimp-2.8 2015-10-16 10:51 - 2015-08-13 15:22 - 00000000 ____D C:\Program Files (x86)\Hearthstone 2015-10-16 10:49 - 2015-08-13 15:20 - 00000000 ____D C:\Users\PC\AppData\Local\Battle.net 2015-10-16 10:49 - 2015-08-13 15:20 - 00000000 ____D C:\Program Files (x86)\Battle.net 2015-10-16 10:37 - 2015-08-16 18:34 - 00087578 _____ C:\Users\World_of_Tanks\WoTLauncher.log 2015-10-16 10:37 - 2015-08-16 18:34 - 00000939 _____ C:\Users\World_of_Tanks\WoTLauncher.cfg 2015-10-16 10:37 - 2015-08-16 18:34 - 00000173 _____ C:\Users\World_of_Tanks\app_type.xml 2015-10-16 10:37 - 2015-08-16 18:34 - 00000000 ____D C:\Users\World_of_Tanks\UpdatesData 2015-10-16 10:37 - 2015-08-16 18:34 - 00000000 ____D C:\Users\World_of_Tanks\Updates 2015-10-16 10:37 - 2015-08-16 18:34 - 00000000 ____D C:\Users\World_of_Tanks 2015-10-16 04:10 - 2015-07-30 23:43 - 00810488 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-10-16 04:10 - 2015-07-30 23:43 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-10-15 01:04 - 2015-08-12 21:50 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-10-15 01:01 - 2015-08-12 21:50 - 143481208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-10-14 15:46 - 2015-08-14 14:51 - 00000000 ____D C:\ProgramData\Skype 2015-10-14 02:40 - 2015-08-12 03:34 - 00000000 ____D C:\Users\PC\AppData\Roaming\LolClient 2015-10-13 16:25 - 2015-08-10 18:53 - 00001377 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2015-10-09 17:34 - 2015-08-13 14:15 - 00000000 ____D C:\Users\PC\Desktop\game 2015-10-04 09:23 - 2015-08-10 18:52 - 01423120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2015-10-04 09:23 - 2015-08-10 18:52 - 01317192 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll 2015-10-04 09:22 - 2015-08-10 18:52 - 01756608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll 2015-10-04 09:22 - 2015-08-10 18:52 - 01710568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2015-10-02 14:48 - 2015-09-07 19:39 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2015-10-01 19:07 - 2015-08-31 16:01 - 00000000 ____D C:\Users\PC\AppData\Local\Adobe 2015-09-30 18:02 - 2015-08-16 15:25 - 00000000 ____D C:\Users\PC\Documents\My Games ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-08-12 20:03 - 2015-08-12 20:03 - 0000000 _____ () C:\Users\PC\AppData\Roaming\gdfw.log 2015-08-12 20:03 - 2015-08-12 20:03 - 0000779 _____ () C:\Users\PC\AppData\Roaming\gdscan.log 2015-08-28 23:20 - 2015-08-28 23:20 - 0001506 _____ () C:\Users\PC\AppData\Local\recently-used.xbel 2015-08-13 12:59 - 2015-08-13 12:59 - 0007600 _____ () C:\Users\PC\AppData\Local\Resmon.ResmonCfg Dateien, die verschoben oder gelöscht werden sollten: ==================== C:\Users\World_of_Tanks\7z.dll C:\Users\World_of_Tanks\DeltaMAX.dll C:\Users\World_of_Tanks\fmodex.dll C:\Users\World_of_Tanks\fmod_event_net.dll C:\Users\World_of_Tanks\libcurl.dll C:\Users\World_of_Tanks\librsync.dll C:\Users\World_of_Tanks\libsndfile-1.dll C:\Users\World_of_Tanks\msvcp110.dll C:\Users\World_of_Tanks\msvcr110.dll C:\Users\World_of_Tanks\NxCooking.dll C:\Users\World_of_Tanks\ortp.dll C:\Users\World_of_Tanks\PhysXLoader.dll C:\Users\World_of_Tanks\unins000.dat C:\Users\World_of_Tanks\unins000.exe C:\Users\World_of_Tanks\uwApi.dll C:\Users\World_of_Tanks\vivoxoal.dll C:\Users\World_of_Tanks\vivoxplatform.dll C:\Users\World_of_Tanks\vivoxsdk.dll C:\Users\World_of_Tanks\voip.dll C:\Users\World_of_Tanks\WorldOfTanks.exe C:\Users\World_of_Tanks\WoTLauncher.exe C:\Users\World_of_Tanks\zlib1.dll ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-10-23 19:57 ==================== Ende von FRST.txt ============================ |
30.10.2015, 20:25 | #3 |
| Junkware PUP gefunden von GDATA gemeldetCode:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:29-10-2015 durchgeführt von PC (2015-10-30 19:21:04) Gestartet von C:\Users\PC\Desktop Windows 10 Home (X64) (2015-10-23 17:59:47) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-823076904-883910654-2515392582-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-823076904-883910654-2515392582-503 - Limited - Disabled) Gast (S-1-5-21-823076904-883910654-2515392582-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-823076904-883910654-2515392582-1002 - Limited - Enabled) PC (S-1-5-21-823076904-883910654-2515392582-1000 - Administrator - Enabled) => C:\Users\PC ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: G DATA INTERNET SECURITY (Enabled - Up to date) {545C8713-0744-B079-87F8-349A6D5C8CF0} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: G DATA INTERNET SECURITY (Enabled - Up to date) {EF3D66F7-217E-BFF7-BD48-0FE816DBC64D} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: G*DATA Personal Firewall (Enabled) {6C670636-4D2B-B121-ACA7-9DAF938FCB8B} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 3DMark (HKLM-x32\...\{12d6e0d7-21d5-4755-9da2-70352c6f7558}) (Version: 1.5.915.0 - Futuremark) 3DMark (Version: 1.5.915.0 - Futuremark) Hidden Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.008.20082 - Adobe Systems Incorporated) Adobe Flash Player 19 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 19.0.0.185 - Adobe Systems Incorporated) Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{61942EF5-2CD8-47D4-869C-2E9A8BB085F1}) (Version: 1.3.1.000 - Asmedia Technology) Assassin's Creed IV Black Flag (HKLM-x32\...\Uplay Install 273) (Version: - Ubisoft) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Benutzerhandbuch EPSON BX305 Plus Series (HKLM-x32\...\EPSON BX305 Plus Series Useg) (Version: - ) BlueStacks App Player (HKLM-x32\...\{4FEE9A2C-AF32-44CF-902D-9D686E17BF4F}) (Version: 1.1.9.167 - BlueStack Systems, Inc.) Broadcom NetLink Controller (HKLM\...\{C91DCB72-F5BB-410D-A91A-314F5D1B4284}) (Version: 14.8.5.1 - Broadcom Corporation) CCleaner (HKLM\...\CCleaner) (Version: 5.11 - Piriform) Child of Light (HKLM-x32\...\Uplay Install 609) (Version: - Ubisoft) Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) Counter-Strike: Global Offensive - SDK (HKLM-x32\...\Steam App 745) (Version: - ) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) DIE SIEDLER - Das Erbe der Könige (HKLM-x32\...\{8FDC1610-3FB5-4EF2-A0D0-CEDC3A525A25}) (Version: 1.00.0000 - Blue Byte) EPSON BX305 Plus Series Printer Uninstall (HKLM\...\EPSON BX305 Plus Series) (Version: - SEIKO EPSON Corporation) Epson Easy Photo Print 2 (HKLM-x32\...\{FFF841F3-9A15-4F61-BD16-C19F132E5A27}) (Version: 2.3.0.0 - SEIKO EPSON CORPORATION) Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM-x32\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION2) Epson FAX Utility (HKLM-x32\...\{0CBE6C93-CB2E-4378-91EE-12BE6D4E2E4A}) (Version: 1.20.00 - SEIKO EPSON CORPORATION) EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation) Futuremark SystemInfo (HKLM-x32\...\{AFBB2F94-A43D-46AD-8F77-66ACB3C71EDF}) (Version: 4.39.552.0 - Futuremark) G DATA INTERNET SECURITY (HKLM-x32\...\{AC68D2FF-1674-4C16-A536-A69FC11BBD82}) (Version: 25.1.0.8 - G DATA Software AG) GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 46.0.2490.80 - Google Inc.) Google Earth (HKLM-x32\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google) Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden Grand Theft Auto V (HKLM-x32\...\Steam App 271590) (Version: - Rockstar North) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Intel(R) Manageability Engine Firmware Recovery Agent (HKLM-x32\...\{A6C48A9F-694A-4234-B3AA-62590B668927}) (Version: 1.0.0.36354 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4276 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.4.220 - Intel Corporation) Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation) Java 8 Update 60 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418060F0}) (Version: 8.0.600.27 - Oracle Corporation) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Mozilla Firefox 41.0.2 (x86 de) (HKLM-x32\...\Mozilla Firefox 41.0.2 (x86 de)) (Version: 41.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 41.0.2.5765 - Mozilla) Netzwerkhandbuch EPSON BX305 Plus Series (HKLM-x32\...\EPSON BX305 Plus Series Netg) (Version: - ) NVIDIA 3D Vision Controller-Treiber 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 355.60 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 355.60 - NVIDIA Corporation) NVIDIA GeForce Experience 2.5.15.46 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.15.46 - NVIDIA Corporation) NVIDIA Grafiktreiber 355.60 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 355.60 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.5.20.5318 - Electronic Arts, Inc.) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) REALTEK Wireless LAN Driver and Utility (HKLM-x32\...\{9C049499-055C-4a0c-A916-1D8CA1FF45EB}) (Version: 1.00.0187 - REALTEK Semiconductor Corp.) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.6.1 - Rockstar Games) SHIELD Streaming (Version: 4.1.500 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.5.15.46 - NVIDIA Corporation) Hidden Skiller Pro Driver (HKLM-x32\...\{54C8FBB3-B992-43CB-8F0A-E26228013F88}) (Version: 1.0 - ) Skype™ 7.12 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.12.101 - Skype Technologies S.A.) Spotify (HKU\S-1-5-21-823076904-883910654-2515392582-1000\...\Spotify) (Version: 1.0.16.104.g3b776c9e - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKU\S-1-5-21-823076904-883910654-2515392582-1000\...\TeamSpeak 3 Client) (Version: 3.0.17 - TeamSpeak Systems GmbH) Teeworlds (HKLM-x32\...\Steam App 380840) (Version: - Teeworlds Team) Unturned (HKLM-x32\...\Steam App 304930) (Version: - Nelson Sexton) Uplay (HKLM-x32\...\Uplay) (Version: 4.0 - Ubisoft) WARMODE (HKLM-x32\...\Steam App 391460) (Version: - WARTEAM) Websuche (HKLM-x32\...\Websuche) (Version: - Websuche) Windows Phone app for desktop (HKLM-x32\...\{19773614-FC22-4ACC-AAA3-E6BDA81ACF92}) (Version: 1.1.2726.0 - Microsoft Corporation) World of Tanks (HKU\S-1-5-21-823076904-883910654-2515392582-1000\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version: - Wargaming.net) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-823076904-883910654-2515392582-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation) ==================== Wiederherstellungspunkte ========================= 29-10-2015 19:37:24 DirectX wurde installiert ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2015-10-29 22:15 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {03DF3EA6-8E41-4081-AC6B-C3F7DC7FE0CA} - System32\Tasks\{2302CB6C-894A-4B1F-89D1-6D57C5B9E375} => pcalua.exe -a E:\Software\setup.exe -d E:\Software Task: {0C27A68B-6481-4B75-BA94-DEB350B352D5} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG Task: {1394D24B-CBBD-4C5E-9E17-22097B871EAE} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe Task: {1C7844D5-6344-4F39-9305-D2EE1EC3158B} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2012-04-16] (Intel Corporation) Task: {228CA03E-B80E-4C99-AE22-FEF065B85120} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {22D54186-C439-42C1-9070-6E6E2EBCB83C} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG Task: {2608F486-0A40-4A40-AB39-144B789A28BC} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe Task: {27B715B5-A541-4A4A-ACB9-86CCAAA354B2} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe Task: {29725671-5F90-4B4B-B67C-F0F83A500BD8} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe Task: {2C794EC2-7AD1-46A8-856E-FA62543DD599} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {3408CE8F-D001-40DC-86AC-F24964CB58EA} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe Task: {377FFF3B-1C20-4120-BCF6-E193876E5996} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe Task: {378A33E4-3E93-429A-8DC7-5C1121027480} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG Task: {38E1FDF3-FE7C-4381-9A94-AA7BBFBB1EE8} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe Task: {3CD4D466-3A42-4CD6-B634-90A1D3207FA0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-12] (Google Inc.) Task: {50407026-5362-496C-B0FA-AE96079ACF2D} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG Task: {59104B9A-9104-4F0A-8289-DBA35AFC53B4} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe Task: {5A25C5B6-0B6D-4A79-95D0-8E7E8CDDAE11} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG Task: {5C61655D-F19D-4264-B595-058CC18BFD2A} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe Task: {745442DA-92B2-41A5-B24D-63B2F62C18DD} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe Task: {776F2F61-045C-4F88-9012-AAC9652E2332} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe Task: {7EF3CD1E-FB5A-4AD3-9A1A-E41EC15FFFC1} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG Task: {8E5DDF35-47EA-4C1D-8BAC-C8CE882036CC} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {985445AC-C190-4574-9F38-BB2D10860675} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {9CBE82B4-9EE9-4206-9A94-FC290E2CE40C} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG Task: {9FB24F17-03C6-4A03-8DC8-E924C91DFAE3} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe Task: {A10315C1-D7E3-4702-948F-A3B0CA56B8D4} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {A274EF26-8CC3-4742-AAC7-C8654CB66955} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-10-19] (Piriform Ltd) Task: {A549FF99-F7A9-4156-A47D-880C2B803246} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG Task: {BF5FAE8E-1DF8-4450-9770-2AB6C2DB8114} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe Task: {BFE53012-8177-4736-8221-A59A388FB5C8} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {C1D6DAD2-BDF6-4B6B-8709-4EDB8250383B} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2012-04-16] (Intel Corporation) Task: {C65445FE-3BB8-4C6E-955F-E079075E7A21} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe Task: {D32E9B94-975F-4720-80BC-039377BC62C8} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe Task: {DE52E51C-1234-4968-9E42-9AA1A0260D45} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe Task: {E051CA99-0C7B-4B7F-8D6A-53846B2DCF22} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-10-01] (Adobe Systems Incorporated) Task: {F40B300E-A51E-422D-9756-3090768755DB} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG Task: {F803F4E1-4A28-4A84-AC9F-B38DEAC94057} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe Task: {FBB735F8-B7CE-42A9-88D0-4BBE1704CBFE} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG Task: {FC1E6B93-B8C0-423F-A7CB-F7B4B0992B63} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {FDA7A9EE-8CDD-4B39-8707-47FE4442092E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-12] (Google Inc.) Task: {FEF7ADF0-4F23-485E-9AA2-7D59D3E3C357} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe Task: C:\WINDOWS\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-09-10 06:12 - 2015-09-10 06:12 - 00032768 _____ () C:\WINDOWS\SYSTEM32\licensemanagerapi.dll 2015-10-23 17:59 - 2015-08-07 01:24 - 00116344 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-09-10 06:12 - 2015-09-10 06:12 - 00404480 _____ () C:\WINDOWS\System32\diagtrack_wininternal.dll 2015-06-16 10:17 - 2015-06-16 10:17 - 00382584 ____N () C:\Program Files (x86)\Common Files\G Data\AVKProxy\PktIcpt2x64.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02494712 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02494712 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2015-07-10 04:13 - 2015-07-10 04:13 - 00143360 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\XamlTileRendering.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00642048 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\MtcUvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01808384 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2015-07-10 04:13 - 2015-09-10 06:12 - 00210432 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll 2015-08-10 18:52 - 2015-10-04 09:24 - 00012080 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-08-18 14:49 - 2009-12-09 20:20 - 00126976 _____ () C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\EnumDevLib.dll 2015-08-10 18:45 - 2012-07-18 05:55 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-823076904-883910654-2515392582-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\PC\Pictures\goldengate_at_night.jpg DNS Servers: 192.168.2.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist deaktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) MSCONFIG\startupreg: ShadowPlay => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent HKLM\...\StartupApproved\Run32: => "BlueStacks Agent" HKLM\...\StartupApproved\Run32: => "USB3MON" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKU\S-1-5-21-823076904-883910654-2515392582-1000\...\StartupApproved\Run: => "EPLTarget\P0000000000000000" HKU\S-1-5-21-823076904-883910654-2515392582-1000\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-823076904-883910654-2515392582-1000\...\StartupApproved\Run: => "Spotify Web Helper" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808 FirewallRules: [{EFB9B880-3EC0-4A56-897D-C4391979CBDA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WARMODE\warmode.exe FirewallRules: [{C3B3C096-BB97-46B5-9030-D02B2D8D9A19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WARMODE\warmode.exe FirewallRules: [{439DA8B2-6F4F-4845-BF0B-0EA1F62A7667}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned.exe FirewallRules: [{D976D03E-A38E-439E-8968-9E9754EDA4B4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned.exe FirewallRules: [{4F6DF43E-9108-48F7-87F0-87C1A6F42AE5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Teeworlds\teeworlds.exe FirewallRules: [{F9D4B1C1-92E1-4BE6-8B43-5673A4B3F12C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Teeworlds\teeworlds.exe FirewallRules: [{743B30E3-3E8D-4804-88DE-A19F5B36AE64}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{279A7895-EC96-46ED-B5A2-7613CE1F00E9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{A1C93937-A5A0-4C97-AD8E-BBFAA3A94F69}] => (Allow) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\Rtldhcp.exe FirewallRules: [{2378BD5A-11BD-4EDC-ABD6-8D71D9E7896A}] => (Allow) LPort=53 FirewallRules: [{32A528AC-F81D-4A60-8193-84E3AD33F4AD}] => (Allow) LPort=53 FirewallRules: [{CF6254D0-97F4-4645-B6DB-80446DEA8D8B}] => (Allow) LPort=68 FirewallRules: [{AD40D75A-AE74-44E8-8168-20B7C7A973F7}] => (Allow) LPort=67 FirewallRules: [{59345B06-172C-454C-92C4-8224777343A5}] => (Allow) LPort=53 FirewallRules: [{1E75063C-2DF9-4310-8B3D-9C9EE5446567}] => (Allow) LPort=1542 FirewallRules: [{386055E0-976B-4243-83AA-546A7747AE5A}] => (Allow) LPort=1542 FirewallRules: [{8825EDFD-F556-4BF1-AB93-BFAE2BF24636}] => (Allow) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe FirewallRules: [{1642A60D-0A7D-47BA-8251-812D75162C9D}] => (Allow) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe FirewallRules: [{C1D38924-9CCD-496E-9CAE-F6201944DFE3}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed IV Black Flag\AC4BFMP.exe FirewallRules: [{D05838B7-0ECE-4553-AADF-59EF5C7D7589}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed IV Black Flag\AC4BFMP.exe FirewallRules: [{738E1AC4-39A0-4ADC-BD85-F95E0F850A9D}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed IV Black Flag\AC4BFSP.exe FirewallRules: [{010924D5-C5D9-40A8-8923-4E8BDA832936}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed IV Black Flag\AC4BFSP.exe FirewallRules: [{63817662-5CAB-4042-84FF-44919E1FEAA8}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{51214287-3108-457A-A6B0-43695C9A0697}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{5AD3FD10-7AF4-4598-882A-6E35C9A787D7}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{F5710F2B-9C63-450B-BF2C-494DE54596DB}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{53A09C52-F873-433D-86B4-A2FB31EA8320}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [UDP Query User{D8602964-E4C1-4D51-B061-3972C42D4F01}C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe FirewallRules: [TCP Query User{2658EA8F-3C23-4E75-B635-D198EFBBBD6D}C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe FirewallRules: [{A9CCDB6B-2133-411E-B244-23BF7365E37C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe FirewallRules: [{8765649F-FA2A-4F91-9DAD-147B90660897}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe FirewallRules: [{D8C08F32-F01C-445A-8B7E-ABD651A99B32}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{8F47B727-19B0-47D7-BF27-A934C5790113}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{D82D9054-4D07-4ABA-9046-1EC04885A8F0}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{13055D6E-8155-417F-B59B-62947D7DB616}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{AB3A1F51-6636-46D0-BC2C-E521258D3263}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{DFA52DFB-4DFA-4864-8328-99A49A91402E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{5CCD39BF-28F6-4C3B-A422-0F5788CF6BE7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{7A5505D2-9D61-41EA-9420-162D2422E6A3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{EB6B4C62-3573-4AE7-AC02-9CCE6B5C6FF6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{F6E4CA02-8E3E-4F93-981B-4597B31572DE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{93DC65F6-8B37-4E3F-B404-F9CF609CF3AC}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{878655AF-CC3C-4917-A93B-718FCE058FD7}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{344AD358-DE8B-4FFF-93DE-8EA2D56897AD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{A4F3EC24-1FD7-4289-AAA3-94455DC8170E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\bin\SDKLauncher.exe FirewallRules: [{E49407A5-7663-457C-A1F5-F46ACD69ED3F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\bin\SDKLauncher.exe FirewallRules: [{70797B3A-B0E6-442E-A300-98062A8303B6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Clicker Heroes\Clicker Heroes.exe FirewallRules: [{3EACED20-3FFA-4A6B-AB7B-EDE37DA7E12F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Clicker Heroes\Clicker Heroes.exe ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (10/30/2015 03:15:17 PM) (Source: ESENT) (EventID: 413) (User: ) Description: SettingSyncHost (7452) Es konnte keine neue Protokolldatei erstellt werden, weil die Datenbank nicht auf das Protokolllaufwerk schreiben kann. Das Laufwerk ist möglicherweise schreibgeschützt, falsch konfiguriert, beschädigt oder hat zu wenig freien Speicherplatz. Fehler -1032. Error: (10/30/2015 03:15:17 PM) (Source: ESENT) (EventID: 488) (User: ) Description: SettingSyncHost (7452) Der Versuch, die Datei "C:\WINDOWS\system32\edbtmp.log" zu erstellen, ist mit Systemfehler 5 (0x00000005): "Zugriff verweigert " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Erstellen von Dateien. Error: (10/30/2015 03:15:07 PM) (Source: ESENT) (EventID: 413) (User: ) Description: SettingSyncHost (7452) Es konnte keine neue Protokolldatei erstellt werden, weil die Datenbank nicht auf das Protokolllaufwerk schreiben kann. Das Laufwerk ist möglicherweise schreibgeschützt, falsch konfiguriert, beschädigt oder hat zu wenig freien Speicherplatz. Fehler -1032. Error: (10/30/2015 03:15:07 PM) (Source: ESENT) (EventID: 488) (User: ) Description: SettingSyncHost (7452) Der Versuch, die Datei "C:\WINDOWS\system32\edbtmp.log" zu erstellen, ist mit Systemfehler 5 (0x00000005): "Zugriff verweigert " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Erstellen von Dateien. Error: (10/30/2015 03:14:56 PM) (Source: ESENT) (EventID: 413) (User: ) Description: SettingSyncHost (7452) Es konnte keine neue Protokolldatei erstellt werden, weil die Datenbank nicht auf das Protokolllaufwerk schreiben kann. Das Laufwerk ist möglicherweise schreibgeschützt, falsch konfiguriert, beschädigt oder hat zu wenig freien Speicherplatz. Fehler -1032. Error: (10/30/2015 03:14:56 PM) (Source: ESENT) (EventID: 488) (User: ) Description: SettingSyncHost (7452) Der Versuch, die Datei "C:\WINDOWS\system32\edbtmp.log" zu erstellen, ist mit Systemfehler 5 (0x00000005): "Zugriff verweigert " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Erstellen von Dateien. Error: (10/30/2015 03:14:46 PM) (Source: ESENT) (EventID: 413) (User: ) Description: SettingSyncHost (7452) Es konnte keine neue Protokolldatei erstellt werden, weil die Datenbank nicht auf das Protokolllaufwerk schreiben kann. Das Laufwerk ist möglicherweise schreibgeschützt, falsch konfiguriert, beschädigt oder hat zu wenig freien Speicherplatz. Fehler -1032. Error: (10/30/2015 03:14:46 PM) (Source: ESENT) (EventID: 488) (User: ) Description: SettingSyncHost (7452) Der Versuch, die Datei "C:\WINDOWS\system32\edbtmp.log" zu erstellen, ist mit Systemfehler 5 (0x00000005): "Zugriff verweigert " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Erstellen von Dateien. Error: (10/30/2015 03:14:36 PM) (Source: ESENT) (EventID: 413) (User: ) Description: SettingSyncHost (7452) Es konnte keine neue Protokolldatei erstellt werden, weil die Datenbank nicht auf das Protokolllaufwerk schreiben kann. Das Laufwerk ist möglicherweise schreibgeschützt, falsch konfiguriert, beschädigt oder hat zu wenig freien Speicherplatz. Fehler -1032. Error: (10/30/2015 03:14:36 PM) (Source: ESENT) (EventID: 488) (User: ) Description: SettingSyncHost (7452) Der Versuch, die Datei "C:\WINDOWS\system32\edbtmp.log" zu erstellen, ist mit Systemfehler 5 (0x00000005): "Zugriff verweigert " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Erstellen von Dateien. Systemfehler: ============= Error: (10/30/2015 04:31:54 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 4 Error: (10/30/2015 03:12:52 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (10/30/2015 03:12:12 PM) (Source: DCOM) (EventID: 10016) (User: PC-PC) Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}PC-PCPCS-1-5-21-823076904-883910654-2515392582-1000LocalHost (unter Verwendung von LRPC)Microsoft.WindowsStore_2015.10.5.0_x64__8wekyb3d8bbweS-1-15-2-1609473798-1231923017-684268153-4268514328-882773646-2760585773-1760938157 Error: (10/30/2015 03:09:27 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Net.Tcp-Listeneradapter" ist vom Dienst "Net.Tcp-Portfreigabedienst" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (10/30/2015 03:09:26 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "BlueStacks Hypervisor" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (10/29/2015 10:20:34 PM) (Source: DCOM) (EventID: 10005) (User: NT-AUTORITÄT) Description: 1053GDFwSvc-Service{1DED95CA-C567-464A-B405-087EDDF0B095} Error: (10/29/2015 10:20:34 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "G*DATA Personal Firewall" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (10/29/2015 10:20:34 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst G*DATA Personal Firewall erreicht. Error: (10/29/2015 10:20:24 PM) (Source: DCOM) (EventID: 10010) (User: PC-PC) Description: CortanaUI.AppXd4tad4d57t4wtdbnnmb8v2xtzym8c1n8.mca Error: (10/29/2015 10:20:23 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Benutzerdatenzugriff_Session1" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. CodeIntegrity: =================================== Date: 2015-10-24 16:52:51.862 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-10-24 16:52:51.851 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-10-24 16:52:51.714 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-10-24 16:52:51.703 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-10-24 16:52:45.133 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-10-24 16:52:45.121 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-10-24 16:52:44.490 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-10-24 16:52:44.387 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-10-24 16:42:18.434 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-10-24 16:42:18.403 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i5-3550 CPU @ 3.30GHz Prozentuale Nutzung des RAM: 29% Installierter physikalischer RAM: 8086.38 MB Verfügbarer physikalischer RAM: 5681.79 MB Summe virtueller Speicher: 16278.38 MB Verfügbarer virtueller Speicher: 13331.86 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:1862.92 GB) (Free:1648.58 GB) NTFS ==>[Laufwerk mit Startkomponenten (eingeholt von BCD)] ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 270BC5DF) Partition 1: (Not Active) - (Size=100 MB) - (Type=06) Partition 2: (Active) - (Size=1862.9 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
30.10.2015, 20:31 | #4 |
| Junkware PUP gefunden von GDATA gemeldet Hier musste ich einige Daten aus der Mitte herausschneiden, da die Datei sonst zu gross gewesen wäre - ich hoffe das ist in Ordnung. Gefunden hat er nichts -richtig ? Jörg Code:
ATTFilter 19:22:26.0478 0x1d8c TDSS rootkit removing tool 3.1.0.5 Jul 24 2015 12:29:57 19:22:32.0181 0x1d8c ============================================================ 19:22:32.0181 0x1d8c Current date / time: 2015/10/30 19:22:32.0181 19:22:32.0181 0x1d8c SystemInfo: 19:22:32.0181 0x1d8c 19:22:32.0181 0x1d8c OS Version: 10.0.10240 ServicePack: 0.0 19:22:32.0181 0x1d8c Product type: Workstation 19:22:32.0181 0x1d8c ComputerName: PC-PC 19:22:32.0181 0x1d8c UserName: PC 19:22:32.0181 0x1d8c Windows directory: C:\WINDOWS 19:22:32.0181 0x1d8c System windows directory: C:\WINDOWS 19:22:32.0181 0x1d8c Running under WOW64 19:22:32.0181 0x1d8c Processor architecture: Intel x64 19:22:32.0181 0x1d8c Number of processors: 4 19:22:32.0181 0x1d8c Page size: 0x1000 19:22:32.0181 0x1d8c Boot type: Normal boot 19:22:32.0181 0x1d8c ============================================================ 19:22:32.0479 0x1d8c KLMD registered as C:\WINDOWS\system32\drivers\27710760.sys 19:22:33.0124 0x1d8c System UUID: {278CD3B9-3A66-B0CF-2E71-3EC9A2BFC17B} 19:22:33.0661 0x1d8c Drive \Device\Harddisk0\DR0 - Size: 0x1D1C1116000 ( 1863.02 Gb ), SectorSize: 0x200, Cylinders: 0x3B601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 19:22:33.0738 0x1d8c ============================================================ 19:22:33.0738 0x1d8c \Device\Harddisk0\DR0: 19:22:33.0738 0x1d8c MBR partitions: 19:22:33.0738 0x1d8c \Device\Harddisk0\DR0\Partition1: MBR, Type 0x6, StartLBA 0x800, BlocksNum 0x32000 19:22:33.0738 0x1d8c \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0xE8DD5800 19:22:33.0738 0x1d8c ============================================================ 19:22:33.0781 0x1d8c C: <-> \Device\Harddisk0\DR0\Partition2 19:22:33.0783 0x1d8c ============================================================ 19:22:33.0783 0x1d8c Initialize success 19:22:33.0783 0x1d8c ============================================================ 19:22:49.0945 0x1ec0 ============================================================ 19:22:49.0945 0x1ec0 Scan started 19:22:49.0945 0x1ec0 Mode: Manual; 19:22:49.0945 0x1ec0 ============================================================ 19:22:49.0945 0x1ec0 KSN ping started 19:22:52.0951 0x1ec0 KSN ping finished: true 19:22:55.0070 0x1ec0 ================ Scan system memory ======================== 19:22:55.0071 0x1ec0 System memory - ok 19:22:55.0071 0x1ec0 ================ Scan services ============================= 19:22:55.0242 0x1ec0 [ 22CE801AD25C51E2553F41A076BB0CB2, 0520216417F1619FB642734EC937C59D5E79A24306C1E9B793C82FAE077851E6 ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys 19:22:55.0249 0x1ec0 1394ohci - ok 19:22:55.0285 0x1ec0 [ 2C49A2441EBB24C6ACFB524C1459115F, 0ABACB6F21C41C0297994E61F1BFABB3905AF6B569D0446FE8E174EB9225B8EF ] 3ware C:\WINDOWS\system32\drivers\3ware.sys 19:22:55.0288 0x1ec0 3ware - ok 19:22:55.0316 0x1ec0 [ B87D3D07FE6F15328C6860D542F0E2BD, 46CF069EDD7DBFB4DB800BABA3081DAB363DD2CFD724AFF5916D3419F62A3574 ] ACPI C:\WINDOWS\system32\drivers\ACPI.sys 19:22:55.0331 0x1ec0 ACPI - ok 19:22:55.0341 0x1ec0 [ 1E3C4EDBB7F3F668B7205E351010BB79, A3CA12F72836C4F77B671264828B370B9EBA9CD71110E2C0514994760B6B12FF ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys 19:22:55.0343 0x1ec0 acpiex - ok 19:22:55.0355 0x1ec0 [ 13B1C26AEDCB40082CDD97506F968129, 883442206B4C60AA493E84CC3037B6C1568441E1F43D2B1FCBFD8D87D135D511 ] acpipagr C:\WINDOWS\System32\drivers\acpipagr.sys 19:22:55.0355 0x1ec0 acpipagr - ok 19:22:55.0379 0x1ec0 [ B3D64FF927D611721DA73A61BF3A18B3, 96B51AFDC3078B5088AAF66F0CF3E07D2FCBBC84A19D309A25DF0A5C6CECB958 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys 19:22:55.0379 0x1ec0 AcpiPmi - ok 19:22:55.0392 0x1ec0 [ 19F793B2203D94AC1F8AEDB08B494E2E, DC98CCF9935E1F1C32FA88575A9A678B74916EFF48E39A64CF1FF92232F64A52 ] acpitime C:\WINDOWS\System32\drivers\acpitime.sys 19:22:55.0392 0x1ec0 acpitime - ok 19:22:55.0462 0x1ec0 [ 013697369EAFFA675D0671607F036020, 65611C775AC4681E46A6565E5A7A4FF3363C66EBDC98C4C58AFB365D40BE23B6 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 19:22:55.0463 0x1ec0 AdobeARMservice - ok 19:22:55.0541 0x1ec0 [ C6D147C12C424373B016C0AB0A6C61EB, 043D44F3C942CFC3558E782938C26849BF648A58A7AA62C4A526E37DE4136C27 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 19:22:55.0545 0x1ec0 AdobeFlashPlayerUpdateSvc - ok 19:22:55.0593 0x1ec0 [ 2A24E10C1A1DE0E0035E353EED494A1C, CBBFA86578BE74CAADDCA923D65E3BFFC57BC17B887936ADE5C6952530546A22 ] ADP80XX C:\WINDOWS\system32\drivers\ADP80XX.SYS 19:22:55.0614 0x1ec0 ADP80XX - ok 19:22:55.0627 0x1ec0 [ 6C12C7E01A4F64E0AA9C88AF66955CC9, 81A413702909341F8694823EC83FBA0089523D7EC927B80E55E0779BB83AD263 ] AFD C:\WINDOWS\system32\drivers\afd.sys 19:22:55.0634 0x1ec0 AFD - ok 19:22:55.0646 0x1ec0 [ EF09D07626820F7F89519514C17FE768, C3EC1DC163CD5946270ED876CD414889BBF2C586A8AF5DC7825FA5D77001E827 ] agp440 C:\WINDOWS\system32\drivers\agp440.sys 19:22:55.0647 0x1ec0 agp440 - ok 19:22:55.0663 0x1ec0 [ 8A289EF0721F95267BF2404BABEE146D, E263D258F03DF3BB405D49AE7230C37E7EB8F392FDEE48059C7C1E3709520D35 ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys 19:22:55.0666 0x1ec0 ahcache - ok 19:22:55.0700 0x1ec0 [ C301499987AF909258774AE9DC5778BB, 3ED539C999847116AE9DB9C8C5A34AB09703BAE3018E1EAF6DBC779BB6736F32 ] AJRouter C:\WINDOWS\System32\AJRouter.dll 19:22:55.0700 0x1ec0 AJRouter - ok 19:22:55.0722 0x1ec0 [ DD69535D379F9E40AD0D6002887AAA99, 579DD18CE2B264B4058C6069B8AEE6FD9FE6A882B7DA19E300DFE40B37A4E5BE ] ALG C:\WINDOWS\System32\alg.exe 19:22:55.0723 0x1ec0 ALG - ok 19:22:55.0738 0x1ec0 [ 6763084E8322A4876D1613854640F914, 89EEEB47517A9964FA799821E5E45BDD6009EBDC628D6DADE6A7F03DE7CDA6CD ] AmdK8 C:\WINDOWS\System32\drivers\amdk8.sys 19:22:55.0739 0x1ec0 AmdK8 - ok 19:22:55.0744 0x1ec0 [ DE29D8AB57AD67D4940CAB4A48B3E230, 4E92AFCD9107573DAB8E65AC6318E4B8851DCCBE17E135DFF8CF5733210B52E6 ] AmdPPM C:\WINDOWS\System32\drivers\amdppm.sys 19:22:55.0745 0x1ec0 AmdPPM - ok 19:22:55.0754 0x1ec0 [ 4C1F9BBAF5CCD76D4642F3B92B97B454, 514CCAA8B586B1019658BE101046386EB727AD48D7913AEF9A168763E91F0DE5 ] amdsata C:\WINDOWS\system32\drivers\amdsata.sys 19:22:55.0755 0x1ec0 amdsata - ok 19:22:55.0767 0x1ec0 [ F8195C1A15955180DD663E7FF4C2F6DD, F3C0C6B38FB9478217EE25EBDBDF7A18F01B97655BC38373E70E71171705D5E9 ] amdsbs C:\WINDOWS\system32\drivers\amdsbs.sys 19:22:55.0770 0x1ec0 amdsbs - ok 19:22:55.0779 0x1ec0 [ DD2F5BBCFAC4D8E48DB1A95A7EEBFF08, 619E3106072C6F785144D785C4AFB4C607CAF7ED29AAA4A1411BE262E62B7ADE ] amdxata C:\WINDOWS\system32\drivers\amdxata.sys 19:22:55.0780 0x1ec0 amdxata - ok 19:22:55.0833 0x1ec0 [ E4AFE476D9F758514A8A571DF6A24372, A37055A2CDB577CC8B76D4B020924A6C68D94166C1C9A64F7C0E9E16692709FC ] AppHostSvc C:\WINDOWS\system32\inetsrv\apphostsvc.dll 19:22:55.0834 0x1ec0 AppHostSvc - ok 19:22:55.0849 0x1ec0 [ 46AAF119090573A80D603745582229ED, 8D7C4AED66DD32A104965DC23D17C0815CD1BE2E3D52375C1A63863664EE174F ] AppID C:\WINDOWS\system32\drivers\appid.sys 19:22:55.0851 0x1ec0 AppID - ok 19:22:55.0873 0x1ec0 [ 24315B385F515D6D5476757EAFD62633, CE645397BF43CC54B864A0E4FCB86F76C10B9C2D2482E85DBBE15EF7BF045F17 ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll 19:22:55.0874 0x1ec0 AppIDSvc - ok 19:22:55.0913 0x1ec0 [ 2CE396457D5C18F034D243EC7E159010, DDF588A568DF5EAE058DF315535BD746760363E2242EF8C705F8DCBA2D5DA4A7 ] Appinfo C:\WINDOWS\System32\appinfo.dll 19:22:55.0914 0x1ec0 Appinfo - ok 19:22:55.0939 0x1ec0 [ A8AC0B8ED134888731D1A1BCEF930FA1, 917D2C99CB28C5F20BA386148B6A93541AEF900A9A99D310D732B501322945E5 ] AppReadiness C:\WINDOWS\system32\AppReadiness.dll 19:22:55.0946 0x1ec0 AppReadiness - ok 19:22:56.0011 0x1ec0 [ C0BC21B9D557E46E5C331209950AF90D, 9634D17515918483521D1AE9F271836CA64764103216B42E592305B85E506271 ] AppXSvc C:\WINDOWS\system32\appxdeploymentserver.dll 19:22:56.0036 0x1ec0 AppXSvc - ok 19:22:56.0042 0x1ec0 [ 0756EECAC010BE449D07502DF27E7701, 6A895CA80050D021DB5E130102F626027339A22673B7C15C51A375C0401F03D2 ] arcsas C:\WINDOWS\system32\drivers\arcsas.sys 19:22:56.0044 0x1ec0 arcsas - ok 19:22:56.0070 0x1ec0 [ 4DFF4312661F54EE87DC9A13CAEE60E0, 8821D2CA4036E764EFF71108735148FF54D3275DDCE1860EC7D67B2355E8DF82 ] asahci64 C:\WINDOWS\system32\drivers\asahci64.sys 19:22:56.0071 0x1ec0 asahci64 - ok 19:22:56.0148 0x1ec0 [ BD63768F58666341BE007DAA21B3A063, 1D6112E97042E19E4D916AA22F8AEB7FCC2F36CA45F55049D77042DAF3B8847C ] aspnet_state C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 19:22:56.0150 0x1ec0 aspnet_state - ok 19:22:56.0171 0x1ec0 [ A5792F971EFE86B7F56EE7299ED1082B, 82DCD15E2C9D8A3EA663941C9CE73020FEEF2F91354D0BB51E8A142AA1E30217 ] AsyncMac C:\WINDOWS\System32\drivers\asyncmac.sys 19:22:56.0172 0x1ec0 AsyncMac - ok 19:22:56.0193 0x1ec0 [ 8921DF6060DB5C7700AA48CB12E9EA08, 8F18841B454CDE4926C50B23F818D00ECE0AE884DB198E396445CB44CB39B2C4 ] atapi C:\WINDOWS\system32\drivers\atapi.sys 19:22:56.0194 0x1ec0 atapi - ok 19:22:56.0251 0x1ec0 [ 240FF83DD79546B26F187FAB20F83864, C4DC0159016B4A4630357131E614814C068D07BEA94AAF6393E882A78C9FCA1E ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll 19:22:56.0258 0x1ec0 AudioEndpointBuilder - ok 19:22:56.0300 0x1ec0 [ 7614E6E6B53E8FE6E6B8A6D6D3CC2018, DF3445145E38BB22E08F11638DA6C37C9EDC1109207569F7921CDD525238CA39 ] Audiosrv C:\WINDOWS\System32\Audiosrv.dll 19:22:56.0315 0x1ec0 Audiosrv - ok 19:22:56.0410 0x1ec0 [ 6FA423F957A966A53243F383D213B2B2, 98A8D304FDE16D6464A09A3CE823E1DB0CD3F7866C1FBDD5CE393E42FF60BF37 ] AVKProxy C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe 19:22:56.0439 0x1ec0 AVKProxy - ok 19:22:56.0474 0x1ec0 [ 57E9F462DE5ED77574116782BA05AB0F, 611987C8205E113DFA206F50EF4959AA5D6CE252A73EC1E74C043CBFD7172E3D ] AVKService C:\Program Files (x86)\G DATA\InternetSecurity\AVK\AVKService.exe 19:22:56.0493 0x1ec0 AVKService - ok 19:22:56.0596 0x1ec0 [ E9F980D3646B85658D182A470D586E79, FE7CA31CD3D6CC6825F3228860DF8F2DFF09D82D3D84DF79C7F5C2484D8AB4FB ] AVKWCtl C:\Program Files (x86)\G DATA\InternetSecurity\AVK\AVKWCtlx64.exe 19:22:56.0636 0x1ec0 AVKWCtl - ok 19:22:56.0655 0x1ec0 [ 2F7F80543129210CA75995D0DCA488E8, 353E598FF26FA363C02A2B44BA8D7D1ED97B8AC8C69F1B5C5D521BD0D5D5AB94 ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll 19:22:56.0656 0x1ec0 AxInstSV - ok 19:22:56.0674 0x1ec0 [ 00D64E82900E4EC9062805ED87C2D75A, 577110F9A7C6C2C4CF86FFF4F60E23F61623ED325FC950033900A5102754A677 ] b06bdrv C:\WINDOWS\system32\drivers\bxvbda.sys 19:22:56.0681 0x1ec0 b06bdrv - ok 19:22:56.0691 0x1ec0 [ 5164A66EC1565711A7B4CF2F143B4979, DA29F0FB63F3EB2BF92D51FEB4BB7D2B964553D2F634556325953927464CB3A5 ] BasicDisplay C:\WINDOWS\System32\drivers\BasicDisplay.sys 19:22:56.0692 0x1ec0 BasicDisplay - ok 19:22:56.0716 0x1ec0 [ F4C58BBF2972BD84C73F6A14CA35AC4E, B7A226EB861B63ACF4BF9B5A331ACA6FFC9B787DCCAA7697EEFC4F634508A6D5 ] BasicRender C:\WINDOWS\System32\drivers\BasicRender.sys 19:22:56.0717 0x1ec0 BasicRender - ok 19:22:56.0733 0x1ec0 [ 25349D0B334E528667980948ED107D89, 70EF9D3B8DCAC6E9720C6F3EBC77392FADC182A6925F9024FE30A21321E0137F ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys 19:22:56.0733 0x1ec0 bcmfn2 - ok 19:22:56.0783 0x1ec0 [ DF78B56EEE6004DEE8CE57763128075E, 5758CAF4B0182F3F2E2508B3BB58B0271F2689808D09675B2753FE373D1D77D2 ] BDESVC C:\WINDOWS\System32\bdesvc.dll 19:22:56.0793 0x1ec0 BDESVC - ok 19:22:56.0825 0x1ec0 [ 1E8A9267F8886803AAE02982FC1B5BC4, 655DF84E037BD6E582A6BA89737A4388956219171AF7253D126E54A23F16BE59 ] Beep C:\WINDOWS\system32\drivers\Beep.sys 19:22:56.0825 0x1ec0 Beep - ok 19:22:56.0897 0x1ec0 [ 7FAFFFC4C59F5010D6E7CEA152076B92, 945FD6C04E109D4E5A4164BAA9A8120EC85AB809555AAD83E61B9F179F976FD7 ] BFE C:\WINDOWS\System32\bfe.dll 19:22:56.0906 0x1ec0 BFE - ok 19:22:56.0958 0x1ec0 [ BD60F5633F6BD617D9ECCA3FFDC0D37E, 2F0DECAEB7096CD628387263381E123C883F483BD87F7F2BA6DEFBB5A184BAA3 ] BITS C:\WINDOWS\System32\qmgr.dll 19:22:56.0973 0x1ec0 BITS - ok 19:22:56.0980 0x1ec0 [ C9FD65687EF89715999C582D3E568812, 42BA59A78A47C510CB2AFDC6C6080B33F9F611F84FEE5262DFF16D7633C50EB1 ] bowser C:\WINDOWS\system32\DRIVERS\bowser.sys 19:22:56.0981 0x1ec0 bowser - ok 19:22:56.0998 0x1ec0 [ 3A4A543F135DE9A06ABA9DF982D79DD7, ABA165435C27BE15D7EBD3E7D023E295CB7AE2A099DF9E253C78EC45EADD75EA ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll 19:22:57.0005 0x1ec0 BrokerInfrastructure - ok 19:22:57.0020 0x1ec0 [ 2AAD720B32904B97EDD8C3211344F79E, 41B1AEA5FAA48033B2581E18D68EFC986C3D65B383847E250C054CE3133A893C ] Browser C:\WINDOWS\System32\browser.dll 19:22:57.0022 0x1ec0 Browser - ok 19:22:57.0067 0x1ec0 [ 4DC5439DBD530B4DA8B13185AC2E8E8B, E384E1A880F0450A0F44A50232DE8AF45267F4E717C091BDE4DA9684505181A4 ] BstHdAndroidSvc C:\Program Files (x86)\BlueStacks\HD-Service.exe 19:22:57.0072 0x1ec0 BstHdAndroidSvc - ok 19:22:57.0098 0x1ec0 [ 346F9FC1E87D06069A7E203A06DD6BFD, 75B5F38B8D45FE324F7B5084954BCC4FCFF1DDBF3551DB040A05195A0384BC7B ] BstHdDrv C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys 19:22:57.0100 0x1ec0 BstHdDrv - ok 19:22:57.0125 0x1ec0 [ B7902AE916F1218696A7346327157CA5, 1EC7A74BFF6B16D44DB29149D60FBBA20053371BBD8EBC94E6C794310021E9B6 ] BstHdLogRotatorSvc C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe 19:22:57.0130 0x1ec0 BstHdLogRotatorSvc - ok 19:22:57.0156 0x1ec0 [ 253858BF82D201531EAF6CE2EA4CFD8E, EE3ABA5D320E19092D08F81A377C5A0457E7ADAD8FB0A9227B69167D225D58C8 ] BstHdUpdaterSvc C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe 19:22:57.0166 0x1ec0 BstHdUpdaterSvc - ok 19:22:57.0182 0x1ec0 [ F8DD3B0EAC1EF1D087AE47E5819540AC, 866C951B52E3202AC89552AEA72A45123367199335578F03815E2ED55DA2FDAE ] BthAvrcpTg C:\WINDOWS\System32\drivers\BthAvrcpTg.sys 19:22:57.0183 0x1ec0 BthAvrcpTg - ok 19:22:57.0193 0x1ec0 [ 647E2A425AD43637EAA01096A58B7089, 8F76D024FEBCBA1AC54363133DE1E0DD5B9D696E5E688EFEBC3B79F7F1B9C568 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys 19:22:57.0194 0x1ec0 BthHFEnum - ok 19:22:57.0204 0x1ec0 [ B95040CAD3434D9EE003065363A0FAFF, D441E0676EA1AE1ABC305732024311CA59715E6763B3D7ADB728DEEFC403E182 ] bthhfhid C:\WINDOWS\System32\drivers\BthHFHid.sys 19:22:57.0205 0x1ec0 bthhfhid - ok 19:22:57.0264 0x1ec0 [ F334BF7B0737CEB3B6822631EAD55A87, 4E5AEB1F8E109BA01A5D1CDE2E3C677FF07F2AFE8B195CB5F82AA28816D2060E ] BthHFSrv C:\WINDOWS\System32\BthHFSrv.dll 19:22:57.0273 0x1ec0 BthHFSrv - ok 19:22:57.0288 0x1ec0 [ 29AEE352AED4FCD2191436D263D75347, 3D21262EA26BF423BFA4A9146E53F8B036B2A1157DBE91A11C5603AF7A670B6F ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys 19:22:57.0290 0x1ec0 BTHMODEM - ok 19:22:57.0321 0x1ec0 [ 26DD0127A05B333E36316E6EA9A6AAE2, A2DC4483FF5639EE8DD315AB2989865CA6A6992C578FD7F7D31698A015355941 ] bthserv C:\WINDOWS\system32\bthserv.dll 19:22:57.0322 0x1ec0 bthserv - ok 19:22:57.0347 0x1ec0 [ 854AF190F55E6D70EC65A85798F896E2, 6D39F9131BE93F934502BA1DB109E7AD35D3987B636F7B32F9C34823DF25746B ] buttonconverter C:\WINDOWS\System32\drivers\buttonconverter.sys 19:22:57.0348 0x1ec0 buttonconverter - ok 19:22:57.0360 0x1ec0 [ A10A1E05A943B10ECE5D57D131B7404D, 71BB816B6841001A4305DF1814926B639265E91895CA5D06284B0970E40CE386 ] CapImg C:\WINDOWS\System32\drivers\capimg.sys 19:22:57.0362 0x1ec0 CapImg - ok 19:22:57.0381 0x1ec0 [ F2829DC6D292DCAC5029893BB2E9FEE3, AF2A25722D3BE37BABD1F6668786AAF39E9D6CA18CE8E845E63266E218C64526 ] cdfs C:\WINDOWS\system32\DRIVERS\cdfs.sys 19:22:57.0383 0x1ec0 cdfs - ok 19:22:57.0412 0x1ec0 [ F3A9E38AE23AD4015764AF89E4AE3519, 57ED6AC834177E128720FEC5B5793F35C7C36474E2D787F182B6730933222CC9 ] CDPSvc C:\WINDOWS\System32\CDPSvc.dll 19:22:57.0414 0x1ec0 CDPSvc - ok 19:22:57.0426 0x1ec0 [ CA160E02F35A61C6F5C681FB4669C519, E6BC66156EE226F16804C4FDC8A60EB15CE6212EAFB9FB841FAC899979E140E2 ] cdrom C:\WINDOWS\System32\drivers\cdrom.sys 19:22:57.0428 0x1ec0 cdrom - ok 19:22:57.0443 0x1ec0 [ 320E7A02D81A468E8C1FEEFDB856AFAE, E65127D3D6B628F9D19EA509FEBD9E4DC1BF20D0C62C3C9E1D7087DF972B2AA7 ] CertPropSvc C:\WINDOWS\System32\certprop.dll 19:22:57.0446 0x1ec0 CertPropSvc - ok 19:22:57.0462 0x1ec0 [ 60D7D304DF75DFF6A46CF633F583B592, 4141D8D1C6FE829C02053DA91AC6B0628BDEB3322CAAD4AD958190F9D173340E ] circlass C:\WINDOWS\System32\drivers\circlass.sys 19:22:57.0463 0x1ec0 circlass - ok 19:22:57.0471 0x1ec0 [ FF9D4BCE19E5D36CB3A845A3286DA6C3, A0E2C38D629359EEC6F8EEC6F92A3E571AEF018BAF259F395DC497ED4827460B ] CLFS C:\WINDOWS\system32\drivers\CLFS.sys 19:22:57.0477 0x1ec0 CLFS - ok 19:22:57.0509 0x1ec0 [ 5C4648673693724C8D4A1A92E1AA06E6, 5D548241715687BFA52E40B867EF73CB45D01B7F9A9B7F00B92BF2B4C97BE1D0 ] ClipSVC C:\WINDOWS\System32\ClipSVC.dll 19:22:57.0519 0x1ec0 ClipSVC - ok 19:22:57.0535 0x1ec0 [ 8EBA63416EC166EBA6EF6D34A505D8C8, 5EB0236ABEA2277B71D9F009DA71934C618606B20BBEC07B8595195E40C12A2B ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys 19:22:57.0536 0x1ec0 CmBatt - ok 19:22:57.0557 0x1ec0 [ 3B64DA873CEA5BEC42570BFF1054A014, 3649B25855CB9BE5BA3B3FEE4221575381FB2D488B8B050B5DD0088386AA0F7B ] CNG C:\WINDOWS\system32\Drivers\cng.sys 19:22:57.0565 0x1ec0 CNG - ok 19:22:57.0581 0x1ec0 [ 5EEA0856000F81B3D709BC81B3AA1EF2, C04E4E31D3FC38102BA410D312F58AF848920EE37004A5C306D79229C9B6079A ] cnghwassist C:\WINDOWS\system32\DRIVERS\cnghwassist.sys 19:22:57.0582 0x1ec0 cnghwassist - ok 19:22:57.0690 0x1ec0 [ 74CD3BF688E2B408227FE012A2F2D8ED, CC01AC79CEB9DC94FA5675D66F048928C9968B8944E34F5482A73C14B70EE8A8 ] CompositeBus C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_98334ba6e76853ba\CompositeBus.sys 19:22:57.0691 0x1ec0 CompositeBus - ok 19:22:57.0696 0x1ec0 COMSysApp - ok 19:22:57.0710 0x1ec0 [ D38774D1D383A2CDB9A4F64B7206913B, 6CDDC46D1D431342F00CA537FC327B23B8AA4D513CEEEE61F3E19C77975DF9C8 ] condrv C:\WINDOWS\system32\drivers\condrv.sys 19:22:57.0712 0x1ec0 condrv - ok 19:22:57.0747 0x1ec0 [ 8AFDD74F2DC5BAD9B2215FB19DB65240, A2BDDA4C77C63D3D8E9F1D397D7B41EC1BF093A6399C14D311D4D230B5F1E093 ] CoreMessagingRegistrar C:\WINDOWS\system32\coremessaging.dll 19:22:57.0768 0x1ec0 CoreMessagingRegistrar - ok 19:22:57.0850 0x1ec0 [ BB812787B838A74943DEF209350C3883, 2C168F48A68644AA3CB6167BEC2A260E3E9C78D0766A15AA0FAA39CDBD7FA040 ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe 19:22:57.0859 0x1ec0 cphs - ok 19:22:57.0895 0x1ec0 [ 35DB06AACD8AD5999161DA71FF0E16F0, 22AD27811AAD14666ACEF4115447B0CFAA70D1E73923059FB2A9B4C3CBE500A6 ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll 19:22:57.0897 0x1ec0 CryptSvc - ok 19:22:58.0376 0x1ec0 dot3svc - ok 19:22:58.0388 0x1ec0 [ A616D8297C1BEA690BBC796736A7A78D, 9365470F4609606410AD79D98E1E77D815DC7C5AA924FB639FCF713EE8EDEA76 ] DPS C:\WINDOWS\system32\dps.dll 19:22:58.0390 0x1ec0 DPS - ok 19:22:58.0409 0x1ec0 [ 45771610FF181434073B5A0A00F20F8D, 6A17DB09AA6D021F000F7315317235E1FCF41FD58EA7DF81A7C9F5A6DE999984 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys 19:22:58.0409 0x1ec0 drmkaud - ok 19:22:58.0432 0x1ec0 [ 00D9A948FB7344C62CEBED88E50EE39A, EF33FE7FB34DE571F3956C1F7AC8EFAA25BFD9F3AFA3ECD25DD34C5890873245 ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll 19:22:58.0436 0x1ec0 DsmSvc - ok 19:22:58.0459 0x1ec0 [ F2328181D289CE83E9979733EAB6742A, 73B1CDA6ED8C42B36126909F1335B72126A5DDC6FC7CE8BA2CA274A2B92E82FD ] DsSvc C:\WINDOWS\System32\DsSvc.dll 19:22:58.0461 0x1ec0 DsSvc - ok 19:22:58.0510 0x1ec0 [ 89C9C3745F270EF93988DA57BC6AA62B, 947886F3121919427BDCB123C6FC28E29CA73D427E92025E1BEAA743D27306D3 ] DXGKrnl C:\WINDOWS\System32\drivers\dxgkrnl.sys 19:22:58.0536 0x1ec0 DXGKrnl - ok 19:22:58.0558 0x1ec0 [ 6E36BDBB46DF7F865D0DD30663AE3891, 98967B01EA450AD4D5FE8085F710359C022D783B839A51BD4A266718156B01EB ] Eaphost C:\WINDOWS\System32\eapsvc.dll 19:22:58.0559 0x1ec0 Eaphost - ok 19:22:58.0632 0x1ec0 [ 3070013B01EDA42C7EB67D731340C396, C083CA05650750876E70CB6AB51D5C047C06098C2ED86B083A74C97830247BFC ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys 19:22:58.0691 0x1ec0 ebdrv - ok 19:22:58.0711 0x1ec0 [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] EFS C:\WINDOWS\System32\lsass.exe 19:22:58.0713 0x1ec0 EFS - ok 19:22:58.0716 0x1ec0 [ 59EE187E333EE9914DD9BEA5F4E0D85D, E34BB8075E38FC6AEC056323C6E3B5B4E7041EE6F4D51699B706DEEA18BDB911 ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys 19:22:58.0718 0x1ec0 EhStorClass - ok 19:22:58.0729 0x1ec0 [ 9297F1CC486F24BDFD2874156AC5430F, 1AF8689ADE4E658FC9418F7886B6C19F7D005EAB2AEF9B0E14FC81C61A74CECF ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys 19:22:58.0730 0x1ec0 EhStorTcgDrv - ok 19:22:58.0756 0x1ec0 [ 9E8FF6B95FD420FA9E40BE548E5C8D92, 8825B81418335D03CFAADB792C1466023C459BE489ACACBD6686FFB544F22D30 ] embeddedmode C:\WINDOWS\System32\embeddedmodesvc.dll 19:22:58.0758 0x1ec0 embeddedmode - ok 19:22:58.0778 0x1ec0 [ DC2F91EAE9A28FA8C6610A9B7701B70D, 480DB509BF944AAC3617594F1245B4603069DE39186BC1FA7EDB8E0536B05E79 ] EntAppSvc C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll 19:22:58.0782 0x1ec0 EntAppSvc - ok 19:22:58.0825 0x1ec0 [ 194E8100D57FC13BEF88129BAAD07E46, 745D24ADD99ED182FCCA30C6B85167484B74D3EFD631AF92AA57AAD73F474631 ] EPSON_PM_RPCV4_04 C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE 19:22:58.0830 0x1ec0 EPSON_PM_RPCV4_04 - ok 19:22:58.0841 0x1ec0 [ F7FCCA6300485EF60CEA6D991D6C8C78, 24080D80CF1FD678DF4C9CAE70F65F8D9232F5F6A6F2B73A77B5E3C91E6505F3 ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys 19:22:58.0842 0x1ec0 ErrDev - ok 19:22:58.0888 0x1ec0 [ 2093F65AA84478E28C8E9D05BC413845, 086D4E0D4B993F4041AA8A9DCBEEDB53BD05B88E2BEFB218837FB10FACDF4233 ] EventSystem C:\WINDOWS\system32\es.dll 19:22:58.0901 0x1ec0 EventSystem - ok 19:22:58.0936 0x1ec0 [ DCCDC3F35F0618692117DF90800A4284, B636B2A39AE89A9C2CDE17EC52DA669DA8AA9E2B04CA5CA19926DA8009655244 ] exfat C:\WINDOWS\system32\drivers\exfat.sys 19:22:58.0942 0x1ec0 exfat - ok 19:22:58.0961 0x1ec0 [ 5A1C6AFFF6946C5C21A27AE05084C0D1, 558CB87E596E85182F6976F215EE0E35F57BF901409A2805E6A3C29D8984B048 ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys 19:22:58.0966 0x1ec0 fastfat - ok 19:22:58.0998 0x1ec0 [ 046FC9CF53A91E2FBA498CA7B0C3B028, BCFB06DF53065706DD6287E8C47BF5047F8A1E33981E1881E6ED7510337F5BC8 ] Fax C:\WINDOWS\system32\fxssvc.exe 19:22:59.0007 0x1ec0 Fax - ok 19:22:59.0024 0x1ec0 [ 583EB1C7690E361213BBD0472155128B, 5F5871490A6DAC4A824F4428941AC86FBFA9AA349B99B5D9544E5D62EB459FA8 ] fdc C:\WINDOWS\System32\drivers\fdc.sys 19:22:59.0024 0x1ec0 fdc - ok 19:22:59.0054 0x1ec0 [ 94B1A46EDD335F0C54C7BDAFC43348E6, 58073D58D0BE7389C2A4736AFE108835E5AE9C9950FF630644F585C99B964043 ] fdPHost C:\WINDOWS\system32\fdPHost.dll 19:22:59.0055 0x1ec0 fdPHost - ok 19:22:59.0084 0x1ec0 [ BC855BB7DFE06F27F78E0EB2A8CCB70D, D16C3DAB99C16B077BA5DA5E9E0646B0B9237B00ABAE867D9F81A2D072D583B1 ] FDResPub C:\WINDOWS\system32\fdrespub.dll 19:22:59.0085 0x1ec0 FDResPub - ok 19:22:59.0103 0x1ec0 [ F1125F20D56F28DDCD1A6F3E81EB4F5F, A6620ECCB15FAA70E4A43ADA4CE82CF97D708B6FA07F3FAED276359E7F92FD0F ] fhsvc C:\WINDOWS\system32\fhsvc.dll 19:22:59.0105 0x1ec0 fhsvc - ok 19:22:59.0130 0x1ec0 [ CDFD81CACE0E11596A3BB61EC4CF6467, 569FA86A215B054131AA9AFEECFEE7FD7143DCFFE275B84196004AEA538B2476 ] FileCrypt C:\WINDOWS\system32\drivers\filecrypt.sys 19:22:59.0131 0x1ec0 FileCrypt - ok 19:22:59.0136 0x1ec0 [ 3F02FEDAE894CBF4BAADDF8C8E1D53A8, DA32ABB1CDA867B8456C46F8581FA7F3A8D8B89D9F6E7422F51941D5FFA15B13 ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys 19:22:59.0137 0x1ec0 FileInfo - ok 19:22:59.0139 0x1ec0 [ 2824933386E30DE5BA089DF539CE19A3, 7B33E514576C68B444AE99CBA1360EBFAE8A46EEE5C01F4EE4CF471A712AB148 ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys 19:22:59.0140 0x1ec0 Filetrace - ok 19:22:59.0158 0x1ec0 [ 6A598249640F8BEDD79EC73917E1664F, A675238EA19E6632CDEB4EEFF7CF509EAAEF76AD8DFD247664E5607555D9CEE1 ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys 19:22:59.0159 0x1ec0 flpydisk - ok 19:22:59.0182 0x1ec0 [ 44B6A6832134DF651E887E941478CA35, FCF4EB726D00F5A17DD66C81CFDA49427281C94CF9CA2008397D591AEA61AE05 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys 19:22:59.0187 0x1ec0 FltMgr - ok 19:22:59.0226 0x1ec0 [ C197284A9D565A38497733AF2BDFA111, C6615AF0D366C2DD6D431B073901EED02D49AA3F252230735DBB52A90BCFA833 ] FontCache C:\WINDOWS\system32\FntCache.dll 19:22:59.0248 0x1ec0 FontCache - ok 19:22:59.0374 0x1ec0 [ 109AACC7FB0170535F71491F673AFD38, 212B6761ABBAC29993DA0A47C3DDE8074EA9E5A8FFA8FF6EAB95AC69D8FDD5A0 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 19:22:59.0376 0x1ec0 FontCache3.0.0.0 - ok 19:22:59.0393 0x1ec0 [ 3F3B9E8CECD5604BC7746EF3A852EB67, 51AF62A9563379266C0C873E82F55427900032DFD7AC3EBDCDF77F8F8DE91A5D ] FsDepends C:\WINDOWS\system32\drivers\FsDepends.sys 19:22:59.0395 0x1ec0 FsDepends - ok 19:22:59.0409 0x1ec0 [ A60583221C7BB7CEC35C63285A297BE1, 3C842FBEAD1FA2BD8D37B2B0E8EDF77F4F50508C56FB25DFA81DE9679090D51D ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 19:22:59.0410 0x1ec0 Fs_Rec - ok 19:22:59.0473 0x1ec0 [ 6807483EF10156362A67CEF0AF2FFDC7, C72E4D62D24324D35E188C038B14D992F0F1213ABBAC34A26584099242D2B7D2 ] Futuremark SystemInfo Service C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe 19:22:59.0481 0x1ec0 Futuremark SystemInfo Service - ok 19:22:59.0496 0x1ec0 [ 58013A50225174EEF1410E37795D7908, F8E557CA4110ABB203192DEAF59D91A5FEF2A5EA394637276DAB7F4D2E7BFA39 ] fvevol C:\WINDOWS\system32\DRIVERS\fvevol.sys 19:22:59.0506 0x1ec0 fvevol - ok 19:22:59.0532 0x1ec0 [ 0DAAE3EFCE00133AB3E383A36C47CDAF, 9145665F4F0575F951803AAFAA1A7DC0FAA35430CAE7D90E902074D60D6F4C62 ] gagp30kx C:\WINDOWS\system32\drivers\gagp30kx.sys 19:22:59.0534 0x1ec0 gagp30kx - ok 19:22:59.0556 0x1ec0 [ 1B61BB65753CFBAF8448DA6E71E1D9F1, CB67917922357DF20BE06DF5C12276C10C7C6A1F672DF36C4CAE0D2A5B09A97F ] GDBehave C:\WINDOWS\system32\drivers\GDBehave.sys 19:22:59.0558 0x1ec0 GDBehave - ok 19:22:59.0602 0x11dc Object required for P2P: [ 7614E6E6B53E8FE6E6B8A6D6D3CC2018 ] Audiosrv 19:22:59.0672 0x1ec0 [ 96A9A12E11544EEF39375314176068CE, 7ED8BA4F2F151A97458BCB754B5BC6E4C346DB6E8E162D50D6E425C8102ED205 ] GDFwSvc C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFwSvcx64.exe 19:22:59.0725 0x1ec0 GDFwSvc - ok 19:22:59.0740 0x1ec0 [ FF5543CDA6B06E3D29A5F312BE5C4919, 91E0BB934EFD01576C94FDA967340563BB92ECE7C5389978FBC9587A9D21B9CF ] GDKBB C:\Windows\system32\drivers\GDKBB64.sys 19:22:59.0742 0x1ec0 GDKBB - ok 19:22:59.0746 0x1ec0 [ 1543775197DD1A27D16C0FA0FF73CAFB, B149282AFA5A60CEC797B643207F2541722C360989148FBC7A06DA0EB501ABED ] GDKBFlt C:\Windows\system32\drivers\GDKBFlt64.sys 19:22:59.0747 0x1ec0 GDKBFlt - ok 19:22:59.0757 0x1ec0 [ 1A407BA6FAB577D7C198D9F10D26B2F6, 6CB266EB6D66F55D33DF2EB9474E6D9932288A03F411C1FEEEF48D8074E669D3 ] GDMnIcpt C:\Windows\system32\drivers\MiniIcpt.sys 19:22:59.0760 0x1ec0 GDMnIcpt - ok 19:22:59.0783 0x1ec0 [ 11CACC87CF3213F59C4D841A656C472B, 426E873E03BE94913E45C313BE791A56B0AB933648B93393C2CEE91F7FDB445D ] GDPkIcpt C:\Windows\system32\drivers\PktIcpt.sys 19:22:59.0785 0x1ec0 GDPkIcpt - ok 19:22:59.0850 0x1ec0 [ E9B7AF2C5C7B9AD739718AA7ED5F1911, 52C1B75B97DBCF343A6A7045E1F42C8BB35FF23CC2B463EA1B858FCD5B85678F ] GDScan C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe 19:22:59.0869 0x1ec0 GDScan - ok 19:22:59.0882 0x1ec0 [ 5C822D4D1AD3A20BED24F770CEC258B0, 574F5746A3C13C4024EE12DD3ECF29C51B32BF8FDFFCA9A414F76269EA99D779 ] gdwfpcd C:\WINDOWS\system32\drivers\gdwfpcd64.sys 19:22:59.0884 0x1ec0 gdwfpcd - ok 19:22:59.0900 0x1ec0 [ F59155B95D01C08F9ED774B626B504A1, EF0FCF35AD9CD5E5D695F0C064244D2B327E7FB10FD7CBB0586253EC75562918 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys 19:22:59.0901 0x1ec0 gencounter - ok 19:22:59.0922 0x1ec0 [ AE24452F55C6F1784CBD7489D0CDDB02, 4E13C51CBF30A8662B1180AC74E968CFC428B6EA7931F09357E7D120063D4823 ] genericusbfn C:\WINDOWS\System32\drivers\genericusbfn.sys 19:22:59.0924 0x1ec0 genericusbfn - ok 19:23:00.0017 0x1ec0 [ D3C40989B164358F5BAA11EB7F605390, 0036F3F8B28F21A0DA0EF6D83965C0A8927C6109985AAA8F94178564FA938C2A ] GfExperienceService C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe 19:23:00.0043 0x1ec0 GfExperienceService - ok 19:23:00.0062 0x1ec0 [ 96F0D3A583A91B634EE2AC2507356EDC, 43D2575F33D28F61C13D2DCF358BFA9DCEAE276C83152DBE7AE2020A66929CD9 ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys 19:23:00.0064 0x1ec0 GPIOClx0101 - ok 19:23:00.0110 0x1ec0 [ E50CE978F571B900D9A7E2F1C5BCC070, EA14873A5F1B700D7CDBE55B9D214DC457262866A90D80B3E8325A8EB7932CE7 ] gpsvc C:\WINDOWS\System32\gpsvc.dll 19:23:00.0150 0x1ec0 gpsvc - ok 19:23:00.0157 0x1ec0 [ BA2455D93BD57989A04FE4094AA6F941, B579FB367C063EA30C034381148410D49D38E183A5A4D51D2334A81DAEE95CEC ] GpuEnergyDrv C:\WINDOWS\system32\drivers\gpuenergydrv.sys 19:23:00.0158 0x1ec0 GpuEnergyDrv - ok 19:23:00.0230 0x1ec0 [ CC708C622ECD93248158682AF088830E, C7FCF70E284F095E2D400BC0E7F807F772F385916C258E5F4F05C8CDACCF8754 ] GRD C:\WINDOWS\system32\drivers\GRD.sys 19:23:00.0234 0x1ec0 GRD - ok 19:23:00.0274 0x1ec0 [ 7814A8ED32D5186BA651008AFFB55080, 1116694AD45DC53B987910DFD16909B69DEF754034E4C535AEE6340229CE5697 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 19:23:00.0278 0x1ec0 gupdate - ok 19:23:00.0286 0x1ec0 [ 7814A8ED32D5186BA651008AFFB55080, 1116694AD45DC53B987910DFD16909B69DEF754034E4C535AEE6340229CE5697 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 19:23:00.0290 0x1ec0 gupdatem - ok 19:23:00.0315 0x1ec0 [ FE85E924C86D6D313D61C28A451EA4DE, 22422CECDAB8EBAED6120E6CFDD57BAFC61EA12B1E3563E8605B9700DFE71EBC ] HdAudAddService C:\WINDOWS\system32\DRIVERS\HdAudio.sys 19:23:00.0326 0x1ec0 HdAudAddService - ok 19:23:00.0347 0x1ec0 [ C277A49F8A8295840DEBC9240B75A282, 8B2BA0E6A8300323765D95ECD843105B0FC4B80B85EE2220E677C4E9A760C9D8 ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys 19:23:00.0350 0x1ec0 HDAudBus - ok 19:23:00.0374 0x1ec0 [ D5A57EF4822A0388352FFF9F5CD53495, 509F365386859157E9078821FAA56D2A3C0BA296CA129E0D42453428A14687A5 ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys 19:23:00.0375 0x1ec0 HidBatt - ok 19:23:00.0401 0x1ec0 [ 39575B53EB80C77FF2A3F1449D00B7F5, 37E66B38BACE00AFEF7093F990A234399D8451A9D2C2C8CBECAB69C664E63EA6 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys 19:23:00.0405 0x1ec0 HidBth - ok 19:23:00.0421 0x1ec0 [ 35C3B602664116E737FF729F9A7156AD, 7A3C5CAD716E819CC53405971F3ACD135BCF023EC2228C1095E2116BCC384E62 ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys 19:23:00.0426 0x1ec0 hidi2c - ok 19:23:00.0434 0x1ec0 [ C4ABE526BBF2A18E8AF70177FBAD9C6E, 4DA06B563A08AC15D949F4599F73F172B3BFCB5D23B34240D1E2114438A11929 ] hidinterrupt C:\WINDOWS\System32\drivers\hidinterrupt.sys 19:23:00.0436 0x1ec0 hidinterrupt - ok 19:23:00.0446 0x1ec0 [ 348416C7D7EB05BC3099FE2F2B27985C, F30E8682E9DD731A1AD7328FB8A48A2BB7D6E52780AE1FDE839D26E84B4FA7B5 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys 19:23:00.0448 0x1ec0 HidIr - ok 19:23:00.0458 0x1ec0 [ 5576DF399CF2D3B63608F7F282151249, 04939E79B8B8035547CE6FFE9001252CA810BAD46D8DB75FF5C13EB10EEB5C57 ] hidserv C:\WINDOWS\system32\hidserv.dll 19:23:00.0461 0x1ec0 hidserv - ok 19:23:00.0468 0x1ec0 [ 01F732724AF6EFE69886DA95A4E51820, E048A480F9396418BDE9659596E7EDA5FF97D3CE029D186048609B47575BEAE1 ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys 19:23:00.0469 0x1ec0 HidUsb - ok 19:23:00.0514 0x1ec0 [ 7433A8D28EE11A661C7A45AF28BA7987, 8A73DB423924E84CD3629BF6C7298CD093D2437B73B3F4520D39330923DDA2D6 ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll 19:23:00.0522 0x1ec0 HomeGroupListener - ok 19:23:00.0578 0x1ec0 [ 3FDBFBE5AE639996EB8D482C16BA7EA9, 7E48304818AABB4C5B0CB7FD32D96D6F90F4180AB0F668A2FE653A7097A40673 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll 19:23:00.0589 0x1ec0 HomeGroupProvider - ok 19:23:00.0620 0x1ec0 [ 82A3266E96EC3961872372EC9A7C131A, A57BD50800AB005C09FC77052EA7B62F1F6FAD11EB429F8F1AF2C5B977853137 ] HookCentre C:\Windows\system32\drivers\HookCentre.sys 19:23:00.0623 0x1ec0 HookCentre - ok 19:23:00.0639 0x1ec0 [ 3844CE7DD23530CAD59D8CABA57CCB05, A44BB60686A0E98FF370D9DED5B32C3F34F0352ACFA3B3052BA4023922B53DB7 ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys 19:23:00.0641 0x1ec0 HpSAMD - ok 19:23:00.0669 0x1ec0 [ CA6EADBB8731CA27BDA4037BF290AC14, 31EC9397D55D4EEC416AD722134E2D6B5D14E46D2150CB94889C4BFDAACBF421 ] HTTP C:\WINDOWS\system32\drivers\HTTP.sys 19:23:00.0683 0x1ec0 HTTP - ok 19:23:00.0702 0x1ec0 [ 8841D927EB1F7FFC8B1805BC0CF190ED, B063E686380EEF582CF736E33751812F0041C593C7F30EE97D13DEDC9B246AB5 ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys 19:23:00.0704 0x1ec0 hwpolicy - ok 19:23:00.0721 0x1ec0 [ 53436C3835E80F4421652A67F44D6313, 8731091945A839713348DF3060A4C96033874E2B3DC7E099BEEC8C65B07F98CF ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys 19:23:00.0723 0x1ec0 hyperkbd - ok 19:23:00.0741 0x1ec0 [ B2DC6C2F313EBB967B556B4E73A75451, B1816A0AE15705F0325F167EA76166779607D6086EC36A4A960E3BA47B4EBC4B ] HyperVideo C:\WINDOWS\system32\DRIVERS\HyperVideo.sys 19:23:00.0742 0x1ec0 HyperVideo - ok 19:23:00.0764 0x1ec0 [ D4CDEE4A62BDFFF6E8558A9552148EA7, 55306786CB45082AE374937EBA256FF9CD640BB2E8C19DC6C704489D4743F5CC ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys 19:23:00.0767 0x1ec0 i8042prt - ok 19:23:00.0795 0x1ec0 [ 16A10CCEDCF5AC4CAAE43DC9FC40392F, F77696AE55B992154A3B35F7660BD73E0AB35A6ECEEC1931C0D35748CFA605C0 ] iaLPSSi_GPIO C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys 19:23:00.0796 0x1ec0 iaLPSSi_GPIO - ok 19:23:00.0813 0x1ec0 [ F1DF87463AC308047B089E9F0456B4C8, DFFF3C63D3124C2B879B888104042406FE326D4E7C8C1881A269BD4287B9CD33 ] iaLPSSi_I2C C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys 19:23:00.0815 0x1ec0 iaLPSSi_I2C - ok 19:23:00.0842 0x1ec0 [ 9FDD4763A115D04F565C38183DE4646F, A8B0653E7C5F5B3CB2A1B642F502269FB1BB1E35DBB1CBABDBDADF92C9815727 ] iaStorAV C:\WINDOWS\system32\drivers\iaStorAV.sys 19:23:00.0852 0x1ec0 iaStorAV - ok 19:23:00.0869 0x1ec0 [ 4E69EE8F8E5DA036535D433C544AF9E2, 2ADE9B97CE1C19FF984D8BB99CF31415872C2D9628864BD78C0E44D21CC94EE3 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys 19:23:00.0875 0x1ec0 iaStorV - ok 19:23:00.0895 0x1ec0 [ 15C59DF20F74A0C2C764B991FED7F4A5, 6E9804775E815F32A4D73C346E627D64A3096525E78FAE3B6E43CFECAE270428 ] ibbus C:\WINDOWS\System32\drivers\ibbus.sys 19:23:00.0901 0x1ec0 ibbus - ok 19:23:00.0922 0x1ec0 [ 88E6A429944544346EC3AE1FD7D24BCC, B6B8D51E5491C91D2FCDC77C1D82A5168B0C860252208E1B4612D8D5C19401AD ] icssvc C:\WINDOWS\System32\tetheringservice.dll 19:23:00.0925 0x1ec0 icssvc - ok 19:23:00.0928 0x1ec0 IEEtwCollectorService - ok 19:23:01.0036 0x1ec0 [ CEFA6BDB4789F3DA003ACBDCC64F5877, 0FE78AEFA9A75B4A99AD6B73AC3252E4C6DFA9D306FEC02D26C1FD574108BFBA ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys 19:23:01.0149 0x1ec0 igfx - ok 19:23:01.0184 0x1ec0 [ 75909533EECD0CD9D5974B59474AA6C0, F81D0F949F1F01D09C91735C79288395B82C27B8FB78804752E5A678D7EF3860 ] igfxCUIService1.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe 19:23:01.0189 0x1ec0 igfxCUIService1.0.0.0 - ok 19:23:01.0217 0x1ec0 [ 6F9C31435DD3E3D3BC247212EA144EBF, 05C4A0BD4BABD27783CEFEE6108C1A05911A212189233F09AF1A56BDC60F60F8 ] IKEEXT C:\WINDOWS\System32\ikeext.dll 19:23:01.0232 0x1ec0 IKEEXT - ok 19:23:01.0297 0x1ec0 [ B1F193AB8FB72E9FC34B3A39314ED872, 408E98D9C8ABB928090DD9E5D1BB227EFBC997BF168437BAEF0461EB0D1DAE3D ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys 19:23:01.0301 0x1ec0 intaud_WaveExtensible - ok 19:23:01.0347 0x1ec0 [ 87871AB7AC797F922A6F3D4C874CED96, 2BCD89911E42827CD294DD7D1486A7845D1F98019E51958E0F488384401B2944 ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys 19:23:01.0360 0x1ec0 IntcDAud - ok 19:23:01.0428 0x1ec0 [ B353F1834FCD36D77BE3F74992C147D4, BFBC42B500FC7D6D2B523F988DD54156D2B6132CBE366EB591BF45556959A8E9 ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe 19:23:01.0440 0x1ec0 Intel(R) Capability Licensing Service Interface - ok 19:23:01.0509 0x1ec0 [ 125BED41A1AFDA9CAB2B6177553D5758, 00A6267AACC467FA09B49ECC6076F4C666BE98931C97D821E3225D68A3FF1BF1 ] Intel(R) ME Service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe 19:23:01.0514 0x1ec0 Intel(R) ME Service - ok 19:23:01.0519 0x1ec0 [ 498759139F71142888CF7EFA1ABE18C8, 9CD0CD748B143F947B4DEDE39344A8C284717CC8AC97E25827EB73CF10831419 ] intelide C:\WINDOWS\system32\drivers\intelide.sys 19:23:01.0521 0x1ec0 intelide - ok 19:23:01.0537 0x1ec0 [ DC270DDCDDC2EF65D484A65CC5166222, A88BEAD819ABEFE28B6F9A10586ADCB0EE2A5ED9273F176E9313750609C7892F ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys 19:23:01.0540 0x1ec0 intelpep - ok 19:23:01.0560 0x1ec0 [ B4D9C777762B1F7356958B9C0AA93BEB, F11B07FE939A107AB4EED4857854DF269C2D86A80C8507C8B1E95F7805975EDB ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys 19:23:01.0565 0x1ec0 intelppm - ok 19:23:01.0579 0x1ec0 [ 22BD83268B80A8C89AAC0BDF46E4EB5D, E7DC0C2E4104B51EA545BA8D0CFF11FD6A15BFD8EE16E546E8FC220853402CB3 ] IoQos C:\WINDOWS\system32\drivers\ioqos.sys 19:23:01.0582 0x1ec0 IoQos - ok 19:23:01.0595 0x1ec0 [ A49E47A6E1429123F46A7CA9C05AEFC1, FFD68CA46DFAA4954FD76145808E2C74BDC34FFD6979BB3FB6A3EE4DC33CDC78 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 19:23:01.0598 0x1ec0 IpFilterDriver - ok 19:23:01.0657 0x1ec0 [ 8FBA61B7CB44F136226BE3B346FC6D19, 2190A523AC948B18C2C7B6DC96ABB654DAB471AD5E5E13F79899416E91777AED ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll 19:23:01.0677 0x1ec0 iphlpsvc - ok 19:23:01.0683 0x1ec0 [ E0C276985AF968CE295B8E09C121321F, 07B54165E80D4254C29A6CF00CC634E70F190EF0EB8EEF73EC14F38B841087A5 ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys 19:23:01.0685 0x1ec0 IPMIDRV - ok 19:23:01.0695 0x1ec0 [ 5D3744E6FDEC1A6FB3FA9B1DD4AF0694, 209BE9FC25C8BF8CE058B7E993B6A902B881380DADC69F5208733077DA7F4382 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys 19:23:01.0698 0x1ec0 IPNAT - ok 19:23:01.0712 0x1ec0 [ B18202D72C0EF4B53CEC6F59E3E1B955, 6DA244E6485372C16CF0B38838DC90B48079A85F5D22B0F2F197C8DA37F0A293 ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys 19:23:01.0714 0x1ec0 IRENUM - ok 19:23:01.0727 0x1ec0 [ CD04CBCCCB4C0E4BB06B98E0F45C888A, 106B3E823C188BD14328F2BEA28559D2F637C270064B2FD214522FAC4E616F4C ] isapnp C:\WINDOWS\system32\drivers\isapnp.sys 19:23:01.0729 0x1ec0 isapnp - ok 19:23:01.0743 0x1ec0 [ 5D90E942C94B20E0F321015C0ABF3EEA, 4110551B172D4A5524DD857D7CB65FAF2594310BE7883D5641BC0DF5EF49C82C ] iScsiPrt C:\WINDOWS\System32\drivers\msiscsi.sys 19:23:01.0748 0x1ec0 iScsiPrt - ok 19:23:01.0775 0x1ec0 [ 846354992EBB373F452EB9182D501B08, 453459133DCA875E93CAAE9852E652F3794F8C31CE53526C47A181FDBABE6849 ] iusb3hcs C:\WINDOWS\system32\drivers\iusb3hcs.sys 19:23:01.0776 0x1ec0 iusb3hcs - ok 19:23:01.0784 0x1ec0 [ DD1F43B86AD84E53203F92FD3EF3AEB6, 9DE2BA80B315E56DF2E74EAA65F4ECB8324DFC19E30EB56EDDF08340AB100E87 ] iwdbus C:\WINDOWS\System32\drivers\iwdbus.sys 19:23:01.0786 0x1ec0 iwdbus - ok 19:23:01.0808 0x1ec0 [ 5B14FDE79871F83A5E0DCDC01F78BECF, B3103D4671F7BD4843C62D6080894E068F7E794CB02D7A84AEFB5AC10EA23BDE ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe 19:23:01.0811 0x1ec0 jhi_service - ok 19:23:01.0878 0x1ec0 [ 8BF9F59545716D985F7874C119250671, F97D3CD70A9A7B54B34F42A4D6A281A0961DADAF35910EB22F727350162B7817 ] k57nd60a C:\WINDOWS\System32\drivers\k57nd60a.sys 19:23:01.0890 0x1ec0 k57nd60a - ok 19:23:01.0897 0x1ec0 [ 4192DFE6CA143C0AD8AF42C51A82BECA, 31FB3A261D0D5241CC87EF7DFF8BFC1A1EACE8CEC42138918EC5958DAEE100CD ] kbdclass C:\WINDOWS\System32\drivers\kbdclass.sys 19:23:01.0899 0x1ec0 kbdclass - ok 19:23:01.0913 0x1ec0 [ B63C0DB341DCB46CF7AA259333A737DD, F1B43BA68707F3F99CD31AB2035F5E86CD967AE4E5393928C69861785E960872 ] kbdhid C:\WINDOWS\System32\drivers\kbdhid.sys 19:23:01.0914 0x1ec0 kbdhid - ok 19:23:01.0923 0x1ec0 [ 53C79A7FABDAAFD11EAB31963FB2CED7, 357418645DDCEFA5546AE78EDCAE86D50928710CA7A3F65F01CF721AADA36623 ] kdnic C:\WINDOWS\System32\drivers\kdnic.sys 19:23:01.0924 0x1ec0 kdnic - ok 19:23:01.0936 0x1ec0 [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] KeyIso C:\WINDOWS\system32\lsass.exe 19:23:01.0938 0x1ec0 KeyIso - ok 19:23:01.0943 0x1ec0 [ 1E99B26BDB9B9C9BC775ED4543558560, 890870A6737B4910735D1B23F714AA73FCCD1C131D135FACBA6909F06D31B3FF ] KSecDD C:\WINDOWS\system32\Drivers\ksecdd.sys 19:23:01.0946 0x1ec0 KSecDD - ok 19:23:01.0955 0x1ec0 [ 6198A79011C67497B324798B3D4272CE, C587F7D86837550D07918F6AACF26BF65EBAF7FF57475DC9196B4D011E83AE47 ] KSecPkg C:\WINDOWS\system32\Drivers\ksecpkg.sys 19:23:01.0959 0x1ec0 KSecPkg - ok 19:23:01.0964 0x1ec0 [ 503597D9B72DBD9998F722F12A51ACFC, 9B3585282191163AA70243BAD921ED8725A98454E0D3879E0F671E0E4F56AB4F ] ksthunk C:\WINDOWS\system32\drivers\ksthunk.sys 19:23:01.0965 0x1ec0 ksthunk - ok 19:23:02.0020 0x1ec0 [ ED5AE20C27F27F293C6C61AEC9881054, 4D5BE394D129BD559B0A9D237F3F59CB3D24C15ABDD97AE2E64931D6B9D14FF1 ] KtmRm C:\WINDOWS\system32\msdtckrm.dll 19:23:02.0028 0x1ec0 KtmRm - ok 19:23:02.0056 0x1ec0 [ C529DA0AD5A21878E318801B024AF8E7, A14E8ADCA33C37B1D256CB4926A19F56D2D19B94EDF314A4ED34A8B5AB62CA5A ] LanmanServer C:\WINDOWS\system32\srvsvc.dll 19:23:02.0062 0x1ec0 LanmanServer - ok 19:23:02.0085 0x1ec0 [ D6D9F4CAFD3F1A7E30AD02E508552CD2, F0D225E5951CFE1D8349F634CC91BDD5B3F9DCF6233CCB965E99BFEAFE642265 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll 19:23:02.0090 0x1ec0 LanmanWorkstation - ok 19:23:02.0095 0x11dc Object send P2P result: true 19:23:02.0140 0x1ec0 [ 24881F16D2829764681F5FAE7B86D7D3, 290348CFAF3165847E4B53965D22E9D417EE20FFD23293B5C1855C57E6328599 ] lfsvc C:\WINDOWS\System32\lfsvc.dll 19:23:02.0142 0x1ec0 lfsvc - ok 19:23:02.0153 0x1ec0 [ 6ED675774BDC3735AB6DA12D29F825CF, 4317C7CF491F4E806975E7A973CFF11CFEE9E94730DDABCC67C3D693691DDDE5 ] LicenseManager C:\WINDOWS\system32\LicenseManagerSvc.dll 19:23:02.0155 0x1ec0 LicenseManager - ok 19:23:02.0174 0x1ec0 [ DB789F57CE94C827FBFF709CA5ABD29E, 4CA4DD079A63649C36F76A31C4081F11F5CF6574AC573B63EF930DB19B1D1C95 ] lltdio C:\WINDOWS\system32\drivers\lltdio.sys 19:23:02.0176 0x1ec0 lltdio - ok 19:23:02.0207 0x1ec0 [ FECBC6C4981772E5D0F517B34A5496EE, 15DB097BFB221B91E580E5CD1DD6B34A9A2C78A1A6FCE4162A855BB4AFE673E9 ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll 19:23:02.0212 0x1ec0 lltdsvc - ok 19:23:02.0224 0x1ec0 [ 24C87BDC66AB192FEB273BEE5FD5AA38, BFAAE1F2450DEBD1A14877C046C6EBA91014DB0B5D0FB95EC14CB714B773B3C0 ] lmhosts C:\WINDOWS\System32\lmhsvc.dll 19:23:02.0226 0x1ec0 lmhosts - ok 19:23:02.0237 0x1ec0 [ 3974B7CE015A6EEF30DA4ADD5F1203D0, ED776F1C1B1834550F3D45591EB1F0829BBA07F9F7CB73F7FBB0AFDEF8F4411B ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 19:23:02.0242 0x1ec0 LMS - ok 19:23:02.0262 0x1ec0 [ 3BB39166E446D456C277C17DFEA3DAC6, 1A08E1D017BBCE91E508D876835FA7AD2DA0859A8CFE8F8F31B4F12B48E2573D ] LSI_SAS C:\WINDOWS\system32\drivers\lsi_sas.sys 19:23:02.0264 0x1ec0 LSI_SAS - ok 19:23:02.0279 0x1ec0 [ 25CF625E46307A5D6674C8DFA1A289AA, 1D00EB70B6B0157013A7C15EF194F51B8596612066EF31B337D8134D6BD0BBBE ] LSI_SAS2i C:\WINDOWS\system32\drivers\lsi_sas2i.sys 19:23:02.0281 0x1ec0 LSI_SAS2i - ok 19:23:02.0290 0x1ec0 [ 722C52B12EA4C198D56994934C9DDAB6, 5F4AB818251C770821BAF41C19B1C483A31CCC28EB96F2084D4092E33EAF906B ] LSI_SAS3i C:\WINDOWS\system32\drivers\lsi_sas3i.sys 19:23:02.0292 0x1ec0 LSI_SAS3i - ok 19:23:02.0304 0x1ec0 [ 3371FF1D5D745C3306C6A2C4E99C25A9, DD6F0099001501BAEDDF8411FBCD930BD6472662D209199249203CB2FDAA23FB ] LSI_SSS C:\WINDOWS\system32\drivers\lsi_sss.sys 19:23:02.0306 0x1ec0 LSI_SSS - ok 19:23:02.0339 0x1ec0 [ E2EEF074F5260378F9AAFBCD592319A3, DC56674A08FA03FA7AF7DD8B3CC55D8324D1CB51546092A990A935FF9AB48A3C ] LSM C:\WINDOWS\System32\lsm.dll 19:23:02.0350 0x1ec0 LSM - ok 19:23:02.0366 0x1ec0 [ C692B9C0352315417CF49FFA664957A3, C2D4F9A936B809889F7C51FE48214A1923175913A6C5D0B72D3BA469214B5174 ] luafv C:\WINDOWS\system32\drivers\luafv.sys 19:23:02.0368 0x1ec0 luafv - ok 19:23:02.0395 0x1ec0 [ 6A4C75FD28F60062FEA3DF3B15D956C0, 4FC58F3320D33BDACCF759A50C623A3E58E4320749E6691B397DF0C8EAAA8A6F ] MapsBroker C:\WINDOWS\System32\moshost.dll 19:23:02.0398 0x1ec0 MapsBroker - ok 19:23:02.0411 0x1ec0 [ B2ED9A7A5587A128A0EFD0DBE7662E95, 63070AAFD44E3CD2A4B262DF27222B103455A4D8C2E45914502BFA03D84D32C9 ] megasas C:\WINDOWS\system32\drivers\megasas.sys 19:23:02.0413 0x1ec0 megasas - ok 19:23:02.0437 0x1ec0 [ 083F71488E6780A67290273180256EA5, 5F43CE66F5A48850BABB70F4D219FDD002F9BC2B2F0E58E66FE2C492AA335E50 ] megasr C:\WINDOWS\system32\drivers\megasr.sys 19:23:02.0446 0x1ec0 megasr - ok 19:23:02.0450 0x1ec0 [ 772A1DEEDFDBC244183B5C805D1B7D85, 7D821B8DF1F174E5414FFDEAB5207DB687740E9842F7203600AEBA086945AFC9 ] MEIx64 C:\WINDOWS\System32\drivers\HECIx64.sys 19:23:02.0451 0x1ec0 MEIx64 - ok 19:23:02.0478 0x1ec0 [ 5907A10D46747A2B6DBFD6A198254DC2, 6C283E9DC75C7ABFD270D6FABBF4F54628A1786E7CE2F603BF664CBB9E4FE583 ] mlx4_bus C:\WINDOWS\System32\drivers\mlx4_bus.sys 19:23:02.0489 0x1ec0 mlx4_bus - ok 19:23:02.0504 0x1ec0 [ 91ED6F0EDF4158D63C52194F17D4F42E, ACF543978E253650C167C6C370699AEA7340EBCECF7CAB904CBDD334D1BD6928 ] MMCSS C:\WINDOWS\system32\drivers\mmcss.sys 19:23:02.0505 0x1ec0 MMCSS - ok 19:23:02.0516 0x1ec0 [ 2C4CC9F6ADBED5A6D131FDB97A78FF68, 04DC76E3F0959C0A9B00DF2133B075194FB7DCBD76832B9D25B0E37223D300DC ] Modem C:\WINDOWS\system32\drivers\modem.sys 19:23:02.0518 0x1ec0 Modem - ok 19:23:02.0520 0x1ec0 [ D8DB13529C8AD6FBAF8E2F382024374F, 13025035C479E2EF76EDCB90D83BE65B4ADD9F7000AD31FEAD628D5DDFE69158 ] monitor C:\WINDOWS\System32\drivers\monitor.sys 19:23:02.0522 0x1ec0 monitor - ok 19:23:02.0532 0x1ec0 [ 2DAAF1EE1C30F2FCF59851A64ADA0422, 08CD801E63E2862DE058CD732C3DB3D87B1A2898732365440E3F8919932E96FC ] mouclass C:\WINDOWS\System32\drivers\mouclass.sys 19:23:02.0534 0x1ec0 mouclass - ok 19:23:02.0540 0x1ec0 [ D30FE074503283829ED194BCAE6239C3, A3A127381ECC798417D01F6B8A1894EED7D71989047BC4D1D74D0E7C8394AD65 ] mouhid C:\WINDOWS\System32\drivers\mouhid.sys 19:23:02.0541 0x1ec0 mouhid - ok 19:23:02.0545 0x1ec0 [ D5EC9413527B286CFEEB0294C53ABB95, B094C611F5A7E33D2F8667B2A4D6260E1D57BD135867F984EE5B674C7EE72B95 ] mountmgr C:\WINDOWS\system32\drivers\mountmgr.sys 19:23:02.0547 0x1ec0 mountmgr - ok 19:23:02.0574 0x1ec0 [ C34AB4280614658903BE848CE79ACDB5, 9A943D9B3CF941DAE4EA4E2771B5EC5DA37AB16AD43095EF092B4259D62FF810 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 19:23:02.0577 0x1ec0 MozillaMaintenance - ok 19:23:02.0580 0x1ec0 [ 989A1BBD9C49B107B4A47D06E6827A69, 62D90B22AE13AC84324DFD5FEBA595813AD07469B7FEC41380CE223D93020CCA ] mpsdrv C:\WINDOWS\system32\drivers\mpsdrv.sys 19:23:02.0582 0x1ec0 mpsdrv - ok 19:23:02.0619 0x1ec0 [ A0DBB9386BEA8DA1A159C2A2E07081A3, 9D3F26005A76A72F9512F040D45C16124D17F8C8DA45C51FFAF74F066357D0A4 ] MpsSvc C:\WINDOWS\system32\mpssvc.dll 19:23:02.0631 0x1ec0 MpsSvc - ok 19:23:02.0642 0x1ec0 [ 5B37FDC07159FE9F5F52399F7D78F60B, A0C20EB9A7918395A13A5E21917887DDC9897C475D33091B518354163CAE108A ] MQAC C:\WINDOWS\system32\drivers\mqac.sys 19:23:02.0645 0x1ec0 MQAC - ok 19:23:02.0662 0x1ec0 [ C1E74DD1D84861D8F12FF8BC0BA11975, 5912A0455C840F5C8AD6383823C9C7DE6FF8B5CAF1B72EA181864999891EAF30 ] MRxDAV C:\WINDOWS\system32\drivers\mrxdav.sys 19:23:02.0664 0x1ec0 MRxDAV - ok 19:23:02.0678 0x1ec0 [ 1DF2C5FD2710A13B07E663A12F0E0EEA, 8EBCA9269F52A5CF602F5DE2B0C2AB2BFD82F415465DBB74C73D43F321D9FD46 ] mrxsmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 19:23:02.0685 0x1ec0 mrxsmb - ok 19:23:02.0691 0x1ec0 [ 185932B1149BD707F8A13174CDAB365B, BC26CB10DD6E81A94477564444E91F76D47E685E897BD77B9C1393F0D31AB718 ] mrxsmb10 C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys 19:23:02.0696 0x1ec0 mrxsmb10 - ok 19:23:02.0701 0x1ec0 [ 99E24D4DBACBC569833B9A67710D65E7, 93BC765E7B6E19E83AFF783DE8080A80A1D69A406B496F1E36C47AE6E86AFB76 ] mrxsmb20 C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys 19:23:02.0705 0x1ec0 mrxsmb20 - ok 19:23:02.0710 0x1ec0 [ 6F8BE4FB6262012E61BBADB5444628DC, E87489207AA48106C08E4BADDD8D66D14BC9DD6AD2A4CDD880BA655932CDDE60 ] MsBridge C:\WINDOWS\system32\drivers\bridge.sys 19:23:02.0712 0x1ec0 MsBridge - ok 19:23:02.0739 0x1ec0 [ 283BDF3602F442336DAF242BDD07FB98, 185F046B6AA24FFD1567F00AA70357C82002FF627E329CEF9B926645A6DDB172 ] MSDTC C:\WINDOWS\System32\msdtc.exe 19:23:02.0743 0x1ec0 MSDTC - ok 19:23:02.0749 0x1ec0 [ 7C55F1751CAC199680D4489D1EE46544, 967EC8137D321F6139C3382D19A338FD97A3023EB654747AC57C2008BE4AF677 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 19:23:02.0749 0x1ec0 Msfs - ok 19:23:02.0753 0x1ec0 [ 988588C16A53C2581488C15FF18934BF, F021FD31163CB5C7012CF96EF642C5E551708C835039075268F4CBED002D441D ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys 19:23:02.0754 0x1ec0 msgpiowin32 - ok 19:23:02.0767 0x1ec0 [ 09622DBC24D0178F15DB8461BB6970DF, C0B3F9B2219AAF87E417EE9FF54C64B8AD9944E101EA79B5DC81D99E8C2ECF30 ] mshidkmdf C:\WINDOWS\System32\drivers\mshidkmdf.sys 19:23:02.0768 0x1ec0 mshidkmdf - ok 19:23:02.0775 0x1ec0 [ 34BB07495C0159BE4189841E16F3BC2F, 264B5735D9A68C85BEDE363D4C0AE1FCC381B39EA884B4BAEE185EB8A873184A ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys 19:23:02.0776 0x1ec0 mshidumdf - ok 19:23:02.0794 0x1ec0 [ 7BF3F0DA362C053918F5F2EC43CE39E2, AA773FA3F83C0C572160D3D0286A697DC628FF4F3655EF21D01C6D1B7BE5DF1C ] msisadrv C:\WINDOWS\system32\drivers\msisadrv.sys 19:23:02.0795 0x1ec0 msisadrv - ok 19:23:02.0821 0x1ec0 [ 669DA2006C0B9D882D2014617E1E88F5, 090F558818806CAEF6C81D369F8BFFE4A8240295EF37CAA7102A18F4CD20D868 ] MSiSCSI C:\WINDOWS\system32\iscsiexe.dll 19:23:02.0824 0x1ec0 MSiSCSI - ok 19:23:02.0827 0x1ec0 msiserver - ok 19:23:02.0839 0x1ec0 [ B2D0FD21FE67D6434769CC6F7A7883CA, B2368BD72952C6EE6DAF1AA006DF575A3019E4721BEFB108D3DF1B9E07B2BC5D ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys 19:23:02.0840 0x1ec0 MSKSSRV - ok 19:23:02.0851 0x1ec0 [ FB3801F176376286A3F8F20FFB8CDC53, EEF89081665B9BBA93AE9F5912C40C1698E8BA8DBBCCC3BBE0BAB5A86B7E05D4 ] MsLldp C:\WINDOWS\system32\drivers\mslldp.sys 19:23:02.0853 0x1ec0 MsLldp - ok 19:23:02.0881 0x1ec0 [ 85EBF0A28B8B132B67C84C6CE5EBAC29, D0012CF4822A3D16F7BF61C94C5650DC1ED310A0DD1A3333465D28C73D40ECDB ] MSMQ C:\WINDOWS\system32\mqsvc.exe 19:23:02.0883 0x1ec0 MSMQ - ok 19:23:02.0903 0x1ec0 [ 8CBDF0E7A6CD824352F37A682A33DF7E, 4567FF4C73648FF26EA68EAE2B524B767099789086C158875C97768C77B81359 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys 19:23:02.0904 0x1ec0 MSPCLOCK - ok 19:23:02.0913 0x1ec0 [ 33E5B6261D69ACD4948A5C64B9D8F29F, 1D32340640312372E52E59AFB5DB872E6F9DFE3AC16B56F9D928AE230DA02B8A ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys ndfltr C:\WINDOWS\System32\drivers\ndfltr.sys 19:23:03.0135 0x1ec0 ndfltr - ok 19:23:03.0195 0x1ec0 [ 616F40B897DA651221F86A1741E9609B, 22D66029726313D92FC8E074BCC51C1E1560CB5FE36DCB735E7E063EA53E299A ] NDIS C:\WINDOWS\system32\drivers\ndis.sys 19:23:03.0223 0x1ec0 NDIS - ok 19:23:03.0239 0x1ec0 [ A0719D1EBA971DFC5DF5F7CC010385F8, A982487D3A74E66F3C29AAA5B46CE9A0969F07F267DDEFE58C58573573AB0024 ] NdisCap C:\WINDOWS\system32\drivers\ndiscap.sys 19:23:03.0241 0x1ec0 NdisCap - ok 19:23:03.0249 0x1ec0 [ 0C557932CCCC65AEB37326DD36504527, C0AF3066DEE4BCC32DB30CCC16B7A91442A8383BB36C7C4E3CC0A5EFE0FAAA9B ] NdisImPlatform C:\WINDOWS\system32\drivers\NdisImPlatform.sys 19:23:03.0252 0x1ec0 NdisImPlatform - ok 19:23:03.0265 0x1ec0 [ 56F9345D1945826135FBAB7589592B1F, 6BC2A5900076B917823C7392C582A2648D0C8000F2F65D309D5B48E36D4FB4D6 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 19:23:03.0266 0x1ec0 NdisTapi - ok 19:23:03.0270 0x1ec0 [ AADFC340939D99E5D756E713E1D452EB, EFEFDBB2188DE82C2C5E67929861B269FD4C127D34D1DE6D0596ABC33E2C2B51 ] Ndisuio C:\WINDOWS\system32\drivers\ndisuio.sys 19:23:03.0271 0x1ec0 Ndisuio - ok 19:23:03.0283 0x1ec0 [ 312DFD787D99D3BF1427B0388BC04F71, C082CA1F332AD57FF2100748518D3D7B3D0F1B042F69BD7401C44B77AFE97462 ] NdisVirtualBus C:\WINDOWS\System32\drivers\NdisVirtualBus.sys 19:23:03.0284 0x1ec0 NdisVirtualBus - ok 19:23:03.0295 0x1ec0 [ 2103F43E0A1ECFB14B7E1B889F5F24D7, 6A86E854C89E132DBC9183DE2B9464DC592E7492BE267BA02FE4DAFE6FA87528 ] NdisWan C:\WINDOWS\System32\drivers\ndiswan.sys 19:23:03.0299 0x1ec0 NdisWan - ok 19:23:03.0304 0x1ec0 [ 2103F43E0A1ECFB14B7E1B889F5F24D7, 6A86E854C89E132DBC9183DE2B9464DC592E7492BE267BA02FE4DAFE6FA87528 ] ndiswanlegacy C:\WINDOWS\system32\DRIVERS\ndiswan.sys 19:23:03.0306 0x1ec0 ndiswanlegacy - ok 19:23:03.0320 0x1ec0 [ 6E98F16983C4AE8703FF9F90AB4B31DD, BB8BD5DB4B5FB31F3A257747C27CBEFA4B7837EC5C0CF3D4F408E626E4003F4C ] ndproxy C:\WINDOWS\system32\DRIVERS\NDProxy.sys 19:23:03.0322 0x1ec0 ndproxy - ok 19:23:03.0327 0x1ec0 [ F1B7CC77F412C8D45B2DDCF76EDA4F9D, 25F2AA76E675D9BCC0B1FD47AFEC6DF2D0B47E7B1C8AF6FB27C1ED2FB902961A ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys 19:23:03.0328 0x1ec0 Ndu - ok 19:23:03.0344 0x1ec0 [ 824FDC990A3F79069BE468A132EB6888, D09F7A9EC04E37DA504CE54EEC25C312B407B6A8B214CBB074BEB50DE420F52A ] NetBIOS C:\WINDOWS\system32\drivers\netbios.sys 19:23:03.0347 0x1ec0 NetBIOS - ok 19:23:03.0355 0x1ec0 [ F0D791348AD254360CC3C3E501CCB745, E4CAB4D3C2CD3169731283B00DEBFE26438BB66A3F0D78BDB68E876A14FC7070 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 19:23:03.0360 0x1ec0 NetBT - ok 19:23:03.0378 0x1ec0 [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] Netlogon C:\WINDOWS\system32\lsass.exe 19:23:03.0380 0x1ec0 Netlogon - ok 19:23:03.0423 0x1ec0 [ 7C8A7380CBE45DFD3DF118D8601499A7, C137280B7696F8CF4258BDC8B241C66BB3AA5708C5410D85255E46C7E8284826 ] Netman C:\WINDOWS\System32\netman.dll 19:23:03.0427 0x1ec0 Netman - ok 19:23:03.0448 0x1ec0 [ FBF2ACE9B10DDE0B4108930D78370E86, 2A4910F071747B786EA49A638B3AAB698DCD0AD7FE702078BA83F85C533A227E ] NetMsmqActivator C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 19:23:03.0451 0x1ec0 NetMsmqActivator - ok 19:23:03.0454 0x1ec0 [ FBF2ACE9B10DDE0B4108930D78370E86, 2A4910F071747B786EA49A638B3AAB698DCD0AD7FE702078BA83F85C533A227E ] NetPipeActivator C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 19:23:03.0456 0x1ec0 NetPipeActivator - ok 19:23:03.0480 0x1ec0 [ BBE9D72EFC7BD66B28309C3607683DBA, FC372EFBC650CE0BDB117858D840A1FB361947B1C67D1DD16BABA95D0286856A ] netprofm C:\WINDOWS\System32\netprofmsvc.dll 19:23:03.0489 0x1ec0 netprofm - ok 19:23:03.0501 0x1ec0 [ 5D046D71B18BEFB2E4D164C3DEEDD672, 536834D020889973854830919B23DF22CC1B27236AFAEDEBDF42D432CE48FCDE ] NetSetupSvc C:\WINDOWS\System32\NetSetupSvc.dll 19:23:03.0504 0x1ec0 NetSetupSvc - ok 19:23:03.0509 0x1ec0 [ FBF2ACE9B10DDE0B4108930D78370E86, 2A4910F071747B786EA49A638B3AAB698DCD0AD7FE702078BA83F85C533A227E ] NetTcpActivator C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 19:23:03.0511 0x1ec0 NetTcpActivator - ok 19:23:03.0515 0x1ec0 [ FBF2ACE9B10DDE0B4108930D78370E86, 2A4910F071747B786EA49A638B3AAB698DCD0AD7FE702078BA83F85C533A227E ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 19:23:03.0516 0x1ec0 NetTcpPortSharing - ok 19:23:03.0531 0x1ec0 [ 46E862DA2CF8F351375EF537276B69B5, AC0FE0977E56380849DCE668AC0F5AF183AAB115ED84ADD964E390CC0BEDF6D3 ] netvsc C:\WINDOWS\System32\drivers\netvsc.sys 19:23:03.0534 0x1ec0 netvsc - ok 19:23:03.0559 0x1ec0 [ 88CE4AC85F36B6347C1D820FA373B998, E10B5DF8883928A2062FC6180DE4CF0DE33C68622C2E3E4E1AFC56A0682F8E75 ] NgcCtnrSvc C:\WINDOWS\System32\NgcCtnrSvc.dll 19:23:03.0563 0x1ec0 NgcCtnrSvc - ok 19:23:03.0567 0x1ec0 [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] NgcSvc C:\WINDOWS\system32\lsass.exe 19:23:03.0568 0x1ec0 NgcSvc - ok 19:23:03.0590 0x1ec0 [ EA1C2DAB8A63712B94897A58557B086C, 98DD7E5C84F3CDF2DAA89484892D6B439F5D14297B5243436925BEEAA0C02EE1 ] NlaSvc C:\WINDOWS\System32\nlasvc.dll 19:23:03.0597 0x1ec0 NlaSvc - ok 19:23:03.0610 0x1ec0 [ 41557BE174E9EC6AC703A8A4ADBC6650, 8CF6DF3FDC3C7C44B32851538A67BF86A54AB6444A424D7A20B7A9A94B4158D8 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 19:23:03.0611 0x1ec0 Npfs - ok 19:23:03.0618 0x1ec0 [ AC3F70FCFBCE97AA2F12BA43EE13B86E, D0AC50FB022C0F3031531CEE210D47FC3244C6FB55FAAD4AAB04081F0A21DAE4 ] npsvctrig C:\WINDOWS\System32\drivers\npsvctrig.sys 19:23:03.0620 0x1ec0 npsvctrig - ok 19:23:03.0639 0x1ec0 [ 0AF4872D3D6FD3A030E836DAC2B3EF2D, 03EE7B6FAFC0BB5C26793BC5FF8BD1019AC96B3104688009C1E062C3F4F34D6D ] nsi C:\WINDOWS\system32\nsisvc.dll 19:23:03.0641 0x1ec0 nsi - ok 19:23:03.0654 0x1ec0 [ 66A98C407085B8920DF1E6D722F1ADB8, 3FE307E4A9E41B08E0453507E50D6D0C67FA6F4245A863D90181463C749C83B5 ] nsiproxy C:\WINDOWS\system32\drivers\nsiproxy.sys 19:23:03.0656 0x1ec0 nsiproxy - ok 19:23:03.0703 0x1ec0 [ 466EC5659C02ED53DBD47DC1BC2B8086, 1F35DE75386F7D029C01D67B09D5E5157141C6892858885C11972CE73D6078AC ] NTFS C:\WINDOWS\system32\drivers\NTFS.sys 19:23:03.0727 0x1ec0 NTFS - ok 19:23:03.0745 0x1ec0 [ 383E546EF4982262A0EF6CC2B6E9D525, 3C6C90B62E8EB094E6928C388E5081A3F73DF87B0F34F716B72EA7B6EF71FBB7 ] Null C:\WINDOWS\system32\drivers\Null.sys 19:23:03.0747 0x1ec0 Null - ok 19:23:03.0771 0x1ec0 [ C1CBFEA565CB9BF8AE63657EE10DCE73, E908449BFB679D950764A2BA6A2B9875327605E399626F854BA8F968BDC14107 ] NVHDA C:\WINDOWS\system32\drivers\nvhda64v.sys 19:23:03.0775 0x1ec0 NVHDA - ok 19:23:04.0064 0x1ec0 [ 1BAA8D6913574F87F5983294A076631D, 9B6D4E9E8DECC6A2D788ED1CF629A0713708BB3788B4AC43902B8B5E180166C8 ] nvlddmkm C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys 19:23:04.0312 0x1ec0 nvlddmkm - ok 19:23:04.0373 0x1ec0 [ 930AE35B57C33F361AF045D220229063, B67776D3392E879CF6006AC86D72DEA826EF4607A4853116B837F2F95BEBF270 ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe 19:23:04.0415 0x1ec0 NvNetworkService - ok 19:23:04.0436 0x1ec0 [ 466F875F1D4C6ABB46AF28007009237C, 26F5A5579737A7CF2267F79DDE5A551149C682D5FD24663B53FCEC5AA6B448CE ] nvraid C:\WINDOWS\system32\drivers\nvraid.sys 19:23:04.0439 0x1ec0 nvraid - ok 19:23:04.0456 0x1ec0 [ 76F19EAE7A52CBAF7B8EC428BE6E0DA0, CF1E55D92FA32744A20AB75D466A3E05E6FACF4694F9265C41F5C27C1E7243DC ] nvstor C:\WINDOWS\system32\drivers\nvstor.sys 19:23:04.0459 0x1ec0 nvstor - ok 19:23:04.0485 0x1ec0 [ EE830ED41C660D6F3F8112B48869943B, 70B3B56F4B399D4F0880D8A486EBFEC16AD60DAD69F96D6E690EF670244C5754 ] NvStreamKms C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys 19:23:04.0486 0x1ec0 NvStreamKms - ok 19:23:04.0623 0x1ec0 [ B2C3D31934FAFA20EE8ED1977651E871, 42E78CDA5F0FC47D203A4BDFD091575769B2CE3DC5D84B11F36C493AD4D07064 ] NvStreamSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe 19:23:04.0747 0x1ec0 NvStreamSvc - ok 19:23:04.0794 0x1ec0 [ 90566025EFD5BA4005A5C9A2773B230B, 9075981E7020250E38D25C046E39C69B252B46888A9F6F749FF50FB442907E37 ] nvsvc C:\WINDOWS\system32\nvvsvc.exe 19:23:04.0808 0x1ec0 nvsvc - ok 19:23:04.0816 0x1ec0 [ 35DFC12FD7E44B7CB8CCD7E5A2B3975A, 36E0E39646636F6E027691E5C3903C51479B3F707BDEA40F460FD27E357DA14E ] nvvad_WaveExtensible C:\WINDOWS\system32\drivers\nvvad64v.sys 19:23:04.0817 0x1ec0 nvvad_WaveExtensible - ok 19:23:04.0821 0x1ec0 [ 0D0CB77D74B38E0EC62341C19E469D8D, A05D3CC67FEEB2FD219BFAA34BF98CB3F3718042124AF28F0E9FDFB9F132DD76 ] nv_agp C:\WINDOWS\system32\drivers\nv_agp.sys 19:23:04.0823 0x1ec0 nv_agp - ok 19:23:04.0857 0x1ec0 [ EA3FFE8617B9FCA1620AD9876E92F4F1, 68D5143CA71D10A2BB44E29B3C76580596669D0624076BCF6CCBA7AF3140538E ] OneSyncSvc C:\WINDOWS\System32\APHostService.dll 19:23:04.0861 0x1ec0 OneSyncSvc - ok 19:23:05.0071 0x1ec0 [ 29B093BA6759118DB14AF41026385E03, 660176D122344A79E52FFD9FE3D32D1967D9B22BC4AD76549D839B09693D0713 ] Origin Client Service C:\Program Files (x86)\Origin\OriginClientService.exe 19:23:05.0112 0x1ec0 Origin Client Service - ok 19:23:05.0134 0x1ec0 [ CAFB5A95883158A0579DED2ED5CB0627, B23F7D19142DD3544F96ADB36F152F4EA7F6C524A1281EC26A2B95D7D044822C ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll 19:23:05.0140 0x1ec0 p2pimsvc - ok 19:23:05.0174 0x1ec0 [ 3612CE3432E0A2BE0081E6B488ACF84C, F1A641735FD374CA293FB98FADA2C41E2033B17FECCA3B6D225D0E591AFFF413 ] p2psvc C:\WINDOWS\system32\p2psvc.dll 19:23:05.0181 0x1ec0 p2psvc - ok 19:23:05.0186 0x1ec0 [ 38F1AE32339731F6E5A7281AE8042545, 308954518C45D29FC199525F0CC7FE4EA805322EC0B871DDDCBEEC15355514C8 ] Parport C:\WINDOWS\System32\drivers\parport.sys 19:23:05.0188 0x1ec0 Parport - ok 19:23:05.0193 0x1ec0 [ 707889D2F95AAE8C9DD254D8767AD908, BE7BD94728D7629F8B7567523FFB42B8979941CEA2EA03E11BFCD51CF119FC27 ] partmgr C:\WINDOWS\system32\drivers\partmgr.sys 19:23:05.0194 0x1ec0 partmgr - ok 19:23:05.0222 0x1ec0 [ A09B0D8F9F0FC17EBCE6481AC9FD5CDF, 8E8D68992D98CF3DBC4B70C7902B3EC28A1E2DA8D4DB38F0AD9D52B1A5A1D40F ] PcaSvc C:\WINDOWS\System32\pcasvc.dll 19:23:05.0230 0x1ec0 PcaSvc - ok 19:23:05.0238 0x1ec0 [ 2834089EA4E550FF3B96E61FB4AA34ED, D25DAB47F9778675E984E0738D2014024C2758D52D7E071167A12FF466B7898E ] pci C:\WINDOWS\system32\drivers\pci.sys 19:23:05.0243 0x1ec0 pci - ok 19:23:05.0255 0x1ec0 [ 3D587E4295B11B8480F7ACB09A89D718, 8C3BD62B3451E1B2E7197EDAE381785406DF86C03BEEC486602C642FDD37DBC1 ] pciide C:\WINDOWS\system32\drivers\pciide.sys 19:23:05.0257 0x1ec0 pciide - ok 19:23:05.0261 0x1ec0 [ B8F07002B5F1DA23CFF979C2806B09F3, AD5C589A02BB8185AA070420BF30E78BC8BE3C6F9B0F66319A8CA05B70A5ED32 ] pcmcia C:\WINDOWS\system32\drivers\pcmcia.sys 19:23:05.0263 0x1ec0 pcmcia - ok 19:23:05.0280 0x1ec0 [ FF588077D0C6AC2EA3FCBF1903CE08D0, 64BE1646FB6D8CC902B6F386255F7C0420E3C334E14DECD527DD541B43A1DCD6 ] pcw C:\WINDOWS\system32\drivers\pcw.sys 19:23:05.0282 0x1ec0 pcw - ok 19:23:05.0314 0x1ec0 [ 70469C8AC4AD367295E70CFDD81B754C, 3EC6FD742C7C60363939E5343477810D751D91D32A2F24285976C08A7C4477AB ] pdc C:\WINDOWS\system32\drivers\pdc.sys 19:23:05.0317 0x1ec0 pdc - ok 19:23:05.0360 0x1ec0 [ 688F47C342E1BBC87A48AB71D316233E, CE99AB67C7E7A11AC69C2F4513AEBDACA385BA7F8CC49BE6313CE04ED404A0E7 ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys 19:23:05.0370 0x1ec0 PEAUTH - ok 19:23:05.0382 0x1ec0 [ 189265498945593D5256CFF7FEBB9665, 9CB88CC3C726BFE6EDCE8D9E4544306AACD3FB9E969E3A438D9FD533F25C1281 ] percsas2i C:\WINDOWS\system32\drivers\percsas2i.sys 19:23:05.0384 0x1ec0 percsas2i - ok 19:23:05.0388 0x1ec0 [ 9B86965114F6831A5130EFE6657B17D9, 4C5B657DB9A9F96BFD3EAFA756ED60D911EB58857C439F5FA6E495A473ED1145 ] percsas3i C:\WINDOWS\system32\drivers\percsas3i.sys 19:23:05.0390 0x1ec0 percsas3i - ok 19:23:05.0452 0x1ec0 [ 8A5A52C855FB5BFEF019AE9938AEA8AE, 77CB8A09B209DB5895319BA9D073A67148926E22C47836343050DFC178AFAEEE ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe 19:23:05.0455 0x1ec0 PerfHost - ok 19:23:05.0509 0x1ec0 [ 839BD56425530973FF3F6F7C0057CD22, 9BADF39BC4628409CFCD5F1300C6040C49B2ED72D0FA389C6BB042E5B17E1A40 ] PimIndexMaintenanceSvc C:\WINDOWS\System32\PimIndexMaintenance.dll 19:23:05.0520 0x1ec0 PimIndexMaintenanceSvc - ok 19:23:05.0604 0x1ec0 [ 82FDEC2A262728F62F2111A84CC04B16, A1FCE38D4F55F10BB9B3BFB7D9E3EF7C27D499D9C8882218C8A9A73487798188 ] pla C:\WINDOWS\system32\pla.dll 19:23:05.0635 0x1ec0 pla - ok 19:23:05.0657 0x1ec0 [ 7B3DA16FAA498838BB457E0B7E380EDF, B73DCFFA60886F10765E4B76A58CFF18C08CAFEE620700361FC8FEC7E80B5958 ] PlugPlay C:\WINDOWS\system32\umpnpmgr.dll 19:23:05.0662 0x1ec0 PlugPlay - ok 19:23:05.0673 0x1ec0 [ F1E9C35A8DFD4D64382CFB9019A950F9, 24E0381C6909F9876D6DC4697DC6405FE18DF91531891B2CCA6DB0191B9C6DF4 ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll 19:23:05.0675 0x1ec0 PNRPAutoReg - ok 19:23:05.0693 0x1ec0 [ CAFB5A95883158A0579DED2ED5CB0627, B23F7D19142DD3544F96ADB36F152F4EA7F6C524A1281EC26A2B95D7D044822C ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll 19:23:05.0698 0x1ec0 PNRPsvc - ok 19:23:05.0716 0x1ec0 [ 62C0BD179961132EF2C5B952210C11F5, 2473FBB3619D0DDA229D4BEC30CEFE7497C27ED3844A5B7655F6F2D328FEAF61 ] PolicyAgent C:\WINDOWS\System32\ipsecsvc.dll 19:23:05.0723 0x1ec0 PolicyAgent - ok 19:23:05.0728 0x1ec0 [ 6390391EDFC43DD11CE9E6AADCAC20EA, C8BC222FFBB9E47489D16BB5248E0E2E594011C46CFF71F5DBCC4D5CC6788098 ] Power C:\WINDOWS\system32\umpo.dll 19:23:05.0731 0x1ec0 Power - ok 19:23:05.0751 0x1ec0 [ 1433EB7908E5E1E20FFD50E4126C3484, 34D81680C8F2F2C5892FC0E0A6DFCBB241AFF493267A1FE182ED28AE9F712456 ] PptpMiniport C:\WINDOWS\System32\drivers\raspptp.sys 19:23:05.0753 0x1ec0 PptpMiniport - ok 19:23:05.0875 0x1ec0 [ 12E2582F69ACA40A6BAE91DA578CBF34, 648C6394763906AA4163976DA2C3308F8B706486D9D8F16258CB1D61C2929930 ] PrintNotify C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll 19:23:05.0942 0x1ec0 PrintNotify - ok 19:23:05.0969 0x1ec0 [ 22DE54C3974E4FD98F61D095C22C59B7, 64E78D6DEC4A28ABB0A23F2CF078459D81796EC79235AE45976ABB4F72B1D1E6 ] Processor C:\WINDOWS\System32\drivers\processr.sys 19:23:05.0971 0x1ec0 Processor - ok 19:23:05.0999 0x1ec0 [ 27D0B024BB356C6BEB1214B61E47DE02, 8CBDD62E243CC652F2197AE83DEDD21D91D2792558A6D7D1CC680B37607DEF4B ] ProfSvc C:\WINDOWS\system32\profsvc.dll 19:23:06.0010 0x1ec0 ProfSvc - ok 19:23:06.0023 0x1ec0 [ EDD52C352CBAAAD13FD7BD5DCEA309B3, EC7D294B23FD5C309E5C4C455896937B85DC615E1B36C9F8F3BDC90E75EBF9CF ] Psched C:\WINDOWS\system32\drivers\pacer.sys 19:23:06.0026 0x1ec0 Psched - ok 19:23:06.0056 0x1ec0 [ DD3FF2053356D11C785999BBC633F3E0, E9A5B7C657F4523E5DEF7AEE7ECFCC94E911FC65F1D491BEF01239F357B8D8E0 ] QWAVE C:\WINDOWS\system32\qwave.dll 19:23:06.0063 0x1ec0 QWAVE - ok 19:23:06.0078 0x1ec0 [ 51590F442C6E5D43244BA30DDB0CE79D, 9C7FD0A19753C13FD4A27EBFD60703A2414D5A2F6F451F0B32769C8D7C953980 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys 19:23:06.0080 0x1ec0 QWAVEdrv - ok 5244A427B2DEB5349B9F336A4A39A6834A6E8118A8EDA00738C6CE09F2452C24 ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys 19:23:06.0317 0x1ec0 rdyboost - ok 19:23:06.0360 0x1ec0 [ EA569D48B2E755AF6D96F03F3335D98A, EED2DCDF187A69F36A38129C8A1E0D6FE0EBF9232DEAF68A116E9A26E40AB636 ] Realtek11nSU C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtlService.exe 19:23:06.0361 0x1ec0 Realtek11nSU - ok 19:23:06.0385 0x1ec0 [ 2C72E029C153D25325CA182A669E4ADE, 5CE0E04A6B53A1F11E8159DFD1E59F2AE6631E3B5BD27BAAEC4A35BC02A55722 ] ReFSv1 C:\WINDOWS\system32\drivers\ReFSv1.sys 19:23:06.0399 0x1ec0 ReFSv1 - ok 19:23:06.0460 0x1ec0 [ BABEE4A896D005BD0D205F1C932DA25E, 269FDF65BE3A226FA2A5CA25085366E32ADAD30A020484FE844962E8C61CB1D2 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 19:23:06.0473 0x1ec0 RemoteAccess - ok 19:23:06.0494 0x1ec0 [ 066062967A77867BDCF665960EFDAD32, 68143DBDFA7C68786C22F5CC4E80200255C663A844069C080E7816F423ABB1F4 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 19:23:06.0499 0x1ec0 RemoteRegistry - ok 19:23:06.0526 0x1ec0 [ 891C83BE8BA62B7547B9A6576A360C71, B808FE4B5A93B8C971C2AF6CC7F0BAE7154A43A87D6CE0826277D1D7D7948E24 ] RetailDemo C:\WINDOWS\system32\RDXService.dll 19:23:06.0542 0x1ec0 RetailDemo - ok 19:23:06.0560 0x1ec0 [ 6451FE42C35FDE3862D99579444F4A8F, BD56A1120AACF6143E6EB739E12BEE86DF142F1159865608BDF1BBE54B66AFCE ] RpcEptMapper C:\WINDOWS\System32\RpcEpMap.dll 19:23:06.0563 0x1ec0 RpcEptMapper - ok 19:23:06.0594 0x1ec0 [ F24131EAD1D0B73463052BB042A37B6C, 43B5772310B200DF1914C8E4D10401A0BCE9082BDEAC34736AFB2920B39D7956 ] RpcLocator C:\WINDOWS\system32\locator.exe 19:23:06.0595 0x1ec0 RpcLocator - ok 19:23:06.0616 0x1ec0 [ 5E57B9FBB4E9C43EE5B69BEE01A1819F, A1F8D1E52AF446CEA2EB50064E3A24B713B19197D61C3EAECB81B3CCD80558E7 ] RpcSs C:\WINDOWS\system32\rpcss.dll 19:23:06.0627 0x1ec0 RpcSs - ok 19:23:06.0632 0x1ec0 [ DC66C1D262D64E30A30B68E9F21AC74B, A5ED3D31BCD68DBC00A956787517ACA167C86F5FFDAF7C9A85505FA2B705C6CB ] rspndr C:\WINDOWS\system32\drivers\rspndr.sys 19:23:06.0634 0x1ec0 rspndr - ok 19:23:06.0656 0x1ec0 [ ED997BA41F8E760AD442E2EF9C9DF652, 3EBF6AEFC92F166AEFA4228E45BEC86525A4D652CF5582BB13C082F0C0EFCAC0 ] RTL8192su C:\WINDOWS\System32\drivers\RTL8192su.sys 19:23:06.0666 0x1ec0 RTL8192su - ok 19:23:06.0685 0x1ec0 [ 88F7703F2A4677C828124AE2110D3EBC, 529F6A5815806F2EA2235802BD28AF8D7A40E7799356BD3EC337C9E71B6B53E6 ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys 19:23:06.0687 0x1ec0 s3cap - ok 19:23:06.0703 0x1ec0 [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] SamSs C:\WINDOWS\system32\lsass.exe 19:23:06.0705 0x1ec0 SamSs - ok 19:23:06.0710 0x1ec0 [ B467E932FE4E16E201DC7E56870CB559, 6FCE9A2DFC5D222BBEA4AA271A17B830FCF8EAE44B07BEE5FF34AE50CABCBB6A ] sbp2port C:\WINDOWS\system32\drivers\sbp2port.sys 19:23:06.0712 0x1ec0 sbp2port - ok 19:23:06.0737 0x1ec0 [ 3E115C63649402D321D396F8D606C9B0, F4BA7FE0E89D563A57B6865E4CF1334998987D11A0D70FF7491726A507B40DF4 ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll 19:23:06.0742 0x1ec0 SCardSvr - ok 19:23:06.0765 0x1ec0 [ 67EFFD3D1BB6D2B67DF7F8FDCB1A51FC, DE41539FAC730F5CFF6C8754ECFF1253AFDC1C86743AE71B61D716B7A84E85FD ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll 19:23:06.0769 0x1ec0 ScDeviceEnum - ok 19:23:06.0784 0x1ec0 [ 31DDA0716EC265CA57DAF9D2295FD76F, E6F39C1B3CF81918277DB8C6E3DF9A82812E1C9063DEB1FB85FE433DC9A16CBA ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys 19:23:06.0786 0x1ec0 scfilter - ok 19:23:06.0818 0x1ec0 [ 1BFAC03B6422E878EFCDA934BF4C4823, 0BA537A4B9E8020E6B709A44F1382DB3B41CEF631B847201F812152FEB303CD3 ] Schedule C:\WINDOWS\system32\schedsvc.dll 19:23:06.0833 0x1ec0 Schedule - ok 19:23:06.0877 0x1ec0 [ 320E7A02D81A468E8C1FEEFDB856AFAE, E65127D3D6B628F9D19EA509FEBD9E4DC1BF20D0C62C3C9E1D7087DF972B2AA7 ] SCPolicySvc C:\WINDOWS\System32\certprop.dll 19:23:06.0880 0x1ec0 SCPolicySvc - ok 19:23:06.0906 0x1ec0 [ 004C66464D8FE76D5DA78BE6777D61AF, 58B5C436798EEBBE7081D54B55B70DEB15331856802CD45E3FF8BDE794F06A27 ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys 19:23:06.0911 0x1ec0 sdbus - ok 19:23:06.0935 0x1ec0 [ A906C527B838A4922611C63EBD250F91, 6BB0054A9C2408138BDF49D834FF99B5B9764E7747ABC15016F54FBA1D28394F ] SDRSVC C:\WINDOWS\System32\SDRSVC.dll 19:23:06.0938 0x1ec0 SDRSVC - ok 19:23:06.0953 0x1ec0 [ F4BF50A7D16A97A887BFA0F193693C42, EEBF5AAC149C72F490BAC954B25BB6882B10FC38F93CA4F4829A06702B1ECEF9 ] sdstor C:\WINDOWS\System32\drivers\sdstor.sys 19:23:06.0956 0x1ec0 sdstor - ok 19:23:06.0971 0x1ec0 [ 648A299839E8F48A946C41DE270D28F5, EEC9A5FCBE3FF78FB5E0452FF1932A8B0C7399688041E22555703CB1977A4428 ] seclogon C:\WINDOWS\system32\seclogon.dll 19:23:06.0973 0x1ec0 seclogon - ok 19:23:06.0989 0x1ec0 [ 29452A9DA3E3482F0C2963312F979053, E1782D36C336C4B4C261AD665C1E9051905AA86020E08FC94069972AF4C4DB4B ] SENS C:\WINDOWS\System32\sens.dll 19:23:06.0993 0x1ec0 SENS - ok 19:23:07.0020 0x1ec0 [ 919BA7E3054E4F1D61A3524ADCE6A970, 3C382673DF5AF2F38A5AE4A268F5856B0CC9E65D52213DE6D2C06E252753B73C ] SensorDataService C:\WINDOWS\System32\SensorDataService.exe 19:23:07.0035 0x1ec0 SensorDataService - ok 19:23:07.0047 0x1ec0 [ 01C2EEA7870FE26A4A6CCBA5421CC7E5, 9E643AB6BCBECE4F2A5FD4C96547A4E3F2BDFEFC5FE24B802467718EC69929F8 ] SensorService C:\WINDOWS\system32\SensorService.dll 19:23:07.0052 0x1ec0 SensorService - ok 19:23:07.0087 0x1ec0 [ D2FEE824B4AA0BE377F1353E5F915BF4, 00D754C62F3482BBD0EA72C896139C39D15192B2D9FCC7B755D1FB9DF9FCFD9B ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll 19:23:07.0091 0x1ec0 SensrSvc - ok 19:23:07.0101 0x1ec0 [ 9DB0BBE3ABE1F49651AE51EC5BCABE58, 0B46C1F231F41766AB73EE7E9834D3CDACA602D12E702D9277E28B47417D9CA4 ] SerCx C:\WINDOWS\system32\drivers\SerCx.sys 19:23:07.0103 0x1ec0 SerCx - ok 19:23:07.0116 0x1ec0 [ C4AF79C37334D995D95C22C14FDBF7FD, 4D4985921261909F2123467A22EDB102B490710F60AB935624435E5BB808A0E9 ] SerCx2 C:\WINDOWS\system32\drivers\SerCx2.sys 19:23:07.0118 0x1ec0 SerCx2 - ok 19:23:07.0129 0x1ec0 [ FC541A272F47BE03E67A9FCB87FA8C3E, 730A3616FD67E9F2832442144B2655A8EF78B9AFCB204113E73E257256491354 ] Serenum C:\WINDOWS\System32\drivers\serenum.sys 19:23:07.0130 0x1ec0 Serenum - ok 19:23:07.0137 0x1ec0 [ 2A5F5F95FCA123DCBF53B5F603B64789, DE5C9E1D88B2C180B137DA7839F3EF6C936A171ABA49F89C10EE9C73A2226F3F ] Serial C:\WINDOWS\System32\drivers\serial.sys 19:23:07.0140 0x1ec0 Serial - ok 19:23:07.0154 0x1ec0 [ C8738887228B7BFA3B1A906816A8BB12, 328283569201791891D5E9FB3028DB5B9FD93A7BEFC00C7DEBC2CC5731DE64D5 ] sermouse C:\WINDOWS\System32\drivers\sermouse.sys 19:23:07.0156 0x1ec0 sermouse - ok 19:23:07.0173 0x1ec0 [ B1CB58853153397DFFA2D13A81451D09, CC9B3B064711E9B5CB38DC1C84DC410033939848BD31BB0D12F990E8154F357E ] SessionEnv C:\WINDOWS\system32\sessenv.dll 19:23:07.0179 0x1ec0 SessionEnv - ok 19:23:07.0191 0x1ec0 [ 67832B68752CDF7FDE56949E4A2E70BF, A72320EA8575A751DF86A1EE7969AD9D548D6185F2520197262E11B79FF8222B ] sfloppy C:\WINDOWS\System32\drivers\sfloppy.sys 19:23:07.0192 0x1ec0 sfloppy - ok 19:23:07.0272 0x1ec0 [ F10E5536E1C753E01CF19FA4F466CE90, C9897F22B176D84CA233F864078895E3DAD4DAD090FACBB01BD6E59EE337B47C ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 19:23:07.0282 0x1ec0 SharedAccess - ok 19:23:07.0326 0x1ec0 [ 4AC12D495B3CB4275F74C68A7A017561, DC53EBD606ECCD8BCF6D618C0EB58B03F5C20F09E0F0AEDE9B8082D6B208B19A ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 19:23:07.0337 0x1ec0 ShellHWDetection - ok 19:23:07.0352 0x1ec0 [ ED058030296CF9B79C8D48BF43724323, 01DC7C2590DF48116CD1A126F207FE5DE439A53286BAE3736E22EE3D1CA80BE3 ] SiSRaid2 C:\WINDOWS\system32\drivers\SiSRaid2.sys 19:23:07.0353 0x1ec0 SiSRaid2 - ok 19:23:07.0365 0x1ec0 [ 633D3D1581E9DCCD5A2D8F039104C9A5, C44B5097016C2AEC8B41F77425FE44413562F9DCF0C0C11CA69D8178970B4706 ] SiSRaid4 C:\WINDOWS\system32\drivers\sisraid4.sys 19:23:07.0368 0x1ec0 SiSRaid4 - ok 19:23:07.0398 0x1ec0 [ 52F7E8603E888E3DB0A8B3D1804098E9, 4E23DC9442C0C14AAE7146DACBB0B39743F1FFAA463EE7069CCDF866AD27BD77 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe 19:23:07.0402 0x1ec0 SkypeUpdate - ok 19:23:07.0433 0x1ec0 [ 35B8FC714C2E7F07F7DC7C64452153F8, 6D45EB01B5F972ED0E5520E771F007FFEE892054FABDB3DD00D3E9915D3A0A31 ] smphost C:\WINDOWS\System32\smphost.dll 19:23:07.0435 0x1ec0 smphost - ok 19:23:07.0451 0x1ec0 [ DE3A5C27EC842A113F68A2705FF63B00, B134EF63708A892B673B539F544F7980FF72838D822E8E4CCDDB359B22CB8805 ] SmsRouter C:\WINDOWS\system32\SmsRouterSvc.dll 19:23:07.0460 0x1ec0 SmsRouter - ok 19:23:07.0495 0x1ec0 [ CD1056818A6FCEF4D32BD1D6E34070D5, F5BFB61ACB220A73B0DC4487B049F52E9F9FA2D4188C001E7A5838D47CEA6343 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe 19:23:07.0497 0x1ec0 SNMPTRAP - ok 19:23:07.0510 0x1ec0 [ 187B4AD4446C59F8FCC4A10F473EE3D1, 0AAD961B3D7B3484DC89CB86F3EC96CEBFABB7224A5BFB48083DE8F1805EA7B4 ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys 19:23:07.0528 0x1ec0 spaceport - ok 19:23:07.0531 0x1ec0 [ 2799FCA215919FDC9A87C5FCAB530828, BDE968BF26693AA4D70AB669896BCA49C6F533EA226386B35B0EA589A55227B5 ] SpbCx C:\WINDOWS\system32\drivers\SpbCx.sys 19:23:07.0533 0x1ec0 SpbCx - ok 19:23:07.0559 0x1ec0 [ 58C17D92AD61EC7A98B05F4FAD0D205A, B881134A1BD9194145A9D18BDB34D57E2C167F06C2A9368459D0C33E6E0D6501 ] Spooler C:\WINDOWS\System32\spoolsv.exe 19:23:07.0572 0x1ec0 Spooler - ok 19:23:07.0706 0x1ec0 [ 5C31E109943E67CFC801810C00AB63EE, 9A80D7CDA1135EBCE10E753986A59CFA3D8D49F9B0BE38FDF99880B1DD88C41D ] sppsvc C:\WINDOWS\system32\sppsvc.exe 19:23:07.0779 0x1ec0 sppsvc - ok 19:23:07.0793 0x1ec0 [ AA1F23501511EFE9CF9771F6B20E8D45, E786852D9877CCFD35444F8FC694467132F868D87A8C344FD1016FFDE74695A5 ] srv C:\WINDOWS\system32\DRIVERS\srv.sys 19:23:07.0799 0x1ec0 srv - ok 19:23:07.0837 0x1ec0 [ F5B169EDF9D5E3C7200D89D30E065D13, 12BAF3A3CB76F0900FA53681C9AD16F40308F493BA22C0F60E1E268D0D6AF825 ] srv2 C:\WINDOWS\system32\DRIVERS\srv2.sys 19:23:07.0855 0x1ec0 srv2 - ok 19:23:07.0862 0x1ec0 [ 2E142E027F0AA698BA4DCE49CBDB43CD, A21027BBBC75A55A8B302D028113A0683016E4C72790A8C561DDB1AE7FDB4289 ] srvnet C:\WINDOWS\system32\DRIVERS\srvnet.sys 19:23:07.0867 0x1ec0 srvnet - ok 19:23:07.0893 0x1ec0 [ BF71B3FB5B7557CB740CDB09C5FB50D9, D6F9E65FDC9C4ADAFE82D94F71A1F5960DB3BEEBF4FE5B2D087515C4FAA5F287 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 19:23:07.0899 0x1ec0 SSDPSRV - ok 19:23:07.0911 0x1ec0 [ EF1BC04215C201ADA3F7F5A2F034EA21, E1A7A0FA2032B9E7D3951100E74C04D93CD848C88D23D57FBA0BFA2816B29C61 ] SstpSvc C:\WINDOWS\system32\sstpsvc.dll 19:23:07.0915 0x1ec0 SstpSvc - ok 19:23:07.0979 0x1ec0 [ C26E2C89EFB4BB39CD135B5DED804B78, 99288C6023DC6AC6554521EA671AB387ACE2AE2BCDE145C7012202842FF40841 ] StateRepository C:\WINDOWS\system32\windows.staterepository.dll 19:23:08.0029 0x1ec0 StateRepository - ok 19:23:08.0087 0x1ec0 [ D31201BD8782752BD69DBE1E5DDF9AC5, 98B72690B4E6CC1B694C655DD31CB1FB56B76B62A32CFB748AF78F4C072D9740 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe 19:23:08.0099 0x1ec0 Steam Client Service - ok 19:23:08.0137 0x1ec0 [ F6D78F5436918952F1CB24BC48DB5B72, DFD6DA8A72D5719A063BAB921B6870B4BDA75DA4D280492F110DF3F99627BDF7 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe 19:23:08.0143 0x1ec0 Stereo Service - ok 19:23:08.0161 0x1ec0 [ DDE064A4298FD1FBF804D3ED691E7EDB, B0D117B1FC0DA2CB76F5F63699E2F108930B6C6721AC443111D48215ED624278 ] stexstor C:\WINDOWS\system32\drivers\stexstor.sys 19:23:08.0162 0x1ec0 stexstor - ok 19:23:08.0190 0x1ec0 [ 60F04DF1AB55D6D4BDA02052DD20537E, 52996EDF2C06968DADC9BDF24E4039929B81643493C7193B8CC4A6BD1A3AE761 ] stisvc C:\WINDOWS\System32\wiaservc.dll 19:23:08.0201 0x1ec0 stisvc - ok 19:23:08.0206 0x1ec0 [ 32C95F44108C3E7DB58F773346E3C9D0, F852D8ECA06080EA6DE1A90509071965A750D9CFC9627F0D4DB8ECC57133B0B5 ] storahci C:\WINDOWS\system32\drivers\storahci.sys 19:23:08.0209 0x1ec0 storahci - ok 19:23:08.0225 0x1ec0 [ 8883C8CE4942A99B84E1CC6EFA19738E, 60C1CDA4382F8EE70D810DBB1BCAF5F389433563FF23EEB84859612F396D8CE6 ] storflt C:\WINDOWS\system32\drivers\vmstorfl.sys 19:23:08.0227 0x1ec0 storflt - ok 19:23:08.0241 0x1ec0 [ AE7B7E1E95BFB9340B1956C98CA52C81, 3E0214A0C486C1CD05D9BC57E58A998A3CEADDC1D24AE2A75098F56B37069160 ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys 19:23:08.0244 0x1ec0 stornvme - ok 19:23:08.0247 0x1ec0 [ 63513EF3121689B3A59BD217618A2E42, DE9B89732801DEC60BD116D58CFB427F7E37F093BE8A9F6E0CAC729B5346B314 ] storqosflt C:\WINDOWS\system32\drivers\storqosflt.sys 19:23:08.0248 0x1ec0 storqosflt - ok 19:23:08.0280 0x1ec0 [ CC96FF061C772340F2ED89ABBA567ADC, 028CD44405B7FAFC7BF331DD729E44E0594A63386F48CF39D7725A58B3DE22D6 ] StorSvc C:\WINDOWS\system32\storsvc.dll 19:23:08.0285 0x1ec0 StorSvc - ok 19:23:08.0300 0x1ec0 [ 000F5CFCEF0F06DC8FD1D2F568E48AE4, C1FE485E57A1B912CE79556E0EFF03CC11362E7966D250E3AA4962DCCB8F8EE6 ] storufs C:\WINDOWS\system32\drivers\storufs.sys 19:23:08.0301 0x1ec0 storufs - ok 19:23:08.0308 0x1ec0 [ 7415087F9006D6818F85F3CBD79B1A50, C768EBB2263375D285D689FEEF546147D42D7376977424A4D6FD655CC78EA7CD ] storvsc C:\WINDOWS\system32\drivers\storvsc.sys 19:23:08.0309 0x1ec0 storvsc - ok 19:23:08.0317 0x1ec0 [ E49858EA5865A015EB78B7F7C1C07DE2, 1ADBBAC2D2E2E3C40AB0BDDE068001E76A8DAB79C54F06479F7A4567DAD7A7A8 ] svsvc C:\WINDOWS\system32\svsvc.dll 19:23:08.0319 0x1ec0 svsvc - ok 19:23:08.0403 0x1ec0 [ 802278EE4ACCE9EA1F1481DF20EB1667, E78F0DA2CA0B2C2DF3B7E3B2A22C03380FE649813EE6EB31067C5FB6727DB7BD ] swenum C:\WINDOWS\System32\DriverStore\FileRepository\swenum.inf_amd64_2a699e44676b7781\swenum.sys 19:23:08.0406 0x1ec0 swenum - ok 19:23:08.0432 0x1ec0 [ 313D2C0DBA0B23A8302254FD317D2EC8, 20B98D6F33FEC7ACBCEED9757A3FEAD837FA7BA378BA25575A33EA45E076FC6B ] swprv C:\WINDOWS\System32\swprv.dll 19:23:08.0448 0x1ec0 swprv - ok 19:23:08.0470 0x1ec0 [ 12D0CB1DCAE6725B6CA54CC2038C4C8C, 7D224298E440B8C5FDD99A52485A6245DE5109C9A02E65AD38F1EC6DBF4AEEF2 ] Synth3dVsc C:\WINDOWS\System32\drivers\Synth3dVsc.sys 19:23:08.0472 0x1ec0 Synth3dVsc - ok 19:23:08.0506 0x1ec0 [ D5B31B2F14848015C211F1D674A82F3A, 58C18254C817693DB727090D1CC518032B3A67C5B3FC7F2F8CE4613A33790CFA ] SysMain C:\WINDOWS\system32\sysmain.dll 19:23:08.0531 0x1ec0 SysMain - ok 19:23:08.0573 0x1ec0 [ D5AAA188C70146977CFEE8D128599F3F, 9ABC30982E552EAF41FE84397EEEE5A3187444062C662D7CF35A03E3B274AFB8 ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll 19:23:08.0586 0x1ec0 SystemEventsBroker - ok 19:23:08.0627 0x1ec0 [ 95875059929EF91B55EA612D7967DD3D, 5F734209C8C9725376F7C146ED84999CC6D019C4C10B1795F53E72BE8853E2DD ] TabletInputService C:\WINDOWS\System32\TabSvc.dll 19:23:08.0631 0x1ec0 TabletInputService - ok 19:23:08.0653 0x1ec0 [ FE33F417DFD9847CB571D3C7EE5FA7E3, B3C7BE7998B9B093DD969A2588EE8CEBD9771331A63D4B1D86A188317B5EE71C ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 19:23:08.0660 0x1ec0 TapiSrv - ok 19:23:08.0724 0x1ec0 [ 7EBD20284AC9BF9F0A020B86769BB074, 26D8CC9C1EE069BB617973BA7CBCFC36BAF1EABF975F395077547F930197A56A ] Tcpip C:\WINDOWS\system32\drivers\tcpip.sys 19:23:08.0769 0x1ec0 Tcpip - ok 19:23:08.0818 0x1ec0 [ 7EBD20284AC9BF9F0A020B86769BB074, 26D8CC9C1EE069BB617973BA7CBCFC36BAF1EABF975F395077547F930197A56A ] Tcpip6 C:\WINDOWS\system32\drivers\tcpip.sys 19:23:08.0863 0x1ec0 Tcpip6 - ok 19:23:08.0887 0x1ec0 [ D378A1AF58AFA84BB6AC753F2C1BE9F4, 8BBA623193D51E6A8DD0627FA08C93B918EF1BA2EEBA46CDBB86FE6A1007FDEE ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys 19:23:08.0889 0x1ec0 tcpipreg - ok 19:23:08.0895 0x1ec0 [ 28E1E63A1AC65E17B3194238FA2CF3BF, 9A52D6DD14BEBB7B407B2703A111D1B302F1B84AA40A14D21FCA554F395E935D ] tdx C:\WINDOWS\system32\DRIVERS\tdx.sys 19:23:08.0897 0x1ec0 tdx - ok 19:23:08.0906 0x1ec0 [ CCDBD2817C10A4F631280CBB3AE44FFB, A022DEF4D3CF75F41FA26275347F4BA38A513AD32FF18385C2E756DECB61D404 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys 19:23:08.0908 0x1ec0 terminpt - ok 19:23:08.0971 0x1ec0 [ A0608264209A836821D6AB8C67B108AB, 7912C75F72BCAB7426A2E00C597C8D94C185B5DD31BD6C4BE5D56FECD5B0D9EA ] TermService C:\WINDOWS\System32\termsrv.dll 19:23:08.0994 0x1ec0 TermService - ok 19:23:09.0000 0x1ec0 [ 261830B1E3650E4471E1F98850B929B7, D281B8A93315E64C7AF5002E5BFBE6AFF8B35FD6AA747AE07D7AA96F4AFAA613 ] Themes C:\WINDOWS\system32\themeservice.dll 19:23:09.0002 0x1ec0 Themes - ok 19:23:09.0027 0x1ec0 [ 8D23F0819A00C547814409B734DD3747, 0E1B25A53C84486F8A57F309F3C016114F90F5AF5E576889BD230931F38594A5 ] tiledatamodelsvc C:\WINDOWS\system32\tileobjserver.dll 19:23:09.0034 0x1ec0 tiledatamodelsvc - ok 19:23:09.0053 0x1ec0 [ 354DAA630928CD4DA2BC84A0DA4ADA9D, AFAE4948EA4F899267DC52DF9A06450FC3E77083B563E541581DA90685C7E98C ] TimeBroker C:\WINDOWS\System32\TimeBrokerServer.dll 19:23:09.0057 0x1ec0 TimeBroker - ok 19:23:09.0076 0x1ec0 [ F4AEDABC8F3A9D632F8206D0C7F8CA09, 6E76749CD4B857B4D930267E3CF448AF4D14FAC851873C5E71572E62CAD2FA36 ] TPM C:\WINDOWS\system32\drivers\tpm.sys 19:23:09.0079 0x1ec0 TPM - ok 19:23:09.0090 0x1ec0 [ 2D0338A3009075FCCB119CB7F3280F82, F42F3B8DA0F8B2C99892E66CDEF471A1CD30A30CF437ADFF464A2C786A6B87A6 ] TrkWks C:\WINDOWS\System32\trkwks.dll 19:23:09.0094 0x1ec0 TrkWks - ok 19:23:09.0121 0x1ec0 [ 62D6A900C5DFF2ECF131384E5A5C85AB, 1AF1FB868C59DFF452E3351EE5070B2C746DE606B9E2F1834CE2256F41ABE7A9 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe 19:23:09.0124 0x1ec0 TrustedInstaller - ok 19:23:09.0140 0x1ec0 [ 676C801CAA61AADD0C918CC536A74B78, DB5DEC9445272E46D32DC2A9A99A9AE45729E424E61C679ECFD973AA88457BE6 ] TsUsbFlt C:\WINDOWS\system32\drivers\TsUsbFlt.sys 19:23:09.0142 0x1ec0 TsUsbFlt - ok 19:23:09.0155 0x1ec0 [ 2BB6CC0DD1CEE86330743B56FA9FE91F, EE71E3DEECA7599947AB09E8967FE8066348D82B4C17D8CBE800FCDE9CF4989D ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys 19:23:09.0157 0x1ec0 TsUsbGD - ok 19:23:09.0210 0x1ec0 [ 14B46248612DF1B1A695040FFFBCFAFC, 8C373A3C416FC9AB3872A187E64AC7A6E69FF605BD8784E8F2B1C28C293A0495 ] tunnel C:\WINDOWS\System32\drivers\tunnel.sys 19:23:09.0216 0x1ec0 tunnel - ok 19:23:09.0236 0x1ec0 [ D0BE5EA1652D55029C9A898FB8ACFCE0, 80C4BC30B967C79B3457F43EB9B530CA2571C6158958879AC55E5A81F71CFF15 ] uagp35 C:\WINDOWS\system32\drivers\uagp35.sys 19:23:09.0239 0x1ec0 uagp35 - ok 19:23:09.0255 0x1ec0 [ 13C15E4B238895FE4731DB1D612EEB5F, 211E4B05AA09F7FBE2487C3241A98D1F970FEE5B9B1BAED2788B57233BFC4104 ] UASPStor C:\WINDOWS\System32\drivers\uaspstor.sys 19:23:09.0260 0x1ec0 UASPStor - ok 19:23:09.0278 0x1ec0 [ BEBB8B55C5F99B69EEE39A9D7BADB21E, 08A094EA38AB58CC70108A3BDFDD3251897DC4B13FDDAD54C1B063137836EF34 ] UcmCx0101 C:\WINDOWS\system32\Drivers\UcmCx.sys 19:23:09.0282 0x1ec0 UcmCx0101 - ok 19:23:09.0301 0x1ec0 [ DE3EDAF609D00EA2E54986E6459796A6, 61A9AB51869F38300CC5CC5D302B962FB966F54CBB2E393954F36372B3A479FE ] UcmUcsi C:\WINDOWS\System32\drivers\UcmUcsi.sys 19:23:09.0304 0x1ec0 UcmUcsi - ok 19:23:09.0327 0x1ec0 [ FB1C1D8B96A482F3581338D6752E1D6C, 0FFAEE3E088614B3483C459513BB9D78EB76B574696FD877A3CDF6A11378F46C ] Ucx01000 C:\WINDOWS\system32\drivers\ucx01000.sys 19:23:09.0334 0x1ec0 Ucx01000 - ok 19:23:09.0350 0x1ec0 [ 4E1543ACE2F6E2846713E5123D9D4159, 1A6AFC525A80D1F19B14CDAD38790DF7293911C4D0E8301161D92201B934C3D4 ] UdeCx C:\WINDOWS\system32\drivers\udecx.sys 19:23:09.0353 0x1ec0 UdeCx - ok 19:23:09.0376 0x1ec0 [ CDCA9CC1D8293E75218D8FF85F2337A4, 173086C08DDC7625E026E425F1E2B5D6C795771BEAE9BFF6093E3592FBEBD323 ] udfs C:\WINDOWS\system32\DRIVERS\udfs.sys 19:23:09.0386 0x1ec0 udfs - ok 19:23:09.0402 0x1ec0 [ BC683E19307C533C7161DB7A58051347, 5553BE3421986FDD9992EBFD883CDA151F7166C01BBFA3E9183A3C93E41D79B6 ] UEFI C:\WINDOWS\System32\drivers\UEFI.sys 19:23:09.0406 0x1ec0 UEFI - ok 19:23:09.0431 0x1ec0 [ D14B42C26DE402F316D49667D15446F0, 61CC9FF03EF78631C800EFD8D587975CB94D53DB80E6F60BD13BA52EC5690D3D ] Ufx01000 C:\WINDOWS\system32\drivers\ufx01000.sys 19:23:09.0439 0x1ec0 Ufx01000 - ok 19:23:09.0460 0x1ec0 [ 192470BE4321791FBB25F379D0141D6F, AD120F8F98BD99014471CE60630B5FEE7555AB261C98B7D9819FE23C386655F7 ] UfxChipidea C:\WINDOWS\System32\drivers\UfxChipidea.sys 19:23:09.0465 0x1ec0 UfxChipidea - ok 19:23:09.0495 0x1ec0 [ F7BD838E84E6B286DBCE068EFB8C0800, A55188C8F8BDC739A7ED7D29CDCB2A17468BBB158E13D804963B31ED73449520 ] ufxsynopsys C:\WINDOWS\System32\drivers\ufxsynopsys.sys 19:23:09.0500 0x1ec0 ufxsynopsys - ok 19:23:09.0540 0x1ec0 [ C844E39B900FFA46CA8DD2BBA670A077, 0CB6232BCE47C59821DF25D6ED33E85C3E32DDAB101AA8A2C22B5401E73F5D5B ] UI0Detect C:\WINDOWS\system32\UI0Detect.exe 19:23:09.0545 0x1ec0 UI0Detect - ok 19:23:09.0559 0x1ec0 [ A25842AC180F0E8B02380ECB8ADA1AF5, AF22E7559C5EF8DC22A2B9E27FFFFF075B1D1B68A8307266BD9473E0FAF36BEF ] uliagpkx C:\WINDOWS\system32\drivers\uliagpkx.sys 19:23:09.0563 0x1ec0 uliagpkx - ok 19:23:09.0581 0x1ec0 [ 21088F43172525C7E02D335A3327F46C, B04AD471A7DFE83AB557DB4540616B7DF4A1904F8BDDCB920D449FCEE6F36FD5 ] umbus C:\WINDOWS\System32\drivers\umbus.sys 19:23:09.0584 0x1ec0 umbus - ok 19:23:09.0604 0x1ec0 [ 294A291B5D48FE8F38DD94B7272442C5, 66C9139636760C92C1E04FCF440C432FF6C5A94E1577CAFE1D61FCF2D30472ED ] UmPass C:\WINDOWS\System32\drivers\umpass.sys 19:23:09.0606 0x1ec0 UmPass - ok 19:23:09.0651 0x1ec0 [ 3427889AECC3B6912A0A01D095E32B98, 322AE14B74295ACFC124719BBEF8809201150A184E262EC55E26D2B45787BF9D ] UmRdpService C:\WINDOWS\System32\umrdp.dll 19:23:09.0663 0x1ec0 UmRdpService - ok 19:23:09.0709 0x1ec0 [ 0D5C9E27E93AAEA3E30A1E59A7AC3DFF, 31A203DA03877E6B887930990C5BB53402F0DFFB22A6F8FC5A34EF0B99CD8A7E ] UnistoreSvc C:\WINDOWS\System32\unistore.dll 19:23:09.0724 0x1ec0 UnistoreSvc - ok 19:23:09.0806 0x1ec0 [ 1E9A5658E0EBDBC381F52123363F74CB, 62CB592F32BCC10FC9C3AF44941CC473F2F62EEBF829CA383F118650451F8F7E ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe 19:23:09.0818 0x1ec0 UNS - ok 19:23:09.0852 0x1ec0 [ BD693208673F40BA21AA70B69F1D439C, E324947C2DD34386A83B09E73668F1CCED127AC91194B8BF7EC4C8E36CF8203E ] upnphost C:\WINDOWS\System32\upnphost.dll 19:23:09.0861 0x1ec0 upnphost - ok 19:23:09.0871 0x1ec0 [ A7A52EDDC3FAF183D6AC4774690ADF13, 630A0331F2EFA2DC7EFDACD08D8DF5C85BFDA30FF1525050FF54E069AFA45F6C ] UrsChipidea C:\WINDOWS\System32\drivers\urschipidea.sys 19:23:09.0873 0x1ec0 UrsChipidea - ok 19:23:09.0885 0x1ec0 [ 2EEA0897DD9E30E958B508D557F0B5E4, BE051A3AA5DFF56310FAB67AD19AC0443A3580542886EF3554EBE18F1323596F ] UrsCx01000 C:\WINDOWS\system32\drivers\urscx01000.sys 19:23:09.0887 0x1ec0 UrsCx01000 - ok 19:23:09.0890 0x1ec0 [ DC54D775A3A61E4CDE871B4E38A1459A, CC996A9D293201BBD285E7B629B12EE88574702B8AC7BB4149439D6A25A07F7E ] UrsSynopsys C:\WINDOWS\System32\drivers\urssynopsys.sys 19:23:09.0891 0x1ec0 UrsSynopsys - ok 19:23:09.0896 0x1ec0 [ 18B63A0980F4AA1E6D7879B253980E37, 05F96DBE0A3DE2A685DEEBA8B6838A47AEB7CE2EBE8EB6BAD67B36DCF7E73589 ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys 19:23:09.0899 0x1ec0 usbccgp - ok 19:23:09.0913 0x1ec0 [ 1C60A1A3C8E1E819E16F12BAEB1C83F8, E255BD173DBF091C5EA07381862E23C1FD761489EC396E312974FBC124E1F33A ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys 19:23:09.0915 0x1ec0 usbcir - ok 19:23:09.0919 0x1ec0 [ 9A3E39F85DC6E3B9F792F1095ACFF788, 66B8E137A5232E9F717907CFD49FE624AE101F4DE14E2960849DABF7A877E87A ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys 19:23:09.0922 0x1ec0 usbehci - ok 19:23:09.0950 0x1ec0 [ 0A368247A900656CC0678117DFC3A87C, 9BEAD14DA067439D913F609955E95CFA0B88ED4F1BC60B473E00F9D9CBC01B9C ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys 19:23:09.0957 0x1ec0 usbhub - ok 19:23:09.0968 0x1ec0 [ C08449092043601887A1743350888635, 5CD916649D2CD8823B89C9E7459AD76AA8E54D70B6D9F40AD4A41144E22ACBE0 ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys 19:23:09.0975 0x1ec0 USBHUB3 - ok 19:23:09.0980 0x1ec0 [ 72EA850B59F40C25A4FEDDA5FE84EFEB, FB4801AA1FB72FC1C41024916368823E88D53E338640E3BEA865B0F0E7B8EE91 ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys 19:23:09.0981 0x1ec0 usbohci - ok 19:23:09.0999 0x1ec0 [ 47B2B2DE152E25546944049CA1170BB1, DDA0A806D3108B2475AB13F584EA8CE6F0932C5E394C2C3FA691DFAB8A2BCAC0 ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys 19:23:10.0000 0x1ec0 usbprint - ok 19:23:10.0014 0x1ec0 [ 1F72E1A7E1858B7B3FF81522FCEBDE95, 4FAD243DA73C45CD5CA5E50F824F30EF0DC777D83957FD21FF43D8C89EC15AAC ] usbser C:\WINDOWS\System32\drivers\usbser.sys 19:23:10.0018 0x1ec0 usbser - ok 19:23:10.0022 0x1ec0 [ CD35467670DF1E6FBF36DA308F0C872B, E1F4F9B1EBD476394CBD0C934842AEE2502B030D97351B0A1E751FF23B011B57 ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS 19:23:10.0024 0x1ec0 USBSTOR - ok 19:23:10.0027 0x1ec0 [ DFA92EA105DD1073B43FB210EEB03DD4, D940432458F0A04F5013B48197CEA0412C8A909C50605AA21DD08271C90E2FE3 ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys 19:23:10.0028 0x1ec0 usbuhci - ok 19:23:10.0082 0x1ec0 [ C67A03F54A1EA683F4880A481EE5FF6C, 346185B378577FF14EFAD01ECB7DFC9AFC0D50F16DF081C3BA99AEFF710A0EE9 ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS 19:23:10.0092 0x1ec0 USBXHCI - ok 19:23:10.0145 0x1ec0 [ 32212C0FE0556915E763C29DEB6D267E, C5BC9DA3AB0C41604E8F3D01AFC2C25351FF5D3967E766DD0CDB4C0239ED6312 ] UserDataSvc C:\WINDOWS\System32\userdataservice.dll 19:23:10.0171 0x1ec0 UserDataSvc - ok 19:23:10.0235 0x1ec0 [ E9E2B5FFBEFC2CDF14A6E55DD94CC823, A10C011835A65601B8FE3A30F361C224C60084A78085842ADCDA248047530CD1 ] UserManager C:\WINDOWS\System32\usermgr.dll 19:23:10.0254 0x1ec0 UserManager - ok 19:23:10.0277 0x1ec0 [ 0CFEA30C0217EE74FF853B2B0CC0BE6D, 1F0856D2D94F46D7B24B7EE18ED868C9EFAE972039D35D1FAA9058A12CF40493 ] UsoSvc C:\WINDOWS\system32\usocore.dll 19:23:10.0284 0x1ec0 UsoSvc - ok 19:23:10.0304 0x1ec0 [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] VaultSvc C:\WINDOWS\system32\lsass.exe 19:23:10.0306 0x1ec0 VaultSvc - ok 19:23:10.0316 0x1ec0 [ 26223003DDFB347B5CF3EC0B56DB066B, 78848BE1334C05F28FA431B08225EAE8345B2C66E7D677F9936892FC941EA961 ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys 19:23:10.0319 0x1ec0 vdrvroot - ok 19:23:10.0362 0x1ec0 [ 0C3F4E7684C1D72E85A98689E65A98A1, F7928D3EFC1A83125887ADA5F8E008022B58F0DBA8A711B4D60975D8CE82B595 ] vds C:\WINDOWS\System32\vds.exe 19:23:10.0376 0x1ec0 vds - ok 19:23:10.0405 0x1ec0 [ A417284BC6B5C2EEF63F2C5154473530, 55146660CDDD829630C216038E6500CFAC906E67C82881047B665BFEEB286D10 ] VerifierExt C:\WINDOWS\system32\drivers\VerifierExt.sys 19:23:10.0413 0x1ec0 VerifierExt - ok 19:23:10.0437 0x1ec0 [ 4C39C05A72EB14C0567501C7E087E564, D3DC122B7E4A5BD345517FE3A9E9E58CD3C78887F9F327AB782BADCAD0F8F2EB ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys 19:23:10.0448 0x1ec0 vhdmp - ok 19:23:10.0463 0x1ec0 [ C42206A15078596FDE8E89BB629DE342, B95F9EC2413ADE658A7CE4A9BB57A0E125C29205C24BBB120153DACAF4CF9482 ] vhf C:\WINDOWS\System32\drivers\vhf.sys 19:23:10.0465 0x1ec0 vhf - ok 19:23:10.0475 0x1ec0 [ 248D9F911A5C94CF8477125DD0C3A291, 418C7285184BCC9DE4E56175960585867A5DB21FEF761C49FF6F1AF1C07D8088 ] vmbus C:\WINDOWS\system32\drivers\vmbus.sys 19:23:10.0478 0x1ec0 vmbus - ok 19:23:10.0493 0x1ec0 [ 3E98DD4E0CBD6B4F9CBD0E9E0EDF541E, 2B5CF364F4D1D3359FBEA8BB2E72A1FCE1277E8D893977B751D9AC10A27DF018 ] VMBusHID C:\WINDOWS\System32\drivers\VMBusHID.sys 19:23:10.0494 0x1ec0 VMBusHID - ok 19:23:10.0545 0x1ec0 [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll 19:23:10.0553 0x1ec0 vmicguestinterface - ok 19:23:10.0563 0x1ec0 [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmicheartbeat C:\WINDOWS\System32\ICSvc.dll 19:23:10.0569 0x1ec0 vmicheartbeat - ok 19:23:10.0586 0x1ec0 [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll 19:23:10.0592 0x1ec0 vmickvpexchange - ok 19:23:10.0603 0x1ec0 [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmicrdv C:\WINDOWS\System32\ICSvc.dll 19:23:10.0609 0x1ec0 vmicrdv - ok 19:23:10.0619 0x1ec0 [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmicshutdown C:\WINDOWS\System32\ICSvc.dll 19:23:10.0625 0x1ec0 vmicshutdown - ok 19:23:10.0634 0x1ec0 [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmictimesync C:\WINDOWS\System32\ICSvc.dll 19:23:10.0641 0x1ec0 vmictimesync - ok 19:23:10.0676 0x1ec0 [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmicvmsession C:\WINDOWS\System32\ICSvc.dll 19:23:10.0682 0x1ec0 vmicvmsession - ok 19:23:10.0691 0x1ec0 [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmicvss C:\WINDOWS\System32\ICSvc.dll 19:23:10.0697 0x1ec0 vmicvss - ok 19:23:10.0709 0x1ec0 [ 91F165C5D71D9DCB18D4661CF10D1084, 1D55C1FF0F5D860E6DB60EEFE303C0797C98BB0B053ECC255F9B316872288818 ] volmgr C:\WINDOWS\system32\drivers\volmgr.sys 19:23:10.0711 0x1ec0 volmgr - ok 19:23:10.0725 0x1ec0 [ 17042748AC05862A0283D32575220080, A85B480CB969CB7678545D2A9EE99CBD2ADFF210FA016A43E092D0711FBB633D ] volmgrx C:\WINDOWS\system32\drivers\volmgrx.sys 19:23:10.0730 0x1ec0 volmgrx - ok 19:23:10.0739 0x1ec0 [ 823A237D871CD652C6BFD47BECB6810A, 99310521451CB54C29A5DEA54C3A666F95E2A1FF0979D5F9792885A161E90C65 ] volsnap C:\WINDOWS\system32\drivers\volsnap.sys 19:23:10.0743 0x1ec0 volsnap - ok 19:23:10.0762 0x1ec0 [ 78727FA284C2095EED660D71CD3C9AEF, 323F0BD5A624DF77973F28C7CF31EC6B3A525496EBF063666623A62B1DB0EA65 ] vpci C:\WINDOWS\System32\drivers\vpci.sys 19:23:10.0766 0x1ec0 vpci - ok 19:23:10.0784 0x1ec0 [ 2415961D561E02F5E46B7C1C687A6788, 68A54B9595A0D15D410D5F1656B6EBE3B913A4BA5F71C658C9B99420E6ED327A ] vsmraid C:\WINDOWS\system32\drivers\vsmraid.sys 19:23:10.0787 0x1ec0 vsmraid - ok 19:23:10.0820 0x1ec0 [ 16419CBDB04DB9FF298169AA93413822, 743AD26F08AF5EFF5DD353E75C3D659B10C3FEC2FEDABB76387B87721B5B98F8 ] VSS C:\WINDOWS\system32\vssvc.exe 19:23:10.0837 0x1ec0 VSS - ok 19:23:10.0871 0x1ec0 [ 6AE9A843AE979F2DCCA5A25C07C7A5F8, 3CEC26DE2EEC97929A0FBBD87FF75F8DC387C0988B2047074C8F069ACBEF2587 ] VSTXRAID C:\WINDOWS\system32\drivers\vstxraid.sys 19:23:10.0876 0x1ec0 VSTXRAID - ok 19:23:10.0889 0x1ec0 [ BD232C761C59FA8D8EF626CA630E2D2E, E494EFDCE8F6343F49F33F1F03DCD5DEC9CB6F349B1AD302B4D3333B5F6BD8E5 ] vwifibus C:\WINDOWS\System32\drivers\vwifibus.sys 19:23:10.0890 0x1ec0 vwifibus - ok 19:23:10.0896 0x1ec0 [ 3039687AB65CEE26CF478C1F42FFCD7D, 40E140C6F94B6203767A1493DF8CAE6BA1FB67FBD0C13789444F72410D0E6FF1 ] vwififlt C:\WINDOWS\system32\drivers\vwififlt.sys 19:23:10.0898 0x1ec0 vwififlt - ok 19:23:10.0909 0x1ec0 [ 37C868DDE3103130B00AD1313DAB5ACB, BF9C30817A3502F5C0673FD462B18FE1BF37963B29DF09D84B66BDCBF8ECBA81 ] vwifimp C:\WINDOWS\System32\drivers\vwifimp.sys 19:23:10.0910 0x1ec0 vwifimp - ok 19:23:10.0941 0x1ec0 [ EC9B6544C569E8D7FAB91772BD7D23F2, 06CC5F21E9A9DD35099CB3E44C3E2BF2F944CE5B71284E6A85E1B681F12BD31B ] W32Time C:\WINDOWS\system32\w32time.dll 19:23:10.0950 0x1ec0 W32Time - ok 19:23:11.0004 0x1ec0 [ 9776E4816D92B766F461957FBDA84360, 048F6ADC97767AFAB50582D0AE1E67A15B038A1C02F7982A6AD30B61AC5C7369 ] w3logsvc C:\WINDOWS\system32\inetsrv\w3logsvc.dll 19:23:11.0007 0x1ec0 w3logsvc - ok 19:23:11.0037 0x1ec0 [ F61FA0EDBE913DFCA0CF012FDD9E99EE, DE8685230D49F940640F400D2EC4F10E677AF6D57B3FAB0342AA98BEA779D6AD ] W3SVC C:\WINDOWS\system32\inetsrv\iisw3adm.dll 19:23:11.0046 0x1ec0 W3SVC - ok 19:23:11.0058 0x1ec0 [ FC40A7527D39F06D032A6553D22E4BF6, F572FCB5EB3DE16FD6222A5B6A43C81E3A1F838890667D9F0453F82FFCA772FF ] WacomPen C:\WINDOWS\System32\drivers\wacompen.sys 19:23:11.0059 0x1ec0 WacomPen - ok 19:23:11.0091 0x1ec0 [ 2CFE8CBE358CC4D5715E010E3B13559F, 54E9BFCE202FA123EB261C226094054950429AAFA304AA714F461B003E070BD9 ] WalletService C:\WINDOWS\system32\WalletService.dll 19:23:11.0107 0x1ec0 WalletService - ok 19:23:11.0116 0x1ec0 [ E9E22E116F810DAC98C5EC207F24C916, C518DC57CECA5174E7695F5632555FA08571D5F3A7D6B0C295BA4221AEA67C04 ] wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys 19:23:11.0118 0x1ec0 wanarp - ok 19:23:11.0123 0x1ec0 [ E9E22E116F810DAC98C5EC207F24C916, C518DC57CECA5174E7695F5632555FA08571D5F3A7D6B0C295BA4221AEA67C04 ] wanarpv6 C:\WINDOWS\system32\DRIVERS\wanarp.sys 19:23:11.0124 0x1ec0 wanarpv6 - ok 19:23:11.0138 0x1ec0 [ F61FA0EDBE913DFCA0CF012FDD9E99EE, DE8685230D49F940640F400D2EC4F10E677AF6D57B3FAB0342AA98BEA779D6AD ] WAS C:\WINDOWS\system32\inetsrv\iisw3adm.dll 19:23:11.0147 0x1ec0 WAS - ok 19:23:11.0220 0x1ec0 [ CF9EF65FA66B0F4982FD1FACAB3009B6, 681C1CD5DCAF87EF436B907534E98B0AB4F66BD62E46B8977A7880B854766A27 ] wbengine C:\WINDOWS\system32\wbengine.exe 19:23:11.0308 0x1ec0 wbengine - ok 19:23:11.0344 0x1ec0 [ 8F2B0ED6FCA72B34BEEA37E32D0EE106, A86C641A13FDF056B7BA13641551582199DDB08E9490003C74D999518B097C00 ] WbioSrvc C:\WINDOWS\System32\wbiosrvc.dll 19:23:11.0355 0x1ec0 WbioSrvc - ok 19:23:11.0406 0x1ec0 [ A40484AC27EE08DBE7F8DA5E1F6651ED, E3259694450C4F1DEC5E0EA5E23BF3A51F1819374DF47FECF70282AFD46114A1 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll 19:23:11.0421 0x1ec0 Wcmsvc - ok 19:23:11.0445 0x1ec0 [ 8E7FD07D2C82ACBCA52C4100C20F6542, FB2CD88557ABB5EBE6555CD4E41BF4BDC6FE6BCF26288338F2FB034B966FCBD3 ] wcncsvc C:\WINDOWS\System32\wcncsvc.dll 19:23:11.0453 0x1ec0 wcncsvc - ok 19:23:11.0468 0x1ec0 [ 9C776ED423CD03F8ABD54C2557E34416, 282C1208977070EC0280D5ABA0E03A847AEAEE31F35CDAA3C7A02D8477614EB1 ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll 19:23:11.0471 0x1ec0 WcsPlugInService - ok 19:23:11.0474 0x1ec0 [ C8BA574B3BA6AE88741AC86B1FE3C1DC, B2422CDE3A6A27B52D270D24298FF69D91D389C68456EC1805BA30AA59BAB839 ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys 19:23:11.0476 0x1ec0 WdBoot - ok 19:23:11.0507 0x1ec0 [ 927AD29D7F91B9A0C5294932374DA15E, ABB2722EF4153771D15683B5CE603D2B7D8A585357F64A3DC26114F37BE2906E ] Wdf01000 C:\WINDOWS\system32\drivers\Wdf01000.sys 19:23:11.0520 0x1ec0 Wdf01000 - ok 19:23:11.0534 0x1ec0 [ C5BB7C612B4C852836BEA39593BA5F46, 1E2B123F34500C2A8E983AAAF7F14E409B88DC396A655F19F3E7F15D0C51A762 ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys 19:23:11.0539 0x1ec0 WdFilter - ok 19:23:11.0553 0x1ec0 [ 9E0442D3880438D006D95C6F63C27274, DB1ED2BCF9986495EFA8A0B3B0156119F2E4F77AE9BDC6377ADF3A6B53C658F6 ] WdiServiceHost C:\WINDOWS\system32\wdi.dll 19:23:11.0555 0x1ec0 WdiServiceHost - ok 19:23:11.0563 0x1ec0 [ 9E0442D3880438D006D95C6F63C27274, DB1ED2BCF9986495EFA8A0B3B0156119F2E4F77AE9BDC6377ADF3A6B53C658F6 ] WdiSystemHost C:\WINDOWS\system32\wdi.dll 19:23:11.0566 0x1ec0 WdiSystemHost - ok 19:23:11.0589 0x1ec0 [ 9B2039C5673EEBF1D4E34ABC0AFB88C7, BBC85546BD86B9027426DAF148194CFE992B80FF89311B28BE0BD82C88630E8C ] wdiwifi C:\WINDOWS\system32\DRIVERS\wdiwifi.sys 19:23:11.0599 0x1ec0 wdiwifi - ok 19:23:11.0611 0x1ec0 [ BD193A7BD34B2E829FAF56306FEE3B09, ADD746D198E21242CEFA01840952B792074EFC473113CD3E7F1ABBA6A4E26AF6 ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys 19:23:11.0614 0x1ec0 WdNisDrv - ok 19:23:11.0646 0x1ec0 WdNisSvc - ok 19:23:11.0666 0x1ec0 [ 6A3B5013D5C7840E8CABD63DD021C112, 371CCEEAC7816CFE79ACA8A218CDA16469D9567CB63CC9D18C55FF047011EF25 ] WebClient C:\WINDOWS\System32\webclnt.dll 19:23:11.0675 0x1ec0 WebClient - ok 19:23:11.0690 0x1ec0 [ EED4043BC3C2D00067411730EE118354, 5E268DA4DB78C06D8F181E9408B4769F8A12C38DA52C1E986EE0CEE1101E9485 ] Wecsvc C:\WINDOWS\system32\wecsvc.dll 19:23:11.0699 0x1ec0 Wecsvc - ok 19:23:11.0715 0x1ec0 [ 6ECD7A49AFC6533821BEEA1876CEB21D, 2E972245F56F589EF1AB9DABB9214B9DE6E290878735476323A3357D8CDFC71F ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll 19:23:11.0719 0x1ec0 WEPHOSTSVC - ok 19:23:11.0737 0x1ec0 [ 09B434867028AF4895A87959EA668686, 26A7DB82E42DCBF3A77092D58AC6392754FD7C538B9EAAEFA88E9AF81DFE8E96 ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll 19:23:11.0743 0x1ec0 wercplsupport - ok 19:23:11.0758 0x1ec0 [ DE4E417B867841EE55114E588098B8D5, 878708C93FC1D919E2B9E1C5F94A0EAFC5F28BDAA58D3F29DEEDC8EC3F72D9ED ] WerSvc C:\WINDOWS\System32\WerSvc.dll 19:23:11.0765 0x1ec0 WerSvc - ok 19:23:11.0770 0x1ec0 wfpcapture - ok 19:23:11.0789 0x1ec0 [ DBF5255B759212E5217A2748567A0B5C, 5E81A9289EC39702179038B686A35FADF9974651E74222F3354B4CBE919887B0 ] WFPLWFS C:\WINDOWS\system32\drivers\wfplwfs.sys 19:23:11.0792 0x1ec0 WFPLWFS - ok 19:23:11.0825 0x1ec0 [ 4CD8826BB8320741842A9E53E48AF2BC, 97B22D9DCD0FD31D3A801946173369B0E70B1850576682C8A8180874A61CAD1A ] WiaRpc C:\WINDOWS\System32\wiarpc.dll 19:23:11.0829 0x1ec0 WiaRpc - ok 19:23:11.0843 0x1ec0 [ 4375BCBA419D19695CF566082CEF27D3, 6F86FA14B41A03F2BA51B8702F3D59B85FD488405601FA177495E4B7C576850D ] WIMMount C:\WINDOWS\system32\drivers\wimmount.sys 19:23:11.0872 0x1ec0 WIMMount - ok 19:23:11.0876 0x1ec0 WinDefend - ok 19:23:11.0892 0x1ec0 [ 037BC6DE5F58D4A74A5BB0C12DCECDCA, 92921A2615A41C434BADEB33594DABC166FC9418FBD311A3B2022410B14BFDAC ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys 19:23:11.0896 0x1ec0 WindowsTrustedRT - ok 19:23:11.0906 0x1ec0 [ 70BCD70BD53F2FE660ED94B025A043EB, B23B96DCAB30C62CB1651B3A2292155AEE8217CE3120574F5158D5E7DA09DE56 ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys 19:23:11.0907 0x1ec0 WindowsTrustedRTProxy - ok 19:23:11.0951 0x1ec0 [ 8921ECEC2C7D1B1333D77325C60D3AEA, 67C6B6A92B34D99165B5591D0730322C31E967E599BA44924249BF5AD505C132 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll 19:23:11.0965 0x1ec0 WinHttpAutoProxySvc - ok 19:23:11.0982 0x1ec0 [ 7792AE5403BF8975B6460DFC3428D129, D88F77E973D58C2CA629CC9249877A34ABF31CA1DC2A570666921A8A0DC8DEC7 ] WinMad C:\WINDOWS\System32\drivers\winmad.sys 19:23:11.0983 0x1ec0 WinMad - ok 19:23:12.0117 0x1ec0 [ 73B5230F03DC7002A70F11EA1B0BAA37, DFE8BBE52B58589686E402ACED51021E298A491F907EBA5689DF9DAFC3002BA5 ] Winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll 19:23:12.0120 0x1ec0 Winmgmt - ok 19:23:12.0183 0x1ec0 [ 2FE85D6AFF90F56A78743CC93B9CA684, B515765C4EE64E7EC16BD6AF037C084CCA6E81180AEF59E18F260406ABE6DF58 ] WinRM C:\WINDOWS\system32\WsmSvc.dll 19:23:12.0237 0x1ec0 WinRM - ok 19:23:12.0255 0x1ec0 [ 811F30EB6EE8318C4171CB95AE30B9BD, 765F6BEA3D35D523B5D7ED7356EC0C97A48066A5C4D77C1E6EDAC6F220153385 ] WINUSB C:\WINDOWS\System32\drivers\WinUSB.SYS 19:23:12.0258 0x1ec0 WINUSB - ok 19:23:12.0272 0x1ec0 [ DF00381AB8665D48DE3FF794BC6760AB, 749AC7048601061A34BFF507B574AF028FC662C0A98692E7331E667D105EC09D ] WinVerbs C:\WINDOWS\System32\drivers\winverbs.sys 19:23:12.0274 0x1ec0 WinVerbs - ok 19:23:12.0323 0x1ec0 [ 3C096082A9232B7CEE4653B9C9031769, CFD4C7D0874097ED70735FD99206F21C12749B7956C4B5D4287F160EC6A21DCC ] WlanSvc C:\WINDOWS\System32\wlansvc.dll 19:23:12.0365 0x1ec0 WlanSvc - ok 19:23:12.0429 0x1ec0 [ 0968D575D9108497A6DC37749D4A6C4F, 8BFEDBE642DA0FD8AC1E60180C192527F3D36E43089090A7BB6D8B27AB6E4F7F ] wlidsvc C:\WINDOWS\system32\wlidsvc.dll 19:23:12.0454 0x1ec0 wlidsvc - ok 19:23:12.0483 0x1ec0 [ 623ED8E10DFEEAB7AE2CD11A0451DB79, 7DDE15F22FD24556D4765F6CFD0F8E2F27370A89A962919646DE2613B33D43D6 ] WmiAcpi C:\WINDOWS\System32\drivers\wmiacpi.sys 19:23:12.0484 0x1ec0 WmiAcpi - ok 19:23:12.0504 0x1ec0 [ B2BB87531C4127ED4120E9BF5566827F, 1DDC0F00F215D77D3698F81B56D4488F384E9D017267840EDFA4846742B99B6A ] wmiApSrv C:\WINDOWS\system32\wbem\WmiApSrv.exe 19:23:12.0507 0x1ec0 wmiApSrv - ok 19:23:12.0519 0x1ec0 WMPNetworkSvc - ok 19:23:12.0535 0x1ec0 [ 78CA1FF6FE37EEFAFF99DD1C956AF60A, 883C7890C83BAB3B846A0C969D7B67031BD2EF65FA58A0620DD0CD1655C5B2C5 ] Wof C:\WINDOWS\system32\drivers\Wof.sys 19:23:12.0538 0x1ec0 Wof - ok 19:23:12.0581 0x1ec0 [ C7503A49364DB2AF7A7DE177B233081F, 85DC6D8B5631E51FCF395A884F58571A96C8C55C38CA9ABEBD9C75BABAD21E38 ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll 19:23:12.0618 0x1ec0 workfolderssvc - ok 19:23:12.0644 0x1ec0 [ 388F2A3C771B8BEE76FD1AAF9614D08E, C064EC6136CC20C4EE19C86E91CA071974933BB52C9EF8521DF4AFD060FED4A2 ] wpcfltr C:\WINDOWS\system32\DRIVERS\wpcfltr.sys 19:23:12.0645 0x1ec0 wpcfltr - ok 19:23:12.0796 0x1ec0 [ A6FCFE1F691B4A4D266F5D487FADB9FE, 2135D0C13C1295A2F76885E380CD72CB71CEB8E0D9F1C183A35935B27737D423 ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll 19:23:12.0802 0x1ec0 WPDBusEnum - ok 19:23:12.0813 0x1ec0 [ 37DCE976B3935380F2F6E39ABB6BF40D, B14E875F6D6503DF0DB6D9D2363316073AEEF394D830EA2270A0DCDA56E1CEC4 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys 19:23:12.0815 0x1ec0 WpdUpFltr - ok 19:23:12.0845 0x1ec0 [ 80F0154FD4293E562D54E97811E03499, EDE920F7F95EFBE542FE3CE066B6F7CDE3B9A37DDF3411DC86EACE9EEF294C1D ] WpnService C:\WINDOWS\system32\WpnService.dll 19:23:12.0850 0x1ec0 WpnService - ok 19:23:12.0861 0x1ec0 [ 3CD22DD5A790CF7C24D65455E565EA83, 49DB06DF6F38940E7F8691C16586A78BB20E702FD48A34E50987C06B08BDF4DB ] ws2ifsl C:\WINDOWS\system32\drivers\ws2ifsl.sys 19:23:12.0863 0x1ec0 ws2ifsl - ok 19:23:12.0882 0x1ec0 [ EBA916109A176714E6A7BD152387F13C, 7B38B1708B83271ADA8D1CEC7F5F0A75C7F2572185C0961EFC749D5DF16A03F0 ] wscsvc C:\WINDOWS\System32\wscsvc.dll 19:23:12.0890 0x1ec0 wscsvc - ok 19:23:12.0907 0x1ec0 [ E392DFAF6D0DEFC812ECC727A61F91C5, C28B6CC8AD034157CE92C7F098A9C12ADED2769E6AF954A9AAD10CC0E811DD2A ] WSDPrintDevice C:\WINDOWS\System32\drivers\WSDPrint.sys 19:23:12.0909 0x1ec0 WSDPrintDevice - ok 19:23:12.0949 0x1ec0 [ 0902C63D8C836EA4D0876FCD8D627701, 0173F83CF8DA9C6D40C64CE88BF1A40EB634008D3D48F74E4E3BBBB11F1CA8D1 ] WSDScan C:\WINDOWS\system32\DRIVERS\WSDScan.sys 19:23:12.0951 0x1ec0 WSDScan - ok 19:23:12.0956 0x1ec0 WSearch - ok 19:23:13.0058 0x1ec0 [ 9EB85802AB625970E05879D15DE56335, B7DCE5E1924A5CEE76CC07FF3B8CEDBBD0DDBB4C4ED0A3BFB8D1ABCAD7C0AA23 ] WSService C:\WINDOWS\System32\WSService.dll 19:23:13.0098 0x1ec0 WSService - ok 19:23:13.0373 0x1ec0 [ B70FF53144AC4B3C7D98BFB7D7C239BD, 996F6253F24C6D734B777988CDE03CD3A32FFBAD6D7A198F1C590B762CD8DC0E ] wuauserv C:\WINDOWS\system32\wuaueng.dll 19:23:13.0432 0x1ec0 wuauserv - ok 19:23:13.0439 0x1ec0 [ 835F60262E7E310080EA05F6752BF248, 3010B731DF3D52B56EA16FD29B66F5D3AB9412E49CA4C547BAAECA3225C5DC40 ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys 19:23:13.0440 0x1ec0 WudfPf - ok 19:23:13.0458 0x1ec0 [ 4E848DE29E4279C7F25EF5B34ED94FDD, FD7B0673F4CFA6EB66D7212288223419BFFA02EBF1F1D85F155B5397C6FB21E9 ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys 19:23:13.0466 0x1ec0 WUDFRd - ok 19:23:13.0479 0x1ec0 [ 44CF3130AEC8914705487C4AEF756A19, 30B09E32DEC02141F9B99ED012E441056C1663A72E4130EF4221ECC0ED87BF4B ] wudfsvc C:\WINDOWS\System32\WUDFSvc.dll 19:23:13.0482 0x1ec0 wudfsvc - ok 19:23:13.0488 0x1ec0 [ 4E848DE29E4279C7F25EF5B34ED94FDD, FD7B0673F4CFA6EB66D7212288223419BFFA02EBF1F1D85F155B5397C6FB21E9 ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys 19:23:13.0491 0x1ec0 WUDFWpdFs - ok 19:23:13.0635 0x1ec0 [ D23F211E1AA0787EFEC373D172D4A1C2, 6CCAB272D121C9946B2CF6B19F50E09946F0187713D54BFBD371B5C017367204 ] WwanSvc C:\WINDOWS\System32\wwansvc.dll 19:23:13.0698 0x1ec0 WwanSvc - ok 19:23:13.0896 0x1ec0 [ 9BDC2AFCEF4CF1C630D728DE1DBD495A, 5CE19974380CCEC46C181315B349E9A7CE757E19118EC5978A2293D63268BA66 ] XblAuthManager C:\WINDOWS\System32\XblAuthManager.dll 19:23:13.0969 0x1ec0 XblAuthManager - ok 19:23:14.0014 0x1ec0 [ 3EDB6162310EA223890C2DF44C68358B, 12053291809CA9C38A30EA4B2DE7115F535531F0925220C63B0312979F9CC707 ] XblGameSave C:\WINDOWS\System32\XblGameSave.dll 19:23:14.0038 0x1ec0 XblGameSave - ok 19:23:14.0058 0x1ec0 [ 30021D1E0407B71E8D5D4F8DAE4E656A, EE2E366A1CC033C068176C7E9F876FFA0EF86A15A482B6964E170DE863CFF542 ] xboxgip C:\WINDOWS\System32\drivers\xboxgip.sys 19:23:14.0062 0x1ec0 xboxgip - ok 19:23:14.0098 0x1ec0 [ 729B70C81F207541BC6A4ABAE3A8D594, 31F9BC41169D28B397C0D988C367C32FA9A95289E68AB8F38061DA478752A765 ] XboxNetApiSvc C:\WINDOWS\system32\XboxNetApiSvc.dll 19:23:14.0114 0x1ec0 XboxNetApiSvc - ok 19:23:14.0133 0x1ec0 [ 6851673B90D8CB332439E0339F81A6B6, 4E95F1A63E6DD58BB5BD6FC1D9784837D5E6F5BCF870C7ECC92DCA1AF20B6A4C ] xinputhid C:\WINDOWS\System32\drivers\xinputhid.sys 19:23:14.0134 0x1ec0 xinputhid - ok 19:23:14.0136 0x1ec0 ================ Scan global =============================== 19:23:14.0206 0x1ec0 [ C6BC6E49A7F76AA2BBA58CD08196755F, D02B6B285899E966D19323566A4780D51303D00E66674D7FF4B61991430A69A6 ] C:\WINDOWS\system32\basesrv.dll 19:23:14.0242 0x1ec0 [ 70EC9717DC3A1CDF79C703A145E0E5B7, D5ABF42063DFF799FD4099D8A347256CC79B89582B987B3DEE240AFA5BA421BE ] C:\WINDOWS\system32\winsrv.dll 19:23:14.0262 0x1ec0 [ F435AFA375ACBAEE44324DD464EDCC11, 815DE470439AE5D96348BEBF971A14FBDCA1D36F31CA0D25F69E5F41817D43D5 ] C:\WINDOWS\system32\sxssrv.dll 19:23:14.0285 0x1ec0 [ BB3D8E1C108F7244613FF3993291A922, 1642AF23F200D46F54239C3BA743F1D5ADDC6A32D5F6481264D0C1D7F3E9D533 ] C:\WINDOWS\system32\services.exe 19:23:14.0298 0x1ec0 [ Global ] - ok 19:23:14.0298 0x1ec0 ================ Scan MBR ================================== 19:23:14.0306 0x1ec0 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 19:23:14.0492 0x1ec0 \Device\Harddisk0\DR0 - ok 19:23:14.0492 0x1ec0 ================ Scan VBR ================================== 19:23:14.0494 0x1ec0 [ A1A1CC4BA4AE1C51FC0245E9B1587FFB ] \Device\Harddisk0\DR0\Partition1 19:23:14.0494 0x1ec0 \Device\Harddisk0\DR0\Partition1 - ok 19:23:14.0496 0x1ec0 [ CE26D392D9D593A07DD2BF54511814C6 ] \Device\Harddisk0\DR0\Partition2 19:23:14.0534 0x1ec0 \Device\Harddisk0\DR0\Partition2 - ok 19:23:14.0535 0x1ec0 ================ Scan generic autorun ====================== 19:23:14.0606 0x1ec0 [ FEDF59A44767480267C5615C46F0FBA5, 91FE9E7E1FC471E99BD769F4F6FC96934B91A3E5406A921CD75292021B72C3CF ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe 19:23:14.0635 0x1ec0 NvBackend - ok 19:23:14.0652 0x1ec0 [ 5DED2A3F11AE916C8F2724947E736261, 35402466FE6D02CC85A27171F55D9F7FD0AAF018D3CC410E46F0B43DCE7EA080 ] C:\Windows\system32\rundll32.exe 19:23:14.0654 0x1ec0 ShadowPlay - ok 19:23:14.0699 0x1ec0 [ 4D1DA8CE5E364D22B4FF00F163194514, 165DE474309206A0F51266F19EDB4AF3D7BAD19FDA61B636AEE7A04278DBBC2C ] C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe 19:23:14.0702 0x1ec0 USB3MON - ok 19:23:14.0783 0x1ec0 [ 0DB20318CEB155799880FEC174988933, 3840A7C9DF01F118048E806D71BDC5686A8FCF316FB35E65045988B0271532D8 ] C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe 19:23:14.0816 0x1ec0 GDFirewallTray - ok 19:23:14.0855 0x1ec0 [ 28EB4C759947F12633FCB4BB2AD2AD74, 1454A75E72DE7F7BE4B1281C66D2D0E869D1EB56204EEA9ABE857454461C8447 ] C:\Program Files (x86)\Skiller Pro\Monitor.exe 19:23:14.0861 0x1ec0 Skiller Pro - ok 19:23:14.0892 0x1ec0 [ 4E373D10060E4B07DF3DC03117D3795E, 391FECB8DC7CA211A9AA31FC770C0C3DF610ACBC3E30F8B855BFA8836D624338 ] C:\Program Files (x86)\G DATA\InternetSecurity\DelayLoader\AutorunDelayLoader.exe 19:23:14.0898 0x1ec0 G Data ASM - ok 19:23:14.0944 0x1ec0 [ 9AC10DF42CC1E811BB8608A0B609A7D0, 8337D83D40E5FA5A38109F3C4E6AF217AA4D112E9174FC2E5662A0DE77249F63 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 19:23:14.0958 0x1ec0 SunJavaUpdateSched - ok 19:23:15.0020 0x1ec0 [ 5B1236F78BE4866CDFB8B616DA44DAB7, DDBD48E1C71C01C57C528EEBDB24E1FDD9434ACA9C238772EFE5DB1A45269D39 ] C:\Program Files (x86)\BlueStacks\HD-Agent.exe 19:23:15.0034 0x1ec0 BlueStacks Agent - ok 19:23:15.0357 0x1ec0 [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe 19:23:15.0450 0x1ec0 OneDriveSetup - ok 19:23:15.0604 0x1ec0 [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe 19:23:15.0687 0x1ec0 OneDriveSetup - ok 19:23:15.0780 0x1ec0 [ 2287DAEA100837E40232FD9053F635D8, 8E905B8BC72F8DD6C7C71A7E04CD8D8EC1E9AD2B77EF5A48E089E439A75043D6 ] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIHRE.EXE 19:23:15.0788 0x1ec0 EPLTarget\P0000000000000000 - ok 19:23:15.0980 0x1ec0 [ 9D0D72B696B8CDF9AE368E542FD042CE, 8CD19E8B609041A6C226D57D40509175827C75DEF93378B53A814060BB7A9E0B ] C:\Users\PC\AppData\Roaming\Spotify\SpotifyWebHelper.exe 19:23:16.0002 0x1ec0 Spotify Web Helper - ok 19:23:16.0100 0x1ec0 [ C2D2FFD27F46815951C9562F0A2EC864, 892A5DC5C3D797E3FD36230710BA9AF43ADA5CDFD19A03268D20D5A9DA3CCB3A ] C:\Users\PC\AppData\Local\Microsoft\OneDrive\OneDrive.exe 19:23:16.0105 0x1ec0 OneDrive - ok 19:23:16.0239 0x1ec0 [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe 19:23:16.0324 0x1ec0 OneDriveSetup - ok 19:23:16.0329 0x1ec0 Waiting for KSN requests completion. In queue: 166 19:23:17.0330 0x1ec0 Waiting for KSN requests completion. In queue: 166 19:23:18.0330 0x1ec0 Waiting for KSN requests completion. In queue: 166 19:23:18.0815 0x14d4 Object required for P2P: [ 7EBD20284AC9BF9F0A020B86769BB074 ] Tcpip 19:23:19.0330 0x1ec0 Waiting for KSN requests completion. In queue: 152 19:23:20.0330 0x1ec0 Waiting for KSN requests completion. In queue: 152 19:23:21.0315 0x14d4 Object send P2P result: true 19:23:21.0316 0x14d4 Object required for P2P: [ 7EBD20284AC9BF9F0A020B86769BB074 ] Tcpip6 19:23:21.0331 0x1ec0 Waiting for KSN requests completion. In queue: 151 19:23:22.0331 0x1ec0 Waiting for KSN requests completion. In queue: 151 19:23:23.0332 0x1ec0 Waiting for KSN requests completion. In queue: 151 19:23:23.0858 0x14d4 Object send P2P result: true 19:23:23.0873 0x14d4 Object required for P2P: [ 0968D575D9108497A6DC37749D4A6C4F ] wlidsvc 19:23:24.0332 0x1ec0 Waiting for KSN requests completion. In queue: 39 19:23:25.0332 0x1ec0 Waiting for KSN requests completion. In queue: 39 19:23:26.0332 0x1ec0 Waiting for KSN requests completion. In queue: 39 19:23:26.0381 0x14d4 Object send P2P result: true 19:23:27.0360 0x1ec0 AV detected via SS2: G DATA INTERNET SECURITY, C:\Program Files (x86)\G DATA\InternetSecurity\AVK\avkwscpe.exe ( 25.1.0.0 ), 0x41000 ( enabled : updated ) 19:23:27.0506 0x1ec0 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.8.10240.16384 ), 0x60100 ( disabled : updated ) 19:23:27.0508 0x1ec0 FW detected via SS2: G*DATA Personal Firewall, C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFwSvcx64.exe ( 22.0.0.1 ), 0x41010 ( enabled ) 19:23:29.0864 0x1ec0 ============================================================ 19:23:29.0864 0x1ec0 Scan finished 19:23:29.0864 0x1ec0 ============================================================ 19:23:29.0877 0x0a00 Detected object count: 0 19:23:29.0877 0x0a00 Actual detected object count: 0 |
01.11.2015, 07:00 | #5 |
/// the machine /// TB-Ausbilder | Junkware PUP gefunden von GDATA gemeldet hi, Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
01.11.2015, 19:10 | #6 |
| Junkware PUP gefunden von GDATA gemeldet Hallo, ich hoffe, das ich alles so gemacht habe, wie gesagt wurde. Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 01.11.2015 Suchlaufzeit: 17:44 Protokolldatei: mbam.txt Administrator: Ja Version: 2.2.0.1024 Malware-Datenbank: v2015.11.01.04 Rootkit-Datenbank: v2015.10.28.01 Lizenz: Kostenlose Version Malware-Schutz: Deaktiviert Schutz vor bösartigen Websites: Deaktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 10 CPU: x64 Dateisystem: NTFS Benutzer: PC Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 400597 Abgelaufene Zeit: 12 Min., 19 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (keine bösartigen Elemente erkannt) Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 0 (keine bösartigen Elemente erkannt) Registrierungswerte: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Ordner: 0 (keine bösartigen Elemente erkannt) Dateien: 0 (keine bösartigen Elemente erkannt) Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter # AdwCleaner v5.015 - Bericht erstellt am 01/11/2015 um 18:30:01 # Aktualisiert am 26/10/2015 von Xplode # Datenbank : 2015-10-29.1 [Server] # Betriebssystem : Windows 10 Home (x64) # Benutzername : PC - PC-PC # Gestartet von : C:\Users\PC\Downloads\AdwCleaner_5.015.exe # Option : Löschen # Unterstützung : hxxp://toolslib.net/forum ***** [ Dienste ] ***** ***** [ Ordner ] ***** ***** [ Dateien ] ***** ***** [ DLLs ] ***** ***** [ Verknüpfungen ] ***** ***** [ Geplante Tasks ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Internetbrowser ] ***** ************************* :: Proxy Einstellungen zurückgesetzt :: Winsock Einstellungen zurückgesetzt :: Chrome Richtlinien gelöscht ########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [749 Bytes] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 7.6.4 (09.28.2015:1) OS: Windows 10 Home x64 Ran by PC on 01.11.2015 at 18:55:59,10 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Tasks ~~~ Registry Values ~~~ Registry Keys ~~~ Files Successfully deleted: [File] C:\Users\PC\desktop\twitter.lnk ~~~ Folders Successfully deleted: [Folder] C:\Users\PC\Appdata\Local\crashrpt ~~~ FireFox Emptied folder: C:\Users\PC\AppData\Roaming\mozilla\firefox\profiles\hkpxzif6.default\minidumps [4 files] ~~~ Chrome [C:\Users\PC\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - default search provider reset [C:\Users\PC\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted: [C:\Users\PC\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset [C:\Users\PC\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted: [] ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 01.11.2015 at 18:58:27,13 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
01.11.2015, 19:14 | #7 |
| Junkware PUP gefunden von GDATA gemeldet Ich musste wegen der Länge einige Daten aus Win/system32 entfernen!!!!! Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:29-10-2015 durchgeführt von PC (Administrator) auf PC-PC (01-11-2015 19:01:09) Gestartet von C:\Users\PC\Desktop Geladene Profile: PC (Verfügbare Profile: PC & DefaultAppPool) Platform: Windows 10 Home (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe (G Data Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\AVK\AVKWCtlx64.exe (G Data Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\AVK\AVKService.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (G Data Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFwSvcx64.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKBap64.exe (G Data Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\AVKTray\AVKTray.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\GDKBFltExe32.exe (G DATA Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2654512 2015-10-04] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-27] (Intel Corporation) HKLM-x32\...\Run: [GDFirewallTray] => C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe [1864312 2015-06-16] (G DATA Software AG) HKLM-x32\...\Run: [Skiller Pro] => C:\Program Files (x86)\Skiller Pro\Monitor.exe [475136 2014-02-26] () HKLM-x32\...\Run: [G Data ASM] => C:\Program Files (x86)\G DATA\InternetSecurity\DelayLoader\AutorunDelayLoader.exe [434296 2015-02-20] (G Data Software AG) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation) HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [921208 2015-08-11] (BlueStack Systems, Inc.) HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Program Files (x86)\G DATA\InternetSecurity\AVKTray\AVKTray.exe,c:\program files (x86)\g data\internetsecurity\avkkid\avkcks.exe HKU\S-1-5-21-823076904-883910654-2515392582-1000\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIHRE.EXE [283232 2015-08-23] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-823076904-883910654-2515392582-1000\...\Run: [Spotify Web Helper] => C:\Users\PC\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2030912 2015-10-22] (Spotify Ltd) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{26c55a27-e1e3-482d-ba43-dd33bda9061e}: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{6f7b1a29-ef94-4b8b-a72a-cd8bbfc2bda4}: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{9a454c67-255c-4440-9464-b6c5851e001c}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{ce8e99dc-9382-402a-9169-96b0c85e1e25}: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{facf96a9-41e8-4d31-a479-bbd2e92f64a2}: [DhcpNameServer] 192.168.42.129 Internet Explorer: ================== HKU\S-1-5-21-823076904-883910654-2515392582-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.startseite24.net HKU\S-1-5-21-823076904-883910654-2515392582-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp SearchScopes: HKLM -> DefaultScope {4BF98619-BB47-4040-AFCE-5D5E1C197726} URL = hxxp://www.startseite24.net/?q={searchTerms} SearchScopes: HKLM -> {4BF98619-BB47-4040-AFCE-5D5E1C197726} URL = hxxp://www.startseite24.net/?q={searchTerms} SearchScopes: HKU\S-1-5-21-823076904-883910654-2515392582-1000 -> DefaultScope {4BF98619-BB47-4040-AFCE-5D5E1C197726} URL = hxxp://www.startseite24.net/?q={searchTerms} SearchScopes: HKU\S-1-5-21-823076904-883910654-2515392582-1000 -> {4BF98619-BB47-4040-AFCE-5D5E1C197726} URL = hxxp://www.startseite24.net/?q={searchTerms} BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_60\bin\ssv.dll [2015-09-02] (Oracle Corporation) BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26] (SEIKO EPSON CORPORATION) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-09-02] (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-08-13] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-13] (Oracle Corporation) Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26] (SEIKO EPSON CORPORATION) FireFox: ======== FF ProfilePath: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default FF Homepage: google.de FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_185.dll [2015-10-01] () FF Plugin: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-09-02] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-09-02] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_185.dll [2015-10-01] () FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-08-13] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-08-13] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-08-07] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-08-07] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-18] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-18] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-07-03] (Adobe Systems Inc.) FF SearchPlugin: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\searchplugins\idealode.xml [2015-08-12] FF SearchPlugin: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\searchplugins\ixquick-https---deutsch.xml [2015-11-01] FF SearchPlugin: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\searchplugins\websuche.xml [2015-08-23] FF Extension: WOT - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2015-08-12] FF Extension: Self-Destructing Cookies - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\Extensions\jid0-9XfBwUWnvPx4wWsfBWMCm4Jj69E@jetpack.xpi [2015-10-12] FF Extension: Adblock Plus - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-09-25] FF Extension: BetterPrivacy - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\Extensions\{d40f5e7b-d2cf-4856-b441-cc613eeffbe3}.xpi [2015-08-12] Chrome: ======= CHR Profile: C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-08-12] CHR Extension: (Google Docs) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-08-12] CHR Extension: (Google Drive) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-08-12] CHR Extension: (YouTube) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-08-12] CHR Extension: (Google-Suche) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-08-12] CHR Extension: (Google Tabellen) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-08-12] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-08-12] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-12] CHR Extension: (Google Mail) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-08-12] CHR Profile: C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1 CHR Extension: (Google Docs) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2015-08-31] CHR Extension: (Google Drive) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-08-31] CHR Extension: (YouTube) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-08-31] CHR Extension: (Google-Suche) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-08-31] CHR Extension: (Google Text & Tabellen Offline) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-09] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-08-31] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-31] CHR Extension: (Google Mail) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-08-31] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AVKProxy; C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe [2558072 2015-06-19] (G Data Software AG) R2 AVKService; C:\Program Files (x86)\G DATA\InternetSecurity\AVK\AVKService.exe [966776 2015-06-16] (G Data Software AG) R2 AVKWCtl; C:\Program Files (x86)\G DATA\InternetSecurity\AVK\AVKWCtlx64.exe [3711712 2015-06-16] (G Data Software AG) S3 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [437880 2015-08-11] (BlueStack Systems, Inc.) S2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [417400 2015-08-11] (BlueStack Systems, Inc.) S2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [847480 2015-08-11] (BlueStack Systems, Inc.) S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342240 2015-06-03] (Futuremark) R3 GDFwSvc; C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFwSvcx64.exe [3202368 2015-06-19] (G Data Software AG) R3 GDScan; C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe [789624 2015-06-16] (G Data Software AG) S2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155376 2015-10-04] (NVIDIA Corporation) S2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [330136 2015-10-23] (Intel Corporation) S2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-07-05] (Intel Corporation) S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-08-21] (Intel Corporation) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1135416 2015-10-05] (Malwarebytes) R2 MSMQ; C:\Windows\system32\mqsvc.exe [26112 2015-10-23] (Microsoft Corporation) S2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872688 2015-10-04] (NVIDIA Corporation) S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5568816 2015-10-04] (NVIDIA Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2007048 2015-08-10] (Electronic Arts) S2 Realtek11nSU; C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtlService.exe [36864 2010-04-16] (Realtek) [Datei ist nicht signiert] S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [84480 2015-10-23] (Microsoft Corporation) R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [578560 2015-10-23] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R0 asahci64; C:\Windows\System32\drivers\asahci64.sys [49760 2011-09-21] (Asmedia Technology) S2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [146040 2015-08-11] (BlueStack Systems) R0 GDBehave; C:\Windows\System32\drivers\GDBehave.sys [158720 2015-08-13] (G Data Software AG) R3 GDKBB; C:\Windows\system32\drivers\GDKBB64.sys [27648 2015-08-12] (G Data Software AG) R3 GDKBFlt; C:\Windows\system32\drivers\GDKBFlt64.sys [20992 2015-08-12] (G Data Software AG) R1 GDMnIcpt; C:\Windows\system32\drivers\MiniIcpt.sys [230912 2015-08-13] (G Data Software AG) R3 GDPkIcpt; C:\Windows\system32\drivers\PktIcpt.sys [76288 2015-08-13] (G Data Software AG) R1 gdwfpcd; C:\Windows\System32\drivers\gdwfpcd64.sys [65024 2015-08-13] (G Data Software AG) R1 GRD; C:\WINDOWS\system32\drivers\GRD.sys [106272 2015-10-29] (G Data Software) R1 HookCentre; C:\Windows\system32\drivers\HookCentre.sys [125952 2015-08-13] (G Data Software AG) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes) S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation) R3 MQAC; C:\Windows\System32\drivers\mqac.sys [175104 2015-10-23] (Microsoft Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19760 2015-10-04] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation) S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] () S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation) U3 idsvc; kein ImagePath S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] U3 wpcsvc; kein ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-11-01 18:58 - 2015-11-01 18:58 - 00001302 _____ C:\Users\PC\Desktop\JRT.txt 2015-11-01 18:55 - 2015-11-01 18:55 - 01798976 _____ (Malwarebytes) C:\Users\PC\Desktop\JRT.exe 2015-11-01 18:53 - 2015-11-01 18:53 - 00016148 _____ C:\WINDOWS\system32\PC-PC_PC_HistoryPrediction.bin 2015-11-01 18:34 - 2015-11-01 18:34 - 00000827 _____ C:\Users\PC\Desktop\AdwCleaner[C1].txt 2015-11-01 18:05 - 2015-11-01 18:30 - 00000000 ____D C:\AdwCleaner 2015-11-01 18:02 - 2015-11-01 18:02 - 01694208 _____ C:\Users\PC\Downloads\AdwCleaner_5.015.exe 2015-11-01 18:00 - 2015-11-01 18:00 - 00001193 _____ C:\Users\PC\Desktop\mbam.txt 2015-11-01 17:40 - 2015-11-01 17:43 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-11-01 17:40 - 2015-11-01 17:40 - 00001171 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-11-01 17:40 - 2015-11-01 17:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-11-01 17:40 - 2015-11-01 17:40 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-11-01 17:40 - 2015-11-01 17:40 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-11-01 17:40 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-11-01 17:40 - 2015-10-05 09:50 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-11-01 17:40 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2015-11-01 17:34 - 2015-11-01 17:35 - 22908888 _____ (Malwarebytes ) C:\Users\PC\Downloads\mbam-setup-2.2.0.1024.exe 2015-10-31 19:53 - 2015-11-01 18:36 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log 2015-10-31 19:50 - 2015-11-01 18:31 - 00000892 _____ C:\WINDOWS\PFRO.log 2015-10-30 19:22 - 2015-10-30 19:22 - 04404952 _____ (Kaspersky Lab ZAO) C:\Users\PC\Desktop\tdsskiller.exe 2015-10-30 19:21 - 2015-10-31 00:18 - 00040334 _____ C:\Users\PC\Desktop\Addition.txt 2015-10-30 19:20 - 2015-11-01 19:01 - 00018583 _____ C:\Users\PC\Desktop\FRST.txt 2015-10-30 19:20 - 2015-10-30 19:20 - 02198016 _____ (Farbar) C:\Users\PC\Desktop\FRST64.exe 2015-10-30 18:12 - 2015-10-30 18:12 - 06762072 _____ (Piriform Ltd) C:\Users\PC\Downloads\ccsetup511.exe 2015-10-30 17:38 - 2015-11-01 19:01 - 00000000 ____D C:\FRST 2015-10-30 15:26 - 2015-10-28 00:38 - 21871616 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2015-10-30 15:26 - 2015-10-28 00:16 - 18801664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2015-10-30 15:26 - 2015-10-21 13:45 - 00541024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll 2015-10-30 15:26 - 2015-10-21 13:44 - 00459104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys 2015-10-30 15:26 - 2015-10-21 13:43 - 01392480 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2015-10-30 15:26 - 2015-10-21 13:39 - 03621248 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-10-30 15:26 - 2015-10-21 13:00 - 24595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-10-30 15:26 - 2015-10-21 13:00 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2015-10-30 15:26 - 2015-10-21 12:59 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2015-10-30 15:26 - 2015-10-21 12:57 - 02418688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2015-10-30 15:26 - 2015-10-21 12:52 - 02987520 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll 2015-10-30 15:26 - 2015-10-21 12:50 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2015-10-30 15:26 - 2015-10-21 12:48 - 01068032 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2015-10-30 15:26 - 2015-10-21 12:47 - 00453120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll 2015-10-30 15:26 - 2015-10-21 12:46 - 02179584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2015-10-30 15:26 - 2015-10-21 12:46 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-10-30 15:26 - 2015-10-21 12:44 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll 2015-10-30 15:26 - 2015-10-21 12:44 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2015-10-30 15:26 - 2015-10-21 12:43 - 02675200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll 2015-10-30 15:26 - 2015-10-21 12:42 - 00627712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2015-10-30 15:26 - 2015-10-21 12:41 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2015-10-30 15:26 - 2015-10-21 12:40 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll 2015-10-30 15:26 - 2015-10-21 12:38 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll 2015-10-30 15:26 - 2015-10-21 06:53 - 00961376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2015-10-30 15:26 - 2015-10-21 06:49 - 02878512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-10-30 15:26 - 2015-10-21 06:13 - 19326464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-10-30 15:26 - 2015-10-21 06:11 - 02647040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2015-10-30 15:26 - 2015-10-21 06:08 - 01918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2015-10-30 15:26 - 2015-10-21 06:05 - 02639872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll 2015-10-30 15:26 - 2015-10-21 06:03 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-10-30 15:26 - 2015-10-21 06:03 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll 2015-10-30 15:26 - 2015-10-21 05:58 - 02049536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll 2015-10-30 15:26 - 2015-10-21 05:58 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2015-10-30 15:26 - 2015-10-21 05:55 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll 2015-10-29 22:15 - 2015-08-31 16:04 - 00000030 _____ C:\AVScanner.ini 2015-10-29 20:40 - 2015-10-29 20:40 - 00106272 _____ (G Data Software) C:\WINDOWS\system32\Drivers\GRD.sys 2015-10-29 20:40 - 2015-10-29 20:40 - 00018160 _____ (G Data Software) C:\WINDOWS\system32\Drivers\GdPhyMem.sys 2015-10-29 19:38 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll 2015-10-29 19:38 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll 2015-10-29 19:38 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll 2015-10-29 19:38 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll 2015-10-29 19:38 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll 2015-10-29 19:38 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll 2015-10-29 19:38 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll 2015-10-29 19:38 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll 2015-10-29 19:38 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll 2015-10-29 19:38 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll 2015-10-29 19:38 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll 2015-10-29 19:38 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll 2015-10-29 19:38 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll 2015-10-29 19:38 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll 2015-10-29 19:38 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll 2015-10-29 19:38 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll 2015-10-29 19:38 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll 2015-10-29 19:38 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll 2015-10-29 19:38 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll 2015-10-29 19:38 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll 2015-10-29 19:38 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll 2015-10-29 19:38 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll 2015-10-29 19:38 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll 2015-10-29 19:38 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll 2015-10-29 19:38 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll 2015-10-29 19:38 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll 2015-10-29 19:38 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll 2015-10-29 19:38 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll 2015-10-29 19:38 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll 2015-10-29 19:38 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll 2015-10-29 19:38 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll 2015-10-29 19:38 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll 2015-10-29 19:38 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll 2015-10-29 19:38 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll 2015-10-29 19:38 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll 2015-10-29 19:38 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll 2015-10-29 19:38 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll 2015-10-29 19:38 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll 2015-10-29 19:38 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll 2015-10-29 19:38 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll 2015-10-29 19:38 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll 2015-10-29 19:38 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll 2015-10-29 19:38 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll 2015-10-29 19:38 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll 2015-10-29 19:38 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll 2015-10-29 19:38 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll 2015-10-29 19:38 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll 2015-10-29 19:38 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll 2015-10-29 19:38 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll 2015-10-29 19:38 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll 2015-10-29 19:38 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll 2015-10-29 19:38 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll 2015-10-29 19:38 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll 2015-10-29 19:38 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll 2015-10-29 19:38 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll 2015-10-29 19:38 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll 2015-10-29 19:38 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll 2015-10-29 19:38 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll 2015-10-29 19:38 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll 2015-10-29 19:38 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll 2015-10-29 19:38 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll 2015-10-29 19:38 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll 2015-10-29 19:38 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll 2015-10-29 19:38 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll 2015-10-29 19:38 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll 2015-10-29 19:38 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll 2015-10-29 19:38 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll 2015-10-29 19:38 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll 2015-10-29 19:38 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll 2015-10-29 19:38 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll 2015-10-29 19:38 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll 2015-10-29 19:38 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll 2015-10-29 19:38 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll 2015-10-29 19:38 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll 2015-10-29 19:38 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll 2015-10-29 19:38 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll 2015-10-29 19:38 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll 2015-10-29 19:38 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll 2015-10-29 19:38 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll 2015-10-29 19:38 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll 2015-10-29 19:38 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll 2015-10-29 19:38 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll 2015-10-29 19:38 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll 2015-10-29 19:38 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll 2015-10-29 19:38 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll 2015-10-29 19:38 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll 2015-10-29 19:38 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll 2015-10-29 19:38 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll 2015-10-29 19:38 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll 2015-10-29 19:38 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll 2015-10-29 19:38 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll 2015-10-29 19:38 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll 2015-10-29 19:38 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll 2015-10-29 19:38 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll 2015-10-29 19:38 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll 2015-10-29 19:38 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll 2015-10-29 19:38 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll 2015-10-29 19:38 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll 2015-10-29 19:38 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll 2015-10-29 19:38 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll 2015-10-29 19:38 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll 2015-10-29 19:38 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll 2015-10-29 19:38 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll 2015-10-29 19:38 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll 2015-10-29 19:38 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll 2015-10-29 19:38 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll 2015-10-29 19:38 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll 2015-10-29 19:38 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll 2015-10-29 19:38 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll 2015-10-29 19:38 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll 2015-10-29 19:38 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll 2015-10-29 19:38 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll 2015-10-29 19:38 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll 2015-10-29 19:38 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll 2015-10-29 19:38 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll 2015-10-29 19:38 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll 2015-10-29 19:38 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll 2015-10-29 19:38 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll 2015-10-29 19:38 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll 2015-10-29 19:38 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll 2015-10-29 19:38 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll 2015-10-29 19:38 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll 2015-10-29 19:38 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll 2015-10-29 19:38 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll 2015-10-29 19:38 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll 2015-10-29 19:38 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll 2015-10-29 19:38 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll 2015-10-29 19:38 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll 2015-10-29 19:38 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll 2015-10-29 19:38 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll 2015-10-29 19:38 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll 2015-10-29 19:38 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll 2015-10-29 19:38 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll 2015-10-29 19:38 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll 2015-10-29 19:38 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll 2015-10-29 19:38 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll 2015-10-29 19:38 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll 2015-10-29 19:38 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll 2015-10-29 19:38 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll 2015-10-29 19:38 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll 2015-10-29 19:35 - 2015-10-29 19:35 - 00000219 _____ C:\Users\PC\Desktop\Counter-Strike Global Offensive - SDK.url 2015-10-29 19:24 - 2015-10-29 19:24 - 00000000 ____D C:\Users\PC\AppData\Local\NetworkTiles 2015-10-28 16:54 - 2015-10-28 16:54 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Vorlagen 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Startmenü 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Netzwerkumgebung 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Lokale Einstellungen 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Eigene Dateien 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Druckumgebung 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Musik 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Bilder 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Verlauf 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Anwendungsdaten 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Anwendungsdaten 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 ____D C:\Users\DefaultAppPool 2015-10-28 16:54 - 2015-10-23 18:05 - 00000000 ___RD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-28 16:54 - 2015-07-30 23:42 - 00000000 __RSD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-10-28 16:54 - 2015-07-30 23:42 - 00000000 ___RD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-10-28 16:54 - 2015-07-30 23:42 - 00000000 ___RD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-10-28 16:54 - 2015-07-30 23:42 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-10-25 11:49 - 2015-10-25 11:49 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2015-10-25 11:03 - 2015-10-25 11:03 - 00000144 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2015-10-23 21:43 - 2015-10-27 19:20 - 00000000 ____D C:\Users\PC\AppData\Local\Comms 2015-10-23 19:04 - 2015-10-23 19:04 - 22915568 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 17846272 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 12335600 _____ (Intel Corporation) C:\WINDOWS\system32\igd10iumd64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 11905432 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10iumd32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 11053048 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 10574992 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumdim32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 08528896 _____ (Intel Corporation) C:\WINDOWS\system32\ig7icd64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 06513648 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig7icd32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 04637640 _____ (Intel Corporation) C:\WINDOWS\system32\igdusc64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 04371888 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 04369816 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 04025864 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAAC64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 03672344 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdusc32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 02506960 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiVAD64.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 02037232 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 01995760 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 01793024 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 01768432 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 01470472 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSecureSourceFilter64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 01156000 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 01151840 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00970656 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00866824 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiWinNextAgent64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00661000 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAudioFilter64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00618992 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00617992 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMux64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00556960 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00554928 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00469216 _____ (Intel Corporation) C:\WINDOWS\system32\igdmd64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00444832 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUMS64.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00410528 _____ (Intel Corporation) C:\WINDOWS\system32\CustomModeAppv2_0.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00409520 _____ (Intel Corporation) C:\WINDOWS\system32\CustomModeApp.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00395168 _____ (Intel Corporation) C:\WINDOWS\system32\igfxTray.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00394224 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00387056 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00378824 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmd32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00374272 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00357912 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSilenceFilter64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00329216 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00316245 _____ C:\WINDOWS\system32\DisplayAudiox64.cab 2015-10-23 19:04 - 2015-10-23 19:04 - 00296944 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00265712 _____ C:\WINDOWS\system32\igfxCPL.cpl 2015-10-23 19:04 - 2015-10-23 19:04 - 00258456 _____ (Intel Corporation) C:\WINDOWS\system32\igfxHK.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00232960 _____ C:\WINDOWS\system32\igdde64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00230384 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00229664 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00225288 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUtils64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00216552 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v4276.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00205728 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00199088 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00194560 _____ C:\WINDOWS\SysWOW64\igdde32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00194368 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00193536 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00192520 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiDDEAgent64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00188884 _____ C:\WINDOWS\system32\resTHA.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00181524 _____ C:\WINDOWS\system32\resELL.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00177300 _____ C:\WINDOWS\system32\resRUS.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00172528 _____ C:\WINDOWS\system32\igdail64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00169368 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00165808 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00163840 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00163044 _____ C:\WINDOWS\system32\resARA.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00162500 _____ C:\WINDOWS\system32\resHEB.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00162484 _____ C:\WINDOWS\system32\resJPN.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00157860 _____ C:\WINDOWS\system32\resHUN.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00157844 _____ C:\WINDOWS\system32\resFRA.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00156100 _____ C:\WINDOWS\system32\resKOR.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00156020 _____ C:\WINDOWS\system32\resDEU.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00155988 _____ C:\WINDOWS\system32\resITA.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00155828 _____ C:\WINDOWS\system32\resROM.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00155716 _____ C:\WINDOWS\system32\resESN.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00155268 _____ C:\WINDOWS\system32\resPLK.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00155172 _____ C:\WINDOWS\system32\resSKY.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00154980 _____ C:\WINDOWS\system32\resNLD.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00154372 _____ C:\WINDOWS\system32\resPTB.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00154260 _____ C:\WINDOWS\system32\resTRK.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00154212 _____ C:\WINDOWS\system32\resCSY.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00154096 _____ C:\WINDOWS\SysWOW64\igdail32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00154084 _____ C:\WINDOWS\system32\resPTG.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00153620 _____ C:\WINDOWS\system32\resFIN.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00153236 _____ C:\WINDOWS\system32\resHRV.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00152772 _____ C:\WINDOWS\system32\resSVE.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00152644 _____ C:\WINDOWS\system32\resSLV.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00151668 _____ C:\WINDOWS\system32\resNOR.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00151156 _____ C:\WINDOWS\system32\resDAN.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00149812 _____ C:\WINDOWS\system32\resENU.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00148052 _____ C:\WINDOWS\system32\resCHT.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00147188 _____ C:\WINDOWS\system32\resCHS.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00143368 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMCUMD64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00109064 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiLogServer64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00102912 _____ C:\WINDOWS\system32\IccLibDll_x64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00096752 _____ C:\WINDOWS\system32\igfxCUIServicePS.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00078336 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00072704 _____ (Khronos Group) C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00069616 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00069120 _____ (Khronos Group) C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00042232 _____ (Intel Corporation) C:\WINDOWS\system32\igfxexps.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00039424 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00020976 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00018944 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00018944 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00018944 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00015344 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00013824 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00002560 _____ C:\WINDOWS\system32\iglhxs64.vp 2015-10-23 19:02 - 2015-10-29 22:20 - 00000000 ____D C:\Users\PC\OneDrive 2015-10-23 19:02 - 2015-10-23 19:03 - 00002380 _____ C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-10-23 19:02 - 2015-10-23 19:02 - 00000000 ____D C:\Users\PC\AppData\Local\MicrosoftEdge 2015-10-23 19:02 - 2015-07-09 19:39 - 04847104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll 2015-10-23 19:02 - 2015-07-09 19:36 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll 2015-10-23 19:02 - 2015-07-09 19:28 - 06358016 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll 2015-10-23 19:02 - 2015-07-09 19:25 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll 2015-10-23 19:02 - 2015-07-09 19:25 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll 2015-10-23 19:01 - 2015-10-23 19:01 - 00001047 _____ C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optionale Features.lnk 2015-10-23 19:00 - 2015-10-28 21:00 - 00000000 ____D C:\Users\PC\AppData\Local\Packages 2015-10-23 19:00 - 2015-10-23 19:00 - 00000000 ____D C:\Users\PC\AppData\Local\Publishers 2015-10-23 18:59 - 2015-10-24 09:44 - 00000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat 2015-10-23 18:59 - 2015-10-23 18:59 - 00000020 ___SH C:\Users\PC\ntuser.ini 2015-10-23 18:59 - 2015-10-23 18:59 - 00000000 ____D C:\Users\PC\AppData\Local\TileDataLayer 2015-10-23 18:55 - 2015-10-23 22:25 - 00000000 ___DC C:\WINDOWS\Panther 2015-10-23 18:55 - 2015-10-23 18:01 - 00000000 __SHD C:\Recovery 2015-10-23 18:52 - 2015-10-23 18:52 - 00000000 ____D C:\Windows.old 2015-10-23 18:51 - 2015-10-23 18:51 - 22322624 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 20858360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 16708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 13027840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 12504064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 11262976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 08020320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 07569408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 07523840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 07055872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 06487248 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 06101504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 05120056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 05079552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 04792320 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 03781120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 03586560 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 03580416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02824248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02740224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02660864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02573768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02494712 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02464216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02446648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02432336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 02236416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02228736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02226688 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02207232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02156400 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02154808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02093056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01997336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01983824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 01895568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01871360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01844736 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01812480 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01766952 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01601536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01594368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01563472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01563392 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01423872 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01382400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 01357888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01331200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01295712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01294352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2015-10-23 18:51 - 2015-10-23 18:51 - 01290240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01276416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01216512 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcenter.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01205248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01203712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01181696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01171456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcenter.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01168736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 01162240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01123400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 01104384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01018568 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2015-10-23 18:51 - 2015-10-23 18:51 - 01010176 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00980832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2015-10-23 18:51 - 2015-10-23 18:51 - 00966416 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00928256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00928256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00910848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00899584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00894256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Wdf01000.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00869376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00858408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00856576 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00856576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00809352 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00796160 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00784136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00781976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00780288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00766976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00764416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00757760 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00690688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00677888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx02000.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00658528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00650240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00646672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00625152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00591360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00587264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00584656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00579584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00574464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00555768 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00553808 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00537080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00525312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00516448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2015-10-23 18:51 - 2015-10-23 18:51 - 00513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00508248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00505696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00501008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00498016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00476760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00454512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00441168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationWebproxy.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00434376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00428128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00407608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00406864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2015-10-23 18:51 - 2015-10-23 18:51 - 00403456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00395088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00378368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationGeofences.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00332624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00278352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00253440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00243760 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeWiFi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationCrowdsource.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeCell.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeIP.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00160256 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\KeywordDetectorMsftSidAdapter.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00102304 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00099664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationWiFiAdapter.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00088384 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00078528 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00074880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Speech.Pal.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Speech.Pal.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\buttonconverter.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncmlhook.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe 2015-10-23 18:47 - 2015-10-23 18:47 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\WINDOWS\SysWOW64\BestPractices 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\WINDOWS\system32\msmq 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\WINDOWS\system32\BestPractices 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\Program Files\Reference Assemblies 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\Program Files\MSBuild 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\Program Files (x86)\MSBuild 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\inetpub 2015-10-23 18:43 - 2015-06-17 18:10 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2015-10-23 18:43 - 2015-06-17 18:10 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2015-10-23 18:43 - 2015-06-17 18:10 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2015-10-23 18:43 - 2015-05-29 21:07 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2015-10-23 18:43 - 2015-05-29 21:07 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-10-23 18:43 - 2015-05-29 21:07 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Vorlagen 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Startmenü 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-10-23 18:12 - 2015-10-23 18:12 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat 2015-10-23 18:05 - 2015-10-23 18:05 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2015-10-23 18:03 - 2015-10-23 18:03 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines 2015-10-23 18:02 - 2015-10-25 10:55 - 00000000 ____D C:\Users\PC 2015-10-23 18:02 - 2015-10-23 18:59 - 00000000 ___RD C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Vorlagen 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Startmenü 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Netzwerkumgebung 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Lokale Einstellungen 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Eigene Dateien 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Druckumgebung 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Documents\Eigene Musik 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Documents\Eigene Bilder 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\AppData\Local\Verlauf 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\AppData\Local\Anwendungsdaten 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Anwendungsdaten 2015-10-23 18:02 - 2015-07-30 23:42 - 00000000 __RSD C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-10-23 18:02 - 2015-07-30 23:42 - 00000000 ___RD C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-10-23 18:02 - 2015-07-30 23:42 - 00000000 ___RD C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-10-23 18:02 - 2015-07-30 23:42 - 00000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-10-23 18:01 - 2015-11-01 18:38 - 02077062 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-10-23 18:01 - 2015-10-23 18:01 - 01980268 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2015-10-23 17:59 - 2015-11-01 18:31 - 00000000 ____D C:\ProgramData\NVIDIA 2015-10-23 17:59 - 2015-10-23 18:04 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2015-10-23 17:59 - 2015-10-23 17:59 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2015-10-23 17:59 - 2015-08-07 01:24 - 06873904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2015-10-23 17:59 - 2015-08-07 01:24 - 03492984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2015-10-23 17:59 - 2015-08-07 01:24 - 02558768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2015-10-23 17:59 - 2015-08-07 01:24 - 00937592 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe 2015-10-23 17:59 - 2015-08-07 01:24 - 00385328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2015-10-23 17:59 - 2015-08-07 01:24 - 00062584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2015-10-23 17:59 - 2015-08-03 11:04 - 05133709 _____ C:\WINDOWS\system32\nvcoproc.bin 2015-10-23 17:58 - 2015-10-23 19:04 - 00072704 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL 2015-10-23 17:58 - 2015-10-23 19:04 - 00069120 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL 2015-10-23 17:58 - 2015-10-23 18:04 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2015-10-23 17:58 - 2015-10-23 18:03 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2015-10-23 17:58 - 2015-10-23 18:03 - 00000000 ____D C:\Program Files\Intel 2015-10-23 17:57 - 2015-10-23 17:57 - 00032645 _____ C:\WINDOWS\system32\NetSetupMig.log 2015-10-23 17:33 - 2015-03-27 22:33 - 00000001 ___SH C:\BOOTNXT 2015-10-23 17:30 - 2015-10-23 18:14 - 00010449 _____ C:\WINDOWS\diagerr.xml 2015-10-23 17:30 - 2015-10-23 18:14 - 00009528 _____ C:\WINDOWS\diagwrn.xml 2015-10-18 15:28 - 2015-10-19 17:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-10-14 22:31 - 2015-10-16 10:38 - 00000000 ____D C:\ProgramData\GFACE 2015-10-14 22:30 - 2015-10-16 10:48 - 00000000 ____D C:\Users\PC\AppData\Local\wf-launcher 2015-10-14 12:32 - 2015-09-25 19:06 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll 2015-10-14 12:32 - 2015-09-16 05:01 - 00968704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.exe 2015-10-14 12:32 - 2015-09-16 04:28 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmlmedia.dll 2015-10-14 12:32 - 2015-09-16 03:55 - 01155072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmlmedia.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00066400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-private-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00063840 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00022368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-math-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-string-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-time-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-localization-l1-2-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-localization-l1-2-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-process-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-synch-l1-2-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-synch-l1-2-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-processthreads-l1-1-1.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-eventing-provider-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-file-l2-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-file-l1-2-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-eventing-provider-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-xstate-l2-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-timezone-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-file-l2-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-file-l1-2-0.dll 2015-10-13 12:55 - 2015-10-13 12:55 - 00000000 ____D C:\Users\PC\AppData\LocalLow\WARTEAM 2015-10-13 12:55 - 2015-10-13 12:55 - 00000000 ____D C:\Users\PC\AppData\LocalLow\Unity 2015-10-13 12:31 - 2015-10-13 12:31 - 00000222 _____ C:\Users\PC\Desktop\WARMODE.url 2015-10-12 21:55 - 2015-10-23 18:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-10-12 21:55 - 2015-10-12 21:55 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2015-10-12 21:55 - 2015-10-12 21:55 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2015-10-12 19:14 - 2015-10-12 19:14 - 00000000 ____D C:\Users\PC\AppData\Roaming\com.playsaurus.heroclicker 2015-10-12 19:13 - 2015-10-12 19:14 - 00000222 _____ C:\Users\PC\Desktop\Clicker Heroes.url 2015-10-05 16:15 - 2015-10-05 16:16 - 04757856 _____ () C:\Users\PC\Desktop\TechnicLauncher.exe ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-11-01 18:45 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\rescache 2015-11-01 18:38 - 2015-09-10 06:10 - 00883584 _____ C:\WINDOWS\system32\perfh007.dat 2015-11-01 18:38 - 2015-09-10 06:10 - 00195718 _____ C:\WINDOWS\system32\perfc007.dat 2015-11-01 18:31 - 2015-07-30 22:52 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-11-01 18:31 - 2015-07-10 10:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2015-11-01 18:30 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\sru 2015-11-01 18:11 - 2015-08-12 02:13 - 00000000 ____D C:\Program Files (x86)\Steam 2015-11-01 18:05 - 2015-07-10 10:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2015-11-01 17:08 - 2015-08-17 16:44 - 00000000 ____D C:\Users\PC\AppData\Roaming\TS3Client 2015-11-01 00:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-10-31 19:50 - 2015-07-30 22:49 - 00189344 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-10-31 00:21 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-10-30 20:38 - 2015-07-30 23:25 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-10-30 18:12 - 2015-09-07 18:51 - 00000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2015-10-30 18:12 - 2015-08-12 21:35 - 00002232 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2015-10-29 19:39 - 2015-08-13 20:06 - 00000000 ____D C:\Users\PC\AppData\Local\Spotify 2015-10-29 19:37 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\restore 2015-10-29 19:28 - 2015-08-14 14:51 - 00000000 ____D C:\Users\PC\AppData\Roaming\Skype 2015-10-29 19:26 - 2015-08-13 20:04 - 00000000 ____D C:\Users\PC\AppData\Roaming\Spotify 2015-10-27 19:21 - 2015-08-12 02:05 - 00002294 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-10-25 17:52 - 2015-09-07 18:47 - 00000000 ____D C:\Users\PC\Documents\Schule 2015-10-24 16:25 - 2015-08-17 16:44 - 00000000 ____D C:\Users\PC\AppData\Local\TeamSpeak 3 Client 2015-10-24 09:54 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\appcompat 2015-10-23 19:06 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase 2015-10-23 19:04 - 2015-07-30 21:45 - 03797424 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd64.sys 2015-10-23 19:04 - 2015-07-30 21:45 - 00680432 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDH.dll 2015-10-23 19:04 - 2015-07-30 21:45 - 00541600 _____ (Intel Corporation) C:\WINDOWS\system32\igfxEM.exe 2015-10-23 19:04 - 2015-07-30 21:45 - 00330136 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCUIService.exe 2015-10-23 19:04 - 2015-07-30 21:45 - 00291744 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe 2015-10-23 19:04 - 2015-07-30 21:45 - 00285184 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDI.dll 2015-10-23 19:04 - 2015-07-30 21:45 - 00262640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxLHM.dll 2015-10-23 19:02 - 2015-09-10 06:13 - 00000000 ____D C:\WINDOWS\OCR 2015-10-23 18:55 - 2015-07-30 23:42 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ___SD C:\WINDOWS\system32\F12 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ___RD C:\WINDOWS\PurchaseDialog 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\Provisioning 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\L2Schemas 2015-10-23 18:44 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI 2015-10-23 18:44 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2015-10-23 18:44 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\MUI 2015-10-23 18:44 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\inetsrv 2015-10-23 18:44 - 2015-07-10 06:13 - 00009096 _____ C:\WINDOWS\SysWOW64\msmqtrc.mof 2015-10-23 18:44 - 2015-07-10 06:02 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof 2015-10-23 18:44 - 2015-07-10 04:36 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqutil.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqrt.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.tlb 2015-10-23 18:44 - 2015-07-10 04:36 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa30.tlb 2015-10-23 18:44 - 2015-07-10 04:36 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa20.tlb 2015-10-23 18:44 - 2015-07-10 04:36 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa10.tlb 2015-10-23 18:44 - 2015-07-10 04:36 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe 2015-10-23 18:44 - 2015-07-10 04:36 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll 2015-10-23 18:44 - 2015-07-10 04:26 - 01417728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys 2015-10-23 18:44 - 2015-07-10 04:25 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb 2015-10-23 18:44 - 2015-07-10 04:25 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb 2015-10-23 18:44 - 2015-07-10 04:25 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb 2015-10-23 18:44 - 2015-07-10 04:25 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe 2015-10-23 18:44 - 2015-07-10 04:25 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb 2015-10-23 18:44 - 2015-07-10 04:25 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe 2015-10-23 18:44 - 2015-07-10 04:25 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe 2015-10-23 18:44 - 2015-07-10 04:25 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll 2015-10-23 18:44 - 2015-07-10 04:20 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll 2015-10-23 18:14 - 2015-07-30 23:42 - 00000000 ____D C:\Program Files\Windows NT 2015-10-23 18:14 - 2015-07-10 10:47 - 00000000 __RHD C:\Users\Default 2015-10-23 18:13 - 2015-09-07 19:39 - 00003934 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2015-10-23 18:13 - 2015-08-31 16:04 - 00003998 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2015-10-23 18:13 - 2015-08-14 16:08 - 00003208 _____ C:\WINDOWS\System32\Tasks\{2302CB6C-894A-4B1F-89D1-6D57C5B9E375} 2015-10-23 18:13 - 2015-08-12 02:05 - 00004228 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2015-10-23 18:13 - 2015-08-12 02:05 - 00003976 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2015-10-23 18:13 - 2015-08-10 18:45 - 00003604 _____ C:\WINDOWS\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d 2015-10-23 18:13 - 2015-08-10 18:45 - 00003300 _____ C:\WINDOWS\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon 2015-10-23 18:13 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\Registration 2015-10-23 18:12 - 2015-07-30 23:42 - 00000000 __RSD C:\WINDOWS\Media 2015-10-23 18:12 - 2015-07-30 23:42 - 00000000 __RHD C:\Users\Public\Libraries 2015-10-23 18:06 - 2015-09-20 09:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone 2015-10-23 18:06 - 2015-08-23 16:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software 2015-10-23 18:06 - 2015-08-23 14:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON 2015-10-23 18:06 - 2015-08-18 14:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK 11n USB Wireless LAN Utility 2015-10-23 18:06 - 2015-08-17 16:44 - 00000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 2015-10-23 18:06 - 2015-08-14 16:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skiller Pro 2015-10-23 18:06 - 2015-08-13 15:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone 2015-10-23 18:06 - 2015-08-13 15:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2015-10-23 18:06 - 2015-08-13 14:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-10-23 18:06 - 2015-08-13 12:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\G DATA INTERNET SECURITY 2015-10-23 18:06 - 2015-08-12 02:39 - 00000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2015-10-23 18:06 - 2015-08-12 02:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2015-10-23 18:06 - 2015-08-12 02:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-10-23 18:06 - 2015-08-10 18:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2015-10-23 18:06 - 2015-07-30 23:42 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-23 18:06 - 2009-07-14 06:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-10-23 18:05 - 2015-07-30 23:42 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-23 18:05 - 2015-07-30 23:42 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-23 18:05 - 2009-07-14 04:20 - 00000000 ____D C:\Users\Default.migrated 2015-10-23 18:04 - 2015-09-10 06:10 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep 2015-10-23 18:04 - 2015-08-14 22:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft 2015-10-23 18:04 - 2015-08-14 14:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-10-23 18:04 - 2015-08-10 18:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2015-10-23 18:04 - 2015-08-10 18:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Asmedia Technology 2015-10-23 18:04 - 2015-07-30 23:47 - 00000000 ____D C:\WINDOWS\DigitalLocker 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\zh-HK 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\tr-TR 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\IME 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\zh-HK 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\tr-TR 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\NDF 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\IME 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\schemas 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2015-10-23 18:04 - 2011-04-12 08:54 - 00000000 ___RD C:\Users\Public\Recorded TV 2015-10-23 18:03 - 2015-08-14 22:11 - 00000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2015-10-23 18:03 - 2015-07-30 23:42 - 00000000 __SHD C:\Program Files\Windows Sidebar 2015-10-23 18:03 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\Recovery 2015-10-23 18:03 - 2015-07-30 23:42 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-10-23 18:03 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Microsoft Games 2015-10-23 18:03 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\DVD Maker 2015-10-23 18:01 - 2015-07-10 10:47 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2015-10-23 17:59 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\Help 2015-10-23 17:35 - 2009-07-14 05:45 - 00021856 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-10-23 17:35 - 2009-07-14 05:45 - 00021856 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-10-23 17:33 - 2015-08-10 19:10 - 00008192 __RSH C:\BOOTSECT.BAK 2015-10-23 17:30 - 2015-09-10 07:42 - 00000000 ___HD C:\$Windows.~BT 2015-10-21 16:33 - 2015-09-07 18:46 - 00070144 ___SH C:\Users\PC\Documents\Thumbs.db 2015-10-19 17:41 - 2015-08-12 19:34 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-10-18 15:16 - 2015-08-12 20:27 - 00000000 ____D C:\Users\PC\AppData\Roaming\.minecraft 2015-10-17 15:30 - 2015-08-16 17:12 - 00000000 ____D C:\Users\PC\.gimp-2.8 2015-10-16 10:51 - 2015-08-13 15:22 - 00000000 ____D C:\Program Files (x86)\Hearthstone 2015-10-16 10:49 - 2015-08-13 15:20 - 00000000 ____D C:\Users\PC\AppData\Local\Battle.net 2015-10-16 10:49 - 2015-08-13 15:20 - 00000000 ____D C:\Program Files (x86)\Battle.net 2015-10-16 04:10 - 2015-07-30 23:43 - 00810488 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-10-16 04:10 - 2015-07-30 23:43 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-10-15 01:04 - 2015-08-12 21:50 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-10-15 01:01 - 2015-08-12 21:50 - 143481208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-10-14 15:46 - 2015-08-14 14:51 - 00000000 ____D C:\ProgramData\Skype 2015-10-14 02:40 - 2015-08-12 03:34 - 00000000 ____D C:\Users\PC\AppData\Roaming\LolClient 2015-10-13 16:25 - 2015-08-10 18:53 - 00001377 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2015-10-09 17:34 - 2015-08-13 14:15 - 00000000 ____D C:\Users\PC\Desktop\game 2015-10-04 09:23 - 2015-08-10 18:52 - 01423120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2015-10-04 09:23 - 2015-08-10 18:52 - 01317192 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll 2015-10-04 09:22 - 2015-08-10 18:52 - 01756608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll 2015-10-04 09:22 - 2015-08-10 18:52 - 01710568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2015-10-02 14:48 - 2015-09-07 19:39 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-08-12 20:03 - 2015-08-12 20:03 - 0000000 _____ () C:\Users\PC\AppData\Roaming\gdfw.log 2015-08-12 20:03 - 2015-08-12 20:03 - 0000779 _____ () C:\Users\PC\AppData\Roaming\gdscan.log 2015-08-28 23:20 - 2015-08-28 23:20 - 0001506 _____ () C:\Users\PC\AppData\Local\recently-used.xbel 2015-08-13 12:59 - 2015-08-13 12:59 - 0007600 _____ () C:\Users\PC\AppData\Local\Resmon.ResmonCfg Einige Dateien in TEMP: ==================== C:\Users\PC\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-10-23 19:57 ==================== Ende von FRST.txt ============================ |
01.11.2015, 19:15 | #8 |
| Junkware PUP gefunden von GDATA gemeldetCode:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:29-10-2015 durchgeführt von PC (2015-11-01 19:01:59) Gestartet von C:\Users\PC\Desktop Windows 10 Home (X64) (2015-10-23 17:59:47) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-823076904-883910654-2515392582-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-823076904-883910654-2515392582-503 - Limited - Disabled) Gast (S-1-5-21-823076904-883910654-2515392582-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-823076904-883910654-2515392582-1002 - Limited - Enabled) PC (S-1-5-21-823076904-883910654-2515392582-1000 - Administrator - Enabled) => C:\Users\PC ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: G DATA INTERNET SECURITY (Enabled - Up to date) {545C8713-0744-B079-87F8-349A6D5C8CF0} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: G DATA INTERNET SECURITY (Enabled - Up to date) {EF3D66F7-217E-BFF7-BD48-0FE816DBC64D} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: G*DATA Personal Firewall (Enabled) {6C670636-4D2B-B121-ACA7-9DAF938FCB8B} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 3DMark (HKLM-x32\...\{12d6e0d7-21d5-4755-9da2-70352c6f7558}) (Version: 1.5.915.0 - Futuremark) 3DMark (Version: 1.5.915.0 - Futuremark) Hidden Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.008.20082 - Adobe Systems Incorporated) Adobe Flash Player 19 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 19.0.0.185 - Adobe Systems Incorporated) Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{61942EF5-2CD8-47D4-869C-2E9A8BB085F1}) (Version: 1.3.1.000 - Asmedia Technology) Assassin's Creed IV Black Flag (HKLM-x32\...\Uplay Install 273) (Version: - Ubisoft) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Benutzerhandbuch EPSON BX305 Plus Series (HKLM-x32\...\EPSON BX305 Plus Series Useg) (Version: - ) BlueStacks App Player (HKLM-x32\...\{4FEE9A2C-AF32-44CF-902D-9D686E17BF4F}) (Version: 1.1.9.167 - BlueStack Systems, Inc.) Broadcom NetLink Controller (HKLM\...\{C91DCB72-F5BB-410D-A91A-314F5D1B4284}) (Version: 14.8.5.1 - Broadcom Corporation) CCleaner (HKLM\...\CCleaner) (Version: 5.11 - Piriform) Child of Light (HKLM-x32\...\Uplay Install 609) (Version: - Ubisoft) Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) Counter-Strike: Global Offensive - SDK (HKLM-x32\...\Steam App 745) (Version: - ) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) DIE SIEDLER - Das Erbe der Könige (HKLM-x32\...\{8FDC1610-3FB5-4EF2-A0D0-CEDC3A525A25}) (Version: 1.00.0000 - Blue Byte) EPSON BX305 Plus Series Printer Uninstall (HKLM\...\EPSON BX305 Plus Series) (Version: - SEIKO EPSON Corporation) Epson Easy Photo Print 2 (HKLM-x32\...\{FFF841F3-9A15-4F61-BD16-C19F132E5A27}) (Version: 2.3.0.0 - SEIKO EPSON CORPORATION) Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM-x32\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION2) Epson FAX Utility (HKLM-x32\...\{0CBE6C93-CB2E-4378-91EE-12BE6D4E2E4A}) (Version: 1.20.00 - SEIKO EPSON CORPORATION) EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation) Futuremark SystemInfo (HKLM-x32\...\{AFBB2F94-A43D-46AD-8F77-66ACB3C71EDF}) (Version: 4.39.552.0 - Futuremark) G DATA INTERNET SECURITY (HKLM-x32\...\{AC68D2FF-1674-4C16-A536-A69FC11BBD82}) (Version: 25.1.0.8 - G DATA Software AG) GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 46.0.2490.80 - Google Inc.) Google Earth (HKLM-x32\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google) Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden Grand Theft Auto V (HKLM-x32\...\Steam App 271590) (Version: - Rockstar North) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Intel(R) Manageability Engine Firmware Recovery Agent (HKLM-x32\...\{A6C48A9F-694A-4234-B3AA-62590B668927}) (Version: 1.0.0.36354 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4276 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.4.220 - Intel Corporation) Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation) Java 8 Update 60 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418060F0}) (Version: 8.0.600.27 - Oracle Corporation) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Malwarebytes Anti-Malware Version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Mozilla Firefox 41.0.2 (x86 de) (HKLM-x32\...\Mozilla Firefox 41.0.2 (x86 de)) (Version: 41.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 41.0.2.5765 - Mozilla) Netzwerkhandbuch EPSON BX305 Plus Series (HKLM-x32\...\EPSON BX305 Plus Series Netg) (Version: - ) NVIDIA 3D Vision Controller-Treiber 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 355.60 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 355.60 - NVIDIA Corporation) NVIDIA GeForce Experience 2.5.15.46 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.15.46 - NVIDIA Corporation) NVIDIA Grafiktreiber 355.60 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 355.60 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.5.20.5318 - Electronic Arts, Inc.) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) REALTEK Wireless LAN Driver and Utility (HKLM-x32\...\{9C049499-055C-4a0c-A916-1D8CA1FF45EB}) (Version: 1.00.0187 - REALTEK Semiconductor Corp.) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.6.1 - Rockstar Games) SHIELD Streaming (Version: 4.1.500 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.5.15.46 - NVIDIA Corporation) Hidden Skiller Pro Driver (HKLM-x32\...\{54C8FBB3-B992-43CB-8F0A-E26228013F88}) (Version: 1.0 - ) Skype™ 7.12 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.12.101 - Skype Technologies S.A.) Spotify (HKU\S-1-5-21-823076904-883910654-2515392582-1000\...\Spotify) (Version: 1.0.16.104.g3b776c9e - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKU\S-1-5-21-823076904-883910654-2515392582-1000\...\TeamSpeak 3 Client) (Version: 3.0.17 - TeamSpeak Systems GmbH) Teeworlds (HKLM-x32\...\Steam App 380840) (Version: - Teeworlds Team) Unturned (HKLM-x32\...\Steam App 304930) (Version: - Nelson Sexton) Uplay (HKLM-x32\...\Uplay) (Version: 4.0 - Ubisoft) WARMODE (HKLM-x32\...\Steam App 391460) (Version: - WARTEAM) Websuche (HKLM-x32\...\Websuche) (Version: - Websuche) Windows Phone app for desktop (HKLM-x32\...\{19773614-FC22-4ACC-AAA3-E6BDA81ACF92}) (Version: 1.1.2726.0 - Microsoft Corporation) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-823076904-883910654-2515392582-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation) ==================== Wiederherstellungspunkte ========================= 01-11-2015 18:42:22 Geplanter Prüfpunkt ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2015-10-29 22:15 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {03DF3EA6-8E41-4081-AC6B-C3F7DC7FE0CA} - System32\Tasks\{2302CB6C-894A-4B1F-89D1-6D57C5B9E375} => pcalua.exe -a E:\Software\setup.exe -d E:\Software Task: {0C27A68B-6481-4B75-BA94-DEB350B352D5} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG Task: {1394D24B-CBBD-4C5E-9E17-22097B871EAE} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe Task: {1C7844D5-6344-4F39-9305-D2EE1EC3158B} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2012-04-16] (Intel Corporation) Task: {228CA03E-B80E-4C99-AE22-FEF065B85120} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {22D54186-C439-42C1-9070-6E6E2EBCB83C} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG Task: {2608F486-0A40-4A40-AB39-144B789A28BC} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe Task: {27B715B5-A541-4A4A-ACB9-86CCAAA354B2} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe Task: {29725671-5F90-4B4B-B67C-F0F83A500BD8} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe Task: {2C794EC2-7AD1-46A8-856E-FA62543DD599} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {3408CE8F-D001-40DC-86AC-F24964CB58EA} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe Task: {377FFF3B-1C20-4120-BCF6-E193876E5996} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe Task: {378A33E4-3E93-429A-8DC7-5C1121027480} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG Task: {38E1FDF3-FE7C-4381-9A94-AA7BBFBB1EE8} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe Task: {3CD4D466-3A42-4CD6-B634-90A1D3207FA0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-12] (Google Inc.) Task: {50407026-5362-496C-B0FA-AE96079ACF2D} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG Task: {59104B9A-9104-4F0A-8289-DBA35AFC53B4} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe Task: {5A25C5B6-0B6D-4A79-95D0-8E7E8CDDAE11} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG Task: {5C61655D-F19D-4264-B595-058CC18BFD2A} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe Task: {745442DA-92B2-41A5-B24D-63B2F62C18DD} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe Task: {776F2F61-045C-4F88-9012-AAC9652E2332} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe Task: {7EF3CD1E-FB5A-4AD3-9A1A-E41EC15FFFC1} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG Task: {8E5DDF35-47EA-4C1D-8BAC-C8CE882036CC} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {985445AC-C190-4574-9F38-BB2D10860675} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {9CBE82B4-9EE9-4206-9A94-FC290E2CE40C} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG Task: {9FB24F17-03C6-4A03-8DC8-E924C91DFAE3} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe Task: {A10315C1-D7E3-4702-948F-A3B0CA56B8D4} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {A274EF26-8CC3-4742-AAC7-C8654CB66955} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-10-19] (Piriform Ltd) Task: {A549FF99-F7A9-4156-A47D-880C2B803246} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG Task: {BF5FAE8E-1DF8-4450-9770-2AB6C2DB8114} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe Task: {BFE53012-8177-4736-8221-A59A388FB5C8} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {C1D6DAD2-BDF6-4B6B-8709-4EDB8250383B} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2012-04-16] (Intel Corporation) Task: {C65445FE-3BB8-4C6E-955F-E079075E7A21} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe Task: {D32E9B94-975F-4720-80BC-039377BC62C8} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe Task: {DE52E51C-1234-4968-9E42-9AA1A0260D45} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe Task: {E051CA99-0C7B-4B7F-8D6A-53846B2DCF22} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-10-01] (Adobe Systems Incorporated) Task: {F40B300E-A51E-422D-9756-3090768755DB} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG Task: {F803F4E1-4A28-4A84-AC9F-B38DEAC94057} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe Task: {FBB735F8-B7CE-42A9-88D0-4BBE1704CBFE} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG Task: {FC1E6B93-B8C0-423F-A7CB-F7B4B0992B63} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {FDA7A9EE-8CDD-4B39-8707-47FE4442092E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-12] (Google Inc.) Task: {FEF7ADF0-4F23-485E-9AA2-7D59D3E3C357} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe Task: C:\WINDOWS\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-09-10 06:12 - 2015-09-10 06:12 - 00032768 _____ () C:\WINDOWS\SYSTEM32\licensemanagerapi.dll 2015-09-10 06:12 - 2015-09-10 06:12 - 00404480 _____ () C:\WINDOWS\System32\diagtrack_wininternal.dll 2015-06-16 10:17 - 2015-06-16 10:17 - 00382584 ____N () C:\Program Files (x86)\Common Files\G Data\AVKProxy\PktIcpt2x64.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02494712 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02494712 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01808384 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-823076904-883910654-2515392582-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\PC\Pictures\goldengate_at_night.jpg DNS Servers: 192.168.2.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist deaktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) MSCONFIG\startupreg: ShadowPlay => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent HKLM\...\StartupApproved\Run32: => "BlueStacks Agent" HKLM\...\StartupApproved\Run32: => "USB3MON" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKU\S-1-5-21-823076904-883910654-2515392582-1000\...\StartupApproved\Run: => "EPLTarget\P0000000000000000" HKU\S-1-5-21-823076904-883910654-2515392582-1000\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-823076904-883910654-2515392582-1000\...\StartupApproved\Run: => "Spotify Web Helper" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808 FirewallRules: [{EFB9B880-3EC0-4A56-897D-C4391979CBDA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WARMODE\warmode.exe FirewallRules: [{C3B3C096-BB97-46B5-9030-D02B2D8D9A19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WARMODE\warmode.exe FirewallRules: [{439DA8B2-6F4F-4845-BF0B-0EA1F62A7667}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned.exe FirewallRules: [{D976D03E-A38E-439E-8968-9E9754EDA4B4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned.exe FirewallRules: [{4F6DF43E-9108-48F7-87F0-87C1A6F42AE5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Teeworlds\teeworlds.exe FirewallRules: [{F9D4B1C1-92E1-4BE6-8B43-5673A4B3F12C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Teeworlds\teeworlds.exe FirewallRules: [{743B30E3-3E8D-4804-88DE-A19F5B36AE64}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{279A7895-EC96-46ED-B5A2-7613CE1F00E9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{A1C93937-A5A0-4C97-AD8E-BBFAA3A94F69}] => (Allow) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\Rtldhcp.exe FirewallRules: [{2378BD5A-11BD-4EDC-ABD6-8D71D9E7896A}] => (Allow) LPort=53 FirewallRules: [{32A528AC-F81D-4A60-8193-84E3AD33F4AD}] => (Allow) LPort=53 FirewallRules: [{CF6254D0-97F4-4645-B6DB-80446DEA8D8B}] => (Allow) LPort=68 FirewallRules: [{AD40D75A-AE74-44E8-8168-20B7C7A973F7}] => (Allow) LPort=67 FirewallRules: [{59345B06-172C-454C-92C4-8224777343A5}] => (Allow) LPort=53 FirewallRules: [{1E75063C-2DF9-4310-8B3D-9C9EE5446567}] => (Allow) LPort=1542 FirewallRules: [{386055E0-976B-4243-83AA-546A7747AE5A}] => (Allow) LPort=1542 FirewallRules: [{8825EDFD-F556-4BF1-AB93-BFAE2BF24636}] => (Allow) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe FirewallRules: [{1642A60D-0A7D-47BA-8251-812D75162C9D}] => (Allow) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe FirewallRules: [{C1D38924-9CCD-496E-9CAE-F6201944DFE3}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed IV Black Flag\AC4BFMP.exe FirewallRules: [{D05838B7-0ECE-4553-AADF-59EF5C7D7589}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed IV Black Flag\AC4BFMP.exe FirewallRules: [{738E1AC4-39A0-4ADC-BD85-F95E0F850A9D}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed IV Black Flag\AC4BFSP.exe FirewallRules: [{010924D5-C5D9-40A8-8923-4E8BDA832936}] => (Allow) C:\Program Files (x86)\Ubisoft\Assassin's Creed IV Black Flag\AC4BFSP.exe FirewallRules: [{63817662-5CAB-4042-84FF-44919E1FEAA8}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{51214287-3108-457A-A6B0-43695C9A0697}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{5AD3FD10-7AF4-4598-882A-6E35C9A787D7}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{F5710F2B-9C63-450B-BF2C-494DE54596DB}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{53A09C52-F873-433D-86B4-A2FB31EA8320}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [UDP Query User{D8602964-E4C1-4D51-B061-3972C42D4F01}C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe FirewallRules: [TCP Query User{2658EA8F-3C23-4E75-B635-D198EFBBBD6D}C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe FirewallRules: [{A9CCDB6B-2133-411E-B244-23BF7365E37C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe FirewallRules: [{8765649F-FA2A-4F91-9DAD-147B90660897}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe FirewallRules: [{D8C08F32-F01C-445A-8B7E-ABD651A99B32}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{8F47B727-19B0-47D7-BF27-A934C5790113}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{D82D9054-4D07-4ABA-9046-1EC04885A8F0}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{13055D6E-8155-417F-B59B-62947D7DB616}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{AB3A1F51-6636-46D0-BC2C-E521258D3263}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{DFA52DFB-4DFA-4864-8328-99A49A91402E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{5CCD39BF-28F6-4C3B-A422-0F5788CF6BE7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{7A5505D2-9D61-41EA-9420-162D2422E6A3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{EB6B4C62-3573-4AE7-AC02-9CCE6B5C6FF6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{F6E4CA02-8E3E-4F93-981B-4597B31572DE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{93DC65F6-8B37-4E3F-B404-F9CF609CF3AC}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{878655AF-CC3C-4917-A93B-718FCE058FD7}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{344AD358-DE8B-4FFF-93DE-8EA2D56897AD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{A4F3EC24-1FD7-4289-AAA3-94455DC8170E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\bin\SDKLauncher.exe FirewallRules: [{E49407A5-7663-457C-A1F5-F46ACD69ED3F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\bin\SDKLauncher.exe FirewallRules: [{70797B3A-B0E6-442E-A300-98062A8303B6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Clicker Heroes\Clicker Heroes.exe FirewallRules: [{3EACED20-3FFA-4A6B-AB7B-EDE37DA7E12F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Clicker Heroes\Clicker Heroes.exe ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (11/01/2015 06:42:34 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (11/01/2015 05:57:07 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (11/01/2015 02:29:44 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: PC-PC) Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (10/31/2015 11:59:22 PM) (Source: ESENT) (EventID: 454) (User: ) Description: SettingSyncHost (7896) {E3EDE2C7-BE3C-4259-97CD-E77D159CC11A}: Unerwarteter Fehler "-509" bei der Datenbankwiederherstellung. Error: (10/31/2015 11:59:22 PM) (Source: ESENT) (EventID: 455) (User: ) Description: SettingSyncHost (7896) {E3EDE2C7-BE3C-4259-97CD-E77D159CC11A}: Fehler -1032 (0xfffffbf8) beim Öffnen von Protokolldatei C:\Users\PC\AppData\Local\Microsoft\Windows\SettingSync\metastore\edb.log. Error: (10/31/2015 11:59:22 PM) (Source: ESENT) (EventID: 489) (User: ) Description: SettingSyncHost (7896) {E3EDE2C7-BE3C-4259-97CD-E77D159CC11A}: Der Versuch, die Datei "C:\Users\PC\AppData\Local\Microsoft\Windows\SettingSync\metastore\edb.log" für den Lesezugriff zu öffnen, ist mit Systemfehler 32 (0x00000020): "Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Öffnen von Dateien. Error: (10/31/2015 12:11:39 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: SystemSettings.exe, Version: 10.0.10240.16384, Zeitstempel: 0x559f39ae Name des fehlerhaften Moduls: MusUpdateHandlers.dll, Version: 10.0.10240.16392, Zeitstempel: 0x55a8693d Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000002c221 ID des fehlerhaften Prozesses: 0x1068 Startzeit der fehlerhaften Anwendung: 0xSystemSettings.exe0 Pfad der fehlerhaften Anwendung: SystemSettings.exe1 Pfad des fehlerhaften Moduls: SystemSettings.exe2 Berichtskennung: SystemSettings.exe3 Vollständiger Name des fehlerhaften Pakets: SystemSettings.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: SystemSettings.exe5 Error: (10/31/2015 12:08:26 AM) (Source: ESENT) (EventID: 413) (User: ) Description: SettingSyncHost (7452) Es konnte keine neue Protokolldatei erstellt werden, weil die Datenbank nicht auf das Protokolllaufwerk schreiben kann. Das Laufwerk ist möglicherweise schreibgeschützt, falsch konfiguriert, beschädigt oder hat zu wenig freien Speicherplatz. Fehler -1032. Error: (10/31/2015 12:08:26 AM) (Source: ESENT) (EventID: 488) (User: ) Description: SettingSyncHost (7452) Der Versuch, die Datei "C:\WINDOWS\system32\edbtmp.log" zu erstellen, ist mit Systemfehler 5 (0x00000005): "Zugriff verweigert " fehlgeschlagen. Fehler -1032 (0xfffffbf8) beim Erstellen von Dateien. Error: (10/31/2015 12:08:15 AM) (Source: ESENT) (EventID: 413) (User: ) Description: SettingSyncHost (7452) Es konnte keine neue Protokolldatei erstellt werden, weil die Datenbank nicht auf das Protokolllaufwerk schreiben kann. Das Laufwerk ist möglicherweise schreibgeschützt, falsch konfiguriert, beschädigt oder hat zu wenig freien Speicherplatz. Fehler -1032. Systemfehler: ============= Error: (11/01/2015 06:56:19 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Management and Security Application User Notification Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/01/2015 06:56:19 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) ME Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/01/2015 06:56:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Presentation Foundation-Schriftartcache 3.0.0.0" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Error: (11/01/2015 06:56:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Realtek11nSU" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/01/2015 06:56:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "NVIDIA Network Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/01/2015 06:56:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "NVIDIA Streamer Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/01/2015 06:56:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Message Queuing" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 120000 Millisekunden durchgeführt: Neustart des Diensts. Error: (11/01/2015 06:56:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Intel(R) Capability Licensing Service Interface" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Error: (11/01/2015 06:56:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Dynamic Application Loader Host Interface Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/01/2015 06:56:17 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "NVIDIA GeForce Experience Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. CodeIntegrity: =================================== Date: 2015-10-24 16:52:51.862 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-10-24 16:52:51.851 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-10-24 16:52:51.714 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-10-24 16:52:51.703 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-10-24 16:52:45.133 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-10-24 16:52:45.121 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-10-24 16:52:44.490 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-10-24 16:52:44.387 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-10-24 16:42:18.434 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-10-24 16:42:18.403 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i5-3550 CPU @ 3.30GHz Prozentuale Nutzung des RAM: 21% Installierter physikalischer RAM: 8086.38 MB Verfügbarer physikalischer RAM: 6349.19 MB Summe virtueller Speicher: 16278.38 MB Verfügbarer virtueller Speicher: 14235.66 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:1862.92 GB) (Free:1675.34 GB) NTFS ==>[Laufwerk mit Startkomponenten (eingeholt von BCD)] ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 270BC5DF) Partition 1: (Not Active) - (Size=100 MB) - (Type=06) Partition 2: (Active) - (Size=1862.9 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
02.11.2015, 20:23 | #9 |
/// the machine /// TB-Ausbilder | Junkware PUP gefunden von GDATA gemeldetESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
05.11.2015, 15:18 | #10 |
| Junkware PUP gefunden von GDATA gemeldet Hallo, Probleme gibt und gab es nicht. Es waren lediglich gefundene Meldungen in den Protokollen von den Virusscans von GData - darüber haben wir uns Sorgen gemacht. Herzlichen Dank schonmal. Liebe Grüsse Jörg Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=61ef996ab73e9043a2658a491feb12a4 # end=init # utc_time=2015-11-02 08:01:13 # local_time=2015-11-02 09:01:13 (+0100, Mitteleuropäische Zeit) # country="Germany" # osver=6.2.9200 NT Update Init Update Download Update Finalize Updated modules version: 26531 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=61ef996ab73e9043a2658a491feb12a4 # end=updated # utc_time=2015-11-02 08:17:51 # local_time=2015-11-02 09:17:51 (+0100, Mitteleuropäische Zeit) # country="Germany" # osver=6.2.9200 NT # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7777 # api_version=3.1.1 # EOSSerial=61ef996ab73e9043a2658a491feb12a4 # engine=26531 # end=stopped # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2015-11-02 08:56:47 # local_time=2015-11-02 09:56:47 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1031 # osver=6.2.9200 NT # compatibility_mode_1='G DATA INTERNET SECURITY' # compatibility_mode=4112 16777213 100 100 21177 22097811 0 0 # compatibility_mode_1='' # compatibility_mode=5893 16776574 100 94 820922 9999472 0 0 # scanned=98198 # found=0 # cleaned=0 # scan_time=2336 ESETSmartInstaller@High as downloader log: Can not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internetCan not open internetESETSmartInstaller@High as downloader log: Can not open internet# product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=61ef996ab73e9043a2658a491feb12a4 # end=init # utc_time=2015-11-05 11:13:01 # local_time=2015-11-05 12:13:01 (+0100, Mitteleuropäische Zeit) # country="Germany" # osver=6.2.9200 NT Update Init Update Download Update Finalize Updated modules version: 26578 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=61ef996ab73e9043a2658a491feb12a4 # end=updated # utc_time=2015-11-05 11:17:03 # local_time=2015-11-05 12:17:03 (+0100, Mitteleuropäische Zeit) # country="Germany" # osver=6.2.9200 NT # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7777 # api_version=3.1.1 # EOSSerial=61ef996ab73e9043a2658a491feb12a4 # engine=26578 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2015-11-05 01:10:16 # local_time=2015-11-05 02:10:16 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1031 # osver=6.2.9200 NT # compatibility_mode_1='G DATA INTERNET SECURITY' # compatibility_mode=4112 16777213 100 100 10871 22329020 0 0 # compatibility_mode_1='' # compatibility_mode=5893 16776574 100 94 1052131 10230681 0 0 # scanned=321590 # found=0 # cleaned=0 # scan_time=6792 Code:
ATTFilter Results of screen317's Security Check version 1.009 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` G DATA INTERNET SECURITY Windows Defender Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Java 8 Update 51 Java version 32-bit out of Date! Adobe Flash Player 19.0.0.185 Mozilla Firefox (41.0.2) Google Chrome (46.0.2490.71) Google Chrome (46.0.2490.80) ````````Process Check: objlist.exe by Laurent```````` G DATA InternetSecurity Firewall GDFwSvcx64.exe G DATA InternetSecurity Firewall GDFirewallTray.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: % ````````````````````End of Log`````````````````````` |
05.11.2015, 15:24 | #11 |
| Junkware PUP gefunden von GDATA gemeldet Ich musste wieder bei C.Windows Daten löschen, damit ich nicht über 120000 Zeichen komme. Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:29-10-2015 durchgeführt von PC (Administrator) auf PC-PC (05-11-2015 14:58:36) Gestartet von C:\Users\PC\Desktop Geladene Profile: PC (Verfügbare Profile: PC & DefaultAppPool) Platform: Windows 10 Home (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe (G Data Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\AVK\AVKWCtlx64.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (G Data Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\AVK\AVKService.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (Realtek) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtlService.exe (G Data Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFwSvcx64.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKBap64.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (G Data Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\AVKTray\AVKTray.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\GDKBFltExe32.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Realtek Semiconductor Corp.) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (G DATA Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe () C:\Program Files (x86)\Skiller Pro\Monitor.EXE (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2654512 2015-10-04] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-27] (Intel Corporation) HKLM-x32\...\Run: [GDFirewallTray] => C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe [1864312 2015-06-16] (G DATA Software AG) HKLM-x32\...\Run: [Skiller Pro] => C:\Program Files (x86)\Skiller Pro\Monitor.exe [475136 2014-02-26] () HKLM-x32\...\Run: [G Data ASM] => C:\Program Files (x86)\G DATA\InternetSecurity\DelayLoader\AutorunDelayLoader.exe [434296 2015-02-20] (G Data Software AG) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation) HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [921208 2015-08-11] (BlueStack Systems, Inc.) HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Program Files (x86)\G DATA\InternetSecurity\AVKTray\AVKTray.exe,c:\program files (x86)\g data\internetsecurity\avkkid\avkcks.exe HKU\S-1-5-21-823076904-883910654-2515392582-1000\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIHRE.EXE [283232 2015-08-23] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-823076904-883910654-2515392582-1000\...\Run: [Spotify Web Helper] => C:\Users\PC\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2030912 2015-10-22] (Spotify Ltd) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{26c55a27-e1e3-482d-ba43-dd33bda9061e}: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{6f7b1a29-ef94-4b8b-a72a-cd8bbfc2bda4}: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{9a454c67-255c-4440-9464-b6c5851e001c}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{ce8e99dc-9382-402a-9169-96b0c85e1e25}: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{facf96a9-41e8-4d31-a479-bbd2e92f64a2}: [DhcpNameServer] 192.168.42.129 Internet Explorer: ================== HKU\S-1-5-21-823076904-883910654-2515392582-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.startseite24.net HKU\S-1-5-21-823076904-883910654-2515392582-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp SearchScopes: HKLM -> DefaultScope {4BF98619-BB47-4040-AFCE-5D5E1C197726} URL = hxxp://www.startseite24.net/?q={searchTerms} SearchScopes: HKLM -> {4BF98619-BB47-4040-AFCE-5D5E1C197726} URL = hxxp://www.startseite24.net/?q={searchTerms} SearchScopes: HKU\S-1-5-21-823076904-883910654-2515392582-1000 -> DefaultScope {4BF98619-BB47-4040-AFCE-5D5E1C197726} URL = hxxp://www.startseite24.net/?q={searchTerms} SearchScopes: HKU\S-1-5-21-823076904-883910654-2515392582-1000 -> {4BF98619-BB47-4040-AFCE-5D5E1C197726} URL = hxxp://www.startseite24.net/?q={searchTerms} BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_60\bin\ssv.dll [2015-09-02] (Oracle Corporation) BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26] (SEIKO EPSON CORPORATION) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-09-02] (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-08-13] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-13] (Oracle Corporation) Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2011-01-26] (SEIKO EPSON CORPORATION) FireFox: ======== FF ProfilePath: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default FF Homepage: google.de FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_185.dll [2015-10-01] () FF Plugin: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-09-02] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-09-02] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_185.dll [2015-10-01] () FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-08-13] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-08-13] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-08-07] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-08-07] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-18] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-18] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-07-03] (Adobe Systems Inc.) FF SearchPlugin: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\searchplugins\idealode.xml [2015-08-12] FF SearchPlugin: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\searchplugins\ixquick-https---deutsch.xml [2015-11-04] FF SearchPlugin: C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\searchplugins\websuche.xml [2015-08-23] FF Extension: WOT - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2015-08-12] FF Extension: Self-Destructing Cookies - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\Extensions\jid0-9XfBwUWnvPx4wWsfBWMCm4Jj69E@jetpack.xpi [2015-10-12] FF Extension: Adblock Plus - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-09-25] FF Extension: BetterPrivacy - C:\Users\PC\AppData\Roaming\Mozilla\Firefox\Profiles\hkpxzif6.default\Extensions\{d40f5e7b-d2cf-4856-b441-cc613eeffbe3}.xpi [2015-08-12] Chrome: ======= CHR Profile: C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-08-12] CHR Extension: (Google Docs) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-08-12] CHR Extension: (Google Drive) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-08-12] CHR Extension: (YouTube) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-08-12] CHR Extension: (Google-Suche) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-08-12] CHR Extension: (Google Tabellen) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-08-12] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-08-12] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-12] CHR Extension: (Google Mail) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-08-12] CHR Profile: C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1 CHR Extension: (Google Docs) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2015-08-31] CHR Extension: (Google Drive) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-08-31] CHR Extension: (YouTube) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-08-31] CHR Extension: (Google-Suche) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-08-31] CHR Extension: (Google Text & Tabellen Offline) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-09] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-08-31] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-31] CHR Extension: (Google Mail) - C:\Users\PC\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-08-31] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AVKProxy; C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe [2558072 2015-06-19] (G Data Software AG) R2 AVKService; C:\Program Files (x86)\G DATA\InternetSecurity\AVK\AVKService.exe [966776 2015-06-16] (G Data Software AG) R2 AVKWCtl; C:\Program Files (x86)\G DATA\InternetSecurity\AVK\AVKWCtlx64.exe [3711712 2015-06-16] (G Data Software AG) S3 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [437880 2015-08-11] (BlueStack Systems, Inc.) S2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [417400 2015-08-11] (BlueStack Systems, Inc.) S2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [847480 2015-08-11] (BlueStack Systems, Inc.) S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342240 2015-06-03] (Futuremark) R3 GDFwSvc; C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFwSvcx64.exe [3202368 2015-06-19] (G Data Software AG) R3 GDScan; C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe [789624 2015-06-16] (G Data Software AG) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155376 2015-10-04] (NVIDIA Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [330136 2015-10-23] (Intel Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-07-05] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-08-21] (Intel Corporation) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1135416 2015-10-05] (Malwarebytes) R2 MSMQ; C:\Windows\system32\mqsvc.exe [26112 2015-10-23] (Microsoft Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872688 2015-10-04] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5568816 2015-10-04] (NVIDIA Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2007048 2015-08-10] (Electronic Arts) R2 Realtek11nSU; C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtlService.exe [36864 2010-04-16] (Realtek) [Datei ist nicht signiert] S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [84480 2015-10-23] (Microsoft Corporation) R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [578560 2015-10-23] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R0 asahci64; C:\Windows\System32\drivers\asahci64.sys [49760 2011-09-21] (Asmedia Technology) S2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [146040 2015-08-11] (BlueStack Systems) R0 GDBehave; C:\Windows\System32\drivers\GDBehave.sys [158720 2015-08-13] (G Data Software AG) R3 GDKBB; C:\Windows\system32\drivers\GDKBB64.sys [27648 2015-08-12] (G Data Software AG) R3 GDKBFlt; C:\Windows\system32\drivers\GDKBFlt64.sys [20992 2015-08-12] (G Data Software AG) R1 GDMnIcpt; C:\Windows\system32\drivers\MiniIcpt.sys [230912 2015-08-13] (G Data Software AG) R3 GDPkIcpt; C:\Windows\system32\drivers\PktIcpt.sys [76288 2015-08-13] (G Data Software AG) R1 gdwfpcd; C:\Windows\System32\drivers\gdwfpcd64.sys [65024 2015-08-13] (G Data Software AG) R1 GRD; C:\WINDOWS\system32\drivers\GRD.sys [106272 2015-10-29] (G Data Software) R1 HookCentre; C:\Windows\system32\drivers\HookCentre.sys [125952 2015-08-13] (G Data Software AG) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes) S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation) R3 MQAC; C:\Windows\System32\drivers\mqac.sys [175104 2015-10-23] (Microsoft Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19760 2015-10-04] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation) S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] () S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation) U3 idsvc; kein ImagePath S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] U3 wpcsvc; kein ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-11-05 14:57 - 2015-11-05 14:57 - 00000897 _____ C:\Users\PC\Desktop\checkup.txt 2015-11-05 14:56 - 2015-11-05 14:56 - 00852720 _____ C:\Users\PC\Desktop\SecurityCheck.exe 2015-11-05 14:52 - 2015-11-05 14:52 - 00016148 _____ C:\WINDOWS\system32\PC-PC_PC_HistoryPrediction.bin 2015-11-02 21:01 - 2015-11-02 21:01 - 00000000 ____D C:\Program Files (x86)\ESET 2015-11-02 21:00 - 2015-11-02 21:01 - 02870984 _____ (ESET) C:\Users\PC\Desktop\esetsmartinstaller_deu.exe 2015-11-02 17:08 - 2015-11-02 17:08 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2015-11-02 17:07 - 2015-11-02 17:08 - 00000724 _____ C:\WINDOWS\setupact.log 2015-11-02 17:07 - 2015-11-02 17:07 - 00000000 _____ C:\WINDOWS\setuperr.log 2015-11-01 18:58 - 2015-11-01 18:58 - 00001302 _____ C:\Users\PC\Desktop\JRT.txt 2015-11-01 18:55 - 2015-11-01 18:55 - 01798976 _____ (Malwarebytes) C:\Users\PC\Desktop\JRT.exe 2015-11-01 18:34 - 2015-11-01 18:34 - 00000827 _____ C:\Users\PC\Desktop\AdwCleaner[C1].txt 2015-11-01 18:05 - 2015-11-01 18:30 - 00000000 ____D C:\AdwCleaner 2015-11-01 18:02 - 2015-11-01 18:02 - 01694208 _____ C:\Users\PC\Desktop\AdwCleaner_5.015.exe 2015-11-01 18:00 - 2015-11-01 18:00 - 00001193 _____ C:\Users\PC\Desktop\mbam.txt 2015-11-01 17:40 - 2015-11-01 17:43 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-11-01 17:40 - 2015-11-01 17:40 - 00001171 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-11-01 17:40 - 2015-11-01 17:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-11-01 17:40 - 2015-11-01 17:40 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-11-01 17:40 - 2015-11-01 17:40 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-11-01 17:40 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-11-01 17:40 - 2015-10-05 09:50 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-11-01 17:40 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2015-11-01 17:34 - 2015-11-01 17:35 - 22908888 _____ (Malwarebytes ) C:\Users\PC\Downloads\mbam-setup-2.2.0.1024.exe 2015-10-31 19:53 - 2015-11-04 20:39 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log 2015-10-31 19:50 - 2015-11-01 18:31 - 00000892 _____ C:\WINDOWS\PFRO.log 2015-10-30 19:22 - 2015-10-30 19:22 - 04404952 _____ (Kaspersky Lab ZAO) C:\Users\PC\Desktop\tdsskiller.exe 2015-10-30 19:21 - 2015-11-01 19:02 - 00039825 _____ C:\Users\PC\Desktop\Addition.txt 2015-10-30 19:20 - 2015-11-05 14:59 - 00020642 _____ C:\Users\PC\Desktop\FRST.txt 2015-10-30 19:20 - 2015-10-30 19:20 - 02198016 _____ (Farbar) C:\Users\PC\Desktop\FRST64.exe 2015-10-30 18:12 - 2015-10-30 18:12 - 06762072 _____ (Piriform Ltd) C:\Users\PC\Downloads\ccsetup511.exe 2015-10-30 17:38 - 2015-11-05 14:58 - 00000000 ____D C:\FRST 2015-10-30 15:26 - 2015-10-28 00:38 - 21871616 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2015-10-30 15:26 - 2015-10-28 00:16 - 18801664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2015-10-30 15:26 - 2015-10-21 13:45 - 00541024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll 2015-10-30 15:26 - 2015-10-21 13:44 - 00459104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys 2015-10-30 15:26 - 2015-10-21 13:43 - 01392480 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2015-10-30 15:26 - 2015-10-21 13:39 - 03621248 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-10-30 15:26 - 2015-10-21 13:00 - 24595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-10-30 15:26 - 2015-10-21 13:00 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2015-10-30 15:26 - 2015-10-21 12:59 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2015-10-30 15:26 - 2015-10-21 12:57 - 02418688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2015-10-30 15:26 - 2015-10-21 12:52 - 02987520 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll 2015-10-30 15:26 - 2015-10-21 12:50 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2015-10-30 15:26 - 2015-10-21 12:48 - 01068032 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2015-10-30 15:26 - 2015-10-21 12:47 - 00453120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll 2015-10-30 15:26 - 2015-10-21 12:46 - 02179584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2015-10-30 15:26 - 2015-10-21 12:46 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-10-30 15:26 - 2015-10-21 12:44 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll 2015-10-30 15:26 - 2015-10-21 12:44 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2015-10-30 15:26 - 2015-10-21 12:43 - 02675200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll 2015-10-30 15:26 - 2015-10-21 12:42 - 00627712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2015-10-30 15:26 - 2015-10-21 12:41 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2015-10-30 15:26 - 2015-10-21 12:40 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll 2015-10-30 15:26 - 2015-10-21 06:03 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-10-30 15:26 - 2015-10-21 06:03 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll 2015-10-30 15:26 - 2015-10-21 05:58 - 02049536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll 2015-10-30 15:26 - 2015-10-21 05:58 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2015-10-30 15:26 - 2015-10-21 05:55 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll 2015-10-29 22:15 - 2015-08-31 16:04 - 00000030 _____ C:\AVScanner.ini 2015-10-29 20:40 - 2015-10-29 20:40 - 00106272 _____ (G Data Software) C:\WINDOWS\system32\Drivers\GRD.sys 2015-10-29 20:40 - 2015-10-29 20:40 - 00018160 _____ (G Data Software) C:\WINDOWS\system32\Drivers\GdPhyMem.sys 2015-10-29 19:38 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll 2015-10-29 19:38 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll 2015-10-29 19:38 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll 2015-10-29 19:38 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll 2015-10-29 19:38 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll 2015-10-29 19:38 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll 2015-10-29 19:38 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll 2015-10-29 19:38 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll 2015-10-29 19:38 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll 2015-10-29 19:38 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll 2015-10-29 19:38 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll 2015-10-29 19:38 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll 2015-10-29 19:38 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll 2015-10-29 19:38 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll 2015-10-29 19:38 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll 2015-10-29 19:38 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll 2015-10-29 19:38 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll 2015-10-29 19:38 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll 2015-10-29 19:38 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll 2015-10-29 19:38 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll 2015-10-29 19:38 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll 2015-10-29 19:38 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll 2015-10-29 19:38 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll 2015-10-29 19:38 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll 2015-10-29 19:38 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll 2015-10-29 19:38 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll 2015-10-29 19:38 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll 2015-10-29 19:38 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll 2015-10-29 19:38 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll 2015-10-29 19:38 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll 2015-10-29 19:38 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll 2015-10-29 19:38 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll 2015-10-29 19:38 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll 2015-10-29 19:38 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll 2015-10-29 19:38 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll 2015-10-29 19:38 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll 2015-10-29 19:38 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll 2015-10-29 19:38 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll 2015-10-29 19:38 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll 2015-10-29 19:38 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll 2015-10-29 19:38 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll 2015-10-29 19:38 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll 2015-10-29 19:38 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll 2015-10-29 19:38 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll 2015-10-29 19:38 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll 2015-10-29 19:38 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll 2015-10-29 19:38 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll 2015-10-29 19:38 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll 2015-10-29 19:38 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll 2015-10-29 19:38 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll 2015-10-29 19:38 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) 2015-10-29 19:38 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll 2015-10-29 19:38 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll 2015-10-29 19:38 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll 2015-10-29 19:38 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll 2015-10-29 19:38 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll 2015-10-29 19:38 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll 2015-10-29 19:38 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll 2015-10-29 19:38 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll 2015-10-29 19:38 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll 2015-10-29 19:38 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll 2015-10-29 19:38 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll 2015-10-29 19:38 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll 2015-10-29 19:38 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll 2015-10-29 19:38 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll 2015-10-29 19:38 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll 2015-10-29 19:38 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll 2015-10-29 19:38 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll 2015-10-29 19:38 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll 2015-10-29 19:38 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll 2015-10-29 19:38 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll 2015-10-29 19:38 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll 2015-10-29 19:38 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll 2015-10-29 19:38 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll 2015-10-29 19:38 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll 2015-10-29 19:38 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll 2015-10-29 19:38 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll 2015-10-29 19:38 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll 2015-10-29 19:38 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll 2015-10-29 19:38 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll 2015-10-29 19:38 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll 2015-10-29 19:38 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll 2015-10-29 19:38 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll 2015-10-29 19:38 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll 2015-10-29 19:38 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll 2015-10-29 19:38 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll 2015-10-29 19:38 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll 2015-10-29 19:38 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll 2015-10-29 19:38 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll 2015-10-29 19:38 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll 2015-10-29 19:38 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll 2015-10-29 19:38 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll 2015-10-29 19:38 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll 2015-10-29 19:38 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll 2015-10-29 19:38 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll 2015-10-29 19:38 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll 2015-10-29 19:38 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll 2015-10-29 19:38 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll 2015-10-29 19:38 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll 2015-10-29 19:38 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll 2015-10-29 19:38 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll 2015-10-29 19:38 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll 2015-10-29 19:38 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll 2015-10-29 19:38 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll 2015-10-29 19:38 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll 2015-10-29 19:38 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll 2015-10-29 19:38 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll 2015-10-29 19:38 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll 2015-10-29 19:38 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll 2015-10-29 19:38 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll 2015-10-29 19:38 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll 2015-10-29 19:38 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll 2015-10-29 19:38 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll 2015-10-29 19:38 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll 2015-10-29 19:38 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll 2015-10-29 19:38 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll 2015-10-29 19:38 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll 2015-10-29 19:38 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll 2015-10-29 19:38 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll 2015-10-29 19:38 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll 2015-10-29 19:38 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll 2015-10-29 19:38 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll 2015-10-29 19:38 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll 2015-10-29 19:35 - 2015-10-29 19:35 - 00000219 _____ C:\Users\PC\Desktop\Counter-Strike Global Offensive - SDK.url 2015-10-29 19:24 - 2015-10-29 19:24 - 00000000 ____D C:\Users\PC\AppData\Local\NetworkTiles 2015-10-28 16:54 - 2015-10-28 16:54 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Vorlagen 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Startmenü 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Netzwerkumgebung 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Lokale Einstellungen 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Eigene Dateien 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Druckumgebung 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Musik 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Bilder 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Verlauf 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Anwendungsdaten 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 _SHDL C:\Users\DefaultAppPool\Anwendungsdaten 2015-10-28 16:54 - 2015-10-28 16:54 - 00000000 ____D C:\Users\DefaultAppPool 2015-10-28 16:54 - 2015-10-23 18:05 - 00000000 ___RD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-28 16:54 - 2015-07-30 23:42 - 00000000 __RSD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-10-28 16:54 - 2015-07-30 23:42 - 00000000 ___RD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-10-28 16:54 - 2015-07-30 23:42 - 00000000 ___RD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-10-28 16:54 - 2015-07-30 23:42 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-10-25 11:49 - 2015-10-25 11:49 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2015-10-25 11:03 - 2015-10-25 11:03 - 00000144 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2015-10-23 21:43 - 2015-10-27 19:20 - 00000000 ____D C:\Users\PC\AppData\Local\Comms 2015-10-23 19:04 - 2015-10-23 19:04 - 22915568 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 17846272 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 12335600 _____ (Intel Corporation) C:\WINDOWS\system32\igd10iumd64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 11905432 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10iumd32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 11053048 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 10574992 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumdim32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 08528896 _____ (Intel Corporation) C:\WINDOWS\system32\ig7icd64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 06513648 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig7icd32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 04637640 _____ (Intel Corporation) C:\WINDOWS\system32\igdusc64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 04371888 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 04369816 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 04025864 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAAC64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 03672344 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdusc32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 02506960 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiVAD64.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 02037232 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 01995760 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 01793024 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 01768432 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 01470472 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSecureSourceFilter64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 01156000 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 01151840 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00970656 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00866824 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiWinNextAgent64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00661000 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAudioFilter64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00618992 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00617992 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMux64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00556960 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00554928 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00469216 _____ (Intel Corporation) C:\WINDOWS\system32\igdmd64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00444832 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUMS64.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00410528 _____ (Intel Corporation) C:\WINDOWS\system32\CustomModeAppv2_0.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00409520 _____ (Intel Corporation) C:\WINDOWS\system32\CustomModeApp.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00395168 _____ (Intel Corporation) C:\WINDOWS\system32\igfxTray.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00394224 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00387056 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00378824 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmd32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00374272 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00357912 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSilenceFilter64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00329216 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00316245 _____ C:\WINDOWS\system32\DisplayAudiox64.cab 2015-10-23 19:04 - 2015-10-23 19:04 - 00296944 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00265712 _____ C:\WINDOWS\system32\igfxCPL.cpl 2015-10-23 19:04 - 2015-10-23 19:04 - 00258456 _____ (Intel Corporation) C:\WINDOWS\system32\igfxHK.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00232960 _____ C:\WINDOWS\system32\igdde64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00230384 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00229664 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00225288 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUtils64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00216552 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v4276.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00205728 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00199088 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00194560 _____ C:\WINDOWS\SysWOW64\igdde32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00194368 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00193536 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00192520 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiDDEAgent64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00188884 _____ C:\WINDOWS\system32\resTHA.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00181524 _____ C:\WINDOWS\system32\resELL.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00177300 _____ C:\WINDOWS\system32\resRUS.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00172528 _____ C:\WINDOWS\system32\igdail64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00169368 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00165808 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe 2015-10-23 19:04 - 2015-10-23 19:04 - 00163840 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00163044 _____ C:\WINDOWS\system32\resARA.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00162500 _____ C:\WINDOWS\system32\resHEB.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00162484 _____ C:\WINDOWS\system32\resJPN.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00157860 _____ C:\WINDOWS\system32\resHUN.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00157844 _____ C:\WINDOWS\system32\resFRA.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00156100 _____ C:\WINDOWS\system32\resKOR.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00156020 _____ C:\WINDOWS\system32\resDEU.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00155988 _____ C:\WINDOWS\system32\resITA.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00155828 _____ C:\WINDOWS\system32\resROM.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00155716 _____ C:\WINDOWS\system32\resESN.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00155268 _____ C:\WINDOWS\system32\resPLK.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00155172 _____ C:\WINDOWS\system32\resSKY.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00154980 _____ C:\WINDOWS\system32\resNLD.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00154372 _____ C:\WINDOWS\system32\resPTB.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00154260 _____ C:\WINDOWS\system32\resTRK.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00154212 _____ C:\WINDOWS\system32\resCSY.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00154096 _____ C:\WINDOWS\SysWOW64\igdail32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00154084 _____ C:\WINDOWS\system32\resPTG.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00153620 _____ C:\WINDOWS\system32\resFIN.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00153236 _____ C:\WINDOWS\system32\resHRV.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00152772 _____ C:\WINDOWS\system32\resSVE.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00152644 _____ C:\WINDOWS\system32\resSLV.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00151668 _____ C:\WINDOWS\system32\resNOR.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00151156 _____ C:\WINDOWS\system32\resDAN.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00149812 _____ C:\WINDOWS\system32\resENU.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00148052 _____ C:\WINDOWS\system32\resCHT.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00147188 _____ C:\WINDOWS\system32\resCHS.cui 2015-10-23 19:04 - 2015-10-23 19:04 - 00143368 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMCUMD64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00109064 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiLogServer64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00102912 _____ C:\WINDOWS\system32\IccLibDll_x64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00096752 _____ C:\WINDOWS\system32\igfxCUIServicePS.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00078336 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00072704 _____ (Khronos Group) C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00069616 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00069120 _____ (Khronos Group) C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00042232 _____ (Intel Corporation) C:\WINDOWS\system32\igfxexps.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00039424 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00020976 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00018944 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00018944 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00018944 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00015344 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00013824 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll 2015-10-23 19:04 - 2015-10-23 19:04 - 00002560 _____ C:\WINDOWS\system32\iglhxs64.vp 2015-10-23 19:02 - 2015-10-29 22:20 - 00000000 ____D C:\Users\PC\OneDrive 2015-10-23 19:02 - 2015-10-23 19:03 - 00002380 _____ C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-10-23 19:02 - 2015-10-23 19:02 - 00000000 ____D C:\Users\PC\AppData\Local\MicrosoftEdge 2015-10-23 19:02 - 2015-07-09 19:39 - 04847104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll 2015-10-23 19:02 - 2015-07-09 19:36 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll 2015-10-23 19:02 - 2015-07-09 19:28 - 06358016 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll 2015-10-23 19:02 - 2015-07-09 19:25 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll 2015-10-23 19:02 - 2015-07-09 19:25 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll 2015-10-23 19:01 - 2015-10-23 19:01 - 00001047 _____ C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optionale Features.lnk 2015-10-23 19:00 - 2015-10-28 21:00 - 00000000 ____D C:\Users\PC\AppData\Local\Packages 2015-10-23 19:00 - 2015-10-23 19:00 - 00000000 ____D C:\Users\PC\AppData\Local\Publishers 2015-10-23 18:59 - 2015-10-24 09:44 - 00000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat 2015-10-23 18:59 - 2015-10-23 18:59 - 00000020 ___SH C:\Users\PC\ntuser.ini 2015-10-23 18:59 - 2015-10-23 18:59 - 00000000 ____D C:\Users\PC\AppData\Local\TileDataLayer 2015-10-23 18:55 - 2015-10-23 22:25 - 00000000 ___DC C:\WINDOWS\Panther 2015-10-23 18:55 - 2015-10-23 18:01 - 00000000 __SHD C:\Recovery 2015-10-23 18:52 - 2015-10-23 18:52 - 00000000 ____D C:\Windows.old 2015-10-23 18:51 - 2015-10-23 18:51 - 22322624 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 20858360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 16708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 13027840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 12504064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 11262976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 08020320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 07569408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 07523840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 07055872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 06487248 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 06101504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 05120056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 05079552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 04792320 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 03781120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 03586560 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 03580416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02824248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02740224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02660864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02573768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02494712 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02464216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02446648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02432336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 02236416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02228736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02226688 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02207232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02156400 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02154808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 02093056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01997336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01983824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 01895568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01871360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01844736 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01812480 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01766952 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01601536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01594368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01563472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01563392 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01423872 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01382400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 01357888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01331200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01295712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01294352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2015-10-23 18:51 - 2015-10-23 18:51 - 01290240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01276416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01216512 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcenter.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01205248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01203712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01181696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01171456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcenter.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01168736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 01162240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01123400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 01104384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 01018568 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2015-10-23 18:51 - 2015-10-23 18:51 - 01010176 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00980832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2015-10-23 18:51 - 2015-10-23 18:51 - 00966416 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00928256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00928256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00910848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00899584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00894256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Wdf01000.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00869376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00858408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00856576 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00856576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00809352 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00796160 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00784136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00781976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00780288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00766976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00764416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00757760 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00690688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00677888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx02000.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00658528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00650240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00646672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00625152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00591360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00587264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00584656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00579584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00574464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00555768 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00553808 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00537080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00525312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00516448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2015-10-23 18:51 - 2015-10-23 18:51 - 00513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00508248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00505696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00501008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00498016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00476760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00454512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00441168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationWebproxy.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00434376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00428128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00407608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00406864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2015-10-23 18:51 - 2015-10-23 18:51 - 00403456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00395088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00378368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationGeofences.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00332624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00278352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00253440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00243760 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeWiFi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationCrowdsource.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeCell.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeIP.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00160256 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\KeywordDetectorMsftSidAdapter.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00102304 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00099664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationWiFiAdapter.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00088384 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe 2015-10-23 18:51 - 2015-10-23 18:51 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00078528 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00074880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Speech.Pal.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Speech.Pal.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\buttonconverter.sys 2015-10-23 18:51 - 2015-10-23 18:51 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncmlhook.dll 2015-10-23 18:51 - 2015-10-23 18:51 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe 2015-10-23 18:47 - 2015-10-23 18:47 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\WINDOWS\SysWOW64\BestPractices 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\WINDOWS\system32\msmq 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\WINDOWS\system32\BestPractices 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\Program Files\Reference Assemblies 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\Program Files\MSBuild 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\Program Files (x86)\MSBuild 2015-10-23 18:44 - 2015-10-23 18:44 - 00000000 ____D C:\inetpub 2015-10-23 18:43 - 2015-06-17 18:10 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2015-10-23 18:43 - 2015-06-17 18:10 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2015-10-23 18:43 - 2015-06-17 18:10 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2015-10-23 18:43 - 2015-05-29 21:07 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2015-10-23 18:43 - 2015-05-29 21:07 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-10-23 18:43 - 2015-05-29 21:07 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Vorlagen 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Startmenü 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2015-10-23 18:14 - 2015-10-23 18:14 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-10-23 18:12 - 2015-10-23 18:12 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat 2015-10-23 18:05 - 2015-10-23 18:05 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2015-10-23 18:03 - 2015-10-23 18:03 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines 2015-10-23 18:02 - 2015-11-05 12:09 - 00000000 ____D C:\Users\PC 2015-10-23 18:02 - 2015-10-23 18:59 - 00000000 ___RD C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Vorlagen 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Startmenü 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Netzwerkumgebung 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Lokale Einstellungen 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Eigene Dateien 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Druckumgebung 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Documents\Eigene Musik 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Documents\Eigene Bilder 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\AppData\Local\Verlauf 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\AppData\Local\Anwendungsdaten 2015-10-23 18:02 - 2015-10-23 18:02 - 00000000 _SHDL C:\Users\PC\Anwendungsdaten 2015-10-23 18:02 - 2015-07-30 23:42 - 00000000 __RSD C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-10-23 18:02 - 2015-07-30 23:42 - 00000000 ___RD C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-10-23 18:02 - 2015-07-30 23:42 - 00000000 ___RD C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-10-23 18:02 - 2015-07-30 23:42 - 00000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-10-23 18:01 - 2015-11-05 12:15 - 02077062 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-10-23 18:01 - 2015-10-23 18:01 - 01980268 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2015-10-23 17:59 - 2015-11-05 12:08 - 00000000 ____D C:\ProgramData\NVIDIA 2015-10-23 17:59 - 2015-10-23 18:04 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2015-10-23 17:59 - 2015-10-23 17:59 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2015-10-23 17:59 - 2015-08-07 01:24 - 06873904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2015-10-23 17:59 - 2015-08-07 01:24 - 03492984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2015-10-23 17:59 - 2015-08-07 01:24 - 02558768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2015-10-23 17:59 - 2015-08-07 01:24 - 00937592 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe 2015-10-23 17:59 - 2015-08-07 01:24 - 00385328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2015-10-23 17:59 - 2015-08-07 01:24 - 00062584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2015-10-23 17:59 - 2015-08-03 11:04 - 05133709 _____ C:\WINDOWS\system32\nvcoproc.bin 2015-10-23 17:58 - 2015-10-23 19:04 - 00072704 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL 2015-10-23 17:58 - 2015-10-23 19:04 - 00069120 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL 2015-10-23 17:58 - 2015-10-23 18:04 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2015-10-23 17:58 - 2015-10-23 18:03 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2015-10-23 17:58 - 2015-10-23 18:03 - 00000000 ____D C:\Program Files\Intel 2015-10-23 17:57 - 2015-10-23 17:57 - 00032645 _____ C:\WINDOWS\system32\NetSetupMig.log 2015-10-23 17:33 - 2015-03-27 22:33 - 00000001 ___SH C:\BOOTNXT 2015-10-23 17:30 - 2015-10-23 18:14 - 00010449 _____ C:\WINDOWS\diagerr.xml 2015-10-23 17:30 - 2015-10-23 18:14 - 00009528 _____ C:\WINDOWS\diagwrn.xml 2015-10-18 15:28 - 2015-10-19 17:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-10-14 22:31 - 2015-10-16 10:38 - 00000000 ____D C:\ProgramData\GFACE 2015-10-14 22:30 - 2015-10-16 10:48 - 00000000 ____D C:\Users\PC\AppData\Local\wf-launcher 2015-10-14 12:32 - 2015-09-25 19:06 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll 2015-10-14 12:32 - 2015-09-16 05:01 - 00968704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.exe 2015-10-14 12:32 - 2015-09-16 04:28 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmlmedia.dll 2015-10-14 12:32 - 2015-09-16 03:55 - 01155072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmlmedia.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00066400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-private-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00063840 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00022368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-math-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-string-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-time-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-localization-l1-2-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-localization-l1-2-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-process-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-synch-l1-2-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-synch-l1-2-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-processthreads-l1-1-1.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-eventing-provider-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-file-l2-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-file-l1-2-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-eventing-provider-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-xstate-l2-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-timezone-l1-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-file-l2-1-0.dll 2015-10-14 12:30 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-file-l1-2-0.dll 2015-10-13 12:55 - 2015-10-13 12:55 - 00000000 ____D C:\Users\PC\AppData\LocalLow\WARTEAM 2015-10-13 12:55 - 2015-10-13 12:55 - 00000000 ____D C:\Users\PC\AppData\LocalLow\Unity 2015-10-13 12:31 - 2015-10-13 12:31 - 00000222 _____ C:\Users\PC\Desktop\WARMODE.url 2015-10-12 21:55 - 2015-10-23 18:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-10-12 21:55 - 2015-10-12 21:55 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2015-10-12 21:55 - 2015-10-12 21:55 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2015-10-12 19:14 - 2015-10-12 19:14 - 00000000 ____D C:\Users\PC\AppData\Roaming\com.playsaurus.heroclicker 2015-10-12 19:13 - 2015-10-12 19:14 - 00000222 _____ C:\Users\PC\Desktop\Clicker Heroes.url ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-11-05 14:33 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\sru 2015-11-05 12:15 - 2015-09-10 06:10 - 00883584 _____ C:\WINDOWS\system32\perfh007.dat 2015-11-05 12:15 - 2015-09-10 06:10 - 00195718 _____ C:\WINDOWS\system32\perfc007.dat 2015-11-05 12:15 - 2015-07-10 10:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2015-11-05 12:08 - 2015-07-30 22:52 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-11-04 21:19 - 2015-07-10 10:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2015-11-04 21:18 - 2015-08-17 16:44 - 00000000 ____D C:\Users\PC\AppData\Roaming\TS3Client 2015-11-04 20:39 - 2015-08-12 02:13 - 00000000 ____D C:\Program Files (x86)\Steam 2015-11-04 20:38 - 2015-08-13 15:22 - 00000000 ____D C:\Program Files (x86)\Hearthstone 2015-11-04 20:38 - 2015-08-13 15:20 - 00000000 ____D C:\Users\PC\AppData\Local\Battle.net 2015-11-04 20:38 - 2015-08-13 15:20 - 00000000 ____D C:\Program Files (x86)\Battle.net 2015-11-04 18:51 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-11-04 18:49 - 2015-08-13 20:06 - 00000000 ____D C:\Users\PC\AppData\Local\Spotify 2015-11-04 18:49 - 2015-08-13 20:04 - 00000000 ____D C:\Users\PC\AppData\Roaming\Spotify 2015-11-03 18:02 - 2015-08-14 14:51 - 00000000 ____D C:\Users\PC\AppData\Roaming\Skype 2015-11-01 18:45 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\rescache 2015-10-31 19:50 - 2015-07-30 22:49 - 00189344 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-10-31 00:21 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-10-30 20:38 - 2015-07-30 23:25 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-10-30 18:12 - 2015-09-07 18:51 - 00000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2015-10-30 18:12 - 2015-08-12 21:35 - 00002232 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2015-10-29 19:37 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\restore 2015-10-27 19:21 - 2015-08-12 02:05 - 00002294 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-10-25 17:52 - 2015-09-07 18:47 - 00000000 ____D C:\Users\PC\Documents\Schule 2015-10-24 16:25 - 2015-08-17 16:44 - 00000000 ____D C:\Users\PC\AppData\Local\TeamSpeak 3 Client 2015-10-24 09:54 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\appcompat 2015-10-23 19:06 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase 2015-10-23 19:04 - 2015-07-30 21:45 - 03797424 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd64.sys 2015-10-23 19:04 - 2015-07-30 21:45 - 00680432 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDH.dll 2015-10-23 19:04 - 2015-07-30 21:45 - 00541600 _____ (Intel Corporation) C:\WINDOWS\system32\igfxEM.exe 2015-10-23 19:04 - 2015-07-30 21:45 - 00330136 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCUIService.exe 2015-10-23 19:04 - 2015-07-30 21:45 - 00291744 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe 2015-10-23 19:04 - 2015-07-30 21:45 - 00285184 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDI.dll 2015-10-23 19:04 - 2015-07-30 21:45 - 00262640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxLHM.dll 2015-10-23 19:02 - 2015-09-10 06:13 - 00000000 ____D C:\WINDOWS\OCR 2015-10-23 18:55 - 2015-07-30 23:42 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ___SD C:\WINDOWS\system32\F12 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ___RD C:\WINDOWS\PurchaseDialog 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\Provisioning 2015-10-23 18:52 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\L2Schemas 2015-10-23 18:44 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI 2015-10-23 18:44 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2015-10-23 18:44 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\MUI 2015-10-23 18:44 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\inetsrv 2015-10-23 18:44 - 2015-07-10 06:13 - 00009096 _____ C:\WINDOWS\SysWOW64\msmqtrc.mof 2015-10-23 18:44 - 2015-07-10 06:02 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof 2015-10-23 18:44 - 2015-07-10 04:36 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqutil.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqrt.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.tlb 2015-10-23 18:44 - 2015-07-10 04:36 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa30.tlb 2015-10-23 18:44 - 2015-07-10 04:36 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa20.tlb 2015-10-23 18:44 - 2015-07-10 04:36 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa10.tlb 2015-10-23 18:44 - 2015-07-10 04:36 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe 2015-10-23 18:44 - 2015-07-10 04:36 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll 2015-10-23 18:44 - 2015-07-10 04:36 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll 2015-10-23 18:44 - 2015-07-10 04:26 - 01417728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys 2015-10-23 18:44 - 2015-07-10 04:25 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb 2015-10-23 18:44 - 2015-07-10 04:25 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb 2015-10-23 18:44 - 2015-07-10 04:25 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb 2015-10-23 18:44 - 2015-07-10 04:25 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe 2015-10-23 18:44 - 2015-07-10 04:25 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb 2015-10-23 18:44 - 2015-07-10 04:25 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe 2015-10-23 18:44 - 2015-07-10 04:25 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe 2015-10-23 18:44 - 2015-07-10 04:25 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll 2015-10-23 18:44 - 2015-07-10 04:25 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll 2015-10-23 18:44 - 2015-07-10 04:20 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll 2015-10-23 18:14 - 2015-07-30 23:42 - 00000000 ____D C:\Program Files\Windows NT 2015-10-23 18:14 - 2015-07-10 10:47 - 00000000 __RHD C:\Users\Default 2015-10-23 18:13 - 2015-09-07 19:39 - 00003934 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2015-10-23 18:13 - 2015-08-31 16:04 - 00003998 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2015-10-23 18:13 - 2015-08-14 16:08 - 00003208 _____ C:\WINDOWS\System32\Tasks\{2302CB6C-894A-4B1F-89D1-6D57C5B9E375} 2015-10-23 18:13 - 2015-08-12 02:05 - 00004228 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2015-10-23 18:13 - 2015-08-12 02:05 - 00003976 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2015-10-23 18:13 - 2015-08-10 18:45 - 00003604 _____ C:\WINDOWS\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d 2015-10-23 18:13 - 2015-08-10 18:45 - 00003300 _____ C:\WINDOWS\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon 2015-10-23 18:13 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\Registration 2015-10-23 18:12 - 2015-07-30 23:42 - 00000000 __RSD C:\WINDOWS\Media 2015-10-23 18:12 - 2015-07-30 23:42 - 00000000 __RHD C:\Users\Public\Libraries 2015-10-23 18:06 - 2015-09-20 09:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone 2015-10-23 18:06 - 2015-08-23 16:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software 2015-10-23 18:06 - 2015-08-23 14:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON 2015-10-23 18:06 - 2015-08-18 14:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK 11n USB Wireless LAN Utility 2015-10-23 18:06 - 2015-08-17 16:44 - 00000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 2015-10-23 18:06 - 2015-08-14 16:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skiller Pro 2015-10-23 18:06 - 2015-08-13 15:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone 2015-10-23 18:06 - 2015-08-13 15:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2015-10-23 18:06 - 2015-08-13 14:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-10-23 18:06 - 2015-08-13 12:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\G DATA INTERNET SECURITY 2015-10-23 18:06 - 2015-08-12 02:39 - 00000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2015-10-23 18:06 - 2015-08-12 02:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2015-10-23 18:06 - 2015-08-12 02:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-10-23 18:06 - 2015-08-10 18:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2015-10-23 18:06 - 2015-07-30 23:42 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-23 18:06 - 2009-07-14 06:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-10-23 18:05 - 2015-07-30 23:42 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-23 18:05 - 2015-07-30 23:42 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-23 18:05 - 2009-07-14 04:20 - 00000000 ____D C:\Users\Default.migrated 2015-10-23 18:04 - 2015-09-10 06:10 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep 2015-10-23 18:04 - 2015-08-14 22:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft 2015-10-23 18:04 - 2015-08-14 14:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-10-23 18:04 - 2015-08-10 18:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2015-10-23 18:04 - 2015-08-10 18:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Asmedia Technology 2015-10-23 18:04 - 2015-07-30 23:47 - 00000000 ____D C:\WINDOWS\DigitalLocker 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\zh-HK 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\tr-TR 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\IME 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\zh-HK 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\tr-TR 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\NDF 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\IME 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\schemas 2015-10-23 18:04 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2015-10-23 18:04 - 2011-04-12 08:54 - 00000000 ___RD C:\Users\Public\Recorded TV 2015-10-23 18:03 - 2015-08-14 22:11 - 00000000 ____D C:\Users\PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2015-10-23 18:03 - 2015-07-30 23:42 - 00000000 __SHD C:\Program Files\Windows Sidebar 2015-10-23 18:03 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\system32\Recovery 2015-10-23 18:03 - 2015-07-30 23:42 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-10-23 18:03 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Microsoft Games 2015-10-23 18:03 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\DVD Maker 2015-10-23 18:01 - 2015-07-10 10:47 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2015-10-23 17:59 - 2015-07-30 23:42 - 00000000 ____D C:\WINDOWS\Help 2015-10-23 17:35 - 2009-07-14 05:45 - 00021856 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-10-23 17:35 - 2009-07-14 05:45 - 00021856 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-10-23 17:33 - 2015-08-10 19:10 - 00008192 __RSH C:\BOOTSECT.BAK 2015-10-23 17:30 - 2015-09-10 07:42 - 00000000 ___HD C:\$Windows.~BT 2015-10-21 16:33 - 2015-09-07 18:46 - 00070144 ___SH C:\Users\PC\Documents\Thumbs.db 2015-10-19 17:41 - 2015-08-12 19:34 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-10-18 15:16 - 2015-08-12 20:27 - 00000000 ____D C:\Users\PC\AppData\Roaming\.minecraft 2015-10-17 15:30 - 2015-08-16 17:12 - 00000000 ____D C:\Users\PC\.gimp-2.8 2015-10-16 04:10 - 2015-07-30 23:43 - 00810488 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-10-16 04:10 - 2015-07-30 23:43 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-10-15 01:04 - 2015-08-12 21:50 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-10-15 01:01 - 2015-08-12 21:50 - 143481208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-10-14 15:46 - 2015-08-14 14:51 - 00000000 ____D C:\ProgramData\Skype 2015-10-14 02:40 - 2015-08-12 03:34 - 00000000 ____D C:\Users\PC\AppData\Roaming\LolClient 2015-10-13 16:25 - 2015-08-10 18:53 - 00001377 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2015-10-09 17:34 - 2015-08-13 14:15 - 00000000 ____D C:\Users\PC\Desktop\game ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-08-12 20:03 - 2015-08-12 20:03 - 0000000 _____ () C:\Users\PC\AppData\Roaming\gdfw.log 2015-08-12 20:03 - 2015-08-12 20:03 - 0000779 _____ () C:\Users\PC\AppData\Roaming\gdscan.log 2015-08-28 23:20 - 2015-08-28 23:20 - 0001506 _____ () C:\Users\PC\AppData\Local\recently-used.xbel 2015-08-13 12:59 - 2015-08-13 12:59 - 0007600 _____ () C:\Users\PC\AppData\Local\Resmon.ResmonCfg Einige Dateien in TEMP: ==================== C:\Users\PC\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-11-02 21:09 ==================== Ende von FRST.txt ============================ |
05.11.2015, 21:52 | #12 |
/// the machine /// TB-Ausbilder | Junkware PUP gefunden von GDATA gemeldet Java updaten. Cleanup: (Die Reihenfolge ist hier entscheidend) Falls Defogger verwendet wurde: Erneut starten und auf Re-enable klicken. Falls Combofix verwendet wurde: Combofix deinstallieren .
Alle Logs gepostet? Dann lade Dir bitte DelFix herunter.
Hinweis: DelFix entfernt u.a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst. Starte Deinen Rechner abschließend neu. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein, kannst Du diese bedenkenlos löschen. Wenn Du möchtest, kannst Du hier sagen, ob Du mit mir und meiner Hilfe zufrieden warst...und/oder das Forum mit einer kleinen Spende unterstützen. Absicherung: Beim Betriebsystem Windows die automatischen Updates aktivieren. Auch die sicherheitsrelevante Software sollte immer nur in der aktuellsten Version vorliegen: Browser Java Flash-Player PDF-Reader Sicherheitslücken in deren alten Versionen werden dazu ausgenutzt, um beim einfachen Besuch einer manipulierten Website per "Drive-by" Malware zu installieren. Ich empfehle z.B. die Verwendung von Mozilla Firefox statt des Internet Explorers. Zudem lassen sich mit dem Firefox auch PDF-Dokumente öffnen. Aktiviere eine Firewall. Die in Windows integrierte genügt im Normalfall völlig. Verwende ein Antivirusprogramm mit Echtzeitscanner und stets aktueller Signaturendatenbank. Meine Empfehlung: Emsisoft Zusätzlich kannst Du Deinen PC regelmäßig mit Malwarebytes Anti-Malware und ESET scannen. Optional: NoScript verhindert das Ausführen von aktiven Inhalten (Java, JavaScript, Flash,...) für sämtliche Websites. Man kann aber nach dem Prinzip einer Whitelist festlegen, auf welchen Seiten Scripts erlaubt werden sollen. Malwarebytes Anti Exploit: Schützt die Anwendungen des Computers vor der Ausnutzung bekannter Schwachstellen. Lade Software von einem sauberen Portal wie . Wähle beim Installieren von Software immer die benutzerdefinierte Option und entferne den Haken bei allen optional angebotenen Toolbars oder sonstigen, fürs Programm, irrelevanten Ergänzungen. Um Adware wieder los zu werden, empfiehlt sich zunächst die Deinstallation sowie die anschließende Resteentfernung mit Adwarecleaner . Abschließend noch ein paar grundsätzliche Bemerkungen: Ändere regelmäßig Deine wichtigen Online-Passwörter und erstelle regelmäßig Backups Deiner wichtigen Dateien oder des Systems. Der Nutzen von Registry-Cleanern, Optimizern usw. zur Performancesteigerung ist umstritten. Ich empfehle deshalb, die Finger von der Registry zu lassen und lieber die windowseigene Datenträgerbereinigung zu verwenden.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
07.11.2015, 15:30 | #13 |
| Junkware PUP gefunden von GDATA gemeldet Hallo schrauber, Defogger und Combofix habe ich nicht benutzt, also habe ich nur mit DelFix alles gelöscht. Java habe ich gesehen. Was kann man aus den geposteten TXT Daten erkennen ? Woran erkennt man Probleme oder Gefährdungen ? Verstehe ich das Gesagte richtig: demnach ratet ihr von der Benutzung des CCleaners ab ? Ich dachte durch den CCleaner löscht man vor allem Windows Log- und Temp-Dateien und andere Dateien, die eine Ausspähung des Surfverhaltens des Benutzers verhindern oder zumindest erschweren. Und die Registry Löschung des CCleaners gibt Speicher frei, indem sie nicht mehr benötigte Dateien und deren Verweise löscht. Ich benutze ihn schon länger ohne Probleme. Seit Jahren habe ich GDATA auf allen Rechnern. Ist GDATA nicht in Ordnung ? Ist Emsisoft besser ? Untersucht GDATA nicht auch nach Malware oder ist das erwähnte Malware Anti Exploit zusätzlich nötig ? Fragen über Fragen ! Ich hoffe das eine Beantwortung möglich ist. Herzlichen Dank schonmal für die fachkundige Beratung Liebe Grüsse Jörg |
08.11.2015, 06:54 | #14 | |||
/// the machine /// TB-Ausbilder | Junkware PUP gefunden von GDATA gemeldetZitat:
Zitat:
Zitat:
Die Wahl deines AV überlassen wir dir, wir geben nur eine Empfehlung ab aufgrund Erfahrung und Tests. MBAE ist ein Zusatz für den Browser, der auf jeden Fall Sinn macht
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Junkware PUP gefunden von GDATA gemeldet |
anhang, befall, ccleaner, datei, downloads, entdeck, frage, gdata, gelöscht, gen, hoffe, install, laptop, laufen, meldungen, office, prüfen, registry, schonmal, spiele, tdss, threads, trojaner, win, zugriff |