|
Plagegeister aller Art und deren Bekämpfung: habe den watch4.de virusWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
10.12.2015, 21:53 | #16 |
| habe den watch4.de virusCode:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:09-12-2015 durchgeführt von Senichiro (Administrator) auf SENICHIRO-PC (10-12-2015 21:49:50) Gestartet von C:\Users\Senichiro\Downloads Geladene Profile: Senichiro (Verfügbare Profile: Senichiro & DefaultAppPool) Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Edge) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (Lavasoft Limited) C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe () C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (Hi-Rez Studios) D:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe () C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (TeamSpeak Systems GmbH) D:\Users\Senichiro\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe (Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.4632\Agent.exe (Blizzard Entertainment) D:\Battle.net\Battle.net.6382\Battle.net.exe () D:\DeepBot - Twitch Streamer Assistant\DeepBot.exe () C:\Program Files\OBS\OBS.exe (The CefSharp Authors) D:\DeepBot - Twitch Streamer Assistant\CefSharp.BrowserSubprocess.exe (The CefSharp Authors) D:\DeepBot - Twitch Streamer Assistant\CefSharp.BrowserSubprocess.exe (The CefSharp Authors) D:\DeepBot - Twitch Streamer Assistant\CefSharp.BrowserSubprocess.exe (The CefSharp Authors) D:\DeepBot - Twitch Streamer Assistant\CefSharp.BrowserSubprocess.exe (Microsoft Corporation) C:\Windows\System32\SndVol.exe (Acreon Inc.) C:\Users\Senichiro\Downloads\WowMatrix.exe (Microsoft Corporation) C:\Windows\splwow64.exe () C:\Users\Senichiro\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe () C:\Users\Senichiro\AppData\Roaming\IMVUClient\IMVUClient.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.23.23.0_x64__8wekyb3d8bbwe\WinStore.Mobile.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6508.23761.0_x64__8wekyb3d8bbwe\OHub.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsAlarms_10.1511.65020.0_x64__8wekyb3d8bbwe\Time.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Farbar) C:\Users\Senichiro\Downloads\FRST64 (2).exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14021336 2015-06-18] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1804432 2015-11-10] (NVIDIA Corporation) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [803200 2015-12-05] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [66320 2015-10-14] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [296216 2015-06-15] (Intel Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597040 2015-10-06] (Oracle Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\Run: [Steam] => D:\Program Files (x86)\Steam\steam.exe [3011152 2015-11-10] (Valve Corporation) HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50748544 2015-12-01] (Skype Technologies S.A.) HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) Startup: C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\IMVU.lnk [2015-12-10] ShortcutTarget: IMVU.lnk -> C:\Users\Senichiro\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe () ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{ade0edd1-6c25-4247-ba9b-9483aa2ebb75}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{fbbede9e-64f8-453f-9131-ce9aea39b38f}: [DhcpNameServer] 192.168.2.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.avira.net/#web/result?source=art&q= HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://search.avira.net/#web/result?source=art&q= HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://search.avira.net/#web/result?source=art&q= HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://search.avira.net/#web/result?source=art&q= HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.avira.net/#web/result?source=art&q= HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://search.avira.net/#web/result?source=art&q= HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://search.avira.net/#web/result?source=art&q= BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_66\bin\ssv.dll [2015-12-03] (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-12-03] (Oracle Corporation) DPF: HKLM-x32 {93C449FA-ECFB-402F-A8C7-37E4F8D60E49} hxxp://dl.pmang.com/common/pmangctl/pmangax.cab FireFox: ======== FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll [2015-12-09] () FF Plugin: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-12-03] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-12-03] (Oracle Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll [2015-12-09] () FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-11-05] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-11-05] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.) Chrome: ======= CHR StartupUrls: Default -> "hxxp://www.startfenster.com" CHR Profile: C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (ProxFlow) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2015-12-04] CHR Extension: (Google Slides) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-03] CHR Extension: (Google Docs) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-03] CHR Extension: (Google Drive) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-03] CHR Extension: (YouTube) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-03] CHR Extension: (Google Search) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-03] CHR Extension: (Google Sheets) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-03] CHR Extension: (AdBlock Premium) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\fndlhnanhedoklpdaacidomdnplcjcpj [2015-12-03] CHR Extension: (Google Docs Offline) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-12-03] CHR Extension: (AdBlock) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-12-04] CHR Extension: (Chrome Web Store Payments) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-12-03] CHR Extension: (Gmail) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-03] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [948392 2015-12-05] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [466408 2015-12-05] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [466408 2015-12-05] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1418560 2015-12-05] (Avira Operations GmbH & Co. KG) R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [243968 2015-10-14] (Avira Operations GmbH & Co. KG) R2 HiPatchService; D:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2015-11-03] (Hi-Rez Studios) [Datei ist nicht signiert] R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [351120 2015-07-18] (Intel Corporation) R2 LavasoftTcpService; C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe [2751760 2015-12-03] (Lavasoft Limited) S2 MBAMScheduler; D:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes) S2 MBAMService; D:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1135416 2015-10-05] (Malwarebytes) S3 npggsvc; C:\WINDOWS\SysWOW64\GameMon.des [3685968 2015-07-22] (INCA Internet Co., Ltd.) S3 Origin Client Service; D:\Program Files (x86)\Origin\OriginClientService.exe [2104840 2015-12-08] (Electronic Arts) R2 SearchProtectionService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe [17168 2015-12-03] () S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [135880 2015-12-08] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [146696 2015-12-08] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2015-12-08] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [73032 2015-12-08] (Avira Operations GmbH & Co. KG) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes) S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2015-12-08] (Malwarebytes) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation) S3 EverestDriver; \??\C:\Program Files (x86)\Lavalys\EVEREST Ultimate Edition\kerneld.amd64 [X] U3 idsvc; kein ImagePath U3 wpcsvc; kein ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-12-10 21:47 - 2015-12-10 21:49 - 02369024 _____ (Farbar) C:\Users\Senichiro\Downloads\FRST64 (2).exe 2015-12-10 21:46 - 2015-12-10 21:46 - 00000000 ____D C:\WINDOWS\system32\Drivers\etc\BACKUP 2015-12-10 21:45 - 2015-12-10 21:45 - 00000215 _____ C:\Users\Senichiro\Downloads\antiskypewerbung (1).zip 2015-12-10 21:44 - 2015-12-10 21:45 - 00000000 ____D C:\Users\Senichiro\Desktop\Neuer Ordner (2) 2015-12-10 21:44 - 2015-12-10 21:45 - 00000000 ____D C:\Users\Senichiro\Desktop\Neuer Ordner 2015-12-10 21:43 - 2015-12-10 21:43 - 00508823 _____ C:\Users\Senichiro\Downloads\bl_hst_edit.zip 2015-12-10 21:43 - 2015-12-10 21:43 - 00000215 _____ C:\Users\Senichiro\Downloads\antiskypewerbung.zip 2015-12-10 08:44 - 2015-12-10 08:44 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Acreon 2015-12-10 08:44 - 2015-12-10 08:44 - 00000000 ____D C:\Users\Senichiro\AppData\Local\._LiveCode_ 2015-12-10 08:43 - 2015-12-10 08:44 - 09926144 _____ (Acreon Inc.) C:\Users\Senichiro\Downloads\WowMatrix.exe 2015-12-10 00:27 - 2015-12-10 00:27 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Vorlagen 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Startmenü 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Netzwerkumgebung 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Lokale Einstellungen 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Eigene Dateien 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Druckumgebung 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Videos 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Musik 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Bilder 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Verlauf 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Anwendungsdaten 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Anwendungsdaten 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 ____D C:\Users\DefaultAppPool 2015-12-10 00:27 - 2015-12-08 20:06 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Media Center Programs 2015-12-10 00:25 - 2015-12-10 00:25 - 00000000 ____D C:\Users\Senichiro\Documents\BnS 2015-12-10 00:25 - 2015-12-10 00:25 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Awesomium 2015-12-10 00:24 - 2015-12-10 00:24 - 00000000 ____D C:\Program Files\Common Files\INCA Shared 2015-12-10 00:24 - 2015-07-22 14:01 - 03685968 _____ (INCA Internet Co., Ltd.) C:\WINDOWS\SysWOW64\GameMon.des 2015-12-10 00:24 - 2005-01-03 07:43 - 00004682 _____ (INCA Internet Co., Ltd.) C:\WINDOWS\SysWOW64\npptNT2.sys 2015-12-10 00:24 - 2003-07-18 22:17 - 00005174 _____ C:\WINDOWS\SysWOW64\nppt9x.vxd 2015-12-09 22:48 - 2015-12-09 22:48 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2015-12-09 22:40 - 2015-12-09 22:40 - 00000000 ____D C:\Users\Senichiro\AppData\Local\PeerDistRepub 2015-12-09 21:51 - 2015-12-09 21:51 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Blizzard 2015-12-09 21:18 - 2015-12-09 21:18 - 00001527 _____ C:\Users\Public\Desktop\Blade & Soul CBT.lnk 2015-12-09 21:18 - 2015-12-09 21:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCSOFT 2015-12-09 21:15 - 2015-12-09 21:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCWest 2015-12-09 21:15 - 2015-12-09 21:15 - 00000000 ____D C:\Program Files (x86)\NCWest 2015-12-09 21:12 - 2015-12-09 21:14 - 08998672 _____ (NC Interactive, LLC) C:\Users\Senichiro\Downloads\BnS_CBT Lite Installer.exe 2015-12-09 20:00 - 2015-12-09 20:00 - 00001282 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2015-12-09 20:00 - 2015-12-09 20:00 - 00001270 _____ C:\Users\Public\Desktop\Mozilla Thunderbird.lnk 2015-12-09 20:00 - 2015-12-09 20:00 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Thunderbird 2015-12-09 20:00 - 2015-12-09 20:00 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Mozilla 2015-12-09 20:00 - 2015-12-09 20:00 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Thunderbird 2015-12-09 20:00 - 2015-12-09 20:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2015-12-09 20:00 - 2015-12-09 20:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-12-09 19:59 - 2015-12-09 19:59 - 01466656 _____ C:\Users\Senichiro\Downloads\Thunderbird - CHIP-Installer.exe 2015-12-09 12:00 - 2015-12-09 12:00 - 00000000 ____D C:\Users\Senichiro\Documents\BioWare 2015-12-09 11:59 - 2015-12-09 11:59 - 00000996 _____ C:\Users\Public\Desktop\Dragon Age Inquisition.lnk 2015-12-09 11:28 - 2015-12-10 19:04 - 00004174 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{471E0BF4-76F9-4020-AD86-AA65C40E47B1} 2015-12-09 10:06 - 2015-12-09 10:06 - 00000000 ____D C:\Users\Senichiro\AppData\Local\MicrosoftEdge 2015-12-09 09:03 - 2015-12-09 09:04 - 02369024 _____ (Farbar) C:\Users\Senichiro\Downloads\FRST64 (1).exe 2015-12-08 21:11 - 2015-12-08 21:11 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2015-12-08 21:06 - 2015-12-09 12:00 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Origin 2015-12-08 21:06 - 2015-12-08 21:07 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Origin 2015-12-08 20:57 - 2015-12-09 12:00 - 00000000 ____D C:\ProgramData\Origin 2015-12-08 20:57 - 2015-12-09 12:00 - 00000000 ____D C:\ProgramData\Electronic Arts 2015-12-08 20:57 - 2015-12-08 20:57 - 00000733 _____ C:\Users\Public\Desktop\Origin.lnk 2015-12-08 20:55 - 2015-12-08 20:57 - 31335616 _____ (Electronic Arts, Inc.) C:\Users\Senichiro\Downloads\OriginThinSetup.exe 2015-12-08 20:40 - 2015-12-08 20:40 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Comms 2015-12-08 20:32 - 2015-12-08 20:32 - 00002370 _____ C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-12-08 20:32 - 2015-12-08 20:32 - 00000000 ___RD C:\Users\Senichiro\OneDrive 2015-12-08 20:21 - 2015-12-08 20:21 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2015-12-08 20:20 - 2015-10-29 19:43 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll 2015-12-08 20:20 - 2015-10-29 19:43 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll 2015-12-08 20:20 - 2015-10-29 19:41 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll 2015-12-08 20:20 - 2015-10-29 19:25 - 06359040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll 2015-12-08 20:20 - 2015-10-29 19:24 - 04847616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll 2015-12-08 20:19 - 2015-12-08 20:19 - 00001051 _____ C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optionale Features.lnk 2015-12-08 20:19 - 2015-12-08 20:19 - 00000000 ____D C:\Users\Senichiro\AppData\Local\ActiveSync 2015-12-08 20:18 - 2015-12-08 20:18 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Publishers 2015-12-08 20:17 - 2015-12-09 08:57 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Packages 2015-12-08 20:17 - 2015-12-08 21:09 - 00000000 __RHD C:\Users\Public\AccountPictures 2015-12-08 20:17 - 2015-12-08 20:17 - 00000020 ___SH C:\Users\Senichiro\ntuser.ini 2015-12-08 20:17 - 2015-12-08 20:17 - 00000000 ____D C:\Users\Senichiro\AppData\Local\TileDataLayer 2015-12-08 20:16 - 2015-12-08 20:16 - 00000000 ____D C:\ProgramData\USOShared 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Vorlagen 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Startmenü 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-12-08 20:14 - 2015-12-09 12:46 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-12-08 20:14 - 2015-12-08 20:14 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat 2015-12-08 20:06 - 2015-12-08 20:06 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2015-12-08 20:06 - 2015-12-08 20:06 - 00000000 ____D C:\Users\Default\AppData\Roaming\Media Center Programs 2015-12-08 20:06 - 2015-12-08 20:06 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Media Center Programs 2015-12-08 20:04 - 2015-12-08 20:04 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines 2015-12-08 20:03 - 2015-12-09 12:52 - 02086168 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-12-08 20:03 - 2015-12-09 12:48 - 00000000 ____D C:\Users\Senichiro 2015-12-08 20:03 - 2015-12-08 20:03 - 01989310 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Vorlagen 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Startmenü 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Netzwerkumgebung 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Lokale Einstellungen 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Eigene Dateien 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Druckumgebung 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Documents\Eigene Videos 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Documents\Eigene Musik 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Documents\Eigene Bilder 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\AppData\Local\Verlauf 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\AppData\Local\Anwendungsdaten 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Anwendungsdaten 2015-12-08 20:00 - 2015-12-09 12:49 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2015-12-08 20:00 - 2015-12-09 12:46 - 00000000 ____D C:\ProgramData\NVIDIA 2015-12-08 20:00 - 2015-12-08 20:05 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2015-12-08 20:00 - 2015-12-08 20:04 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2015-12-08 20:00 - 2015-12-08 20:04 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2015-12-08 20:00 - 2015-12-08 20:00 - 00000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat 2015-12-08 20:00 - 2015-12-08 20:00 - 00000000 ____H C:\ProgramData\DP45977C.lfl 2015-12-08 20:00 - 2015-12-08 20:00 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2015-12-08 20:00 - 2015-12-08 20:00 - 00000000 ____D C:\Program Files\Realtek 2015-12-08 20:00 - 2015-08-07 01:24 - 06873904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2015-12-08 20:00 - 2015-08-07 01:24 - 03492984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2015-12-08 20:00 - 2015-08-07 01:24 - 02558768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2015-12-08 20:00 - 2015-08-07 01:24 - 00937592 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe 2015-12-08 20:00 - 2015-08-07 01:24 - 00385328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2015-12-08 20:00 - 2015-08-07 01:24 - 00062584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2015-12-08 20:00 - 2015-08-03 11:04 - 05133709 _____ C:\WINDOWS\system32\nvcoproc.bin 2015-12-08 20:00 - 2015-07-17 23:58 - 00082432 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL 2015-12-08 19:59 - 2015-12-08 20:04 - 00000000 ____D C:\Program Files\Intel 2015-12-08 19:59 - 2015-10-30 08:17 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2015-12-08 19:55 - 2015-12-08 20:07 - 00189344 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-12-08 19:54 - 2015-12-08 20:16 - 00000000 ___DC C:\WINDOWS\Panther 2015-12-08 19:52 - 2015-12-08 19:52 - 00000000 ____D C:\Windows.old 2015-12-08 19:51 - 2015-12-08 19:51 - 24601600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 22572632 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 22393856 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 21125408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 19338240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 18678272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 16984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 13381120 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 13017600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 12125184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 07979008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 07476576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 07199232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 03993600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 03671896 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 03593216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02918808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02843136 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02772584 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2015-12-08 19:51 - 2015-12-08 19:51 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2015-12-08 19:51 - 2015-12-08 19:51 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02653816 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02647552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02598400 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02587136 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02352128 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02280448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02185840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02179584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02152800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 02126848 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2015-12-08 19:51 - 2015-12-08 19:51 - 02121216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02064384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02049024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2015-12-08 19:51 - 2015-12-08 19:51 - 02001408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01995264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01860096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01859448 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01817160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01814528 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01734656 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01717248 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01706496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01648640 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01540768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01505280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 01387008 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01284960 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01223168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01212928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01042432 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00975200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00969728 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00957440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00948224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00911648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00850432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00809312 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00803840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00795840 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00791552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00783360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00704352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00698208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00697856 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00686592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00675064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00674816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00607232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 00604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00586208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00586080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00578912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00540752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00536768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00523616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2015-12-08 19:51 - 2015-12-08 19:51 - 00516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00511320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00470528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00454056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00440160 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00431232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrvut.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00408128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00405048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2015-12-08 19:51 - 2015-12-08 19:51 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00366224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00334736 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00264192 _____ (Nokia) C:\WINDOWS\system32\NmaDirect.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00245848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00205824 _____ (Nokia) C:\WINDOWS\SysWOW64\NmaDirect.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rmcast.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ETWCoreUIComponentsResources.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\capimg.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 00116728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MapControls.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00110032 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00088392 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00080600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwapi.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssign32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00073360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManagerProxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll |
10.12.2015, 21:55 | #17 |
| habe den watch4.de virusCode:
ATTFilter 2015-12-08 19:51 - 2015-12-08 19:51 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ihvrilproxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00063528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wwapi.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssign32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00058408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosResource.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosResource.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rilproxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wwanpref.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00051680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsUtilsV2.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsplib.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.proxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthManagerProxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCoreRes.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCoreRes.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00035680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 00035656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00032040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.proxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshrm.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\readingviewresources.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlStringsRes.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll 2015-12-08 19:49 - 2015-12-08 19:49 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2015-12-08 19:47 - 2015-12-08 19:47 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2015-12-08 19:47 - 2015-12-08 19:47 - 00000000 ____D C:\WINDOWS\SysWOW64\BestPractices 2015-12-08 19:47 - 2015-12-08 19:47 - 00000000 ____D C:\WINDOWS\system32\msmq 2015-12-08 19:47 - 2015-12-08 19:47 - 00000000 ____D C:\WINDOWS\system32\BestPractices 2015-12-08 19:47 - 2015-12-08 19:47 - 00000000 ____D C:\Program Files\Reference Assemblies 2015-12-08 19:47 - 2015-12-08 19:47 - 00000000 ____D C:\Program Files\MSBuild 2015-12-08 19:47 - 2015-12-08 19:47 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2015-12-08 19:47 - 2015-12-08 19:47 - 00000000 ____D C:\Program Files (x86)\MSBuild 2015-12-08 19:47 - 2015-12-08 19:47 - 00000000 ____D C:\inetpub 2015-12-08 19:46 - 2015-10-23 17:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2015-12-08 19:46 - 2015-10-23 17:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-12-08 19:46 - 2015-10-23 17:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2015-12-08 19:46 - 2015-10-23 17:46 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2015-12-08 19:46 - 2015-10-23 17:46 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2015-12-08 19:46 - 2015-10-23 17:45 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2015-12-08 09:52 - 2015-12-08 09:52 - 00852720 _____ C:\Users\Senichiro\Downloads\SecurityCheck.exe 2015-12-08 09:10 - 2015-12-08 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PMANG 2015-12-08 07:49 - 2015-12-08 07:49 - 02870984 _____ (ESET) C:\Users\Senichiro\Downloads\esetsmartinstaller_deu.exe 2015-12-07 19:47 - 2015-12-07 19:47 - 00000604 _____ C:\Users\Public\Desktop\WildStar.lnk 2015-12-07 19:40 - 2015-12-07 19:40 - 01405400 _____ (NCSOFT) C:\Users\Senichiro\Downloads\Wildstar.exe 2015-12-07 19:40 - 2015-12-07 19:40 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\NCSOFT 2015-12-07 19:40 - 2015-12-07 19:40 - 00000000 ____D C:\Users\Senichiro\AppData\Local\NCSOFT 2015-12-07 09:39 - 2015-12-07 13:57 - 00000000 ____D C:\Users\Senichiro\Downloads\Log 2015-12-07 09:39 - 2015-12-07 09:39 - 01950392 _____ (Neowiz Games) C:\Users\Senichiro\Downloads\DirectDL.exe 2015-12-07 09:13 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DeepBot 2015-12-07 09:12 - 2015-12-07 09:12 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\DeepBot.tv 2015-12-07 09:11 - 2015-12-07 09:12 - 41952181 _____ (DeepBot.tv) C:\Users\Senichiro\Downloads\DeepBot.exe 2015-12-07 08:04 - 2015-12-07 08:04 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Tencent 2015-12-07 07:57 - 2015-12-07 08:01 - 03598696 _____ C:\Users\Senichiro\Downloads\MHO_Setup_1.0.1.21_TDL_signed.exe 2015-12-07 07:24 - 2015-12-07 07:24 - 00001857 _____ C:\Users\Senichiro\Desktop\IMVU.lnk 2015-12-07 07:24 - 2015-12-07 07:24 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\IMVUClient 2015-12-07 07:23 - 2015-12-07 07:24 - 00244304 _____ C:\Users\Senichiro\Downloads\InstallIMVU_523.0_st (1).exe 2015-12-07 07:01 - 2015-12-07 07:01 - 00000945 _____ C:\Users\Senichiro\Desktop\JRT.txt 2015-12-07 06:57 - 2015-12-07 06:57 - 01599336 _____ (Malwarebytes) C:\Users\Senichiro\Downloads\JRT (1).exe 2015-12-07 06:49 - 2015-12-07 06:49 - 01736704 _____ C:\Users\Senichiro\Downloads\AdwCleaner_5.023 (1).exe 2015-12-07 06:47 - 2015-12-07 06:47 - 00001203 _____ C:\Users\Senichiro\Desktop\mbam.txt 2015-12-06 16:39 - 2015-12-06 16:39 - 01021256 _____ C:\Users\Senichiro\Downloads\pk3DS (12-02-15).zip 2015-12-06 13:48 - 2015-12-06 13:48 - 00000000 ____D C:\Users\Senichiro\AppData\Local\GWX 2015-12-06 11:18 - 2015-12-06 11:18 - 00000000 ____D C:\ESD 2015-12-06 10:46 - 2015-12-06 10:46 - 07635472 _____ (Microsoft Corporation) C:\Users\Senichiro\Downloads\GetWindows10-Web_Default_Attr.exe 2015-12-06 10:46 - 2015-12-06 10:46 - 00000000 ___HD C:\$Windows.~WS 2015-12-06 10:29 - 2015-12-06 10:29 - 00060965 _____ C:\Users\Senichiro\Downloads\pkeyuibx_v1.5.0.zip 2015-12-06 10:18 - 2015-12-06 10:18 - 00000000 ____D C:\WinKey 2015-12-06 10:11 - 2015-12-06 10:11 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\TeamViewer 2015-12-06 10:10 - 2015-12-06 10:10 - 09659160 _____ (TeamViewer GmbH) C:\Users\Senichiro\Downloads\TeamViewer_Setup_de.exe 2015-12-05 11:29 - 2015-12-05 11:30 - 00046676 _____ C:\Users\Senichiro\Downloads\Addition.txt 2015-12-05 11:28 - 2015-12-10 21:50 - 00016231 _____ C:\Users\Senichiro\Downloads\FRST.txt 2015-12-05 11:28 - 2015-12-10 21:49 - 00000000 ____D C:\FRST 2015-12-05 11:28 - 2015-12-05 11:28 - 02350080 _____ (Farbar) C:\Users\Senichiro\Downloads\FRST64.exe 2015-12-05 11:22 - 2015-12-08 13:48 - 00000194 _____ C:\Users\Senichiro\Desktop\Einlogdaten.txt 2015-12-05 11:17 - 2015-12-08 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SQUARE ENIX 2015-12-05 11:15 - 2015-12-05 11:16 - 111970304 _____ (SQUARE ENIX CO., LTD.) C:\Users\Senichiro\Downloads\ffxivsetup.exe 2015-12-05 11:12 - 2015-12-08 20:06 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The Elder Scrolls Online 2015-12-05 11:12 - 2015-12-05 11:12 - 00000585 _____ C:\Users\Senichiro\Desktop\The Elder Scrolls Online.lnk 2015-12-05 11:12 - 2015-12-05 11:12 - 00000000 ____D C:\WINDOWS\jre 2015-12-05 11:11 - 2015-12-05 11:12 - 00000000 ___HD C:\Program Files (x86)\Zero G Registry 2015-12-05 11:10 - 2015-12-05 11:10 - 00000000 ___HD C:\Users\Senichiro\InstallAnywhere 2015-12-05 11:08 - 2015-12-05 11:10 - 109567016 _____ (Zenimax Media Inc) C:\Users\Senichiro\Downloads\Install_ESO.exe 2015-12-05 05:39 - 2015-12-07 06:51 - 00000000 ____D C:\AdwCleaner 2015-12-05 05:39 - 2015-12-05 05:39 - 01599336 _____ (Malwarebytes) C:\Users\Senichiro\Downloads\JRT.exe 2015-12-05 05:37 - 2015-12-05 05:37 - 01736704 _____ C:\Users\Senichiro\Downloads\AdwCleaner_5.023.exe 2015-12-05 05:36 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-12-05 05:36 - 2015-12-08 17:31 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-12-05 05:36 - 2015-12-05 05:36 - 00000781 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-12-05 05:36 - 2015-12-05 05:36 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-12-05 05:36 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-12-05 05:36 - 2015-10-05 09:50 - 00063704 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-12-05 05:36 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2015-12-05 05:35 - 2015-12-05 05:35 - 22908888 _____ (Malwarebytes ) C:\Users\Senichiro\Downloads\mbam-setup-2.2.0.1024.exe 2015-12-04 18:12 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Guild Wars 2 2015-12-04 18:10 - 2015-12-04 18:12 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Guild Wars 2 2015-12-04 18:10 - 2015-12-04 18:10 - 26068984 _____ (ArenaNet) C:\Users\Senichiro\Downloads\Gw2Setup.exe 2015-12-04 08:26 - 2015-12-04 08:26 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\NVIDIA 2015-12-04 08:23 - 2015-12-04 08:23 - 00000000 ____D C:\Users\Senichiro\Documents\Square Enix 2015-12-04 07:52 - 2015-12-04 07:52 - 00243976 _____ C:\Users\Senichiro\Downloads\Firefox Setup Stub 42.0.exe 2015-12-04 06:11 - 2009-06-10 22:00 - 00000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts.20151204-061113.backup 2015-12-04 05:59 - 2015-12-04 05:59 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\LolClient 2015-12-04 05:50 - 2015-12-04 05:50 - 00000000 ____D C:\WINDOWS\ERUNT 2015-12-04 05:41 - 2015-12-04 05:41 - 00007605 _____ C:\Users\Senichiro\AppData\Local\Resmon.ResmonCfg 2015-12-04 05:29 - 2015-12-09 16:39 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\OBS 2015-12-04 05:29 - 2015-12-08 20:06 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Open Broadcaster Software 2015-12-04 05:29 - 2015-12-04 05:29 - 00000939 _____ C:\Users\Senichiro\Desktop\Open Broadcaster Software.lnk 2015-12-04 05:29 - 2015-12-04 05:29 - 00000000 ____D C:\Program Files\OBS 2015-12-04 05:29 - 2015-12-04 05:29 - 00000000 ____D C:\Program Files (x86)\OBS 2015-12-04 05:28 - 2015-12-04 05:29 - 07284240 _____ C:\Users\Senichiro\Downloads\OBS_0_657b_Installer (1).exe 2015-12-04 05:05 - 2015-12-04 05:05 - 09848595 _____ C:\Users\Senichiro\Downloads\Windows6.0-KB971512-x64.msu 2015-12-04 05:00 - 2015-12-04 05:00 - 00000000 ____D C:\Program Files\Common Files\AV 2015-12-04 05:00 - 2015-07-28 17:52 - 00821920 _____ (Safer-Networking Ltd. ) C:\Users\Public\Desktop\Post Win10 Spybot-install.exe 2015-12-04 04:59 - 2015-12-04 04:59 - 00001050 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk 2015-12-04 04:56 - 2015-12-04 04:57 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Senichiro\Downloads\spybot-2.4 (1).exe 2015-12-04 03:43 - 2015-12-04 03:43 - 00000000 ____D C:\ProgramData\Riot Games 2015-12-04 03:41 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends 2015-12-04 03:40 - 2015-12-04 03:40 - 30668968 _____ (Riot Games) C:\Users\Senichiro\Downloads\LeagueofLegends_EUW_Installer_9_15_2014 (1).exe 2015-12-04 03:39 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll 2015-12-04 03:39 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll 2015-12-04 03:39 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll 2015-12-04 03:25 - 2015-12-04 03:41 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Riot Games 2015-12-04 03:24 - 2015-12-04 03:24 - 30668968 _____ (Riot Games) C:\Users\Senichiro\Downloads\LeagueofLegends_EUW_Installer_9_15_2014.exe 2015-12-03 16:07 - 2015-12-10 21:32 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2015-12-03 16:07 - 2015-12-09 08:32 - 00003858 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2015-12-03 16:05 - 2015-12-03 16:07 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Adobe 2015-12-03 16:04 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-12-03 16:04 - 2015-12-03 16:04 - 00110176 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2015-12-03 16:04 - 2015-12-03 16:04 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Sun 2015-12-03 16:04 - 2015-12-03 16:04 - 00000000 ____D C:\Users\Senichiro\AppData\LocalLow\Sun 2015-12-03 16:04 - 2015-12-03 16:04 - 00000000 ____D C:\Users\Senichiro\AppData\LocalLow\Oracle 2015-12-03 16:04 - 2015-12-03 16:04 - 00000000 ____D C:\Users\Senichiro\.oracle_jre_usage 2015-12-03 16:04 - 2015-12-03 16:04 - 00000000 ____D C:\ProgramData\Oracle 2015-12-03 16:04 - 2015-12-03 16:04 - 00000000 ____D C:\Program Files\Java 2015-12-03 16:03 - 2015-12-03 16:03 - 00584288 _____ (Oracle Corporation) C:\Users\Senichiro\Downloads\jre-8u66-windows-i586-iftw.exe 2015-12-03 15:58 - 2015-12-03 15:58 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\.mono 2015-12-03 15:58 - 2015-12-03 15:58 - 00000000 ____D C:\Users\Senichiro\AppData\LocalLow\PlayfulCorp 2015-12-03 15:58 - 2015-12-03 15:58 - 00000000 ____D C:\ProgramData\.mono 2015-12-03 15:56 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll 2015-12-03 15:56 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll 2015-12-03 15:56 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll 2015-12-03 15:56 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll 2015-12-03 15:56 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll 2015-12-03 15:56 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll 2015-12-03 15:32 - 2015-12-05 11:16 - 00000000 ____D C:\Users\Senichiro\Documents\My Games 2015-12-03 15:24 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft 2015-12-03 14:51 - 2015-10-31 00:04 - 00968704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.exe 2015-12-03 14:51 - 2015-10-30 23:29 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmlmedia.dll 2015-12-03 14:51 - 2015-10-30 23:09 - 01155072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmlmedia.dll 2015-12-03 14:50 - 2015-06-09 19:03 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpGroupPolicyExtension.dll 2015-12-03 14:10 - 2015-12-04 05:56 - 00001744 _____ C:\DelFix.txt 2015-12-03 13:52 - 2009-06-10 22:00 - 00000824 _____ C:\WINDOWS\system32\Drivers\etc\hp.bak 2015-12-03 13:50 - 2015-12-03 13:57 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Opera Software 2015-12-03 13:50 - 2015-12-03 13:57 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Opera Software 2015-12-03 13:49 - 2015-12-03 13:57 - 00000000 ____D C:\Program Files (x86)\Opera 2015-12-03 13:46 - 2015-12-03 14:10 - 00000000 ____D C:\Program Files (x86)\Windows Loader 2015-12-03 13:46 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll 2015-12-03 13:46 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll 2015-12-03 13:46 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll 2015-12-03 13:46 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll 2015-12-03 13:46 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll 2015-12-03 13:46 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll 2015-12-03 13:46 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll 2015-12-03 13:46 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll 2015-12-03 13:46 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll 2015-12-03 13:46 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll 2015-12-03 13:46 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll 2015-12-03 13:46 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll 2015-12-03 13:46 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll 2015-12-03 13:46 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll 2015-12-03 13:46 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll 2015-12-03 13:46 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll 2015-12-03 13:46 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll 2015-12-03 13:46 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll 2015-12-03 13:46 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll 2015-12-03 13:46 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll 2015-12-03 13:46 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll 2015-12-03 13:46 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll 2015-12-03 13:46 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll 2015-12-03 13:46 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll 2015-12-03 13:46 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll 2015-12-03 13:46 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll 2015-12-03 13:46 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll 2015-12-03 13:46 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll 2015-12-03 13:46 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll 2015-12-03 13:46 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll 2015-12-03 13:46 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll 2015-12-03 13:46 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll 2015-12-03 13:46 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll 2015-12-03 13:46 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll 2015-12-03 13:46 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll 2015-12-03 13:46 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll 2015-12-03 13:46 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll 2015-12-03 13:46 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll 2015-12-03 13:46 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll 2015-12-03 13:46 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll 2015-12-03 13:46 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll 2015-12-03 13:46 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll 2015-12-03 13:46 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll 2015-12-03 13:46 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll 2015-12-03 13:46 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll 2015-12-03 13:46 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll 2015-12-03 13:46 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll 2015-12-03 13:46 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll 2015-12-03 13:45 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll 2015-12-03 13:45 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll 2015-12-03 13:45 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll 2015-12-03 13:45 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll 2015-12-03 13:45 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll 2015-12-03 13:45 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll 2015-12-03 13:45 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll 2015-12-03 13:45 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll 2015-12-03 13:45 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll 2015-12-03 13:45 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll 2015-12-03 13:45 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll 2015-12-03 13:45 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll 2015-12-03 13:45 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll 2015-12-03 13:45 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll 2015-12-03 13:45 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll 2015-12-03 13:45 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll 2015-12-03 13:45 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll 2015-12-03 13:45 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll 2015-12-03 13:45 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll 2015-12-03 13:45 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll 2015-12-03 13:45 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll 2015-12-03 13:45 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll 2015-12-03 13:45 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll 2015-12-03 13:45 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll 2015-12-03 13:45 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll 2015-12-03 13:45 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll 2015-12-03 13:45 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll 2015-12-03 13:45 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll 2015-12-03 13:45 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll 2015-12-03 13:45 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll 2015-12-03 13:45 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll 2015-12-03 13:45 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll 2015-12-03 13:45 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll 2015-12-03 13:45 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll 2015-12-03 13:45 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll 2015-12-03 13:45 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll 2015-12-03 13:45 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll 2015-12-03 13:45 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll 2015-12-03 13:45 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll 2015-12-03 13:45 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll 2015-12-03 13:45 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll 2015-12-03 13:45 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll 2015-12-03 13:45 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll 2015-12-03 13:45 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll 2015-12-03 13:45 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll 2015-12-03 13:45 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll 2015-12-03 13:45 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll 2015-12-03 13:45 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll 2015-12-03 13:45 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll 2015-12-03 13:45 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll 2015-12-03 13:45 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll 2015-12-03 13:45 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll 2015-12-03 13:45 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll 2015-12-03 13:45 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll 2015-12-03 13:45 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll 2015-12-03 13:45 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll 2015-12-03 13:45 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll 2015-12-03 13:45 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll 2015-12-03 13:45 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll 2015-12-03 13:45 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll 2015-12-03 13:45 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll 2015-12-03 13:45 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll 2015-12-03 13:45 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll 2015-12-03 13:45 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll 2015-12-03 13:45 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll 2015-12-03 13:45 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll 2015-12-03 13:45 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll 2015-12-03 13:45 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll 2015-12-03 13:45 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll 2015-12-03 13:45 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll 2015-12-03 13:45 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll 2015-12-03 13:45 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll 2015-12-03 13:45 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll 2015-12-03 13:45 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll 2015-12-03 13:45 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll 2015-12-03 13:45 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll 2015-12-03 13:45 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll 2015-12-03 13:45 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll 2015-12-03 13:45 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll 2015-12-03 13:45 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll 2015-12-03 13:45 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll 2015-12-03 13:45 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll 2015-12-03 13:45 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll 2015-12-03 13:45 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll 2015-12-03 13:45 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll 2015-12-03 13:45 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll 2015-12-03 13:45 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll 2015-12-03 13:45 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll 2015-12-03 13:45 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll 2015-12-03 13:45 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll 2015-12-03 13:45 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll 2015-12-03 13:45 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll 2015-12-03 13:45 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll 2015-12-03 13:45 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll 2015-12-03 13:45 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll 2015-12-03 13:45 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll 2015-12-03 13:45 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll 2015-12-03 13:45 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll 2015-12-03 13:45 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll 2015-12-03 13:45 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll 2015-12-03 13:45 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll 2015-12-03 13:45 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll 2015-12-03 13:45 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll 2015-12-03 13:45 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll 2015-12-03 13:45 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll 2015-12-03 13:36 - 2015-12-03 13:36 - 07284240 _____ C:\Users\Senichiro\Downloads\OBS_0_657b_Installer.exe 2015-12-03 13:34 - 2015-12-03 13:35 - 09412021 _____ C:\Users\Senichiro\Downloads\OBS_0_657b.zip 2015-12-03 12:16 - 2015-12-07 10:45 - 00000000 ____D C:\Users\Senichiro\Desktop\Games 2015-12-03 12:08 - 2015-12-03 12:09 - 00102450 _____ C:\WINDOWS\ntbtlog.txt 2015-12-03 11:55 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios 2015-12-03 11:55 - 2015-12-03 11:55 - 00000000 ____D C:\ProgramData\Hi-Rez Studios 2015-12-03 11:53 - 2015-12-10 19:06 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\IMVU 2015-12-03 11:53 - 2015-12-08 20:06 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IMVU 2015-12-03 11:53 - 2015-12-03 11:54 - 50495272 _____ (Hi-Rez Studios) C:\Users\Senichiro\Downloads\InstallPaladins.exe 2015-12-03 11:53 - 2015-12-03 11:53 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Macromedia 2015-12-03 11:52 - 2015-12-03 11:52 - 00244304 _____ C:\Users\Senichiro\Downloads\InstallIMVU_523.0_st.exe 2015-12-03 11:49 - 2015-12-03 11:52 - 00000000 ____D C:\Users\Senichiro\Documents\Overwatch 2015-12-03 11:42 - 2015-06-18 18:45 - 04496600 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys 2015-12-03 11:42 - 2015-06-18 17:59 - 02862488 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT 2015-12-03 11:42 - 2015-06-17 19:47 - 02930904 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll 2015-12-03 11:42 - 2015-06-17 14:45 - 03234520 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll 2015-12-03 11:42 - 2015-06-15 17:39 - 01748184 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll 2015-12-03 11:42 - 2015-05-26 11:59 - 00166616 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll 2015-12-03 11:42 - 2015-05-18 14:47 - 02702040 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl 2015-12-03 11:42 - 2015-05-15 19:27 - 02918104 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll 2015-12-03 11:42 - 2015-05-15 16:32 - 01316056 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll 2015-12-03 11:42 - 2015-01-19 18:10 - 72113152 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat 2015-12-03 11:42 - 2014-11-11 13:44 - 00631000 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll 2015-12-03 11:42 - 2014-09-24 11:31 - 07087448 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll 2015-12-03 11:42 - 2014-09-24 11:31 - 01939800 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll 2015-12-03 11:42 - 2014-09-24 11:31 - 00315736 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll 2015-12-03 11:42 - 2014-09-24 11:31 - 00261464 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll 2015-12-03 11:42 - 2014-05-22 16:24 - 00096568 _____ C:\WINDOWS\system32\audioLibVc.dll 2015-12-03 11:42 - 2013-06-21 11:01 - 00109848 _____ C:\WINDOWS\system32\AcpiServiceVnA64.dll 2015-12-03 11:42 - 2012-08-31 19:18 - 07164176 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll 2015-12-03 11:42 - 2012-08-31 19:17 - 00434960 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll 2015-12-03 11:42 - 2012-08-31 19:17 - 00141584 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll 2015-12-03 11:42 - 2012-08-31 19:17 - 00124176 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll 2015-12-03 11:42 - 2012-08-31 19:17 - 00075024 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll 2015-12-03 11:42 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll 2015-12-03 11:42 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll 2015-12-03 11:41 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch 2015-12-03 11:41 - 2015-12-03 11:43 - 00000000 ___HD C:\Program Files (x86)\Temp 2015-12-03 11:41 - 2015-05-27 17:38 - 02825944 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RtlExUpd.dll 2015-12-03 11:37 - 2015-12-03 11:41 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Senichiro\Downloads\spybot-2.4.exe 2015-12-03 11:36 - 2015-12-03 11:41 - 131494359 _____ (Realtek Semiconductor Corp.) C:\Users\Senichiro\Downloads\0006-64bit_Win7_Win8_Win81_Win10_R279.exe 2015-12-03 11:36 - 2015-12-03 11:36 - 00000000 ____D C:\searchplugins 2015-12-03 11:34 - 2015-12-08 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft 2015-12-03 11:34 - 2015-12-03 11:34 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Lavasoft 2015-12-03 11:33 - 2015-12-08 21:01 - 00002872 _____ C:\WINDOWS\SysWOW64\LavasoftTcpServiceOff.ini 2015-12-03 11:33 - 2015-12-08 21:01 - 00002872 _____ C:\WINDOWS\system32\LavasoftTcpServiceOff.ini 2015-12-03 11:33 - 2015-12-07 07:00 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Lavasoft 2015-12-03 11:33 - 2015-12-03 11:33 - 00425744 _____ (Lavasoft Limited) C:\WINDOWS\system32\LavasoftTcpService64.dll 2015-12-03 11:33 - 2015-12-03 11:33 - 00345360 _____ (Lavasoft Limited) C:\WINDOWS\SysWOW64\LavasoftTcpService.dll 2015-12-03 11:32 - 2015-12-03 11:32 - 00000000 ____D C:\ProgramData\Lavasoft 2015-12-03 11:32 - 2015-12-03 11:32 - 00000000 ____D C:\Program Files (x86)\Lavasoft 2015-12-03 11:24 - 2015-12-10 21:51 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Skype 2015-12-03 11:24 - 2015-12-03 11:24 - 00000000 ____D C:\Users\Senichiro\Tracing 2015-12-03 11:23 - 2015-12-08 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-12-03 11:23 - 2015-12-03 11:24 - 00000000 ____D C:\ProgramData\Skype 2015-12-03 11:23 - 2015-12-03 11:23 - 00002699 _____ C:\Users\Public\Desktop\Skype.lnk 2015-12-03 11:23 - 2015-12-03 11:23 - 00000000 ___RD C:\Program Files (x86)\Skype 2015-12-03 11:22 - 2015-12-03 11:22 - 01504384 _____ (Skype Technologies S.A.) C:\Users\Senichiro\Downloads\SkypeSetup.exe 2015-12-03 11:19 - 2015-12-10 19:31 - 00002252 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-12-03 11:19 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-12-03 11:18 - 2015-12-10 21:30 - 00001110 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-12-03 11:18 - 2015-12-10 03:30 - 00001106 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-12-03 11:18 - 2015-12-08 20:14 - 00004216 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2015-12-03 11:18 - 2015-12-08 20:14 - 00003964 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2015-12-03 11:18 - 2015-12-03 11:18 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Blizzard Entertainment 2015-12-03 11:18 - 2015-12-03 11:18 - 00000000 ____D C:\Program Files (x86)\Google 2015-12-03 11:18 - 2015-12-03 11:18 - 00000000 ____D C:\data 2015-12-03 11:17 - 2015-12-10 21:49 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Battle.net 2015-12-03 11:17 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2015-12-03 11:17 - 2015-12-03 13:22 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Google 2015-12-03 11:17 - 2015-12-03 11:18 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Battle.net 2015-12-03 11:17 - 2015-12-03 11:17 - 00000629 _____ C:\Users\Public\Desktop\Battle.net.lnk 2015-12-03 11:17 - 2015-12-03 11:17 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Apps\2.0 2015-12-03 11:17 - 2015-12-03 11:17 - 00000000 ____D C:\ProgramData\Blizzard Entertainment 2015-12-03 11:15 - 2015-12-03 11:15 - 00000000 ____D C:\ProgramData\Battle.net 2015-12-03 11:11 - 2015-12-03 11:11 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf 2015-12-03 11:11 - 2015-06-15 01:00 - 00041984 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\USB3Ver.dll 2015-12-03 11:10 - 2015-12-10 21:44 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\TS3Client 2015-12-03 11:10 - 2015-12-08 20:06 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2015-12-03 11:10 - 2015-12-03 11:10 - 00001077 _____ C:\Users\Senichiro\Desktop\TeamSpeak 3 Client.lnk 2015-12-03 10:59 - 2013-08-05 11:50 - 00053248 _____ (Windows XP Bundled build C-Centric Single User) C:\WINDOWS\SysWOW64\CSVer.dll 2015-12-03 10:54 - 2015-12-03 10:54 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Steam 2015-12-03 10:54 - 2015-12-03 10:54 - 00000000 ____D C:\Users\Senichiro\AppData\Local\CEF 2015-12-03 10:52 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2015-12-03 10:52 - 2015-12-03 10:52 - 00000680 _____ C:\Users\Public\Desktop\Steam.lnk 2015-12-03 10:51 - 2015-12-03 15:54 - 00000000 ____D C:\ProgramData\Package Cache 2015-12-03 10:51 - 2015-12-03 10:58 - 00001138 _____ C:\Users\Public\Desktop\Avira Launcher.lnk 2015-12-03 10:50 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2015-12-03 10:47 - 2015-12-03 10:56 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Avira 2015-12-03 10:46 - 2015-12-08 20:58 - 00146696 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2015-12-03 10:46 - 2015-12-08 20:58 - 00135880 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys 2015-12-03 10:46 - 2015-12-08 20:58 - 00073032 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys 2015-12-03 10:46 - 2015-12-08 20:58 - 00035488 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys 2015-12-03 10:46 - 2015-12-03 10:51 - 00000000 ____D C:\ProgramData\Avira 2015-12-03 10:46 - 2015-12-03 10:51 - 00000000 ____D C:\Program Files (x86)\Avira 2015-12-03 10:42 - 2015-12-03 10:42 - 04588512 _____ (Avira Operations GmbH & Co. KG) C:\Users\Senichiro\Downloads\avira_de_av_565fd173c5a2e__bng.exe 2015-12-03 10:42 - 2015-09-23 14:19 - 00001904 _____ C:\WINDOWS\system32\SetupBD.din 2015-12-03 10:41 - 2015-09-23 14:19 - 00405472 _____ (Intel Corporation) C:\WINDOWS\system32\PROUnstl.exe 2015-12-03 10:15 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsUsbRedirectionGroupPolicyControl.exe 2015-12-03 10:11 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpendp_winip.dll 2015-12-03 10:11 - 2012-08-23 11:51 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpendp_winip.dll 2015-12-03 10:09 - 2015-11-20 19:54 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll 2015-12-03 10:07 - 2015-12-08 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavalys 2015-12-03 10:07 - 2015-12-03 10:07 - 00001126 _____ C:\Users\Senichiro\Desktop\EVEREST Ultimate Edition.lnk 2015-12-03 10:07 - 2015-12-03 10:07 - 00000000 ____D C:\Program Files (x86)\Lavalys 2015-12-03 09:43 - 2015-12-09 21:18 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-12-03 09:43 - 2015-12-03 11:42 - 00000000 ____D C:\Program Files (x86)\Realtek 2015-12-03 09:31 - 2015-12-03 09:31 - 00000000 ____D C:\Program Files (x86)\Intel Desktop Board 2015-12-03 09:19 - 2015-12-08 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2015-12-03 09:19 - 2015-12-03 09:19 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Adobe 2015-12-03 09:18 - 2015-12-09 12:49 - 00000000 __SHD C:\Users\Senichiro\IntelGraphicsProfiles 2015-12-03 09:18 - 2015-12-03 09:18 - 00000401 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat 2015-12-03 09:18 - 2015-12-03 09:18 - 00000000 ____D C:\Users\Senichiro\AppData\Local\NVIDIA 2015-12-03 08:52 - 2015-12-09 09:01 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-12-03 08:52 - 2015-12-09 08:57 - 140158008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-12-03 08:36 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\WINDOWS\system32\IEUDINIT.EXE 2015-12-03 08:30 - 2015-12-03 08:30 - 00942592 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsIntl.dll 2015-12-03 08:30 - 2015-12-03 08:30 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsIntl.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00010752 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00010752 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00009728 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00009728 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00005632 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00005632 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00005632 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00005632 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00004096 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00004096 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00003072 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00003072 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00003072 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-version-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00003072 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00002560 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00002560 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2015-12-03 08:08 - 2015-12-03 11:11 - 00000000 ____D C:\Program Files (x86)\Intel 2015-12-03 08:08 - 2015-12-03 09:18 - 00000000 ____D C:\Intel 2015-12-03 07:45 - 2015-11-05 15:41 - 00102704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe 2015-12-03 07:27 - 2015-01-09 04:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\powertracker.dll 2015-12-03 07:26 - 2015-07-22 17:48 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00066400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-private-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00063840 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00022368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-math-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-string-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-time-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-localization-l1-2-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-localization-l1-2-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-process-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-synch-l1-2-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-synch-l1-2-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-processthreads-l1-1-1.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-eventing-provider-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-file-l2-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-file-l1-2-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-eventing-provider-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-xstate-l2-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-timezone-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-file-l2-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-file-l1-2-0.dll 2015-12-03 07:24 - 2012-04-26 06:34 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdrmemptylst.exe 2015-12-03 07:23 - 2012-11-28 23:56 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wdfres.dll 2015-12-03 07:23 - 2012-11-28 23:56 - 00000003 _____ C:\WINDOWS\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2015-12-03 07:23 - 2012-08-21 22:01 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\OxpsConverter.exe 2015-12-03 06:51 - 2015-12-08 20:15 - 00012354 _____ C:\WINDOWS\diagerr.xml 2015-12-03 06:51 - 2015-12-08 20:15 - 00011433 _____ C:\WINDOWS\diagwrn.xml 2015-12-03 06:47 - 2015-12-03 10:06 - 00058016 _____ C:\Users\Senichiro\AppData\Local\GDIPFONTCACHEV1.DAT 2015-12-03 06:29 - 2015-12-03 06:29 - 00000000 ____D C:\Users\Senichiro\AppData\Local\WindowsUpdate 2015-12-03 06:18 - 2015-12-03 06:18 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2015-12-03 06:15 - 2015-12-03 06:15 - 00000000 ____D C:\Users\Senichiro\AppData\Local\VirtualStore 2015-12-03 06:15 - 2011-04-12 08:54 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Media Center Programs 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Videos 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Vorlagen 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Startmenü 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Netzwerkumgebung 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Lokale Einstellungen 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Eigene Dateien 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Druckumgebung 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Videos 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Musik 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Bilder 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Verlauf 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Anwendungsdaten 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Anwendungsdaten 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Programme 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\ProgramData\Vorlagen 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\ProgramData\Startmenü 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\ProgramData\Favoriten 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\ProgramData\Dokumente 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Dokumente und Einstellungen 2015-11-10 02:48 - 2015-11-10 02:48 - 01581208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll 2015-11-10 02:48 - 2015-11-10 02:48 - 00214168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2015-11-10 02:48 - 2015-11-10 02:48 - 00047952 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-12-10 17:51 - 2015-10-30 08:24 - 00000000 ___HD C:\Program Files\WindowsApps 2015-12-10 17:51 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-12-10 00:25 - 2015-10-30 08:21 - 00000000 ____D C:\WINDOWS\INF 2015-12-09 12:52 - 2015-10-30 19:35 - 00888060 _____ C:\WINDOWS\system32\perfh007.dat 2015-12-09 12:52 - 2015-10-30 19:35 - 00197144 _____ C:\WINDOWS\system32\perfc007.dat 2015-12-09 12:45 - 2015-10-30 07:28 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2015-12-09 11:33 - 2015-10-30 07:28 - 00000000 ____D C:\Windows 2015-12-09 11:28 - 2015-10-30 08:24 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files 2015-12-09 08:57 - 2015-10-30 08:11 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-12-09 08:26 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\appcompat 2015-12-08 20:36 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\DevicesFlow 2015-12-08 20:20 - 2015-10-30 19:36 - 00000000 ____D C:\WINDOWS\OCR 2015-12-08 20:20 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\rescache 2015-12-08 20:18 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog 2015-12-08 20:18 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\PrintDialog 2015-12-08 20:18 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\MiracastView 2015-12-08 20:17 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2015-12-08 20:16 - 2015-10-30 08:24 - 00000000 ____D C:\ProgramData\USOPrivate 2015-12-08 20:15 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase 2015-12-08 20:15 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\Registration 2015-12-08 20:15 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Windows NT 2015-12-08 20:15 - 2015-10-30 07:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2015-12-08 20:13 - 2015-10-30 08:24 - 00000000 __RSD C:\WINDOWS\Media 2015-12-08 20:13 - 2015-10-30 08:24 - 00000000 __RHD C:\Users\Public\Libraries 2015-12-08 20:11 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\spool 2015-12-08 20:06 - 2009-07-14 04:20 - 00000000 ____D C:\Users\Default.migrated 2015-12-08 20:05 - 2015-10-30 19:35 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep 2015-12-08 20:05 - 2015-10-30 19:35 - 00000000 ____D C:\WINDOWS\DigitalLocker 2015-12-08 20:05 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz 2015-12-08 20:05 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\IME 2015-12-08 20:05 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2015-12-08 20:05 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\NDF 2015-12-08 20:05 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\IME 2015-12-08 20:05 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\schemas 2015-12-08 20:05 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2015-12-08 20:04 - 2015-10-30 08:24 - 00000000 __SHD C:\Program Files\Windows Sidebar 2015-12-08 20:04 - 2015-10-30 08:24 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar 2015-12-08 20:04 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-12-08 20:04 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\DVD Maker 2015-12-08 20:02 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2015-12-08 20:00 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\Help 2015-12-08 19:55 - 2015-10-30 19:58 - 00000000 ____D C:\WINDOWS\ServiceProfiles 2015-12-08 19:54 - 2015-10-30 08:24 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template 2015-12-08 19:51 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2015-12-08 19:51 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\oobe 2015-12-08 19:51 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-12-08 19:51 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\Provisioning 2015-12-08 19:51 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2015-12-08 19:51 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\system32\Dism 2015-12-08 19:47 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI 2015-12-08 19:47 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2015-12-08 19:47 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\MUI 2015-12-08 19:47 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\inetsrv 2015-12-08 19:47 - 2015-10-30 08:19 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqutil.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqrt.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.tlb 2015-12-08 19:47 - 2015-10-30 08:19 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa30.tlb 2015-12-08 19:47 - 2015-10-30 08:19 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa20.tlb 2015-12-08 19:47 - 2015-10-30 08:19 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa10.tlb 2015-12-08 19:47 - 2015-10-30 08:19 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe 2015-12-08 19:47 - 2015-10-30 08:19 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00009096 _____ C:\WINDOWS\SysWOW64\msmqtrc.mof 2015-12-08 19:47 - 2015-10-30 08:18 - 01417728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys 2015-12-08 19:47 - 2015-10-30 08:18 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb 2015-12-08 19:47 - 2015-10-30 08:18 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb 2015-12-08 19:47 - 2015-10-30 08:18 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb 2015-12-08 19:47 - 2015-10-30 08:18 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe 2015-12-08 19:47 - 2015-10-30 08:18 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb 2015-12-08 19:47 - 2015-10-30 08:18 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe 2015-12-08 19:47 - 2015-10-30 08:18 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe 2015-12-08 19:47 - 2015-10-30 08:18 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof 2015-12-08 19:36 - 2009-07-14 05:45 - 00041424 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-12-08 19:36 - 2009-07-14 05:45 - 00041424 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-12-08 19:32 - 2015-10-30 20:28 - 00000000 ___HD C:\$WINDOWS.~BT 2015-12-03 06:10 - 2011-04-12 08:55 - 00000000 ____D C:\WINDOWS\CSC 2015-12-01 01:33 - 2015-10-30 08:26 - 00826872 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-12-01 01:33 - 2015-10-30 08:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-12-04 05:41 - 2015-12-04 05:41 - 0007605 _____ () C:\Users\Senichiro\AppData\Local\Resmon.ResmonCfg 2015-12-08 20:00 - 2015-12-08 20:00 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Einige Dateien in TEMP: ==================== C:\Users\Senichiro\AppData\Local\Temp\avgnt.exe ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-12-08 19:55 ==================== Ende von FRST.txt ============================ |
10.12.2015, 21:57 | #18 | |
/// TB-Ausbilder | habe den watch4.de virusZitat:
2. Skype einstellungen ändern und Hosts Datei wie beschrieben ändern 3. FRST ausführen 4. Avira aktivieren klar soweit oder hast du Fragen? |
10.12.2015, 21:59 | #19 |
| habe den watch4.de virus so jetzt kommen nochmal die neuen logdateien Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:05-12-2015 durchgeführt von Senichiro (Administrator) auf SENICHIRO-PC (10-12-2015 21:56:58) Gestartet von C:\Users\Senichiro\Downloads Geladene Profile: Senichiro (Verfügbare Profile: Senichiro & DefaultAppPool) Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Edge) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (Lavasoft Limited) C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe () C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (Hi-Rez Studios) D:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe () C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (TeamSpeak Systems GmbH) D:\Users\Senichiro\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe (Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.4632\Agent.exe (Blizzard Entertainment) D:\Battle.net\Battle.net.6382\Battle.net.exe () D:\DeepBot - Twitch Streamer Assistant\DeepBot.exe () C:\Program Files\OBS\OBS.exe (The CefSharp Authors) D:\DeepBot - Twitch Streamer Assistant\CefSharp.BrowserSubprocess.exe (The CefSharp Authors) D:\DeepBot - Twitch Streamer Assistant\CefSharp.BrowserSubprocess.exe (The CefSharp Authors) D:\DeepBot - Twitch Streamer Assistant\CefSharp.BrowserSubprocess.exe (The CefSharp Authors) D:\DeepBot - Twitch Streamer Assistant\CefSharp.BrowserSubprocess.exe (Microsoft Corporation) C:\Windows\System32\SndVol.exe (Acreon Inc.) C:\Users\Senichiro\Downloads\WowMatrix.exe (Microsoft Corporation) C:\Windows\splwow64.exe () C:\Users\Senichiro\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe () C:\Users\Senichiro\AppData\Roaming\IMVUClient\IMVUClient.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.23.23.0_x64__8wekyb3d8bbwe\WinStore.Mobile.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6508.23761.0_x64__8wekyb3d8bbwe\OHub.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsAlarms_10.1511.65020.0_x64__8wekyb3d8bbwe\Time.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Farbar) C:\Users\Senichiro\Downloads\FRST64 (1).exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14021336 2015-06-18] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1804432 2015-11-10] (NVIDIA Corporation) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [803200 2015-12-05] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [66320 2015-10-14] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [296216 2015-06-15] (Intel Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597040 2015-10-06] (Oracle Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\Run: [Steam] => D:\Program Files (x86)\Steam\steam.exe [3011152 2015-11-10] (Valve Corporation) HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50748544 2015-12-01] (Skype Technologies S.A.) HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) Startup: C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\IMVU.lnk [2015-12-10] ShortcutTarget: IMVU.lnk -> C:\Users\Senichiro\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe () ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{ade0edd1-6c25-4247-ba9b-9483aa2ebb75}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{fbbede9e-64f8-453f-9131-ce9aea39b38f}: [DhcpNameServer] 192.168.2.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.avira.net/#web/result?source=art&q= HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://search.avira.net/#web/result?source=art&q= HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://search.avira.net/#web/result?source=art&q= HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://search.avira.net/#web/result?source=art&q= HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.avira.net/#web/result?source=art&q= HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://search.avira.net/#web/result?source=art&q= HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://search.avira.net/#web/result?source=art&q= BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_66\bin\ssv.dll [2015-12-03] (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-12-03] (Oracle Corporation) DPF: HKLM-x32 {93C449FA-ECFB-402F-A8C7-37E4F8D60E49} hxxp://dl.pmang.com/common/pmangctl/pmangax.cab FireFox: ======== FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll [2015-12-09] () FF Plugin: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-12-03] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-12-03] (Oracle Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll [2015-12-09] () FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-11-05] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-11-05] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.) Chrome: ======= CHR StartupUrls: Default -> "hxxp://www.startfenster.com" CHR Profile: C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (ProxFlow) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2015-12-04] CHR Extension: (Google Slides) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-03] CHR Extension: (Google Docs) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-03] CHR Extension: (Google Drive) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-03] CHR Extension: (YouTube) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-03] CHR Extension: (Google Search) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-03] CHR Extension: (Google Sheets) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-03] CHR Extension: (AdBlock Premium) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\fndlhnanhedoklpdaacidomdnplcjcpj [2015-12-03] CHR Extension: (Google Docs Offline) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-12-03] CHR Extension: (AdBlock) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-12-04] CHR Extension: (Chrome Web Store Payments) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-12-03] CHR Extension: (Gmail) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-03] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [948392 2015-12-05] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [466408 2015-12-05] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [466408 2015-12-05] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1418560 2015-12-05] (Avira Operations GmbH & Co. KG) R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [243968 2015-10-14] (Avira Operations GmbH & Co. KG) R2 HiPatchService; D:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2015-11-03] (Hi-Rez Studios) [Datei ist nicht signiert] R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [351120 2015-07-18] (Intel Corporation) R2 LavasoftTcpService; C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe [2751760 2015-12-03] (Lavasoft Limited) S2 MBAMScheduler; D:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes) S2 MBAMService; D:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1135416 2015-10-05] (Malwarebytes) R2 MSMQ; C:\Windows\system32\mqsvc.exe [26624 2015-12-08] (Microsoft Corporation) S3 npggsvc; C:\WINDOWS\SysWOW64\GameMon.des [3685968 2015-07-22] (INCA Internet Co., Ltd.) S3 Origin Client Service; D:\Program Files (x86)\Origin\OriginClientService.exe [2104840 2015-12-08] (Electronic Arts) R2 SearchProtectionService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe [17168 2015-12-03] () R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [135880 2015-12-08] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [146696 2015-12-08] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2015-12-08] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [73032 2015-12-08] (Avira Operations GmbH & Co. KG) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes) S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2015-12-08] (Malwarebytes) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation) S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation) S3 EverestDriver; \??\C:\Program Files (x86)\Lavalys\EVEREST Ultimate Edition\kerneld.amd64 [X] U3 idsvc; kein ImagePath U3 wpcsvc; kein ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-12-10 21:47 - 2015-12-10 21:49 - 02369024 _____ (Farbar) C:\Users\Senichiro\Downloads\FRST64 (2).exe 2015-12-10 21:46 - 2015-12-10 21:46 - 00000000 ____D C:\WINDOWS\system32\Drivers\etc\BACKUP 2015-12-10 21:45 - 2015-12-10 21:45 - 00000215 _____ C:\Users\Senichiro\Downloads\antiskypewerbung (1).zip 2015-12-10 21:44 - 2015-12-10 21:45 - 00000000 ____D C:\Users\Senichiro\Desktop\Neuer Ordner (2) 2015-12-10 21:44 - 2015-12-10 21:45 - 00000000 ____D C:\Users\Senichiro\Desktop\Neuer Ordner 2015-12-10 21:43 - 2015-12-10 21:43 - 00508823 _____ C:\Users\Senichiro\Downloads\bl_hst_edit.zip 2015-12-10 21:43 - 2015-12-10 21:43 - 00000215 _____ C:\Users\Senichiro\Downloads\antiskypewerbung.zip 2015-12-10 08:44 - 2015-12-10 08:44 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Acreon 2015-12-10 08:44 - 2015-12-10 08:44 - 00000000 ____D C:\Users\Senichiro\AppData\Local\._LiveCode_ 2015-12-10 08:43 - 2015-12-10 08:44 - 09926144 _____ (Acreon Inc.) C:\Users\Senichiro\Downloads\WowMatrix.exe 2015-12-10 00:27 - 2015-12-10 00:27 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Vorlagen 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Startmenü 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Netzwerkumgebung 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Lokale Einstellungen 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Eigene Dateien 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Druckumgebung 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Videos 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Musik 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Bilder 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Verlauf 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Anwendungsdaten 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Anwendungsdaten 2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 ____D C:\Users\DefaultAppPool 2015-12-10 00:27 - 2015-12-08 20:06 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Media Center Programs 2015-12-10 00:25 - 2015-12-10 00:25 - 00000000 ____D C:\Users\Senichiro\Documents\BnS 2015-12-10 00:25 - 2015-12-10 00:25 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Awesomium 2015-12-10 00:24 - 2015-12-10 00:24 - 00000000 ____D C:\Program Files\Common Files\INCA Shared 2015-12-10 00:24 - 2015-07-22 14:01 - 03685968 _____ (INCA Internet Co., Ltd.) C:\WINDOWS\SysWOW64\GameMon.des 2015-12-10 00:24 - 2005-01-03 07:43 - 00004682 _____ (INCA Internet Co., Ltd.) C:\WINDOWS\SysWOW64\npptNT2.sys 2015-12-10 00:24 - 2003-07-18 22:17 - 00005174 _____ C:\WINDOWS\SysWOW64\nppt9x.vxd 2015-12-09 22:48 - 2015-12-09 22:48 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2015-12-09 22:40 - 2015-12-09 22:40 - 00000000 ____D C:\Users\Senichiro\AppData\Local\PeerDistRepub 2015-12-09 21:51 - 2015-12-09 21:51 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Blizzard 2015-12-09 21:18 - 2015-12-09 21:18 - 00001527 _____ C:\Users\Public\Desktop\Blade & Soul CBT.lnk 2015-12-09 21:18 - 2015-12-09 21:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCSOFT 2015-12-09 21:15 - 2015-12-09 21:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCWest 2015-12-09 21:15 - 2015-12-09 21:15 - 00000000 ____D C:\Program Files (x86)\NCWest 2015-12-09 21:12 - 2015-12-09 21:14 - 08998672 _____ (NC Interactive, LLC) C:\Users\Senichiro\Downloads\BnS_CBT Lite Installer.exe 2015-12-09 20:00 - 2015-12-09 20:00 - 00001282 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2015-12-09 20:00 - 2015-12-09 20:00 - 00001270 _____ C:\Users\Public\Desktop\Mozilla Thunderbird.lnk 2015-12-09 20:00 - 2015-12-09 20:00 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Thunderbird 2015-12-09 20:00 - 2015-12-09 20:00 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Mozilla 2015-12-09 20:00 - 2015-12-09 20:00 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Thunderbird 2015-12-09 20:00 - 2015-12-09 20:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2015-12-09 20:00 - 2015-12-09 20:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-12-09 19:59 - 2015-12-09 19:59 - 01466656 _____ C:\Users\Senichiro\Downloads\Thunderbird - CHIP-Installer.exe 2015-12-09 12:00 - 2015-12-09 12:00 - 00000000 ____D C:\Users\Senichiro\Documents\BioWare 2015-12-09 11:59 - 2015-12-09 11:59 - 00000996 _____ C:\Users\Public\Desktop\Dragon Age Inquisition.lnk 2015-12-09 11:28 - 2015-12-10 19:04 - 00004174 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{471E0BF4-76F9-4020-AD86-AA65C40E47B1} 2015-12-09 10:06 - 2015-12-09 10:06 - 00000000 ____D C:\Users\Senichiro\AppData\Local\MicrosoftEdge 2015-12-09 09:03 - 2015-12-09 09:04 - 02369024 _____ (Farbar) C:\Users\Senichiro\Downloads\FRST64 (1).exe 2015-12-08 21:11 - 2015-12-08 21:11 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2015-12-08 21:06 - 2015-12-09 12:00 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Origin 2015-12-08 21:06 - 2015-12-08 21:07 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Origin 2015-12-08 20:57 - 2015-12-09 12:00 - 00000000 ____D C:\ProgramData\Origin 2015-12-08 20:57 - 2015-12-09 12:00 - 00000000 ____D C:\ProgramData\Electronic Arts 2015-12-08 20:57 - 2015-12-08 20:57 - 00000733 _____ C:\Users\Public\Desktop\Origin.lnk 2015-12-08 20:55 - 2015-12-08 20:57 - 31335616 _____ (Electronic Arts, Inc.) C:\Users\Senichiro\Downloads\OriginThinSetup.exe 2015-12-08 20:40 - 2015-12-08 20:40 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Comms 2015-12-08 20:32 - 2015-12-08 20:32 - 00002370 _____ C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-12-08 20:32 - 2015-12-08 20:32 - 00000000 ___RD C:\Users\Senichiro\OneDrive 2015-12-08 20:21 - 2015-12-08 20:21 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2015-12-08 20:20 - 2015-10-29 19:43 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll 2015-12-08 20:20 - 2015-10-29 19:43 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll 2015-12-08 20:20 - 2015-10-29 19:41 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll 2015-12-08 20:20 - 2015-10-29 19:25 - 06359040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll 2015-12-08 20:20 - 2015-10-29 19:24 - 04847616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll 2015-12-08 20:19 - 2015-12-08 20:19 - 00001051 _____ C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optionale Features.lnk 2015-12-08 20:19 - 2015-12-08 20:19 - 00000000 ____D C:\Users\Senichiro\AppData\Local\ActiveSync 2015-12-08 20:18 - 2015-12-08 20:18 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Publishers 2015-12-08 20:17 - 2015-12-09 08:57 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Packages 2015-12-08 20:17 - 2015-12-08 21:09 - 00000000 __RHD C:\Users\Public\AccountPictures 2015-12-08 20:17 - 2015-12-08 20:17 - 00000020 ___SH C:\Users\Senichiro\ntuser.ini 2015-12-08 20:17 - 2015-12-08 20:17 - 00000000 ____D C:\Users\Senichiro\AppData\Local\TileDataLayer 2015-12-08 20:16 - 2015-12-08 20:16 - 00000000 ____D C:\ProgramData\USOShared 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Vorlagen 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Startmenü 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-12-08 20:14 - 2015-12-09 12:46 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-12-08 20:14 - 2015-12-08 20:14 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat 2015-12-08 20:06 - 2015-12-08 20:06 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2015-12-08 20:06 - 2015-12-08 20:06 - 00000000 ____D C:\Users\Default\AppData\Roaming\Media Center Programs 2015-12-08 20:06 - 2015-12-08 20:06 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Media Center Programs 2015-12-08 20:04 - 2015-12-08 20:04 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines 2015-12-08 20:03 - 2015-12-09 12:52 - 02086168 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-12-08 20:03 - 2015-12-09 12:48 - 00000000 ____D C:\Users\Senichiro 2015-12-08 20:03 - 2015-12-08 20:03 - 01989310 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Vorlagen 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Startmenü 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Netzwerkumgebung 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Lokale Einstellungen 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Eigene Dateien 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Druckumgebung 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Documents\Eigene Videos 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Documents\Eigene Musik 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Documents\Eigene Bilder 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\AppData\Local\Verlauf 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\AppData\Local\Anwendungsdaten 2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Anwendungsdaten 2015-12-08 20:00 - 2015-12-09 12:49 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2015-12-08 20:00 - 2015-12-09 12:46 - 00000000 ____D C:\ProgramData\NVIDIA 2015-12-08 20:00 - 2015-12-08 20:05 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2015-12-08 20:00 - 2015-12-08 20:04 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2015-12-08 20:00 - 2015-12-08 20:04 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2015-12-08 20:00 - 2015-12-08 20:00 - 00000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat 2015-12-08 20:00 - 2015-12-08 20:00 - 00000000 ____H C:\ProgramData\DP45977C.lfl 2015-12-08 20:00 - 2015-12-08 20:00 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2015-12-08 20:00 - 2015-12-08 20:00 - 00000000 ____D C:\Program Files\Realtek 2015-12-08 20:00 - 2015-08-07 01:24 - 06873904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2015-12-08 20:00 - 2015-08-07 01:24 - 03492984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2015-12-08 20:00 - 2015-08-07 01:24 - 02558768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2015-12-08 20:00 - 2015-08-07 01:24 - 00937592 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe 2015-12-08 20:00 - 2015-08-07 01:24 - 00385328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2015-12-08 20:00 - 2015-08-07 01:24 - 00062584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2015-12-08 20:00 - 2015-08-03 11:04 - 05133709 _____ C:\WINDOWS\system32\nvcoproc.bin 2015-12-08 20:00 - 2015-07-17 23:58 - 00082432 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL 2015-12-08 19:59 - 2015-12-08 20:04 - 00000000 ____D C:\Program Files\Intel 2015-12-08 19:59 - 2015-10-30 08:17 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2015-12-08 19:55 - 2015-12-08 20:07 - 00189344 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-12-08 19:54 - 2015-12-08 20:16 - 00000000 ___DC C:\WINDOWS\Panther 2015-12-08 19:52 - 2015-12-08 19:52 - 00000000 ____D C:\Windows.old 2015-12-08 19:51 - 2015-12-08 19:51 - 24601600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 22572632 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 22393856 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 21125408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 19338240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 18678272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 16984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 13381120 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 13017600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 12125184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 07979008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 07476576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 07199232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 03993600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 03671896 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 03593216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02918808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02843136 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02772584 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2015-12-08 19:51 - 2015-12-08 19:51 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2015-12-08 19:51 - 2015-12-08 19:51 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02653816 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02647552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02598400 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02587136 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02352128 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02280448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02185840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02179584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02152800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 02126848 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2015-12-08 19:51 - 2015-12-08 19:51 - 02121216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02064384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02049024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2015-12-08 19:51 - 2015-12-08 19:51 - 02001408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01995264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01860096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01859448 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01817160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01814528 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01734656 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01717248 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01706496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01648640 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01540768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01505280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 01387008 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01284960 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01223168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01212928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 01042432 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00975200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00969728 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00957440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00948224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00911648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00850432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00809312 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00803840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00795840 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00791552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00783360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00704352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00698208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00697856 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00686592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00675064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00674816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00607232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 00604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00586208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00586080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00578912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00540752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00536768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00523616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2015-12-08 19:51 - 2015-12-08 19:51 - 00516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00511320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00470528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00454056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00440160 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00431232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrvut.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00408128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00405048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2015-12-08 19:51 - 2015-12-08 19:51 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00366224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00334736 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00264192 _____ (Nokia) C:\WINDOWS\system32\NmaDirect.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00245848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00205824 _____ (Nokia) C:\WINDOWS\SysWOW64\NmaDirect.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rmcast.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ETWCoreUIComponentsResources.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\capimg.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 00116728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MapControls.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00110032 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00088392 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00080600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwapi.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssign32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00073360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManagerProxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ihvrilproxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00063528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wwapi.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssign32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00058408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosResource.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosResource.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rilproxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wwanpref.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00051680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsUtilsV2.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsplib.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.proxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthManagerProxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCoreRes.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCoreRes.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00035680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys 2015-12-08 19:51 - 2015-12-08 19:51 - 00035656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00032040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.proxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshrm.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\readingviewresources.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlStringsRes.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll 2015-12-08 19:49 - 2015-12-08 19:49 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2015-12-08 19:47 - 2015-12-08 19:47 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2015-12-08 19:47 - 2015-12-08 19:47 - 00000000 ____D C:\WINDOWS\SysWOW64\BestPractices 2015-12-08 19:47 - 2015-12-08 19:47 - 00000000 ____D C:\WINDOWS\system32\msmq 2015-12-08 19:47 - 2015-12-08 19:47 - 00000000 ____D C:\WINDOWS\system32\BestPractices 2015-12-08 19:47 - 2015-12-08 19:47 - 00000000 ____D C:\Program Files\Reference Assemblies 2015-12-08 19:47 - 2015-12-08 19:47 - 00000000 ____D C:\Program Files\MSBuild 2015-12-08 19:47 - 2015-12-08 19:47 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2015-12-08 19:47 - 2015-12-08 19:47 - 00000000 ____D C:\Program Files (x86)\MSBuild 2015-12-08 19:47 - 2015-12-08 19:47 - 00000000 ____D C:\inetpub 2015-12-08 19:46 - 2015-10-23 17:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2015-12-08 19:46 - 2015-10-23 17:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-12-08 19:46 - 2015-10-23 17:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2015-12-08 19:46 - 2015-10-23 17:46 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2015-12-08 19:46 - 2015-10-23 17:46 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2015-12-08 19:46 - 2015-10-23 17:45 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2015-12-08 09:52 - 2015-12-08 09:52 - 00852720 _____ C:\Users\Senichiro\Downloads\SecurityCheck.exe 2015-12-08 09:10 - 2015-12-08 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PMANG 2015-12-08 07:49 - 2015-12-08 07:49 - 02870984 _____ (ESET) C:\Users\Senichiro\Downloads\esetsmartinstaller_deu.exe 2015-12-07 19:47 - 2015-12-07 19:47 - 00000604 _____ C:\Users\Public\Desktop\WildStar.lnk 2015-12-07 19:40 - 2015-12-07 19:40 - 01405400 _____ (NCSOFT) C:\Users\Senichiro\Downloads\Wildstar.exe 2015-12-07 19:40 - 2015-12-07 19:40 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\NCSOFT 2015-12-07 19:40 - 2015-12-07 19:40 - 00000000 ____D C:\Users\Senichiro\AppData\Local\NCSOFT 2015-12-07 09:39 - 2015-12-07 13:57 - 00000000 ____D C:\Users\Senichiro\Downloads\Log 2015-12-07 09:39 - 2015-12-07 09:39 - 01950392 _____ (Neowiz Games) C:\Users\Senichiro\Downloads\DirectDL.exe 2015-12-07 09:13 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DeepBot 2015-12-07 09:12 - 2015-12-07 09:12 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\DeepBot.tv 2015-12-07 09:11 - 2015-12-07 09:12 - 41952181 _____ (DeepBot.tv) C:\Users\Senichiro\Downloads\DeepBot.exe 2015-12-07 08:04 - 2015-12-07 08:04 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Tencent 2015-12-07 07:57 - 2015-12-07 08:01 - 03598696 _____ C:\Users\Senichiro\Downloads\MHO_Setup_1.0.1.21_TDL_signed.exe 2015-12-07 07:24 - 2015-12-07 07:24 - 00001857 _____ C:\Users\Senichiro\Desktop\IMVU.lnk 2015-12-07 07:24 - 2015-12-07 07:24 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\IMVUClient 2015-12-07 07:23 - 2015-12-07 07:24 - 00244304 _____ C:\Users\Senichiro\Downloads\InstallIMVU_523.0_st (1).exe 2015-12-07 07:01 - 2015-12-07 07:01 - 00000945 _____ C:\Users\Senichiro\Desktop\JRT.txt 2015-12-07 06:57 - 2015-12-07 06:57 - 01599336 _____ (Malwarebytes) C:\Users\Senichiro\Downloads\JRT (1).exe 2015-12-07 06:49 - 2015-12-07 06:49 - 01736704 _____ C:\Users\Senichiro\Downloads\AdwCleaner_5.023 (1).exe 2015-12-07 06:47 - 2015-12-07 06:47 - 00001203 _____ C:\Users\Senichiro\Desktop\mbam.txt 2015-12-06 16:39 - 2015-12-06 16:39 - 01021256 _____ C:\Users\Senichiro\Downloads\pk3DS (12-02-15).zip 2015-12-06 13:48 - 2015-12-06 13:48 - 00000000 ____D C:\Users\Senichiro\AppData\Local\GWX 2015-12-06 11:18 - 2015-12-06 11:18 - 00000000 ____D C:\ESD 2015-12-06 10:46 - 2015-12-06 10:46 - 07635472 _____ (Microsoft Corporation) C:\Users\Senichiro\Downloads\GetWindows10-Web_Default_Attr.exe 2015-12-06 10:46 - 2015-12-06 10:46 - 00000000 ___HD C:\$Windows.~WS 2015-12-06 10:29 - 2015-12-06 10:29 - 00060965 _____ C:\Users\Senichiro\Downloads\pkeyuibx_v1.5.0.zip 2015-12-06 10:18 - 2015-12-06 10:18 - 00000000 ____D C:\WinKey 2015-12-06 10:11 - 2015-12-06 10:11 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\TeamViewer 2015-12-06 10:10 - 2015-12-06 10:10 - 09659160 _____ (TeamViewer GmbH) C:\Users\Senichiro\Downloads\TeamViewer_Setup_de.exe 2015-12-05 11:29 - 2015-12-10 21:52 - 00046487 _____ C:\Users\Senichiro\Downloads\Addition.txt 2015-12-05 11:28 - 2015-12-10 21:56 - 00016848 _____ C:\Users\Senichiro\Downloads\FRST.txt 2015-12-05 11:28 - 2015-12-10 21:56 - 00000000 ____D C:\FRST 2015-12-05 11:28 - 2015-12-05 11:28 - 02350080 _____ (Farbar) C:\Users\Senichiro\Downloads\FRST64.exe 2015-12-05 11:22 - 2015-12-08 13:48 - 00000194 _____ C:\Users\Senichiro\Desktop\Einlogdaten.txt 2015-12-05 11:17 - 2015-12-08 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SQUARE ENIX 2015-12-05 11:15 - 2015-12-05 11:16 - 111970304 _____ (SQUARE ENIX CO., LTD.) C:\Users\Senichiro\Downloads\ffxivsetup.exe 2015-12-05 11:12 - 2015-12-08 20:06 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The Elder Scrolls Online 2015-12-05 11:12 - 2015-12-05 11:12 - 00000585 _____ C:\Users\Senichiro\Desktop\The Elder Scrolls Online.lnk 2015-12-05 11:12 - 2015-12-05 11:12 - 00000000 ____D C:\WINDOWS\jre 2015-12-05 11:11 - 2015-12-05 11:12 - 00000000 ___HD C:\Program Files (x86)\Zero G Registry 2015-12-05 11:10 - 2015-12-05 11:10 - 00000000 ___HD C:\Users\Senichiro\InstallAnywhere 2015-12-05 11:08 - 2015-12-05 11:10 - 109567016 _____ (Zenimax Media Inc) C:\Users\Senichiro\Downloads\Install_ESO.exe 2015-12-05 05:39 - 2015-12-07 06:51 - 00000000 ____D C:\AdwCleaner 2015-12-05 05:39 - 2015-12-05 05:39 - 01599336 _____ (Malwarebytes) C:\Users\Senichiro\Downloads\JRT.exe 2015-12-05 05:37 - 2015-12-05 05:37 - 01736704 _____ C:\Users\Senichiro\Downloads\AdwCleaner_5.023.exe 2015-12-05 05:36 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-12-05 05:36 - 2015-12-08 17:31 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-12-05 05:36 - 2015-12-05 05:36 - 00000781 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-12-05 05:36 - 2015-12-05 05:36 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-12-05 05:36 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-12-05 05:36 - 2015-10-05 09:50 - 00063704 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-12-05 05:36 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2015-12-05 05:35 - 2015-12-05 05:35 - 22908888 _____ (Malwarebytes ) C:\Users\Senichiro\Downloads\mbam-setup-2.2.0.1024.exe 2015-12-04 18:12 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Guild Wars 2 2015-12-04 18:10 - 2015-12-04 18:12 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Guild Wars 2 2015-12-04 18:10 - 2015-12-04 18:10 - 26068984 _____ (ArenaNet) C:\Users\Senichiro\Downloads\Gw2Setup.exe 2015-12-04 08:26 - 2015-12-04 08:26 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\NVIDIA 2015-12-04 08:23 - 2015-12-04 08:23 - 00000000 ____D C:\Users\Senichiro\Documents\Square Enix 2015-12-04 07:52 - 2015-12-04 07:52 - 00243976 _____ C:\Users\Senichiro\Downloads\Firefox Setup Stub 42.0.exe 2015-12-04 06:11 - 2009-06-10 22:00 - 00000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts.20151204-061113.backup 2015-12-04 05:59 - 2015-12-04 05:59 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\LolClient 2015-12-04 05:50 - 2015-12-04 05:50 - 00000000 ____D C:\WINDOWS\ERUNT 2015-12-04 05:41 - 2015-12-04 05:41 - 00007605 _____ C:\Users\Senichiro\AppData\Local\Resmon.ResmonCfg 2015-12-04 05:29 - 2015-12-09 16:39 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\OBS 2015-12-04 05:29 - 2015-12-08 20:06 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Open Broadcaster Software 2015-12-04 05:29 - 2015-12-04 05:29 - 00000939 _____ C:\Users\Senichiro\Desktop\Open Broadcaster Software.lnk 2015-12-04 05:29 - 2015-12-04 05:29 - 00000000 ____D C:\Program Files\OBS 2015-12-04 05:29 - 2015-12-04 05:29 - 00000000 ____D C:\Program Files (x86)\OBS 2015-12-04 05:28 - 2015-12-04 05:29 - 07284240 _____ C:\Users\Senichiro\Downloads\OBS_0_657b_Installer (1).exe 2015-12-04 05:05 - 2015-12-04 05:05 - 09848595 _____ C:\Users\Senichiro\Downloads\Windows6.0-KB971512-x64.msu 2015-12-04 05:00 - 2015-12-04 05:00 - 00000000 ____D C:\Program Files\Common Files\AV 2015-12-04 05:00 - 2015-07-28 17:52 - 00821920 _____ (Safer-Networking Ltd. ) C:\Users\Public\Desktop\Post Win10 Spybot-install.exe 2015-12-04 04:59 - 2015-12-04 04:59 - 00001050 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk 2015-12-04 04:56 - 2015-12-04 04:57 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Senichiro\Downloads\spybot-2.4 (1).exe 2015-12-04 03:43 - 2015-12-04 03:43 - 00000000 ____D C:\ProgramData\Riot Games 2015-12-04 03:41 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends 2015-12-04 03:40 - 2015-12-04 03:40 - 30668968 _____ (Riot Games) C:\Users\Senichiro\Downloads\LeagueofLegends_EUW_Installer_9_15_2014 (1).exe 2015-12-04 03:39 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll 2015-12-04 03:39 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll 2015-12-04 03:39 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll 2015-12-04 03:25 - 2015-12-04 03:41 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Riot Games 2015-12-04 03:24 - 2015-12-04 03:24 - 30668968 _____ (Riot Games) C:\Users\Senichiro\Downloads\LeagueofLegends_EUW_Installer_9_15_2014.exe 2015-12-03 16:07 - 2015-12-10 21:32 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2015-12-03 16:07 - 2015-12-09 08:32 - 00003858 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2015-12-03 16:05 - 2015-12-03 16:07 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Adobe 2015-12-03 16:04 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-12-03 16:04 - 2015-12-03 16:04 - 00110176 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2015-12-03 16:04 - 2015-12-03 16:04 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Sun 2015-12-03 16:04 - 2015-12-03 16:04 - 00000000 ____D C:\Users\Senichiro\AppData\LocalLow\Sun 2015-12-03 16:04 - 2015-12-03 16:04 - 00000000 ____D C:\Users\Senichiro\AppData\LocalLow\Oracle |
10.12.2015, 22:01 | #20 |
| habe den watch4.de virusCode:
ATTFilter 2015-12-03 16:04 - 2015-12-03 16:04 - 00000000 ____D C:\Users\Senichiro\.oracle_jre_usage 2015-12-03 16:04 - 2015-12-03 16:04 - 00000000 ____D C:\ProgramData\Oracle 2015-12-03 16:04 - 2015-12-03 16:04 - 00000000 ____D C:\Program Files\Java 2015-12-03 16:03 - 2015-12-03 16:03 - 00584288 _____ (Oracle Corporation) C:\Users\Senichiro\Downloads\jre-8u66-windows-i586-iftw.exe 2015-12-03 15:58 - 2015-12-03 15:58 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\.mono 2015-12-03 15:58 - 2015-12-03 15:58 - 00000000 ____D C:\Users\Senichiro\AppData\LocalLow\PlayfulCorp 2015-12-03 15:58 - 2015-12-03 15:58 - 00000000 ____D C:\ProgramData\.mono 2015-12-03 15:56 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll 2015-12-03 15:56 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll 2015-12-03 15:56 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll 2015-12-03 15:56 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll 2015-12-03 15:56 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll 2015-12-03 15:56 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll 2015-12-03 15:32 - 2015-12-05 11:16 - 00000000 ____D C:\Users\Senichiro\Documents\My Games 2015-12-03 15:24 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft 2015-12-03 14:51 - 2015-10-31 00:04 - 00968704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.exe 2015-12-03 14:51 - 2015-10-30 23:29 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmlmedia.dll 2015-12-03 14:51 - 2015-10-30 23:09 - 01155072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmlmedia.dll 2015-12-03 14:50 - 2015-06-09 19:03 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpGroupPolicyExtension.dll 2015-12-03 14:10 - 2015-12-04 05:56 - 00001744 _____ C:\DelFix.txt 2015-12-03 13:52 - 2009-06-10 22:00 - 00000824 _____ C:\WINDOWS\system32\Drivers\etc\hp.bak 2015-12-03 13:50 - 2015-12-03 13:57 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Opera Software 2015-12-03 13:50 - 2015-12-03 13:57 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Opera Software 2015-12-03 13:49 - 2015-12-03 13:57 - 00000000 ____D C:\Program Files (x86)\Opera 2015-12-03 13:46 - 2015-12-03 14:10 - 00000000 ____D C:\Program Files (x86)\Windows Loader 2015-12-03 13:46 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll 2015-12-03 13:46 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll 2015-12-03 13:46 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll 2015-12-03 13:46 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll 2015-12-03 13:46 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll 2015-12-03 13:46 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll 2015-12-03 13:46 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll 2015-12-03 13:46 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll 2015-12-03 13:46 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll 2015-12-03 13:46 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll 2015-12-03 13:46 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll 2015-12-03 13:46 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll 2015-12-03 13:46 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll 2015-12-03 13:46 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll 2015-12-03 13:46 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll 2015-12-03 13:46 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll 2015-12-03 13:46 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll 2015-12-03 13:46 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll 2015-12-03 13:46 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll 2015-12-03 13:46 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll 2015-12-03 13:46 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_42.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll 2015-12-03 13:46 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll 2015-12-03 13:46 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll 2015-12-03 13:46 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll 2015-12-03 13:46 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll 2015-12-03 13:46 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll 2015-12-03 13:46 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll 2015-12-03 13:46 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll 2015-12-03 13:46 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll 2015-12-03 13:46 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll 2015-12-03 13:46 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll 2015-12-03 13:46 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll 2015-12-03 13:46 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll 2015-12-03 13:46 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll 2015-12-03 13:46 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll 2015-12-03 13:46 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll 2015-12-03 13:46 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll 2015-12-03 13:46 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll 2015-12-03 13:46 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll 2015-12-03 13:46 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll 2015-12-03 13:46 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll 2015-12-03 13:46 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll 2015-12-03 13:46 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll 2015-12-03 13:46 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll 2015-12-03 13:46 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll 2015-12-03 13:46 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll 2015-12-03 13:46 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll 2015-12-03 13:46 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll 2015-12-03 13:46 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll 2015-12-03 13:46 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll 2015-12-03 13:45 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll 2015-12-03 13:45 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll 2015-12-03 13:45 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll 2015-12-03 13:45 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll 2015-12-03 13:45 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll 2015-12-03 13:45 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll 2015-12-03 13:45 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll 2015-12-03 13:45 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll 2015-12-03 13:45 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll 2015-12-03 13:45 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll 2015-12-03 13:45 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll 2015-12-03 13:45 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll 2015-12-03 13:45 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll 2015-12-03 13:45 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll 2015-12-03 13:45 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll 2015-12-03 13:45 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll 2015-12-03 13:45 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll 2015-12-03 13:45 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll 2015-12-03 13:45 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll 2015-12-03 13:45 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll 2015-12-03 13:45 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll 2015-12-03 13:45 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll 2015-12-03 13:45 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll 2015-12-03 13:45 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll 2015-12-03 13:45 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll 2015-12-03 13:45 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll 2015-12-03 13:45 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll 2015-12-03 13:45 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll 2015-12-03 13:45 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll 2015-12-03 13:45 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll 2015-12-03 13:45 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll 2015-12-03 13:45 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll 2015-12-03 13:45 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll 2015-12-03 13:45 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll 2015-12-03 13:45 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll 2015-12-03 13:45 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll 2015-12-03 13:45 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll 2015-12-03 13:45 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll 2015-12-03 13:45 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll 2015-12-03 13:45 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll 2015-12-03 13:45 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll 2015-12-03 13:45 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll 2015-12-03 13:45 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll 2015-12-03 13:45 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll 2015-12-03 13:45 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll 2015-12-03 13:45 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll 2015-12-03 13:45 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll 2015-12-03 13:45 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll 2015-12-03 13:45 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll 2015-12-03 13:45 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll 2015-12-03 13:45 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll 2015-12-03 13:45 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll 2015-12-03 13:45 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll 2015-12-03 13:45 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll 2015-12-03 13:45 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll 2015-12-03 13:45 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll 2015-12-03 13:45 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll 2015-12-03 13:45 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll 2015-12-03 13:45 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll 2015-12-03 13:45 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll 2015-12-03 13:45 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll 2015-12-03 13:45 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll 2015-12-03 13:45 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll 2015-12-03 13:45 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll 2015-12-03 13:45 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll 2015-12-03 13:45 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll 2015-12-03 13:45 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll 2015-12-03 13:45 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll 2015-12-03 13:45 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll 2015-12-03 13:45 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_32.dll 2015-12-03 13:45 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_32.dll 2015-12-03 13:45 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll 2015-12-03 13:45 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll 2015-12-03 13:45 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll 2015-12-03 13:45 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll 2015-12-03 13:45 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll 2015-12-03 13:45 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll 2015-12-03 13:45 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll 2015-12-03 13:45 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll 2015-12-03 13:45 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll 2015-12-03 13:45 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll 2015-12-03 13:45 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll 2015-12-03 13:45 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll 2015-12-03 13:45 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll 2015-12-03 13:45 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll 2015-12-03 13:45 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll 2015-12-03 13:45 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll 2015-12-03 13:45 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll 2015-12-03 13:45 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll 2015-12-03 13:45 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll 2015-12-03 13:45 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll 2015-12-03 13:45 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll 2015-12-03 13:45 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll 2015-12-03 13:45 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll 2015-12-03 13:45 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll 2015-12-03 13:45 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll 2015-12-03 13:45 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll 2015-12-03 13:45 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll 2015-12-03 13:45 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll 2015-12-03 13:45 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll 2015-12-03 13:45 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll 2015-12-03 13:45 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll 2015-12-03 13:45 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll 2015-12-03 13:45 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll 2015-12-03 13:45 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll 2015-12-03 13:36 - 2015-12-03 13:36 - 07284240 _____ C:\Users\Senichiro\Downloads\OBS_0_657b_Installer.exe 2015-12-03 13:34 - 2015-12-03 13:35 - 09412021 _____ C:\Users\Senichiro\Downloads\OBS_0_657b.zip 2015-12-03 12:16 - 2015-12-07 10:45 - 00000000 ____D C:\Users\Senichiro\Desktop\Games 2015-12-03 12:08 - 2015-12-03 12:09 - 00102450 _____ C:\WINDOWS\ntbtlog.txt 2015-12-03 11:55 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios 2015-12-03 11:55 - 2015-12-03 11:55 - 00000000 ____D C:\ProgramData\Hi-Rez Studios 2015-12-03 11:53 - 2015-12-10 19:06 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\IMVU 2015-12-03 11:53 - 2015-12-08 20:06 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IMVU 2015-12-03 11:53 - 2015-12-03 11:54 - 50495272 _____ (Hi-Rez Studios) C:\Users\Senichiro\Downloads\InstallPaladins.exe 2015-12-03 11:53 - 2015-12-03 11:53 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Macromedia 2015-12-03 11:52 - 2015-12-03 11:52 - 00244304 _____ C:\Users\Senichiro\Downloads\InstallIMVU_523.0_st.exe 2015-12-03 11:49 - 2015-12-03 11:52 - 00000000 ____D C:\Users\Senichiro\Documents\Overwatch 2015-12-03 11:42 - 2015-06-18 18:45 - 04496600 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys 2015-12-03 11:42 - 2015-06-18 17:59 - 02862488 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT 2015-12-03 11:42 - 2015-06-17 19:47 - 02930904 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll 2015-12-03 11:42 - 2015-06-17 14:45 - 03234520 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll 2015-12-03 11:42 - 2015-06-15 17:39 - 01748184 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll 2015-12-03 11:42 - 2015-05-26 11:59 - 00166616 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll 2015-12-03 11:42 - 2015-05-18 14:47 - 02702040 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl 2015-12-03 11:42 - 2015-05-15 19:27 - 02918104 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll 2015-12-03 11:42 - 2015-05-15 16:32 - 01316056 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll 2015-12-03 11:42 - 2015-01-19 18:10 - 72113152 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat 2015-12-03 11:42 - 2014-11-11 13:44 - 00631000 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll 2015-12-03 11:42 - 2014-09-24 11:31 - 07087448 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll 2015-12-03 11:42 - 2014-09-24 11:31 - 01939800 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll 2015-12-03 11:42 - 2014-09-24 11:31 - 00315736 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll 2015-12-03 11:42 - 2014-09-24 11:31 - 00261464 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll 2015-12-03 11:42 - 2014-05-22 16:24 - 00096568 _____ C:\WINDOWS\system32\audioLibVc.dll 2015-12-03 11:42 - 2013-06-21 11:01 - 00109848 _____ C:\WINDOWS\system32\AcpiServiceVnA64.dll 2015-12-03 11:42 - 2012-08-31 19:18 - 07164176 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll 2015-12-03 11:42 - 2012-08-31 19:17 - 00434960 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll 2015-12-03 11:42 - 2012-08-31 19:17 - 00141584 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll 2015-12-03 11:42 - 2012-08-31 19:17 - 00124176 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll 2015-12-03 11:42 - 2012-08-31 19:17 - 00075024 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll 2015-12-03 11:42 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll 2015-12-03 11:42 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll 2015-12-03 11:42 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll 2015-12-03 11:41 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch 2015-12-03 11:41 - 2015-12-03 11:43 - 00000000 ___HD C:\Program Files (x86)\Temp 2015-12-03 11:41 - 2015-05-27 17:38 - 02825944 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RtlExUpd.dll 2015-12-03 11:37 - 2015-12-03 11:41 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Senichiro\Downloads\spybot-2.4.exe 2015-12-03 11:36 - 2015-12-03 11:41 - 131494359 _____ (Realtek Semiconductor Corp.) C:\Users\Senichiro\Downloads\0006-64bit_Win7_Win8_Win81_Win10_R279.exe 2015-12-03 11:36 - 2015-12-03 11:36 - 00000000 ____D C:\searchplugins 2015-12-03 11:34 - 2015-12-08 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft 2015-12-03 11:34 - 2015-12-03 11:34 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Lavasoft 2015-12-03 11:33 - 2015-12-08 21:01 - 00002872 _____ C:\WINDOWS\SysWOW64\LavasoftTcpServiceOff.ini 2015-12-03 11:33 - 2015-12-08 21:01 - 00002872 _____ C:\WINDOWS\system32\LavasoftTcpServiceOff.ini 2015-12-03 11:33 - 2015-12-07 07:00 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Lavasoft 2015-12-03 11:33 - 2015-12-03 11:33 - 00425744 _____ (Lavasoft Limited) C:\WINDOWS\system32\LavasoftTcpService64.dll 2015-12-03 11:33 - 2015-12-03 11:33 - 00345360 _____ (Lavasoft Limited) C:\WINDOWS\SysWOW64\LavasoftTcpService.dll 2015-12-03 11:32 - 2015-12-03 11:32 - 00000000 ____D C:\ProgramData\Lavasoft 2015-12-03 11:32 - 2015-12-03 11:32 - 00000000 ____D C:\Program Files (x86)\Lavasoft 2015-12-03 11:24 - 2015-12-10 21:53 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Skype 2015-12-03 11:24 - 2015-12-03 11:24 - 00000000 ____D C:\Users\Senichiro\Tracing 2015-12-03 11:23 - 2015-12-08 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-12-03 11:23 - 2015-12-03 11:24 - 00000000 ____D C:\ProgramData\Skype 2015-12-03 11:23 - 2015-12-03 11:23 - 00002699 _____ C:\Users\Public\Desktop\Skype.lnk 2015-12-03 11:23 - 2015-12-03 11:23 - 00000000 ___RD C:\Program Files (x86)\Skype 2015-12-03 11:22 - 2015-12-03 11:22 - 01504384 _____ (Skype Technologies S.A.) C:\Users\Senichiro\Downloads\SkypeSetup.exe 2015-12-03 11:19 - 2015-12-10 19:31 - 00002252 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-12-03 11:19 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-12-03 11:18 - 2015-12-10 21:30 - 00001110 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-12-03 11:18 - 2015-12-10 03:30 - 00001106 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-12-03 11:18 - 2015-12-08 20:14 - 00004216 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2015-12-03 11:18 - 2015-12-08 20:14 - 00003964 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2015-12-03 11:18 - 2015-12-03 11:18 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Blizzard Entertainment 2015-12-03 11:18 - 2015-12-03 11:18 - 00000000 ____D C:\Program Files (x86)\Google 2015-12-03 11:18 - 2015-12-03 11:18 - 00000000 ____D C:\data 2015-12-03 11:17 - 2015-12-10 21:53 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Battle.net 2015-12-03 11:17 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2015-12-03 11:17 - 2015-12-03 13:22 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Google 2015-12-03 11:17 - 2015-12-03 11:18 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Battle.net 2015-12-03 11:17 - 2015-12-03 11:17 - 00000629 _____ C:\Users\Public\Desktop\Battle.net.lnk 2015-12-03 11:17 - 2015-12-03 11:17 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Apps\2.0 2015-12-03 11:17 - 2015-12-03 11:17 - 00000000 ____D C:\ProgramData\Blizzard Entertainment 2015-12-03 11:15 - 2015-12-03 11:15 - 00000000 ____D C:\ProgramData\Battle.net 2015-12-03 11:11 - 2015-12-03 11:11 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf 2015-12-03 11:11 - 2015-06-15 01:00 - 00041984 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\USB3Ver.dll 2015-12-03 11:10 - 2015-12-10 21:44 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\TS3Client 2015-12-03 11:10 - 2015-12-08 20:06 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2015-12-03 11:10 - 2015-12-03 11:10 - 00001077 _____ C:\Users\Senichiro\Desktop\TeamSpeak 3 Client.lnk 2015-12-03 10:59 - 2013-08-05 11:50 - 00053248 _____ (Windows XP Bundled build C-Centric Single User) C:\WINDOWS\SysWOW64\CSVer.dll 2015-12-03 10:54 - 2015-12-03 10:54 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Steam 2015-12-03 10:54 - 2015-12-03 10:54 - 00000000 ____D C:\Users\Senichiro\AppData\Local\CEF 2015-12-03 10:52 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2015-12-03 10:52 - 2015-12-03 10:52 - 00000680 _____ C:\Users\Public\Desktop\Steam.lnk 2015-12-03 10:51 - 2015-12-03 15:54 - 00000000 ____D C:\ProgramData\Package Cache 2015-12-03 10:51 - 2015-12-03 10:58 - 00001138 _____ C:\Users\Public\Desktop\Avira Launcher.lnk 2015-12-03 10:50 - 2015-12-08 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2015-12-03 10:47 - 2015-12-03 10:56 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Avira 2015-12-03 10:46 - 2015-12-08 20:58 - 00146696 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2015-12-03 10:46 - 2015-12-08 20:58 - 00135880 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys 2015-12-03 10:46 - 2015-12-08 20:58 - 00073032 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys 2015-12-03 10:46 - 2015-12-08 20:58 - 00035488 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys 2015-12-03 10:46 - 2015-12-03 10:51 - 00000000 ____D C:\ProgramData\Avira 2015-12-03 10:46 - 2015-12-03 10:51 - 00000000 ____D C:\Program Files (x86)\Avira 2015-12-03 10:42 - 2015-12-03 10:42 - 04588512 _____ (Avira Operations GmbH & Co. KG) C:\Users\Senichiro\Downloads\avira_de_av_565fd173c5a2e__bng.exe 2015-12-03 10:42 - 2015-09-23 14:19 - 00001904 _____ C:\WINDOWS\system32\SetupBD.din 2015-12-03 10:41 - 2015-09-23 14:19 - 00405472 _____ (Intel Corporation) C:\WINDOWS\system32\PROUnstl.exe 2015-12-03 10:15 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsUsbRedirectionGroupPolicyControl.exe 2015-12-03 10:11 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpendp_winip.dll 2015-12-03 10:11 - 2012-08-23 11:51 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpendp_winip.dll 2015-12-03 10:09 - 2015-11-20 19:54 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll 2015-12-03 10:07 - 2015-12-08 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavalys 2015-12-03 10:07 - 2015-12-03 10:07 - 00001126 _____ C:\Users\Senichiro\Desktop\EVEREST Ultimate Edition.lnk 2015-12-03 10:07 - 2015-12-03 10:07 - 00000000 ____D C:\Program Files (x86)\Lavalys 2015-12-03 09:43 - 2015-12-09 21:18 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-12-03 09:43 - 2015-12-03 11:42 - 00000000 ____D C:\Program Files (x86)\Realtek 2015-12-03 09:31 - 2015-12-03 09:31 - 00000000 ____D C:\Program Files (x86)\Intel Desktop Board 2015-12-03 09:19 - 2015-12-08 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2015-12-03 09:19 - 2015-12-03 09:19 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Adobe 2015-12-03 09:18 - 2015-12-09 12:49 - 00000000 __SHD C:\Users\Senichiro\IntelGraphicsProfiles 2015-12-03 09:18 - 2015-12-03 09:18 - 00000401 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat 2015-12-03 09:18 - 2015-12-03 09:18 - 00000000 ____D C:\Users\Senichiro\AppData\Local\NVIDIA 2015-12-03 08:52 - 2015-12-09 09:01 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-12-03 08:52 - 2015-12-09 08:57 - 140158008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-12-03 08:36 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\WINDOWS\system32\IEUDINIT.EXE 2015-12-03 08:30 - 2015-12-03 08:30 - 00942592 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsIntl.dll 2015-12-03 08:30 - 2015-12-03 08:30 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsIntl.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00010752 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00010752 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00009728 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00009728 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00005632 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00005632 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00005632 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00005632 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00004096 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00004096 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00003072 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00003072 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00003072 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-version-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00003072 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00002560 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2015-12-03 08:24 - 2015-12-03 08:24 - 00002560 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2015-12-03 08:08 - 2015-12-03 11:11 - 00000000 ____D C:\Program Files (x86)\Intel 2015-12-03 08:08 - 2015-12-03 09:18 - 00000000 ____D C:\Intel 2015-12-03 07:45 - 2015-11-05 15:41 - 00102704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe 2015-12-03 07:27 - 2015-01-09 04:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\powertracker.dll 2015-12-03 07:26 - 2015-07-22 17:48 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00066400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-private-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00063840 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00022368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-math-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-string-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-time-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-localization-l1-2-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-localization-l1-2-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-process-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-synch-l1-2-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-synch-l1-2-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-processthreads-l1-1-1.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-eventing-provider-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-file-l2-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-file-l1-2-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-eventing-provider-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-xstate-l2-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-timezone-l1-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-file-l2-1-0.dll 2015-12-03 07:24 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-file-l1-2-0.dll 2015-12-03 07:24 - 2012-04-26 06:34 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdrmemptylst.exe 2015-12-03 07:23 - 2012-11-28 23:56 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wdfres.dll 2015-12-03 07:23 - 2012-11-28 23:56 - 00000003 _____ C:\WINDOWS\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2015-12-03 07:23 - 2012-08-21 22:01 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\OxpsConverter.exe 2015-12-03 06:51 - 2015-12-08 20:15 - 00012354 _____ C:\WINDOWS\diagerr.xml 2015-12-03 06:51 - 2015-12-08 20:15 - 00011433 _____ C:\WINDOWS\diagwrn.xml 2015-12-03 06:47 - 2015-12-03 10:06 - 00058016 _____ C:\Users\Senichiro\AppData\Local\GDIPFONTCACHEV1.DAT 2015-12-03 06:29 - 2015-12-03 06:29 - 00000000 ____D C:\Users\Senichiro\AppData\Local\WindowsUpdate 2015-12-03 06:18 - 2015-12-03 06:18 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2015-12-03 06:15 - 2015-12-03 06:15 - 00000000 ____D C:\Users\Senichiro\AppData\Local\VirtualStore 2015-12-03 06:15 - 2011-04-12 08:54 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Media Center Programs 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Videos 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Vorlagen 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Startmenü 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Netzwerkumgebung 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Lokale Einstellungen 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Eigene Dateien 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Druckumgebung 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Videos 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Musik 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Bilder 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Verlauf 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Anwendungsdaten 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Users\Default.migrated\Anwendungsdaten 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Programme 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\ProgramData\Vorlagen 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\ProgramData\Startmenü 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\ProgramData\Favoriten 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\ProgramData\Dokumente 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2015-12-03 06:14 - 2015-12-03 06:14 - 00000000 _SHDL C:\Dokumente und Einstellungen 2015-11-10 02:48 - 2015-11-10 02:48 - 01581208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll 2015-11-10 02:48 - 2015-11-10 02:48 - 00214168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2015-11-10 02:48 - 2015-11-10 02:48 - 00047952 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-12-10 21:52 - 2015-10-30 08:21 - 00000000 ____D C:\WINDOWS\INF 2015-12-10 21:51 - 2015-10-30 07:28 - 00000000 ____D C:\Windows 2015-12-10 17:51 - 2015-10-30 08:24 - 00000000 ___HD C:\Program Files\WindowsApps 2015-12-10 17:51 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-12-09 12:52 - 2015-10-30 19:35 - 00888060 _____ C:\WINDOWS\system32\perfh007.dat 2015-12-09 12:52 - 2015-10-30 19:35 - 00197144 _____ C:\WINDOWS\system32\perfc007.dat 2015-12-09 12:45 - 2015-10-30 07:28 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2015-12-09 11:28 - 2015-10-30 08:24 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files 2015-12-09 08:57 - 2015-10-30 08:11 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-12-09 08:26 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\appcompat 2015-12-08 20:36 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\DevicesFlow 2015-12-08 20:20 - 2015-10-30 19:36 - 00000000 ____D C:\WINDOWS\OCR 2015-12-08 20:20 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\rescache 2015-12-08 20:18 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog 2015-12-08 20:18 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\PrintDialog 2015-12-08 20:18 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\MiracastView 2015-12-08 20:17 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2015-12-08 20:16 - 2015-10-30 08:24 - 00000000 ____D C:\ProgramData\USOPrivate 2015-12-08 20:15 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase 2015-12-08 20:15 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\Registration 2015-12-08 20:15 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Windows NT 2015-12-08 20:15 - 2015-10-30 07:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2015-12-08 20:13 - 2015-10-30 08:24 - 00000000 __RSD C:\WINDOWS\Media 2015-12-08 20:13 - 2015-10-30 08:24 - 00000000 __RHD C:\Users\Public\Libraries 2015-12-08 20:11 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\spool 2015-12-08 20:06 - 2009-07-14 04:20 - 00000000 ____D C:\Users\Default.migrated 2015-12-08 20:05 - 2015-10-30 19:35 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep 2015-12-08 20:05 - 2015-10-30 19:35 - 00000000 ____D C:\WINDOWS\DigitalLocker 2015-12-08 20:05 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz 2015-12-08 20:05 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\IME 2015-12-08 20:05 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2015-12-08 20:05 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\NDF 2015-12-08 20:05 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\IME 2015-12-08 20:05 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\schemas 2015-12-08 20:05 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2015-12-08 20:04 - 2015-10-30 08:24 - 00000000 __SHD C:\Program Files\Windows Sidebar 2015-12-08 20:04 - 2015-10-30 08:24 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar 2015-12-08 20:04 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-12-08 20:04 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\DVD Maker 2015-12-08 20:02 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2015-12-08 20:00 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\Help 2015-12-08 19:55 - 2015-10-30 19:58 - 00000000 ____D C:\WINDOWS\ServiceProfiles 2015-12-08 19:54 - 2015-10-30 08:24 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template 2015-12-08 19:51 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2015-12-08 19:51 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\oobe 2015-12-08 19:51 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-12-08 19:51 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\Provisioning 2015-12-08 19:51 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2015-12-08 19:51 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\system32\Dism 2015-12-08 19:47 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI 2015-12-08 19:47 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2015-12-08 19:47 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\MUI 2015-12-08 19:47 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\inetsrv 2015-12-08 19:47 - 2015-10-30 08:19 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqutil.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqrt.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.tlb 2015-12-08 19:47 - 2015-10-30 08:19 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa30.tlb 2015-12-08 19:47 - 2015-10-30 08:19 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa20.tlb 2015-12-08 19:47 - 2015-10-30 08:19 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa10.tlb 2015-12-08 19:47 - 2015-10-30 08:19 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe 2015-12-08 19:47 - 2015-10-30 08:19 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll 2015-12-08 19:47 - 2015-10-30 08:19 - 00009096 _____ C:\WINDOWS\SysWOW64\msmqtrc.mof 2015-12-08 19:47 - 2015-10-30 08:18 - 01417728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys 2015-12-08 19:47 - 2015-10-30 08:18 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb 2015-12-08 19:47 - 2015-10-30 08:18 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb 2015-12-08 19:47 - 2015-10-30 08:18 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb 2015-12-08 19:47 - 2015-10-30 08:18 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe 2015-12-08 19:47 - 2015-10-30 08:18 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb 2015-12-08 19:47 - 2015-10-30 08:18 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe 2015-12-08 19:47 - 2015-10-30 08:18 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe 2015-12-08 19:47 - 2015-10-30 08:18 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll 2015-12-08 19:47 - 2015-10-30 08:18 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof 2015-12-08 19:36 - 2009-07-14 05:45 - 00041424 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-12-08 19:36 - 2009-07-14 05:45 - 00041424 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-12-08 19:32 - 2015-10-30 20:28 - 00000000 ___HD C:\$WINDOWS.~BT 2015-12-03 06:10 - 2011-04-12 08:55 - 00000000 ____D C:\WINDOWS\CSC 2015-12-01 01:33 - 2015-10-30 08:26 - 00826872 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-12-01 01:33 - 2015-10-30 08:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-12-04 05:41 - 2015-12-04 05:41 - 0007605 _____ () C:\Users\Senichiro\AppData\Local\Resmon.ResmonCfg 2015-12-08 20:00 - 2015-12-08 20:00 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Einige Dateien in TEMP: ==================== C:\Users\Senichiro\AppData\Local\Temp\avgnt.exe ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-12-08 19:55 ==================== Ende von FRST.txt ============================ Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:05-12-2015 durchgeführt von Senichiro (2015-12-10 21:58:01) Gestartet von C:\Users\Senichiro\Downloads Windows 10 Pro (X64) (2015-12-08 19:16:39) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-3766548690-2271658043-1216120868-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3766548690-2271658043-1216120868-503 - Limited - Disabled) Gast (S-1-5-21-3766548690-2271658043-1216120868-501 - Limited - Disabled) Senichiro (S-1-5-21-3766548690-2271658043-1216120868-1000 - Administrator - Enabled) => C:\Users\Senichiro ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.235 - Adobe Systems Incorporated) Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.15.129 - Avira Operations GmbH & Co. KG) Avira Launcher (HKLM-x32\...\{59c4462d-a177-4d44-a95b-deda1be79844}) (Version: 1.1.49.18939 - Avira Operations GmbH & Co. KG) Avira Launcher (x32 Version: 1.1.49.18939 - Avira Operations GmbH & Co. KG) Hidden Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Blade & Soul Closed Beta Test (HKLM-x32\...\{F7DBB870-787A-4B0E-A314-C931522A5859}) (Version: 4.0.0.6 - NC Interactive, LLC) Bless (HKLM-x32\...\Bless_is1) (Version: - Neowiz Games) Creativerse (HKLM-x32\...\Steam App 280790) (Version: - Playful Corporation) DeepBot - Twitch Streamer Assistant (HKLM-x32\...\{3BB0A983-66D8-4C96-A469-2DA19F013075}) (Version: 0.7.5.0 - DeepBot.tv) Dragomon Hunter (HKLM-x32\...\Steam App 356330) (Version: - X-Legend) Dragon Age™: Inquisition (HKLM-x32\...\{DC4C36DC-4E5B-4262-B0C7-157DF534B969}) (Version: 1.0.0.12 - Electronic Arts) EVEREST Ultimate Edition v5.50 (HKLM-x32\...\EVEREST Ultimate Edition_is1) (Version: 5.50 - Lavalys, Inc.) FINAL FANTASY XIV - A Realm Reborn (HKLM-x32\...\{2B41E132-07DF-4925-A3D3-F2D1765CCDFE}) (Version: 1.0.0000 - SQUARE ENIX CO., LTD.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 47.0.2526.80 - Google Inc.) Google Update Helper (x32 Version: 1.3.29.1 - Google Inc.) Hidden Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version: - NCsoft Corporation, Ltd.) Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) IMVU Avatar Chat Software (HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\IMVU Avatar chat client software BETA) (Version: - ) Intel(R) Network Connections 20.4.207.0 (HKLM\...\PROSetDX) (Version: 20.4.207.0 - Intel) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4264 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 4.0.0.36 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.27 - Intel(R) Corporation) Hidden Java 8 Update 66 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418066F0}) (Version: 8.0.660.17 - Oracle Corporation) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Malwarebytes Anti-Malware Version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 38.4.0 - Mozilla) Mozilla Thunderbird 38.4.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 38.4.0 (x86 de)) (Version: 38.4.0 - Mozilla) NCSOFT Game Launcher (HKLM-x32\...\NCLauncher_NCWest) (Version: - NCSOFT) NVIDIA 3D Vision Treiber 358.91 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 358.91 - NVIDIA Corporation) NVIDIA Grafiktreiber 358.91 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 358.91 - NVIDIA Corporation) NVIDIA Update 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation) Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) Origin (HKLM-x32\...\Origin) (Version: 9.11.1.6605 - Electronic Arts, Inc.) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) Paladins (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF402}) (Version: 0.8.682.3 - Hi-Rez Studios) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.97.1001.2015 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7541 - Realtek Semiconductor Corp.) Skype™ 7.16 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.16.101 - Skype Technologies S.A.) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) The Elder Scrolls Online (HKLM-x32\...\The Elder Scrolls Online) (Version: 1.0.0.0 - Zenimax Online Studios) Tree of Savior (English Ver.) (HKLM-x32\...\Steam App 372000) (Version: - ) Web Companion (HKLM-x32\...\{85815116-dda3-4a7b-ae6d-c80540e59db5}) (Version: 2.1.1199.2443 - Lavasoft) WildStar (HKLM-x32\...\WildStar) (Version: - NCSOFT) World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Wiederherstellungspunkte ========================= 08-12-2015 20:57:30 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 09-12-2015 21:15:16 Microsoft Visual C++ 2005 Redistributable wird installiert ==================== Hosts Inhalt: ========================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2015-12-10 21:56 - 00000974 ___RA C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 rad.msn.com 127.0.0.1 live.rads.msn.com 127.0.0.1 ads1.msn.com 127.0.0.1 g.msn.com 127.0.0.1 a.ads2.msads.net 127.0.0.1 b.ads2.msads.net 127.0.0.1 ac3.msn.com 127.0.0.1 apps.skype.com ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {0ADC8FD8-814A-428B-A0CF-A3CC7ACE278D} - \Safer-Networking\Spybot - Search and Destroy\Scan the system -> Keine Datei <==== ACHTUNG Task: {0EFC6E75-8A1D-43D8-91BA-6E8A816C5573} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG Task: {10121427-9CE0-4B79-9089-7C4ABCEB383D} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe Task: {280B6C71-FF71-49C6-BC48-2A957C7E668B} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {2A5FC7D1-D1A6-41A0-A355-32BEA0DCD220} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe Task: {2B498A7B-FB4F-4E14-A1CF-DED5DDACE222} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe Task: {2BFE63D8-FB4D-4F01-A5AA-D86660545551} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe Task: {38E16B81-EDED-4806-A8C9-054E626F8C35} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe Task: {55C7D5CA-A245-45B8-91F4-6F7F555896EC} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe Task: {5A108FFC-F7BB-4BC3-9BC0-A680E8EA47F1} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe Task: {5DBD89C3-D09B-4D2E-857C-40DF0C0326A7} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-12-09] (Adobe Systems Incorporated) Task: {60210D20-1EE9-4EF0-B0AB-E550B28C9819} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG Task: {6466E99B-2DED-4915-B258-74305AC84EEC} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe Task: {6CC94C3B-794B-48B9-9093-92535A4A9B3C} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe Task: {6F44CF68-32B7-4460-9462-79A1AF1B40FB} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe Task: {6FD52024-D270-445E-8F09-3DC5A6A4B9AB} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {6FDB8026-D765-48C6-8B29-E7AA4C6D51D4} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {72735E62-E63F-419F-B283-EBF23855DDB3} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe Task: {82EF0960-5550-4B22-AD28-249123B7B4F5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-03] (Google Inc.) Task: {835FD060-AE6B-4A3A-86F6-D2AF937ED223} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe Task: {85DDF918-8BC0-42F4-AB18-435E95A80050} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG Task: {8E563E81-CB57-4D60-A102-81A7479B2EE8} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG Task: {9B3C25FA-561B-48EB-AA81-B9C0B2F7AD9E} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {A118225C-42B3-4C9E-956E-D7CFE528576A} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {BCB58E6F-58F6-48A6-9A99-2BD16695050A} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {CCFF17D5-F82C-417C-BC60-DAE9B79E8802} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG Task: {CE237AFD-452E-42F9-AC97-7416284F354E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG Task: {CE9C7313-698B-4705-B2BF-D4B304D8A3B3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-12-03] (Google Inc.) Task: {CFF63079-BAD2-4344-937C-C0BF6C67BBC6} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe Task: {D0A0EC45-9902-44C4-939E-3FF16D013323} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG Task: {D3283A5F-1FD8-4A66-8557-DA35ACDF9227} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG Task: {D58C0A50-EAEA-4242-BBE6-C86F2670F334} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG Task: {D6036560-0033-46D8-8757-3457384FF255} - \Safer-Networking\Spybot - Search and Destroy\Refresh immunization -> Keine Datei <==== ACHTUNG Task: {D93CB26C-5143-4683-8345-6D632640073F} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {E14BD79E-5308-461A-957B-59CB9AAA97D7} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe Task: {E4AAF9AA-75F3-4D3B-8053-D60C606F024F} - \Safer-Networking\Spybot - Search and Destroy\Check for updates -> Keine Datei <==== ACHTUNG Task: {F3ED5388-B1A6-4FB4-AF53-B06BEA945F6A} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe Task: {FD82E4DB-EC6E-48E7-AB1C-1B5F0A416258} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG Task: {FF47E331-5CD7-482E-BB5F-C6C7898C63E4} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2015-12-08 20:00 - 2015-08-07 01:24 - 00116344 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-12-03 11:32 - 2015-12-03 11:32 - 00017168 _____ () C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe 2015-12-03 11:32 - 2015-12-03 11:32 - 00008976 _____ () C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.Service.Logger.dll 2015-12-03 11:32 - 2015-12-03 11:32 - 00023824 _____ () C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WcfService.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02653816 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02653816 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2015-12-09 12:44 - 2015-12-09 12:44 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe 2015-10-30 08:17 - 2015-10-30 08:17 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2015-10-30 08:17 - 2015-10-30 08:17 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2015-10-30 08:17 - 2015-10-30 08:17 - 00674816 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\MtcUvc.dll 2015-12-03 11:19 - 2015-11-24 19:12 - 01971528 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.73\libglesv2.dll 2015-12-03 11:19 - 2015-11-24 19:12 - 00093512 _____ () C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.73\libegl.dll 2015-10-22 12:22 - 2015-10-22 12:22 - 00175080 _____ () D:\Users\Senichiro\AppData\Local\TeamSpeak 3 Client\quazip.dll 2015-10-22 12:21 - 2015-10-22 12:21 - 00103400 _____ () D:\Users\Senichiro\AppData\Local\TeamSpeak 3 Client\soundbackends\directsound_win64.dll 2015-10-22 12:21 - 2015-10-22 12:21 - 00108008 _____ () D:\Users\Senichiro\AppData\Local\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll 2015-10-22 12:22 - 2015-10-22 12:22 - 00312296 _____ () D:\Users\Senichiro\AppData\Local\TeamSpeak 3 Client\plugins\clientquery_plugin.dll 2015-10-22 12:22 - 2015-10-22 12:22 - 00483816 _____ () D:\Users\Senichiro\AppData\Local\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll 2015-09-21 15:24 - 2015-09-21 15:24 - 00317440 _____ () D:\Users\Senichiro\AppData\Local\TeamSpeak 3 Client\ssleay32.dll 2015-09-21 15:24 - 2015-09-21 15:24 - 01709056 _____ () D:\Users\Senichiro\AppData\Local\TeamSpeak 3 Client\LIBEAY32.dll 2015-12-07 00:52 - 2015-12-07 00:52 - 04524544 _____ () D:\DeepBot - Twitch Streamer Assistant\DeepBot.exe 2015-11-24 00:36 - 2015-11-24 00:36 - 01428048 _____ () C:\Program Files\OBS\OBS.exe 2015-07-10 09:14 - 2015-07-10 09:14 - 02004048 _____ () C:\Program Files\OBS\OBSApi.dll 2015-11-24 00:36 - 2015-11-24 00:36 - 00245840 _____ () C:\Program Files\OBS\plugins\DShowPlugin.dll 2015-07-10 09:14 - 2015-07-10 09:14 - 00182864 _____ () C:\Program Files\OBS\plugins\GraphicsCapture.dll 2015-07-10 09:14 - 2015-07-10 09:14 - 00142416 _____ () C:\Program Files\OBS\plugins\NoiseGate.dll 2015-07-10 09:14 - 2015-07-10 09:14 - 00118352 _____ () C:\Program Files\OBS\plugins\PSVPlugin.dll 2015-07-10 09:14 - 2015-07-10 09:14 - 00176720 _____ () C:\Program Files\OBS\ObsNvenc.dll 2015-11-18 20:43 - 2015-11-18 20:43 - 00217568 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe 2015-11-18 20:43 - 2015-11-18 20:43 - 00221152 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\IMVUClient.exe 2015-12-08 19:51 - 2015-12-08 19:51 - 08005632 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2015-12-08 19:51 - 2015-12-08 19:51 - 00936448 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 2015-12-09 12:42 - 2015-12-09 12:43 - 09074176 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.23.23.0_x64__8wekyb3d8bbwe\WinStore.Entertainment.Mobile.dll 2015-12-09 12:42 - 2015-12-09 12:43 - 02416640 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.23.23.0_x64__8wekyb3d8bbwe\MS.Entertainment.Common.Mobile.dll 2015-12-09 12:44 - 2015-12-09 12:44 - 00152064 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll 2015-12-09 12:44 - 2015-12-09 12:44 - 18906624 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkyWrap.dll 2015-11-25 20:18 - 2015-11-25 20:18 - 00147136 ____R () C:\Program Files (x86)\Skype\Phone\ssScreenVVS2.dll 2015-12-03 11:17 - 2015-12-03 11:17 - 26065408 _____ () D:\Battle.net\Battle.net.6382\libcef.dll 2015-12-03 11:17 - 2015-12-03 11:17 - 00739840 _____ () D:\Battle.net\Battle.net.6382\libGLESv2.dll 2015-12-03 11:17 - 2015-12-03 11:17 - 00293040 _____ () D:\Battle.net\Battle.net.6382\ortp.dll 2015-12-03 11:17 - 2015-12-03 11:17 - 00909312 _____ () D:\Battle.net\Battle.net.6382\platforms\qwindows.dll 2015-12-03 11:17 - 2015-12-03 11:17 - 00130048 _____ () D:\Battle.net\Battle.net.6382\libEGL.dll 2015-12-03 11:17 - 2015-12-03 11:17 - 00020992 _____ () D:\Battle.net\Battle.net.6382\imageformats\qgif.dll 2015-12-03 11:17 - 2015-12-03 11:17 - 00021504 _____ () D:\Battle.net\Battle.net.6382\imageformats\qico.dll 2015-12-03 11:17 - 2015-12-03 11:17 - 00205312 _____ () D:\Battle.net\Battle.net.6382\imageformats\qjpeg.dll 2015-12-03 11:17 - 2015-12-03 11:17 - 00225792 _____ () D:\Battle.net\Battle.net.6382\imageformats\qmng.dll 2015-12-03 11:17 - 2015-12-03 11:17 - 00015872 _____ () D:\Battle.net\Battle.net.6382\imageformats\qsvg.dll 2015-12-03 11:17 - 2015-12-03 11:17 - 00312832 _____ () D:\Battle.net\Battle.net.6382\imageformats\qtiff.dll 2015-12-03 11:17 - 2015-12-03 11:17 - 00010240 _____ () D:\Battle.net\Battle.net.6382\qml\QtQuick.2\qtquick2plugin.dll 2015-12-03 11:17 - 2015-12-03 11:17 - 00054272 _____ () D:\Battle.net\Battle.net.6382\qml\QtQuick\Layouts\qquicklayoutsplugin.dll 2015-12-03 11:17 - 2015-12-03 11:17 - 00010240 _____ () D:\Battle.net\Battle.net.6382\qml\QtQml\Models.2\modelsplugin.dll 2015-10-11 08:23 - 2015-10-11 08:23 - 00995840 _____ () D:\DeepBot - Twitch Streamer Assistant\CefSharp.Core.dll 2015-10-11 08:23 - 2015-10-11 08:23 - 45069312 _____ () D:\DeepBot - Twitch Streamer Assistant\libcef.dll 2015-10-11 08:23 - 2015-10-11 08:23 - 00613888 _____ () D:\DeepBot - Twitch Streamer Assistant\CefSharp.BrowserSubprocess.Core.dll 2015-10-11 08:23 - 2015-10-11 08:23 - 01643008 _____ () D:\DeepBot - Twitch Streamer Assistant\libglesv2.dll 2015-10-11 08:23 - 2015-10-11 08:23 - 00074752 _____ () D:\DeepBot - Twitch Streamer Assistant\libegl.dll 2015-12-10 08:44 - 2015-12-10 08:44 - 00266240 _____ () C:\Users\Senichiro\AppData\Roaming\Acreon\WowMatrix\Libraries\wmzip.dll 2015-12-10 08:44 - 2015-12-10 08:44 - 00540672 _____ () C:\Users\Senichiro\AppData\Roaming\Acreon\WowMatrix\Libraries\wmweb.dll 2015-09-25 19:36 - 2015-09-25 19:36 - 00098304 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\win32api.pyd 2015-09-25 19:36 - 2015-09-25 19:36 - 00109568 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\pywintypes27.dll 2015-09-25 19:36 - 2015-09-25 19:36 - 00110592 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\win32file.pyd 2015-09-25 19:36 - 2015-09-25 19:36 - 00016896 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\win32event.pyd 2015-09-25 19:36 - 2015-09-25 19:36 - 00087040 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\_ctypes.pyd 2015-09-25 19:36 - 2015-09-25 19:36 - 00166912 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\win32gui.pyd 2015-09-25 19:36 - 2015-09-25 19:36 - 00046080 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\_socket.pyd 2015-09-25 19:36 - 2015-09-25 19:36 - 00028160 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\_ssl.pyd 2015-09-25 19:35 - 2015-09-25 19:35 - 00357888 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\pythoncom27.dll 2015-09-25 19:36 - 2015-09-25 19:36 - 00265216 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\win32com.shell.shell.pyd 2015-09-25 19:36 - 2015-09-25 19:36 - 00016384 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\win32clipboard.pyd 2015-09-25 19:36 - 2015-09-25 19:36 - 00034816 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\win32process.pyd 2015-09-25 19:36 - 2015-09-25 19:36 - 00659456 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\_imaging.pyd 2015-11-06 00:59 - 2015-11-06 00:59 - 00911872 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\_cal3d.pyd 2015-11-06 00:33 - 2015-11-06 00:33 - 00362496 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\cal3d.dll 2015-11-06 00:18 - 2015-11-06 00:18 - 00216576 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\boost_python.dll 2015-11-06 00:18 - 2015-11-06 00:18 - 00031744 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\CallStack.dll 2015-11-06 00:56 - 2015-11-06 00:56 - 01892352 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\_avatarwindow.pyd 2015-11-06 00:35 - 2015-11-06 00:35 - 00169984 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\zero.dll 2015-11-06 00:35 - 2015-11-06 00:35 - 00052736 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\pixmap.dll 2015-11-06 00:36 - 2015-11-06 00:36 - 00920064 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\SceneWindow.dll 2015-11-06 00:34 - 2015-11-06 00:34 - 00072704 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\ParticleLib.dll 2015-11-06 00:36 - 2015-11-06 00:36 - 00014336 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\MemoryHook.dll 2015-09-25 19:36 - 2015-09-25 19:36 - 00007168 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\_win32sysloader.pyd 2015-09-25 19:36 - 2015-09-25 19:36 - 00126976 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\pyexpat.pyd 2015-11-06 01:01 - 2015-11-06 01:01 - 00059392 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\_sqlite3.pyd 2015-11-06 00:46 - 2015-11-06 00:46 - 00506368 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\sqlite3.dll 2015-09-25 19:36 - 2015-09-25 19:36 - 00010240 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\select.pyd 2015-11-06 01:01 - 2015-11-06 01:01 - 00044032 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\_pylzma.pyd 2015-11-06 01:00 - 2015-11-06 01:00 - 00131072 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\_imvugecko.pyd 2015-11-06 00:42 - 2015-11-06 00:42 - 00190976 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\imvugecko.dll 2015-09-25 19:25 - 2015-09-25 19:25 - 00872448 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\js3250.dll 2015-11-06 01:00 - 2015-11-06 01:00 - 00135680 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\_libzero.pyd 2015-11-06 01:00 - 2015-11-06 01:00 - 00083968 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\_imvuflash.pyd 2015-11-06 00:40 - 2015-11-06 00:40 - 00111104 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\imvuflash.dll 2015-11-06 00:43 - 2015-11-06 00:43 - 00010752 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\nphwndproxy.dll 2015-09-25 19:40 - 2015-09-25 19:40 - 17024688 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\NPSWF32.dll 2015-09-25 19:36 - 2015-09-25 19:36 - 00686080 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\unicodedata.pyd 2015-11-06 00:54 - 2015-11-06 00:54 - 00068096 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\_audiere.pyd 2015-11-06 00:18 - 2015-11-06 00:18 - 00249344 _____ () C:\Users\Senichiro\AppData\Roaming\IMVUClient\audiere.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\.DEFAULT\...\localhost -> localhost IE trusted site: HKU\.DEFAULT\...\webcompanion.com -> hxxp://webcompanion.com IE trusted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\webcompanion.com -> hxxp://webcompanion.com IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\007guard.com -> install.007guard.com IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\008k.com -> www.008k.com IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\00hq.com -> www.00hq.com IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\010402.com -> 010402.com IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\0scan.com -> www.0scan.com IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\10sek.com -> www.10sek.com IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\12-26.net -> user1.12-26.net IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\12-27.net -> user1.12-27.net IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\123simsen.com -> www.123simsen.com Da befinden sich 7866 mehr Seiten. ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Senichiro\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\{edef9243-e0d7-439b-aa2c-b0a772b22190}.png DNS Servers: 192.168.2.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808 FirewallRules: [UDP Query User{649AF5E3-8EFC-4993-B94C-390496B40C29}D:\deepbot - twitch streamer assistant\deepbot.exe] => (Allow) D:\deepbot - twitch streamer assistant\deepbot.exe FirewallRules: [TCP Query User{AB445478-5926-466A-AFA7-E1E87BE097C7}D:\deepbot - twitch streamer assistant\deepbot.exe] => (Allow) D:\deepbot - twitch streamer assistant\deepbot.exe FirewallRules: [UDP Query User{26C70A76-E9ED-4387-85F1-8CD0B5C6CF45}C:\users\senichiro\appdata\local\temp\qqgamedownloader\mhfc_1449237615_70029\teniodl.exe] => (Allow) C:\users\senichiro\appdata\local\temp\qqgamedownloader\mhfc_1449237615_70029\teniodl.exe FirewallRules: [TCP Query User{16F8D935-D902-42E7-9C5B-F3ED786B2327}C:\users\senichiro\appdata\local\temp\qqgamedownloader\mhfc_1449237615_70029\teniodl.exe] => (Allow) C:\users\senichiro\appdata\local\temp\qqgamedownloader\mhfc_1449237615_70029\teniodl.exe FirewallRules: [{21260CD7-D872-4D9D-9189-963176611AED}] => (Allow) C:\Users\Senichiro\AppData\Local\Temp\QQGameDownloader\mhfc_1449237615_70029\MiniQQDL.exe FirewallRules: [{5379D9BC-F42D-477B-B457-AE54BDAA46D3}] => (Allow) C:\Users\Senichiro\AppData\Local\Temp\QQGameDownloader\mhfc_1449237615_70029\MiniQQDL.exe FirewallRules: [{A4B4F68B-1D60-405F-B179-984F3F1772E5}] => (Allow) D:\Program Files (x86)\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivlauncher.exe FirewallRules: [{6EE2C577-7098-4C73-90A1-753A4F6F8BB1}] => (Allow) D:\Program Files (x86)\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivlauncher.exe FirewallRules: [{82CB2AC9-2AD7-4A29-A0BE-0FD5E8DF04B7}] => (Allow) D:\Program Files (x86)\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivboot.exe FirewallRules: [{30DDB02F-60A5-4ACC-B30F-F8200D88B028}] => (Allow) D:\Program Files (x86)\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivboot.exe FirewallRules: [UDP Query User{43905B1E-C838-401D-891D-AC6F86F797ED}C:\users\senichiro\appdata\local\temp\i1449310238\windows\resource\jre\bin\javaw.exe] => (Allow) C:\users\senichiro\appdata\local\temp\i1449310238\windows\resource\jre\bin\javaw.exe FirewallRules: [TCP Query User{35F712EA-AD92-4CEB-9A9E-9E30BE7EB55D}C:\users\senichiro\appdata\local\temp\i1449310238\windows\resource\jre\bin\javaw.exe] => (Allow) C:\users\senichiro\appdata\local\temp\i1449310238\windows\resource\jre\bin\javaw.exe FirewallRules: [{D1ED36AC-4008-44D0-8C1F-2A22ECEA46AB}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Dragomon Hunter\Game.bin FirewallRules: [{BEB75DF0-F146-4CE9-8486-056CF59D25D6}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Dragomon Hunter\Game.bin FirewallRules: [{8A961A05-6ABD-46A3-A304-F62C2EEF9B4C}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Dragomon Hunter\Launcher.exe FirewallRules: [{BA7BB979-F745-4E9D-A887-0F1F0BF97595}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Dragomon Hunter\Launcher.exe FirewallRules: [{D5689D08-29C2-41DC-AF82-5151F1232805}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Creativerse\Creativerse.exe FirewallRules: [{7FE7BFB9-98DA-4B6B-8433-C2020CC8A522}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\Creativerse\Creativerse.exe FirewallRules: [UDP Query User{AFDF3DB6-019C-4487-8F2A-F69CEB5643D4}D:\program files (x86)\hi-rez studios\hirezgames\paladins\binaries\win32\paladins.exe] => (Allow) D:\program files (x86)\hi-rez studios\hirezgames\paladins\binaries\win32\paladins.exe FirewallRules: [TCP Query User{63F396F4-6725-4B00-9916-8125E79BDB4F}D:\program files (x86)\hi-rez studios\hirezgames\paladins\binaries\win32\paladins.exe] => (Allow) D:\program files (x86)\hi-rez studios\hirezgames\paladins\binaries\win32\paladins.exe FirewallRules: [{C03FB0D4-A283-4FAD-8888-F3FBCFC180F2}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{CE30F4CE-09BF-475D-8353-3EBE07FB4D28}] => (Allow) D:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [UDP Query User{8277DBDB-B8BA-456E-8183-BAD2DB1DA3EC}D:\overwatch\gameclientapp.exe] => (Allow) D:\overwatch\gameclientapp.exe FirewallRules: [TCP Query User{18E81569-BCB4-4D85-A449-18A6D2CB88E9}D:\overwatch\gameclientapp.exe] => (Allow) D:\overwatch\gameclientapp.exe FirewallRules: [{25EB4246-94F9-4EA7-AD69-B368B2BB0415}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{635FC0F7-94CF-4F4A-BA7D-0A91298E63DB}] => (Allow) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{546D7B27-630D-4399-8CAD-C22FFD17A079}] => (Allow) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{59EA64B3-BB8F-4461-A3BA-0E02CEEF98DF}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{9EB900E4-53C0-4E8C-BF11-B4C2B96726B4}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{DC8E2D9B-F46A-4D7C-ADC6-76A65B6B7372}] => (Allow) D:\Program Files (x86)\Origin Games\Dragon Age Inquisition\DragonAgeInquisition.exe FirewallRules: [{15D856AF-CDA7-40D0-A5D4-2B692D5A7344}] => (Allow) D:\Program Files (x86)\Origin Games\Dragon Age Inquisition\DragonAgeInquisition.exe FirewallRules: [TCP Query User{83DDC909-DC16-4487-AF11-97CB21AB3981}D:\hearthstone\hearthstone.exe] => (Allow) D:\hearthstone\hearthstone.exe FirewallRules: [UDP Query User{88C2D792-7AB8-4DA7-8743-58DA3C577868}D:\hearthstone\hearthstone.exe] => (Allow) D:\hearthstone\hearthstone.exe FirewallRules: [{3E6649D8-7329-4AB6-9620-D5646FAD6A37}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe StandardProfile\AuthorizedApplications: [D:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access StandardProfile\AuthorizedApplications: [D:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service StandardProfile\AuthorizedApplications: [D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater StandardProfile\AuthorizedApplications: [D:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (12/10/2015 09:56:55 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528.manifest. Error: (12/09/2015 09:15:28 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (12/09/2015 09:01:05 AM) (Source: Perflib) (EventID: 1017) (User: ) Description: ASP.NET_2.0.50727 Error: (12/09/2015 09:01:05 AM) (Source: Perflib) (EventID: 1021) (User: ) Description: ASP.NET_2.0.507278 Error: (12/08/2015 09:07:10 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SENICHIRO-PC) Description: Bei der Aktivierung der App „Microsoft.WindowsPhone_8wekyb3d8bbwe!CompanionApp.App“ ist folgender Fehler aufgetreten: -2147024770. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (12/08/2015 09:02:11 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SENICHIRO-PC) Description: Bei der Aktivierung der App „Microsoft.WindowsPhone_8wekyb3d8bbwe!CompanionApp.App“ ist folgender Fehler aufgetreten: -2147024770. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (12/08/2015 08:59:19 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SENICHIRO-PC) Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (12/08/2015 08:57:31 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (12/08/2015 08:55:41 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SENICHIRO-PC) Description: Bei der Aktivierung der App „Microsoft.WindowsPhone_8wekyb3d8bbwe!CompanionApp.App“ ist folgender Fehler aufgetreten: -2147024770. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (12/08/2015 08:53:10 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SENICHIRO-PC) Description: Bei der Aktivierung der App „Microsoft.WindowsPhone_8wekyb3d8bbwe!CompanionApp.App“ ist folgender Fehler aufgetreten: -2147024770. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Systemfehler: ============= Error: (12/10/2015 09:56:05 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Reduce Memory erreicht. Error: (12/10/2015 12:24:48 AM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: Der Dienst "nProtect GameGuard Service" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren. Error: (12/09/2015 04:42:52 PM) (Source: bowser) (EventID: 8003) (User: ) Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "WIN-PC", der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{FBBEDE9E-64F8-453F-9131-CE9AEA39B38F}-Transport zu sein scheint. Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen. Error: (12/09/2015 12:54:21 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "Software Protection" wurde nicht richtig gestartet. Error: (12/09/2015 12:48:02 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "MBAMService" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (12/09/2015 12:48:02 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst MBAMService erreicht. Error: (12/09/2015 12:48:02 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "MBAMScheduler" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (12/09/2015 12:48:02 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst MBAMScheduler erreicht. Error: (12/09/2015 12:47:31 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "NetTcpActivator" ist vom Dienst "NetTcpPortSharing" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (12/09/2015 12:45:04 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Synchronisierungshost_41f1d erreicht. CodeIntegrity: =================================== Date: 2015-12-10 03:34:38.174 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2015-12-09 12:57:51.225 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2015-12-08 21:11:30.166 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2015-12-08 20:13:32.439 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2015-12-08 19:56:38.399 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i7-4770K CPU @ 3.50GHz Prozentuale Nutzung des RAM: 49% Installierter physikalischer RAM: 12177.14 MB Verfügbarer physikalischer RAM: 6150.5 MB Summe virtueller Speicher: 24465.14 MB Verfügbarer virtueller Speicher: 16112.19 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:194.77 GB) (Free:120.9 GB) NTFS Drive d: () (Fixed) (Total:270.45 GB) (Free:13.95 GB) NTFS Drive e: (3DS Capture) (CDROM) (Total:0.55 GB) (Free:0 GB) UDF ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 232.9 GB) (Disk ID: D599D599) Partition: GPT. ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 7E46F6A6) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=194.8 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=450 MB) - (Type=27) Partition 4: (Not Active) - (Size=270.5 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
11.12.2015, 15:14 | #21 |
/// TB-Ausbilder | habe den watch4.de virus Servus, noch Probleme mit watch4.de ? Schritt 1 Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter start CloseProcesses: Task: {0ADC8FD8-814A-428B-A0CF-A3CC7ACE278D} - \Safer-Networking\Spybot - Search and Destroy\Scan the system -> Keine Datei <==== ACHTUNG Task: {0EFC6E75-8A1D-43D8-91BA-6E8A816C5573} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG Task: {60210D20-1EE9-4EF0-B0AB-E550B28C9819} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG Task: {6FDB8026-D765-48C6-8B29-E7AA4C6D51D4} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {85DDF918-8BC0-42F4-AB18-435E95A80050} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG Task: {8E563E81-CB57-4D60-A102-81A7479B2EE8} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG Task: {CCFF17D5-F82C-417C-BC60-DAE9B79E8802} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG Task: {CE237AFD-452E-42F9-AC97-7416284F354E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG Task: {D0A0EC45-9902-44C4-939E-3FF16D013323} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG Task: {D3283A5F-1FD8-4A66-8557-DA35ACDF9227} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG Task: {D58C0A50-EAEA-4242-BBE6-C86F2670F334} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG Task: {D6036560-0033-46D8-8757-3457384FF255} - \Safer-Networking\Spybot - Search and Destroy\Refresh immunization -> Keine Datei <==== ACHTUNG Task: {E4AAF9AA-75F3-4D3B-8053-D60C606F024F} - \Safer-Networking\Spybot - Search and Destroy\Check for updates -> Keine Datei <==== ACHTUNG Task: {FD82E4DB-EC6E-48E7-AB1C-1B5F0A416258} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG RemoveProxy: EmptyTemp: end Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Schritt 2 Downloade dir die passende Version von HitmanPro auf deinen Desktop: HitmanPro - 32 Bit | HitmanPro - 64 Bit.
Schritt 3 ESET Online Scanner
Bitte poste mit deiner nächsten Antwort
|
11.12.2015, 15:37 | #22 |
| habe den watch4.de virus er findet die fixlist nicht obwohl es im selben verzeichnis ist |
11.12.2015, 15:39 | #23 |
/// TB-Ausbilder | habe den watch4.de virus Servus, beides (FRST.txt und fixlist.txt) liegt auf dem Desktop und sonst gibt es keine andere FRST.exe auf dem Rechner... glaub ich irgendwie nicht. |
11.12.2015, 15:48 | #24 |
| habe den watch4.de virusCode:
ATTFilter Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version:09-12-2015 durchgeführt von Senichiro (2015-12-11 15:38:45) Run:1 Gestartet von C:\Users\Senichiro\Downloads Geladene Profile: Senichiro & DefaultAppPool (Verfügbare Profile: Senichiro & DefaultAppPool) Start-Modus: Normal ============================================== fixlist Inhalt: ***************** start CloseProcesses: Task: {0ADC8FD8-814A-428B-A0CF-A3CC7ACE278D} - \Safer-Networking\Spybot - Search and Destroy\Scan the system -> Keine Datei <==== ACHTUNG Task: {0EFC6E75-8A1D-43D8-91BA-6E8A816C5573} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG Task: {60210D20-1EE9-4EF0-B0AB-E550B28C9819} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG Task: {6FDB8026-D765-48C6-8B29-E7AA4C6D51D4} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {85DDF918-8BC0-42F4-AB18-435E95A80050} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG Task: {8E563E81-CB57-4D60-A102-81A7479B2EE8} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG Task: {CCFF17D5-F82C-417C-BC60-DAE9B79E8802} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG Task: {CE237AFD-452E-42F9-AC97-7416284F354E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG Task: {D0A0EC45-9902-44C4-939E-3FF16D013323} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG Task: {D3283A5F-1FD8-4A66-8557-DA35ACDF9227} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG Task: {D58C0A50-EAEA-4242-BBE6-C86F2670F334} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG Task: {D6036560-0033-46D8-8757-3457384FF255} - \Safer-Networking\Spybot - Search and Destroy\Refresh immunization -> Keine Datei <==== ACHTUNG Task: {E4AAF9AA-75F3-4D3B-8053-D60C606F024F} - \Safer-Networking\Spybot - Search and Destroy\Check for updates -> Keine Datei <==== ACHTUNG Task: {FD82E4DB-EC6E-48E7-AB1C-1B5F0A416258} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG RemoveProxy: EmptyTemp: end ***************** Prozess erfolgreich geschlossen. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0ADC8FD8-814A-428B-A0CF-A3CC7ACE278D}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0ADC8FD8-814A-428B-A0CF-A3CC7ACE278D}" => Schlüssel erfolgreich entfernt HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Scan the system => Schlüssel nicht gefunden. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0EFC6E75-8A1D-43D8-91BA-6E8A816C5573}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0EFC6E75-8A1D-43D8-91BA-6E8A816C5573}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{60210D20-1EE9-4EF0-B0AB-E550B28C9819}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{60210D20-1EE9-4EF0-B0AB-E550B28C9819}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{6FDB8026-D765-48C6-8B29-E7AA4C6D51D4}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6FDB8026-D765-48C6-8B29-E7AA4C6D51D4}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{85DDF918-8BC0-42F4-AB18-435E95A80050}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{85DDF918-8BC0-42F4-AB18-435E95A80050}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8E563E81-CB57-4D60-A102-81A7479B2EE8}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8E563E81-CB57-4D60-A102-81A7479B2EE8}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CCFF17D5-F82C-417C-BC60-DAE9B79E8802}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CCFF17D5-F82C-417C-BC60-DAE9B79E8802}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CE237AFD-452E-42F9-AC97-7416284F354E}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CE237AFD-452E-42F9-AC97-7416284F354E}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D0A0EC45-9902-44C4-939E-3FF16D013323}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D0A0EC45-9902-44C4-939E-3FF16D013323}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D3283A5F-1FD8-4A66-8557-DA35ACDF9227}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D3283A5F-1FD8-4A66-8557-DA35ACDF9227}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D58C0A50-EAEA-4242-BBE6-C86F2670F334}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D58C0A50-EAEA-4242-BBE6-C86F2670F334}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D6036560-0033-46D8-8757-3457384FF255}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D6036560-0033-46D8-8757-3457384FF255}" => Schlüssel erfolgreich entfernt HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => Schlüssel nicht gefunden. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E4AAF9AA-75F3-4D3B-8053-D60C606F024F}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E4AAF9AA-75F3-4D3B-8053-D60C606F024F}" => Schlüssel erfolgreich entfernt HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Check for updates => Schlüssel nicht gefunden. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FD82E4DB-EC6E-48E7-AB1C-1B5F0A416258}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FD82E4DB-EC6E-48E7-AB1C-1B5F0A416258}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => Schlüssel erfolgreich entfernt ========= RemoveProxy: ========= HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => Wert erfolgreich entfernt HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => Wert erfolgreich entfernt HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => Wert erfolgreich entfernt HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => Wert erfolgreich entfernt ========= Ende von RemoveProxy: ========= EmptyTemp: => 1.1 GB temporäre Dateien entfernt. Das System musste neu gestartet werden. ==== Ende von Fixlog 15:39:30 ==== |
11.12.2015, 15:50 | #25 |
/// TB-Ausbilder | habe den watch4.de virus gut gemacht. Dann weiter bitte mit den anderen Schritten. |
11.12.2015, 18:51 | #26 |
| habe den watch4.de virusCode:
ATTFilter
Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=9de4226363a74249a8ce8be434db9ed6 # end=init # utc_time=2015-12-11 03:08:24 # local_time=2015-12-11 04:08:24 (+0100, Mitteleuropäische Zeit) # country="Germany" # osver=6.2.9200 NT Update Init Update Download Update Finalize Updated modules version: 27152 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=9de4226363a74249a8ce8be434db9ed6 # end=updated # utc_time=2015-12-11 03:11:45 # local_time=2015-12-11 04:11:45 (+0100, Mitteleuropäische Zeit) # country="Germany" # osver=6.2.9200 NT # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7777 # api_version=3.1.1 # EOSSerial=9de4226363a74249a8ce8be434db9ed6 # engine=27152 # end=finished # remove_checked=true # archives_checked=false # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2015-12-11 05:04:08 # local_time=2015-12-11 06:04:08 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1031 # osver=6.2.9200 NT # compatibility_mode_1='' # compatibility_mode=5893 16776574 100 94 3623336 3667591 0 0 # scanned=404146 # found=1 # cleaned=1 # scan_time=6743 sh=02460DBAD2D23597A13C5A463DBB3D6D87A53D70 ft=1 fh=217f3fe78ed5a88f vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Senichiro\Downloads\Thunderbird - CHIP-Installer.exe" |
11.12.2015, 20:40 | #27 | ||||||||
/// TB-Ausbilder | habe den watch4.de virus Reste entfernen Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter start DeleteKey: HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{9522B3FB-7A2B-4646-8AF6-36E7F593073C} DeleteKey: HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\ActiveX Compatibility\{9522B3FB-7A2B-4646-8AF6-36E7F593073C} Reboot: end Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Die Fixlog von FRST gleich posten, da diese sonst mit DelFix (siehe weiter unten) automatisch entfernt wird! Wenn du keine Probleme mehr mit Malware hast, dann sind wir hier fertig. Deine Logdateien sind sauber. Zum Schluss müssen wir noch ein paar abschließende Schritte unternehmen, um deinen Pc aufzuräumen und abzusichern. Cleanup: (Die Reihenfolge ist hier entscheidend) Falls Defogger verwendet wurde: Erneut starten und auf Re-enable klicken. Falls Combofix verwendet wurde: Combofix deinstallieren
Alle Logs gepostet? Dann lade Dir bitte DelFix herunter.
Starte Deinen Rechner anschließend neu. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein, kannst Du diese bedenkenlos löschen. Wenn Du möchtest, kannst Du hier sagen, ob Du mit mir und meiner Hilfe zufrieden warst...und/oder das Forum mit einer kleinen Spende unterstützen. Absicherung: Beim Betriebsystem Windows die automatischen Updates aktivieren. Auch die sicherheitsrelevante Software sollte immer nur in der aktuellsten Version vorliegen: Browser Java Flash-Player PDF-Reader Sicherheitslücken in deren alten Versionen werden dazu ausgenutzt, um beim einfachen Besuch einer manipulierten Website per "Drive-by" Malware zu installieren. Ich empfehle z.B. die Verwendung von Mozilla Firefox statt des Internet Explorers. Zudem lassen sich mit dem Firefox auch PDF-Dokumente öffnen. Aktiviere eine Firewall. Die in Windows integrierte genügt im Normalfall völlig. Sofern du noch unentschieden bist, verwende ein einziges der folgenden Antivirusprogramme mit Echtzeitscanner und stets aktueller Signaturendatenbank: Zusätzlich kannst Du Deinen PC regelmäßig mit Malwarebytes Anti-Malware und ESET scannen. Optional: Adblock Plus Kann Banner, Pop-ups, Videowerbung, Tracking und Malware-Seiten blockieren. NoScript Verhindert das Ausführen von aktiven Inhalten (Java, JavaScript, Flash,...) für sämtliche Websites. Man kann aber nach dem Prinzip einer Whitelist festlegen, auf welchen Seiten Scripts erlaubt werden sollen. Malwarebytes Anti Exploit: Schützt die Anwendungen des Computers vor der Ausnutzung bekannter Schwachstellen. Lade Software von einem sauberen Portal wie . Wähle beim Installieren von Software immer die benutzerdefinierte Option und entferne den Haken bei allen optional angebotenen Toolbars oder sonstigen, fürs Programm, irrelevanten Ergänzungen. Um Adware wieder los zu werden, empfiehlt sich zunächst die Deinstallation sowie die anschließende Resteentfernung mit Adwcleaner . Abschließend noch ein paar grundsätzliche Bemerkungen:
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so dass ich dieses Thema aus meinen Abos löschen kann. |
11.12.2015, 20:53 | #28 |
| habe den watch4.de virusCode:
ATTFilter Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version:05-12-2015 durchgeführt von Senichiro (2015-12-11 20:42:49) Run:2 Gestartet von C:\Users\Senichiro\Downloads Geladene Profile: Senichiro (Verfügbare Profile: Senichiro & DefaultAppPool) Start-Modus: Normal ============================================== fixlist Inhalt: ***************** start DeleteKey: HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{9522B3FB-7A2B-4646-8AF6-36E7F593073C} DeleteKey: HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\ActiveX Compatibility\{9522B3FB-7A2B-4646-8AF6-36E7F593073C} Reboot: end ***************** HKLM\SOFTWARE\Microsoft\Internet Explorer\ActiveX Compatibility\{9522B3FB-7A2B-4646-8AF6-36E7F593073C} => Schlüssel erfolgreich entfernt HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\ActiveX Compatibility\{9522B3FB-7A2B-4646-8AF6-36E7F593073C} => Schlüssel erfolgreich entfernt Das System musste neu gestartet werden. ==== Ende von Fixlog 20:42:49 ==== Code:
ATTFilter # DelFix v1.011 - Datei am 11/12/2015 um 20:51:34 erstellt # Aktualisiert am 18/08/2015 von Xplode # Benutzer : Senichiro - SENICHIRO-PC # Betriebssystem : Windows 10 Pro (64 bits) ~ Aktiviere die Benutzerkontensteuerung ... OK ~ Entferne die Bereinigungsprogramme ... Gelöscht : C:\FRST Gelöscht : C:\AdwCleaner Gelöscht : C:\Users\Senichiro\Desktop\JRT.txt Gelöscht : C:\Users\Senichiro\Downloads\Addition.txt Gelöscht : C:\Users\Senichiro\Downloads\AdwCleaner_5.023 (1).exe Gelöscht : C:\Users\Senichiro\Downloads\AdwCleaner_5.023.exe Gelöscht : C:\Users\Senichiro\Downloads\esetsmartinstaller_deu (1).exe Gelöscht : C:\Users\Senichiro\Downloads\esetsmartinstaller_deu.exe Gelöscht : C:\Users\Senichiro\Downloads\Fixlog.txt Gelöscht : C:\Users\Senichiro\Downloads\FRST.txt Gelöscht : C:\Users\Senichiro\Downloads\FRST64 (1).exe Gelöscht : C:\Users\Senichiro\Downloads\FRST64 (2).exe Gelöscht : C:\Users\Senichiro\Downloads\FRST64.exe Gelöscht : C:\Users\Senichiro\Downloads\JRT (1).exe Gelöscht : C:\Users\Senichiro\Downloads\JRT.exe Gelöscht : C:\Users\Senichiro\Downloads\SecurityCheck.exe Gelöscht : HKLM\SOFTWARE\AdwCleaner ~ Erstelle ein Backup der Registrierungsdatenbank ... OK ~ Lösche die Wiederherstellungspunkte ... Gelöscht : RP #1 [Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 | 12/08/2015 19:57:30] Gelöscht : RP #2 [Microsoft Visual C++ 2005 Redistributable wird installiert | 12/09/2015 20:15:16] Gelöscht : RP #3 [Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 | 12/11/2015 11:26:38] Gelöscht : RP #4 [Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 | 12/11/2015 11:27:12] Ein neuer Wiederherstellungspunkt wurde erstellt ! ~ Stelle die Systemeinstellungen wieder her ... OK ########## - EOF - ########## |
11.12.2015, 21:00 | #29 |
/// TB-Ausbilder | habe den watch4.de virus Ich bin froh, dass wir helfen konnten In diesem Forum kannst du eine kurze Rückmeldung zur Bereinigung abgeben, sofern du das möchtest: Lob, Kritik und Wünsche Klicke dazu auf den Button "NEUES THEMA" und poste ein kleines Feedback. Vielen Dank! Dieses Thema scheint erledigt und wird aus meinen Abos gelöscht. Solltest Du das Thema erneut brauchen, schicke mir bitte eine PM. Jeder andere bitte hier klicken und einen eigenen Thread erstellen. |
27.01.2016, 11:30 | #30 |
| habe den watch4.de virus be komme wieder viren über skype ka an was es liegt Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 27.01.2016 Suchlaufzeit: 04:08 Protokolldatei: skype.txt Administrator: Ja Version: 2.2.0.1024 Malware-Datenbank: v2016.01.26.07 Rootkit-Datenbank: v2016.01.20.01 Lizenz: Kostenlose Version Malware-Schutz: Aktiviert Schutz vor bösartigen Websites: Aktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 10 CPU: x64 Dateisystem: NTFS Benutzer: Senichiro Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 502048 Abgelaufene Zeit: 53 Min., 34 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (keine bösartigen Elemente erkannt) Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 0 (keine bösartigen Elemente erkannt) Registrierungswerte: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Ordner: 0 (keine bösartigen Elemente erkannt) Dateien: 0 (keine bösartigen Elemente erkannt) Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Scan, 27.01.2016 00:17, SYSTEM, SENICHIRO-PC, Manual, Start: 26.01.2016 23:33, Dauer: 43 Min. 43 Sek., Bedrohungssuchlauf, Abgebrochen, 0 Malware-Erkennung, 0 Nicht-Malware-Erkennungen, Detection, 27.01.2016 01:53, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Domain, 206.54.181.6, clickadu.com, 55366, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 27.01.2016 01:53, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Domain, 206.54.181.6, clickadu.com, 55366, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 27.01.2016 01:53, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Domain, 206.54.181.13, clickadu.com, 55369, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 27.01.2016 01:53, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Domain, 206.54.181.6, clickadu.com, 55367, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 27.01.2016 01:53, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Domain, 206.54.181.15, clickadu.com, 55372, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 27.01.2016 01:53, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Domain, 206.54.181.6, clickadu.com, 55368, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 27.01.2016 01:53, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Domain, 206.54.181.13, clickadu.com, 55369, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 27.01.2016 01:53, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Domain, 206.54.181.14, clickadu.com, 55378, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 27.01.2016 01:53, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Domain, 206.54.181.13, clickadu.com, 55370, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 27.01.2016 01:53, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Domain, 206.54.181.13, clickadu.com, 55371, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 27.01.2016 01:53, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Domain, 206.54.181.15, clickadu.com, 55372, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 27.01.2016 01:53, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Domain, 206.54.181.15, clickadu.com, 55373, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 27.01.2016 01:53, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Domain, 206.54.181.15, clickadu.com, 55374, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 27.01.2016 01:53, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Domain, 206.54.181.14, clickadu.com, 55378, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 27.01.2016 01:53, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Domain, 206.54.181.14, clickadu.com, 55379, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 27.01.2016 01:53, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Domain, 206.54.181.14, clickadu.com, 55380, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Scan, 27.01.2016 05:02, SYSTEM, SENICHIRO-PC, Context, Start: 27.01.2016 04:08, Dauer: 53 Min. 34 Sek., Bedrohungssuchlauf, Abgeschlossen, 0 Malware-Erkennung, 0 Nicht-Malware-Erkennungen, Update, 27.01.2016 05:24, SYSTEM, SENICHIRO-PC, Scheduler, Domain Database, 2016.1.26.8, 2016.1.27.1, Protection, 27.01.2016 05:24, SYSTEM, SENICHIRO-PC, Protection, Refresh, Starting, Protection, 27.01.2016 05:24, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Stopping, Protection, 27.01.2016 05:24, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Stopped, Protection, 27.01.2016 05:24, SYSTEM, SENICHIRO-PC, Protection, Refresh, Success, Protection, 27.01.2016 05:24, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Starting, Protection, 27.01.2016 05:24, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Started, Update, 27.01.2016 05:47, SYSTEM, SENICHIRO-PC, Scheduler, Malware Database, 2016.1.26.7, 2016.1.27.1, Protection, 27.01.2016 05:47, SYSTEM, SENICHIRO-PC, Protection, Refresh, Starting, Protection, 27.01.2016 05:47, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Stopping, Protection, 27.01.2016 05:47, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Stopped, Protection, 27.01.2016 05:47, SYSTEM, SENICHIRO-PC, Protection, Refresh, Success, Protection, 27.01.2016 05:47, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Starting, Protection, 27.01.2016 05:47, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Started, Update, 27.01.2016 09:27, SYSTEM, SENICHIRO-PC, Scheduler, Malware Database, 2016.1.27.1, 2016.1.27.2, Protection, 27.01.2016 09:27, SYSTEM, SENICHIRO-PC, Protection, Refresh, Starting, Protection, 27.01.2016 09:27, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Stopping, Protection, 27.01.2016 09:27, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Stopped, Protection, 27.01.2016 09:27, SYSTEM, SENICHIRO-PC, Protection, Refresh, Success, Protection, 27.01.2016 09:27, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Starting, Protection, 27.01.2016 09:27, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, Started, Detection, 27.01.2016 11:23, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, IP, 197.221.224.43, 8253, Inbound, C:\Program Files (x86)\Skype\Phone\Skype.exe, Detection, 27.01.2016 11:23, SYSTEM, SENICHIRO-PC, Protection, Malicious Website Protection, IP, 197.221.224.43, 8253, Inbound, C:\Program Files (x86)\Skype\Phone\Skype.exe, (end) |
Themen zu habe den watch4.de virus |
nicht, seite, seiten, virus, warum, watch, watch4.de |