Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Windows 10: Skype Virus wurde von meinem Account verschickt

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 24.03.2016, 19:31   #1
Burning...
 
Windows 10: Skype Virus wurde von meinem Account verschickt - Standard

Windows 10: Skype Virus wurde von meinem Account verschickt



Guten Tag,
ich werde nun Stichpunkte angeben, um das Problem so genau wie möglich zu definieren:

-Heute um 11:30 habe ich an diversen Kontakten in Skype einen bit.ly link geschickt der wahrscheinlich ein Virus ist.

-Um 11:30 war mein Rechner nicht an, da ich um diese Uhrzeit auf der Arbeit bin

-Der Trick ist ich habe mich in Skype seit Monaten nicht eingeloggt, und hätte mir ein Kollege in Steam nicht gesagt, dass ich ihm ein Link geschickt hätte in Skype, hätte ich es wahrscheinlich nie herausgefunden.

-Ich habe Bereits einen Avira Scan durchgeführt, der jedoch zu keinen Ergebnissen kam und somit keine logs bestehen.

Da das hier mein erster Beitrag ist, hoffe ich das die Formatierung in Ordnung ist und hänge nun die FRST.txt und Additions.txt noch an.
MfG, Burning...
Teil 1 von FRST.txt
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01
durchgeführt von FUCK Y (Administrator) auf FUCKYOU (24-03-2016 19:09:56)
Gestartet von C:\Users\FUCK Y\Downloads
Geladene Profile: FUCK Y (Verfügbare Profile: FUCK Y)
Platform: Windows 10 Home Version 1511 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe
() C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
konnte nicht auf den Prozess zugreifen -> Avira.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
konnte nicht auf den Prozess zugreifen -> Avira.ServiceHost.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
konnte nicht auf den Prozess zugreifen -> Wow-64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Spotify Ltd) C:\Users\FUCK Y\AppData\Roaming\Spotify\Spotify.exe
(Spotify Ltd) C:\Users\FUCK Y\AppData\Roaming\Spotify\SpotifyCrashService.exe
(Spotify Ltd) C:\Users\FUCK Y\AppData\Roaming\Spotify\Spotify.exe
(Spotify Ltd) C:\Users\FUCK Y\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Spotify Ltd) C:\Users\FUCK Y\AppData\Roaming\Spotify\Spotify.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Blizzard Entertainment) D:\battle netz\Battle.net\Battle.net.6890\Battle.net.exe
(Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.4835\Agent.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Nota Inc.) C:\Program Files (x86)\Gyazo\GyStation.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10586.168_none_76587b40265ca57e\TiWorker.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13636824 2013-07-26] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2789248 2016-02-17] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2014-02-26] (Intel Corporation)
HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [14601160 2015-07-02] (Logitech Inc.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [594240 2016-01-13] (Razer Inc.)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [807392 2016-03-08] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [66320 2015-09-10] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1298456 2015-04-20] (CANON INC.)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [438888 2014-01-15] (CANON INC.)
HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [213536 2016-02-19] (Geek Software GmbH)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5565448 2015-11-12] (LogMeIn Inc.)
HKU\S-1-5-21-720079136-909011121-624151443-1002\...\Run: [GoogleChromeAutoLaunch_8A99E80C0B21D15FE2ACCF0F902F9E9B] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136 2016-03-08] (Google Inc.)
HKU\S-1-5-21-720079136-909011121-624151443-1002\...\Run: [puush] => C:\Program Files (x86)\puush\puush.exe [568904 2015-03-30] ()
HKU\S-1-5-21-720079136-909011121-624151443-1002\...\Run: [Dropbox Update] => C:\Users\FUCK Y\AppData\Local\Dropbox\Update\DropboxUpdate.exe [136048 2015-08-10] (Dropbox, Inc.)
HKU\S-1-5-21-720079136-909011121-624151443-1002\...\Run: [Spotify] => C:\Users\FUCK Y\AppData\Roaming\Spotify\Spotify.exe [6805616 2016-03-18] (Spotify Ltd)
HKU\S-1-5-21-720079136-909011121-624151443-1002\...\Run: [Discord] => C:\Users\FUCK Y\AppData\Local\Discord\app-0.0.286\Discord.exe [53420216 2016-03-21] (Hammer & Chisel, Inc.)
HKU\S-1-5-21-720079136-909011121-624151443-1002\...\Run: [Spotify Web Helper] => C:\Users\FUCK Y\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1524336 2016-03-18] (Spotify Ltd)
HKU\S-1-5-21-720079136-909011121-624151443-1002\...\Run: [EvolveClient] => C:\Program Files\Echobit\Evolve\EvolveClient.exe [3334528 2015-12-30] (Echobit LLC)
HKU\S-1-5-21-720079136-909011121-624151443-1002\...\Run: [Gyazo] => C:\Program Files (x86)\Gyazo\GyStation.exe [3586848 2016-02-17] (Nota Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
Startup: C:\Users\FUCK Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-08-10]
ShortcutTarget: Dropbox.lnk -> C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{dedab44d-544f-48f0-ac29-4029c7d6c270}: [DhcpNameServer] 192.168.2.1

Internet Explorer:
==================
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23] (CANON INC.)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23] (CANON INC.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll [2014-12-21] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-12-21] (Oracle Corporation)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23] (CANON INC.)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23] (CANON INC.)

FireFox:
========
FF ProfilePath: C:\Users\FUCK Y\AppData\Roaming\Mozilla\Firefox\Profiles\607Narxe.default
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll [2015-07-19] ()
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.)
FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-03-20] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-03-20] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll [2014-12-21] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll [2014-12-21] (Oracle Corporation)
FF Plugin-x32: @raidcall.en/RCplugin -> C:\Users\FUCK Y\AppData\Roaming\raidcall\plugins\nprcplugin.dll [2014-05-27] (Raidcall)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Extension: Avira Browser Safety - C:\Users\FUCK Y\AppData\Roaming\Mozilla\Firefox\Profiles\607Narxe.default\Extensions\abs@avira.com [2014-12-05] [ist nicht signiert]

Chrome: 
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.searchnu.com/410"
CHR Profile: C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Präsentationen) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-04]
CHR Extension: (Magic Actions for YouTube™) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif [2016-03-21]
CHR Extension: (Duolingo im Web) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiahmijlpehemcpleichkcokhegllfjl [2015-01-10]
CHR Extension: (BetterTTV) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2015-07-08]
CHR Extension: (Google Docs) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-04]
CHR Extension: (Google Drive) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (Dark Skin for Youtube™) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfeknfgchonpnofdjokchhdhdnddhglm [2016-03-15]
CHR Extension: (YouTube) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (Slinky Vornehm) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmanlajnpdncmhfkiccmbgeocgbncfln [2015-08-09]
CHR Extension: (Adblock Plus) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-03-08]
CHR Extension: (Google-Suche) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Search by Image (by Google)) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\dajedkncpodkggklbegccjpmnglmnflm [2014-12-05]
CHR Extension: (Proxy SwitchySharp) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpplabbmogkhghncfbfdeeokoefdjegm [2014-12-19]
CHR Extension: (imgur Extension by Metronomik) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehoopddfhgaehhmphfcooacjdpmbjlao [2015-01-17]
CHR Extension: (Google Tabellen) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-04]
CHR Extension: (Google Docs Offline) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
CHR Extension: (AdBlock) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-03-18]
CHR Extension: (Unlimited Free VPN - Hola) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2016-03-19]
CHR Extension: (ReChat for Twitch™) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\ipplilmaapjjklilmmaccfemdmhkoacd [2016-03-03]
CHR Extension: (Reddit Enhancement Suite) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbmfpngjjgdllneeigpgjifpgocmfgmb [2016-03-17]
CHR Extension: (imgur Uploader) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\lcpkicdemehhmkjolekhlglljnkggfcf [2014-12-05]
CHR Extension: (Agario Extended – Enhance Agar.io Gameplay) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\mflicjopopjcpojfoefhbpdncmjbcbin [2015-05-28]
CHR Extension: (Google Dictionary (by Google)) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgijmajocgfcbeboacabfgobmjgjcoja [2016-02-23]
CHR Extension: (Reddit Preload GIFs) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\nghfcbekdkjbeichjmohlojmpikchibd [2014-12-05]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-23]
CHR Extension: (Hola - Unlimited Proxy VPN) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\opalpjjboefohnelaemnhdhlceibbcgl [2016-03-19]
CHR Extension: (Google Mail) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-29]
CHR Extension: (Twitch Giveaways) - C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\poohjpljfecljomfhhimjhddddlidhdd [2016-02-16]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [955736 2016-03-08] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [466504 2016-03-08] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [466504 2016-03-08] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1424880 2016-03-08] (Avira Operations GmbH & Co. KG)
S2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [240872 2015-09-10] (Avira Operations GmbH & Co. KG)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1060352 2015-06-18] ()
S3 EvoSvc; C:\Program Files\Echobit\Evolve\EvoSvc.exe [1583488 2015-12-30] (Echobit LLC)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1164672 2016-02-17] (NVIDIA Corporation)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-02-26] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887232 2014-01-31] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2014-03-20] (Intel Corporation)
S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312 2015-09-25] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [154584 2014-03-20] (Intel Corporation)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2015-11-12] (LogMeIn, Inc.)
S3 npggsvc; C:\WINDOWS\SysWOW64\GameMon.des [3916368 2016-01-09] (INCA Internet Co., Ltd.)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1880960 2016-02-17] (NVIDIA Corporation)
R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [6474112 2016-02-17] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2609024 2016-02-17] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2078216 2015-10-08] (Electronic Arts)
S2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [66872 2016-02-08] ()
R2 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [57856 2016-01-11] (Razer Inc.) [Datei ist nicht signiert]
R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [188072 2015-11-05] ()
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488 2013-06-18] (Realtek Semiconductor)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [128664 2016-03-08] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [137952 2016-03-08] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2015-12-01] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [68936 2016-03-08] (Avira Operations GmbH & Co. KG)
R3 Hamachi; C:\Windows\System32\drivers\Hamdrv.sys [45680 2015-08-03] (LogMeIn Inc.)
R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [129312 2015-12-10] (Intel Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28032 2016-02-17] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation)
R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [37184 2015-09-22] (Razer, Inc.)
R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [130880 2015-12-14] (Razer, Inc.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-03-24 19:09 - 2016-03-24 19:11 - 00023977 _____ C:\Users\FUCK Y\Downloads\FRST.txt
2016-03-24 19:09 - 2016-03-24 19:09 - 02374144 _____ (Farbar) C:\Users\FUCK Y\Downloads\FRST64.exe
2016-03-24 19:09 - 2016-03-24 19:09 - 00000000 ____D C:\FRST
2016-03-24 15:18 - 2016-03-24 15:18 - 09180744 _____ (Nota Inc. ) C:\Users\FUCK Y\Downloads\Gyazo-3.2.1.exe
2016-03-24 15:18 - 2016-03-24 15:18 - 00003516 _____ C:\WINDOWS\System32\Tasks\GyazoUpdateTaskMachineDaily
2016-03-24 15:18 - 2016-03-24 15:18 - 00003380 _____ C:\WINDOWS\System32\Tasks\GyazoUpdateTaskMachine
2016-03-24 15:18 - 2016-03-24 15:18 - 00001047 _____ C:\Users\Public\Desktop\Gyazo.lnk
2016-03-24 15:18 - 2016-03-24 15:18 - 00001047 _____ C:\Users\Public\Desktop\Gyazo GIF.lnk
2016-03-24 15:18 - 2016-03-24 15:18 - 00000000 ____D C:\Users\FUCK Y\AppData\Roaming\Gyazo
2016-03-24 15:18 - 2016-03-24 15:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gyazo
2016-03-24 15:18 - 2016-03-24 15:18 - 00000000 ____D C:\Program Files (x86)\Gyazo
2016-03-23 23:40 - 2016-03-23 23:40 - 00000000 ____D C:\Users\FUCK Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-03-22 22:02 - 2016-03-22 22:02 - 00000000 ____D C:\Users\FUCK Y\Desktop\Lebenslauf und Zeugnis
2016-03-22 02:53 - 2016-03-22 02:53 - 01371668 _____ (Igor Pavlov) C:\Users\FUCK Y\Downloads\7z1514-x64.exe
2016-03-22 02:53 - 2016-03-22 02:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2016-03-22 02:53 - 2016-03-22 02:53 - 00000000 ____D C:\Program Files\7-Zip
2016-03-22 02:52 - 2016-03-22 02:52 - 12794220 _____ C:\Users\FUCK Y\Desktop\Warkeys-1.21.0.0b.rar
2016-03-21 22:22 - 2016-03-21 22:22 - 00000222 _____ C:\Users\FUCK Y\Desktop\Tom Clancy's The Division.url
2016-03-20 21:28 - 2016-03-20 21:28 - 00000711 _____ C:\Users\Public\Desktop\Grand Theft Auto V.lnk
2016-03-20 21:28 - 2016-03-20 21:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2016-03-19 13:39 - 2016-03-19 13:39 - 00022202 _____ C:\Users\FUCK Y\Downloads\left4gore-2.3-windows.zip
2016-03-19 13:39 - 2016-03-19 13:39 - 00000000 ____D C:\Users\FUCK Y\Desktop\left4gore-2.3-windows
2016-03-18 23:19 - 2016-03-18 23:19 - 00000219 _____ C:\Users\FUCK Y\Desktop\Left 4 Dead 2.url
2016-03-18 13:57 - 2014-02-04 15:29 - 00316928 _____ (CANON INC.) C:\WINDOWS\system32\CNC_C9C.dll
2016-03-18 13:57 - 2014-02-04 15:29 - 00105984 _____ (CANON INC.) C:\WINDOWS\system32\CNC_C9I.dll
2016-03-18 13:57 - 2014-01-21 13:16 - 00369664 _____ (CANON INC.) C:\WINDOWS\system32\CNC_C9L.dll
2016-03-18 13:57 - 2013-12-02 12:58 - 00096000 _____ C:\WINDOWS\system32\CNC177ED.TBL
2016-03-18 13:57 - 2008-08-25 18:02 - 00017920 _____ (CANON INC.) C:\WINDOWS\system32\CNHMCA6.dll
2016-03-14 01:18 - 2016-03-14 01:18 - 00288948 _____ C:\Users\FUCK Y\Desktop\CustomKeys.txt
2016-03-14 01:13 - 2016-03-14 01:13 - 00000805 _____ C:\Users\Public\Desktop\Warcraft III - The Frozen Throne.lnk
2016-03-14 01:01 - 2016-03-14 01:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Warcraft III
2016-03-14 01:01 - 2016-03-14 01:01 - 02686980 _____ (Blizzard Entertainment) C:\Users\FUCK Y\Downloads\Downloader_Warcraft3_The_Frozen_Throne_enGB.exe
2016-03-14 01:01 - 2016-03-14 01:01 - 00000762 _____ C:\Users\Public\Desktop\Warcraft III.lnk
2016-03-14 00:49 - 2016-03-14 00:49 - 02693513 _____ (Blizzard Entertainment) C:\Users\FUCK Y\Downloads\Downloader_Warcraft3_Reign_of_Chaos_enGB.exe
2016-03-10 22:32 - 2016-03-17 19:00 - 00000000 ____D C:\Users\FUCK Y\BrawlhallaReplays
2016-03-10 22:25 - 2016-03-10 22:25 - 00000000 ____D C:\Users\FUCK Y\AppData\Roaming\BrawlhallaAir
2016-03-10 22:23 - 2016-03-10 22:23 - 00000222 _____ C:\Users\FUCK Y\Desktop\Brawlhalla.url
2016-03-10 12:16 - 2016-03-10 12:16 - 00008427 _____ C:\Users\FUCK Y\Downloads\vorlage.odt
2016-03-09 16:00 - 2016-03-09 16:00 - 00126588 _____ C:\Users\FUCK Y\Downloads\lubrizol.pdf
2016-03-09 11:41 - 2016-02-24 10:52 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-03-09 11:41 - 2016-02-24 10:51 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 11:41 - 2016-02-24 10:48 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-03-09 11:41 - 2016-02-24 10:34 - 01613664 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-03-09 11:41 - 2016-02-24 10:28 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-03-09 11:41 - 2016-02-24 10:15 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-03-09 11:41 - 2016-02-24 09:51 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-03-09 11:41 - 2016-02-24 09:50 - 00808800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-03-09 11:41 - 2016-02-24 09:46 - 06607080 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-03-09 11:41 - 2016-02-24 09:19 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2016-03-09 11:41 - 2016-02-24 09:11 - 01997152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-03-09 11:41 - 2016-02-24 09:11 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-03-09 11:41 - 2016-02-24 09:11 - 00652392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-03-09 11:41 - 2016-02-24 09:10 - 00576864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-03-09 11:41 - 2016-02-24 09:06 - 05242496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-03-09 11:41 - 2016-02-24 08:35 - 00523752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-03-09 11:41 - 2016-02-24 07:44 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 11:41 - 2016-02-24 07:44 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 11:41 - 2016-02-24 07:40 - 01224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2016-03-09 11:41 - 2016-02-24 07:39 - 01390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-03-09 11:41 - 2016-02-24 07:34 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-03-09 11:41 - 2016-02-24 07:11 - 03593216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-03-09 11:41 - 2016-02-24 07:09 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2016-03-09 11:41 - 2016-02-24 07:09 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-03-09 11:41 - 2016-02-24 07:09 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2016-03-09 11:41 - 2016-02-24 07:07 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2016-03-09 11:41 - 2016-02-24 07:04 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-03-09 11:41 - 2016-02-24 07:03 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2016-03-09 11:41 - 2016-02-24 07:01 - 01831936 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 11:41 - 2016-02-24 07:00 - 02273792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-03-09 11:41 - 2016-02-24 07:00 - 01098752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-03-09 11:41 - 2016-02-24 06:55 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 11:41 - 2016-02-24 06:34 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-03-09 11:41 - 2016-02-24 06:20 - 22376960 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-03-09 11:41 - 2016-02-24 06:18 - 18677760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-03-09 11:41 - 2016-02-24 06:12 - 19339776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-03-09 11:41 - 2016-02-24 06:12 - 05321728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-03-09 11:41 - 2016-02-24 06:10 - 24600576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-03-09 11:41 - 2016-02-24 06:09 - 06972416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 11:41 - 2016-02-24 06:05 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-03-09 11:41 - 2016-02-24 06:03 - 14252544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-03-09 11:41 - 2016-02-24 05:59 - 05661696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-03-09 11:41 - 2016-02-24 05:55 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-03-09 11:40 - 2016-03-01 06:31 - 00848168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-03-09 11:40 - 2016-03-01 06:22 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-03-09 11:40 - 2016-02-24 10:47 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-03-09 11:40 - 2016-02-24 10:40 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-03-09 11:40 - 2016-02-24 09:58 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2016-03-09 11:40 - 2016-02-24 09:54 - 00127840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2016-03-09 11:40 - 2016-02-24 09:43 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 11:40 - 2016-02-24 09:39 - 00358752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-03-09 11:40 - 2016-02-24 09:39 - 00141560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
2016-03-09 11:40 - 2016-02-24 09:14 - 00216416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 11:40 - 2016-02-24 09:11 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-03-09 11:40 - 2016-02-24 09:11 - 00394080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-03-09 11:40 - 2016-02-24 09:11 - 00258280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2016-03-09 11:40 - 2016-02-24 09:10 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 11:40 - 2016-02-24 09:09 - 00640472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-03-09 11:40 - 2016-02-24 09:09 - 00147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2016-03-09 11:40 - 2016-02-24 08:59 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-03-09 11:40 - 2016-02-24 08:39 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 11:40 - 2016-02-24 08:39 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 11:40 - 2016-02-24 08:38 - 00187744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-03-09 11:40 - 2016-02-24 08:38 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 11:40 - 2016-02-24 08:37 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 11:40 - 2016-02-24 08:36 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 11:40 - 2016-02-24 08:35 - 00540752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-03-09 11:40 - 2016-02-24 08:35 - 00220064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
2016-03-09 11:40 - 2016-02-24 08:35 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-03-09 11:40 - 2016-02-24 08:33 - 00538736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2016-03-09 11:40 - 2016-02-24 08:33 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2016-03-09 11:40 - 2016-02-24 08:31 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-03-09 11:40 - 2016-02-24 08:30 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2016-03-09 11:40 - 2016-02-24 08:28 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 11:40 - 2016-02-24 08:23 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2016-03-09 11:40 - 2016-02-24 08:23 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 11:40 - 2016-02-24 08:22 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 11:40 - 2016-02-24 08:20 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll
2016-03-09 11:40 - 2016-02-24 08:20 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-03-09 11:40 - 2016-02-24 08:20 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 11:40 - 2016-02-24 08:19 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2016-03-09 11:40 - 2016-02-24 08:19 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll
2016-03-09 11:40 - 2016-02-24 08:15 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-03-09 11:40 - 2016-02-24 08:14 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll
2016-03-09 11:40 - 2016-02-24 08:13 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 11:40 - 2016-02-24 08:12 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cemapi.dll
2016-03-09 11:40 - 2016-02-24 08:12 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 11:40 - 2016-02-24 08:10 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
2016-03-09 11:40 - 2016-02-24 08:09 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 11:40 - 2016-02-24 08:09 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
2016-03-09 11:40 - 2016-02-24 08:07 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 11:40 - 2016-02-24 08:05 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-03-09 11:40 - 2016-02-24 08:03 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-03-09 11:40 - 2016-02-24 08:02 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 11:40 - 2016-02-24 08:01 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 11:40 - 2016-02-24 08:01 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 11:40 - 2016-02-24 08:01 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2016-03-09 11:40 - 2016-02-24 08:00 - 00214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 11:40 - 2016-02-24 07:59 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 11:40 - 2016-02-24 07:59 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 11:40 - 2016-02-24 07:59 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-03-09 11:40 - 2016-02-24 07:58 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
2016-03-09 11:40 - 2016-02-24 07:55 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-03-09 11:40 - 2016-02-24 07:55 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 11:40 - 2016-02-24 07:55 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll
2016-03-09 11:40 - 2016-02-24 07:54 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 11:40 - 2016-02-24 07:54 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2016-03-09 11:40 - 2016-02-24 07:54 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 11:40 - 2016-02-24 07:54 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll
2016-03-09 11:40 - 2016-02-24 07:53 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2016-03-09 11:40 - 2016-02-24 07:53 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll
2016-03-09 11:40 - 2016-02-24 07:52 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2016-03-09 11:40 - 2016-02-24 07:52 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PimIndexMaintenanceClient.dll
2016-03-09 11:40 - 2016-02-24 07:51 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-03-09 11:40 - 2016-02-24 07:49 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-03-09 11:40 - 2016-02-24 07:47 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2016-03-09 11:40 - 2016-02-24 07:46 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2016-03-09 11:40 - 2016-02-24 07:44 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-03-09 11:40 - 2016-02-24 07:44 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll
2016-03-09 11:40 - 2016-02-24 07:43 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-03-09 11:40 - 2016-02-24 07:43 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 11:40 - 2016-02-24 07:41 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 11:40 - 2016-02-24 07:41 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 11:40 - 2016-02-24 07:40 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2016-03-09 11:40 - 2016-02-24 07:40 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll
2016-03-09 11:40 - 2016-02-24 07:39 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2016-03-09 11:40 - 2016-02-24 07:38 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll
2016-03-09 11:40 - 2016-02-24 07:36 - 01847808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 11:40 - 2016-02-24 07:34 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-03-09 11:40 - 2016-02-24 07:32 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll
2016-03-09 11:40 - 2016-02-24 07:32 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2016-03-09 11:40 - 2016-02-24 07:31 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cemapi.dll
2016-03-09 11:40 - 2016-02-24 07:31 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll
2016-03-09 11:40 - 2016-02-24 07:28 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 11:40 - 2016-02-24 07:28 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2016-03-09 11:40 - 2016-02-24 07:28 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll
2016-03-09 11:40 - 2016-02-24 07:25 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 11:40 - 2016-02-24 07:23 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll
2016-03-09 11:40 - 2016-02-24 07:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2016-03-09 11:40 - 2016-02-24 07:21 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2016-03-09 11:40 - 2016-02-24 07:21 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2016-03-09 11:40 - 2016-02-24 07:18 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2016-03-09 11:40 - 2016-02-24 07:18 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2016-03-09 11:40 - 2016-02-24 07:18 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
2016-03-09 11:40 - 2016-02-24 07:17 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2016-03-09 11:40 - 2016-02-24 07:16 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2016-03-09 11:40 - 2016-02-24 07:13 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2016-03-09 11:40 - 2016-02-24 07:09 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2016-03-09 11:40 - 2016-02-24 07:07 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2016-03-09 11:40 - 2016-02-24 07:07 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-03-09 11:40 - 2016-02-24 06:57 - 02158592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 11:40 - 2016-02-24 06:43 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2016-03-09 11:40 - 2016-02-24 06:22 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll
2016-03-08 12:35 - 2016-03-08 12:35 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-03-08 10:35 - 2016-02-24 00:57 - 42983480 _____ C:\WINDOWS\system32\nvcompiler.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 37616184 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 31120952 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 24944064 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 21201784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 20742072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 17631304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 17224472 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 17175056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 17117128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 02541504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 02187712 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00950328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00880576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00786688 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00784824 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00747064 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00689600 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00632336 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00630776 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00601936 _____ C:\WINDOWS\system32\nvmcumd.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00541184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00445912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00425016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00383424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00379448 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00378968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00346560 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00316960 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00175552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00153208 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00151368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll
2016-03-08 10:35 - 2016-02-24 00:57 - 00128512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll
2016-03-07 14:06 - 2016-02-23 11:32 - 08705672 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-07 14:06 - 2016-02-23 11:32 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-03-07 14:06 - 2016-02-23 11:21 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-03-07 14:06 - 2016-02-23 10:38 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-07 14:06 - 2016-02-23 10:27 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-03-07 14:06 - 2016-02-23 08:17 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-07 14:06 - 2016-02-23 07:52 - 11545600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-03-07 14:06 - 2016-02-23 07:50 - 09919488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-03-07 14:06 - 2016-02-23 07:39 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-03-07 14:06 - 2016-02-23 07:36 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-03-07 14:06 - 2016-02-09 04:04 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-03-07 14:06 - 2016-01-29 07:57 - 04502352 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-03-07 14:06 - 2016-01-29 07:33 - 04064320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-03-07 14:06 - 2016-01-27 06:57 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-03-07 14:06 - 2016-01-27 06:46 - 02606824 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-03-07 14:06 - 2016-01-16 07:21 - 01750440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2016-03-07 14:06 - 2016-01-16 06:45 - 16986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-03-07 14:06 - 2016-01-16 06:38 - 07979008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-03-07 14:06 - 2016-01-16 06:35 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-03-07 14:06 - 2016-01-16 06:24 - 02057216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-03-07 14:06 - 2016-01-16 06:21 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-03-07 14:06 - 2016-01-16 06:20 - 07199232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-03-07 14:06 - 2016-01-16 06:20 - 02597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-03-07 14:06 - 2016-01-16 06:17 - 05503488 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-03-07 14:06 - 2016-01-16 06:16 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-03-07 14:06 - 2016-01-16 06:15 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-03-07 14:06 - 2016-01-05 03:45 - 02587696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-03-07 14:06 - 2016-01-05 03:42 - 02026736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2016-03-07 14:06 - 2016-01-05 03:37 - 01299504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-03-07 14:06 - 2015-12-07 05:57 - 00973664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-03-07 14:06 - 2015-12-07 05:55 - 01281376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-03-07 14:05 - 2016-02-23 12:29 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-03-07 14:05 - 2016-02-23 12:29 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-03-07 14:05 - 2016-02-23 12:27 - 02654872 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-07 14:05 - 2016-02-23 12:27 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-03-07 14:05 - 2016-02-23 12:27 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-03-07 14:05 - 2016-02-23 12:25 - 02152288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-03-07 14:05 - 2016-02-23 12:25 - 01818696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-03-07 14:05 - 2016-02-23 12:25 - 00563552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2016-03-07 14:05 - 2016-02-23 12:15 - 00779384 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2016-03-07 14:05 - 2016-02-23 12:08 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-03-07 14:05 - 2016-02-23 11:34 - 01859960 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-03-07 14:05 - 2016-02-23 11:34 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-03-07 14:05 - 2016-02-23 11:33 - 00696160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-07 14:05 - 2016-02-23 11:33 - 00389992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-03-07 14:05 - 2016-02-23 11:32 - 01152328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-07 14:05 - 2016-02-23 11:32 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-07 14:05 - 2016-02-23 11:32 - 00498448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-07 14:05 - 2016-02-23 11:32 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-03-07 14:05 - 2016-02-23 11:31 - 01017032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-07 14:05 - 2016-02-23 11:31 - 00819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-07 14:05 - 2016-02-23 11:31 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-03-07 14:05 - 2016-02-23 11:31 - 00476728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2016-03-07 14:05 - 2016-02-23 11:31 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-07 14:05 - 2016-02-23 11:25 - 03671888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-03-07 14:05 - 2016-02-23 11:22 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2016-03-07 14:05 - 2016-02-23 11:17 - 00146272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2016-03-07 14:05 - 2016-02-23 10:45 - 02773096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-03-07 14:05 - 2016-02-23 10:40 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-03-07 14:05 - 2016-02-23 10:39 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-03-07 14:05 - 2016-02-23 10:38 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-03-07 14:05 - 2016-02-23 10:38 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2016-03-07 14:05 - 2016-02-23 10:38 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2016-03-07 14:05 - 2016-02-23 10:38 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-03-07 14:05 - 2016-02-23 10:38 - 00450912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-03-07 14:05 - 2016-02-23 10:38 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2016-03-07 14:05 - 2016-02-23 10:37 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2016-03-07 14:05 - 2016-02-23 10:32 - 00791744 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-03-07 14:05 - 2016-02-23 10:30 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-03-07 14:05 - 2016-02-23 10:27 - 00376536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-07 14:05 - 2016-02-23 10:25 - 00534368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-03-07 14:05 - 2016-02-23 10:20 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll
2016-03-07 14:05 - 2016-02-23 10:20 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-03-07 14:05 - 2016-02-23 10:19 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-03-07 14:05 - 2016-02-23 10:17 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-03-07 14:05 - 2016-02-23 10:12 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2016-03-07 14:05 - 2016-02-23 10:10 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-07 14:05 - 2016-02-23 10:07 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-07 14:05 - 2016-02-23 10:07 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2016-03-07 14:05 - 2016-02-23 10:06 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll
2016-03-07 14:05 - 2016-02-23 10:01 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
2016-03-07 14:05 - 2016-02-23 10:00 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-07 14:05 - 2016-02-23 10:00 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2016-03-07 14:05 - 2016-02-23 09:58 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-03-07 14:05 - 2016-02-23 09:58 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-03-07 14:05 - 2016-02-23 09:58 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll
2016-03-07 14:05 - 2016-02-23 09:57 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-03-07 14:05 - 2016-02-23 09:56 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-03-07 14:05 - 2016-02-23 09:55 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2016-03-07 14:05 - 2016-02-23 09:53 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2016-03-07 14:05 - 2016-02-23 09:53 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll
2016-03-07 14:05 - 2016-02-23 09:52 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-07 14:05 - 2016-02-23 09:50 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-03-07 14:05 - 2016-02-23 09:48 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-03-07 14:05 - 2016-02-23 09:48 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-07 14:05 - 2016-02-23 09:40 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2016-03-07 14:05 - 2016-02-23 09:39 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2016-03-07 14:05 - 2016-02-23 09:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-07 14:05 - 2016-02-23 09:38 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2016-03-07 14:05 - 2016-02-23 09:37 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-03-07 14:05 - 2016-02-23 09:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-03-07 14:05 - 2016-02-23 09:37 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-07 14:05 - 2016-02-23 09:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-07 14:05 - 2016-02-23 09:34 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-07 14:05 - 2016-02-23 09:34 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-07 14:05 - 2016-02-23 09:33 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-03-07 14:05 - 2016-02-23 09:32 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-03-07 14:05 - 2016-02-23 09:31 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2016-03-07 14:05 - 2016-02-23 09:29 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-07 14:05 - 2016-02-23 09:28 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-07 14:05 - 2016-02-23 09:27 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2016-03-07 14:05 - 2016-02-23 09:26 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-03-07 14:05 - 2016-02-23 09:23 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2016-03-07 14:05 - 2016-02-23 09:22 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-07 14:05 - 2016-02-23 09:20 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2016-03-07 14:05 - 2016-02-23 09:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-03-07 14:05 - 2016-02-23 09:20 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-07 14:05 - 2016-02-23 09:20 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-07 14:05 - 2016-02-23 09:19 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-03-07 14:05 - 2016-02-23 09:19 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-03-07 14:05 - 2016-02-23 09:18 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-07 14:05 - 2016-02-23 09:14 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-07 14:05 - 2016-02-23 09:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-03-07 14:05 - 2016-02-23 09:12 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-07 14:05 - 2016-02-23 09:11 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-03-07 14:05 - 2016-02-23 09:10 - 00997376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-03-07 14:05 - 2016-02-23 09:10 - 00474624 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-03-07 14:05 - 2016-02-23 09:09 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-03-07 14:05 - 2016-02-23 09:09 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-03-07 14:05 - 2016-02-23 09:09 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-03-07 14:05 - 2016-02-23 09:06 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-03-07 14:05 - 2016-02-23 09:06 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-03-07 14:05 - 2016-02-23 09:06 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-03-07 14:05 - 2016-02-23 09:05 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-03-07 14:05 - 2016-02-23 09:04 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-07 14:05 - 2016-02-23 09:04 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-03-07 14:05 - 2016-02-23 09:04 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-03-07 14:05 - 2016-02-23 09:02 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-07 14:05 - 2016-02-23 09:02 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-03-07 14:05 - 2016-02-23 09:02 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-03-07 14:05 - 2016-02-23 09:00 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-03-07 14:05 - 2016-02-23 08:58 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-03-07 14:05 - 2016-02-23 08:58 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-07 14:05 - 2016-02-23 08:58 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-07 14:05 - 2016-02-23 08:58 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-07 14:05 - 2016-02-23 08:57 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TimeBrokerClient.dll
2016-03-07 14:05 - 2016-02-23 08:52 - 00456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2016-03-07 14:05 - 2016-02-23 08:50 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2016-03-07 14:05 - 2016-02-23 08:49 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-03-07 14:05 - 2016-02-23 08:48 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2016-03-07 14:05 - 2016-02-23 08:47 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2016-03-07 14:05 - 2016-02-23 08:38 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2016-03-07 14:05 - 2016-02-23 08:37 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-03-07 14:05 - 2016-02-23 08:37 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-03-07 14:05 - 2016-02-23 08:36 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2016-03-07 14:05 - 2016-02-23 08:36 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2016-03-07 14:05 - 2016-02-23 08:36 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-07 14:05 - 2016-02-23 08:35 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2016-03-07 14:05 - 2016-02-23 08:31 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2016-03-07 14:05 - 2016-02-23 08:30 - 01731584 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-03-07 14:05 - 2016-02-23 08:30 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-03-07 14:05 - 2016-02-23 08:29 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-03-07 14:05 - 2016-02-23 08:28 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-03-07 14:05 - 2016-02-23 08:28 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-03-07 14:05 - 2016-02-23 08:24 - 04827136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-07 14:05 - 2016-02-23 08:24 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-03-07 14:05 - 2016-02-23 08:24 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-03-07 14:05 - 2016-02-23 08:24 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-03-07 14:05 - 2016-02-23 08:22 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-03-07 14:05 - 2016-02-23 08:21 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-03-07 14:05 - 2016-02-23 08:21 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-03-07 14:05 - 2016-02-23 08:20 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-03-07 14:05 - 2016-02-23 08:14 - 00990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-07 14:05 - 2016-02-23 08:11 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-07 14:05 - 2016-02-23 08:05 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-03-07 14:05 - 2016-02-23 08:01 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-03-07 14:05 - 2016-02-23 07:59 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-03-07 14:05 - 2016-02-23 07:58 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-03-07 14:05 - 2016-02-23 07:56 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-03-07 14:05 - 2016-02-23 07:55 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-03-07 14:05 - 2016-02-23 07:55 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-03-07 14:05 - 2016-02-23 07:53 - 01799168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-03-07 14:05 - 2016-02-23 07:51 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-03-07 14:05 - 2016-02-23 07:42 - 03425792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-03-07 14:05 - 2016-02-23 07:41 - 02912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-03-07 14:05 - 2016-02-23 07:39 - 02581504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-07 14:05 - 2016-02-23 07:36 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-03-07 14:05 - 2016-02-23 07:35 - 07533568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-03-07 14:05 - 2016-02-23 07:33 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-03-07 14:05 - 2016-02-23 07:32 - 02793472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-03-07 14:05 - 2016-02-23 07:30 - 02061312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-03-07 14:05 - 2016-02-23 07:28 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-03-07 14:05 - 2016-02-09 05:28 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-03-07 14:05 - 2016-02-09 05:13 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-03-07 14:05 - 2016-02-09 04:24 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-03-07 14:05 - 2016-02-09 04:18 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2016-03-07 14:05 - 2016-02-09 04:18 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2016-03-07 14:05 - 2016-02-09 04:07 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-03-07 14:05 - 2016-02-09 04:07 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-07 14:05 - 2016-01-27 06:59 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-03-07 14:05 - 2016-01-27 06:57 - 00820704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-03-07 14:05 - 2016-01-27 06:55 - 00081112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2016-03-07 14:05 - 2016-01-27 06:46 - 01270072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-03-07 14:05 - 2016-01-27 06:44 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-03-07 14:05 - 2016-01-27 06:44 - 00085320 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2016-03-07 14:05 - 2016-01-27 06:21 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-03-07 14:05 - 2016-01-27 06:15 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ztrace_maps.dll
2016-03-07 14:05 - 2016-01-27 06:11 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-03-07 14:05 - 2016-01-27 06:10 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2016-03-07 14:05 - 2016-01-27 06:08 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-03-07 14:05 - 2016-01-27 06:08 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ztrace_maps.dll
2016-03-07 14:05 - 2016-01-27 06:07 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassam.dll
2016-03-07 14:05 - 2016-01-27 06:04 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-03-07 14:05 - 2016-01-27 06:02 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2016-03-07 14:05 - 2016-01-27 06:01 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-03-07 14:05 - 2016-01-27 05:59 - 00258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassam.dll
2016-03-07 14:05 - 2016-01-27 05:52 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-03-07 14:05 - 2016-01-27 05:50 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-03-07 14:05 - 2016-01-27 05:44 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgbkend.dll
2016-03-07 14:05 - 2016-01-27 05:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-03-07 14:05 - 2016-01-27 05:32 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-03-07 14:05 - 2016-01-27 05:31 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll
2016-03-07 14:05 - 2016-01-16 07:37 - 00202472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2016-03-07 14:05 - 2016-01-16 07:24 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2016-03-07 14:05 - 2016-01-16 07:23 - 00785088 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2016-03-07 14:05 - 2016-01-16 07:20 - 00652312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2016-03-07 14:05 - 2016-01-16 07:20 - 00431240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2016-03-07 14:05 - 2016-01-16 07:20 - 00366224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2016-03-07 14:05 - 2016-01-16 07:19 - 00405568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2016-03-07 14:05 - 2016-01-16 07:12 - 01415200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-03-07 14:05 - 2016-01-16 07:09 - 01089880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-03-07 14:05 - 2016-01-16 07:08 - 01174008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-03-07 14:05 - 2016-01-16 07:08 - 00440152 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2016-03-07 14:05 - 2016-01-16 06:46 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-03-07 14:05 - 2016-01-16 06:44 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-03-07 14:05 - 2016-01-16 06:44 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasadhlp.dll
2016-03-07 14:05 - 2016-01-16 06:44 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastlsext.dll
2016-03-07 14:05 - 2016-01-16 06:43 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttpcom.dll
2016-03-07 14:05 - 2016-01-16 06:42 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-03-07 14:05 - 2016-01-16 06:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscoreext.dll
2016-03-07 14:05 - 2016-01-16 06:41 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2016-03-07 14:05 - 2016-01-16 06:40 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll
2016-03-07 14:05 - 2016-01-16 06:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe
2016-03-07 14:05 - 2016-01-16 06:40 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasautou.exe
2016-03-07 14:05 - 2016-01-16 06:39 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\FilterDS.dll
2016-03-07 14:05 - 2016-01-16 06:38 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-03-07 14:05 - 2016-01-16 06:38 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimCfg.dll
2016-03-07 14:05 - 2016-01-16 06:38 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbio.dll
2016-03-07 14:05 - 2016-01-16 06:37 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-03-07 14:05 - 2016-01-16 06:36 - 00475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDDS.dll
2016-03-07 14:05 - 2016-01-16 06:36 - 00221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-03-07 14:05 - 2016-01-16 06:36 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimAuth.dll
2016-03-07 14:05 - 2016-01-16 06:36 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastlsext.dll
2016-03-07 14:05 - 2016-01-16 06:35 - 00383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-03-07 14:05 - 2016-01-16 06:35 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasadhlp.dll
2016-03-07 14:05 - 2016-01-16 06:34 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2016-03-07 14:05 - 2016-01-16 06:34 - 00477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2016-03-07 14:05 - 2016-01-16 06:34 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttpcom.dll
2016-03-07 14:05 - 2016-01-16 06:33 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2016-03-07 14:05 - 2016-01-16 06:33 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-03-07 14:05 - 2016-01-16 06:33 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-03-07 14:05 - 2016-01-16 06:32 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2016-03-07 14:05 - 2016-01-16 06:32 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe
2016-03-07 14:05 - 2016-01-16 06:31 - 00851456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-03-07 14:05 - 2016-01-16 06:31 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-03-07 14:05 - 2016-01-16 06:31 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-03-07 14:05 - 2016-01-16 06:31 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2016-03-07 14:05 - 2016-01-16 06:31 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasautou.exe
2016-03-07 14:05 - 2016-01-16 06:30 - 02127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-03-07 14:05 - 2016-01-16 06:30 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-03-07 14:05 - 2016-01-16 06:30 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimCfg.dll
2016-03-07 14:05 - 2016-01-16 06:30 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbio.dll
2016-03-07 14:05 - 2016-01-16 06:29 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2016-03-07 14:05 - 2016-01-16 06:28 - 00884736 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll
2016-03-07 14:05 - 2016-01-16 06:28 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimAuth.dll
2016-03-07 14:05 - 2016-01-16 06:27 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-03-07 14:05 - 2016-01-16 06:26 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2016-03-07 14:05 - 2016-01-16 06:26 - 00260608 _____ C:\WINDOWS\system32\MTFServer.dll
2016-03-07 14:05 - 2016-01-16 06:25 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2016-03-07 14:05 - 2016-01-16 06:25 - 00235008 _____ C:\WINDOWS\system32\MTF.dll
2016-03-07 14:05 - 2016-01-16 06:24 - 00613888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2016-03-07 14:05 - 2016-01-16 06:24 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-03-07 14:05 - 2016-01-16 06:24 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2016-03-07 14:05 - 2016-01-16 06:23 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-03-07 14:05 - 2016-01-16 06:23 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-03-07 14:05 - 2016-01-16 06:20 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll
2016-03-07 14:05 - 2016-01-16 06:19 - 00733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-03-07 14:05 - 2016-01-16 06:19 - 00162816 _____ C:\WINDOWS\SysWOW64\MTF.dll
2016-03-07 14:05 - 2016-01-16 06:18 - 01674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2016-03-07 14:05 - 2016-01-16 06:16 - 01542656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll
2016-03-07 14:05 - 2016-01-16 06:11 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2016-03-07 14:05 - 2016-01-05 03:50 - 00671472 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2016-03-07 14:05 - 2016-01-05 03:48 - 00499432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2016-03-07 14:05 - 2016-01-05 03:37 - 00858952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-03-07 14:05 - 2016-01-05 03:37 - 00245840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2016-03-07 14:05 - 2016-01-05 03:37 - 00234504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mftranscode.dll
2016-03-07 14:05 - 2016-01-05 03:33 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-03-07 14:05 - 2016-01-05 03:33 - 00701384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2016-03-07 14:05 - 2016-01-05 03:33 - 00208176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mftranscode.dll
2016-03-07 14:05 - 2016-01-05 03:33 - 00116728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2016-03-07 14:05 - 2016-01-05 03:27 - 01594408 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-03-07 14:05 - 2016-01-05 03:23 - 01804664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll
2016-03-07 14:05 - 2016-01-05 03:23 - 01309376 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-03-07 14:05 - 2016-01-05 03:23 - 00786696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2016-03-07 14:05 - 2016-01-05 03:23 - 00119320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP3DMOD.DLL
2016-03-07 14:05 - 2016-01-05 03:21 - 01371792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-03-07 14:05 - 2016-01-05 03:17 - 00695752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2016-03-07 14:05 - 2016-01-05 03:16 - 00100160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP3DMOD.DLL
2016-03-07 14:05 - 2016-01-05 02:57 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMSRoamingSecurity.dll
2016-03-07 14:05 - 2016-01-05 02:57 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgrcli.dll
2016-03-07 14:05 - 2016-01-05 02:56 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2016-03-07 14:05 - 2016-01-05 02:53 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx
2016-03-07 14:05 - 2016-01-05 02:52 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-03-07 14:05 - 2016-01-05 02:51 - 00472576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2016-03-07 14:05 - 2016-01-05 02:51 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2016-03-07 14:05 - 2016-01-05 02:50 - 00644096 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2016-03-07 14:05 - 2016-01-05 02:49 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2016-03-07 14:05 - 2016-01-05 02:49 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2016-03-07 14:05 - 2016-01-05 02:49 - 00749056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2016-03-07 14:05 - 2016-01-05 02:49 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityCommon.dll
2016-03-07 14:05 - 2016-01-05 02:48 - 01009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOD.DLL
2016-03-07 14:05 - 2016-01-05 02:48 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2016-03-07 14:05 - 2016-01-05 02:48 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usermgrcli.dll
2016-03-07 14:05 - 2016-01-05 02:47 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-03-07 14:05 - 2016-01-05 02:47 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-03-07 14:05 - 2016-01-05 02:47 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2016-03-07 14:05 - 2016-01-05 02:45 - 00678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2016-03-07 14:05 - 2016-01-05 02:45 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-03-07 14:05 - 2016-01-05 02:44 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshom.ocx
2016-03-07 14:05 - 2016-01-05 02:43 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2016-03-07 14:05 - 2016-01-05 02:43 - 00604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-03-07 14:05 - 2016-01-05 02:43 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-03-07 14:05 - 2016-01-05 02:42 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2016-03-07 14:05 - 2016-01-05 02:41 - 01070080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2016-03-07 14:05 - 2016-01-05 02:41 - 00558592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2016-03-07 14:05 - 2016-01-05 02:40 - 00890880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOD.DLL
2016-03-07 14:05 - 2016-01-05 02:40 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ProximityCommon.dll
2016-03-07 14:05 - 2016-01-05 02:39 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2016-03-07 14:05 - 2016-01-05 02:39 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2016-03-07 14:05 - 2016-01-05 02:39 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2016-03-07 14:05 - 2016-01-05 02:38 - 00389120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-03-07 14:05 - 2016-01-05 02:36 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2016-03-07 14:05 - 2016-01-05 02:36 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-03-07 14:05 - 2015-12-07 05:49 - 00412512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-03-07 14:05 - 2015-12-07 05:48 - 01092456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-03-07 14:05 - 2015-12-07 05:48 - 00526856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2016-03-07 14:05 - 2015-12-07 05:48 - 00462760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2016-03-07 14:05 - 2015-12-07 05:48 - 00337840 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2016-03-07 14:05 - 2015-12-07 05:48 - 00289248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2016-03-07 14:05 - 2015-12-07 05:48 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-03-07 14:05 - 2015-12-07 05:48 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-03-07 14:05 - 2015-12-07 05:47 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-03-07 14:05 - 2015-12-07 05:45 - 00264544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-03-07 14:05 - 2015-12-07 05:15 - 01035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxNetApiSvc.dll
2016-03-07 14:05 - 2015-12-07 05:15 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.XboxLive.ProxyStub.dll
2016-03-07 14:05 - 2015-12-07 05:10 - 00824320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-03-07 14:05 - 2015-12-07 05:09 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2016-03-07 14:05 - 2015-12-07 05:09 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2016-03-07 14:05 - 2015-12-07 05:07 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-03-07 14:05 - 2015-12-07 05:07 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2016-03-07 14:05 - 2015-12-07 05:06 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2016-03-07 14:05 - 2015-12-07 05:06 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2016-03-07 14:05 - 2015-12-07 05:05 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2016-03-07 14:05 - 2015-12-07 05:05 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundTransferHost.exe
2016-03-07 14:05 - 2015-12-07 05:04 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-03-07 14:05 - 2015-12-07 05:04 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2016-03-07 14:05 - 2015-12-07 05:02 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-03-07 14:05 - 2015-12-07 05:01 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-03-07 14:05 - 2015-12-07 05:01 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundTransferHost.exe
2016-03-07 14:05 - 2015-12-07 05:00 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-03-07 14:05 - 2015-12-07 04:59 - 00292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-03-07 14:05 - 2015-12-07 04:59 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-03-07 14:05 - 2015-12-07 04:59 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2016-03-07 14:05 - 2015-12-07 04:58 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-03-07 14:05 - 2015-12-07 04:57 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-03-07 14:05 - 2015-12-07 04:55 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-03-07 14:05 - 2015-12-07 04:51 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-03-07 14:05 - 2015-12-07 04:45 - 00900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-03-07 14:05 - 2015-12-07 04:45 - 00683008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-03-07 14:05 - 2015-12-07 04:43 - 00931328 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPEG2ENC.DLL
2016-03-07 14:05 - 2015-12-07 04:39 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-03-07 14:05 - 2015-12-07 04:38 - 00871936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSMPEG2ENC.DLL
2016-03-07 14:05 - 2015-12-07 04:32 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2016-03-07 13:54 - 2016-03-16 18:46 - 00001138 _____ C:\Users\FUCK Y\Desktop\nativelog.txt
2016-03-07 11:47 - 2015-11-16 04:54 - 00112944 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2016-03-07 11:47 - 2015-11-16 04:54 - 00105080 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2016-03-07 11:46 - 2016-02-24 00:57 - 01924152 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6436200.dll
2016-03-07 11:46 - 2016-02-24 00:57 - 01571776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6436200.dll
2016-03-07 11:25 - 2016-03-07 11:25 - 00000000 ____D C:\Users\FUCK Y\AppData\Local\ActiveSync
2016-03-07 11:23 - 2016-03-07 11:23 - 00000020 ___SH C:\Users\FUCK Y\ntuser.ini
2016-03-07 11:22 - 2016-03-07 11:22 - 00000000 _SHDL C:\Users\Default\Vorlagen
2016-03-07 11:22 - 2016-03-07 11:22 - 00000000 _SHDL C:\Users\Default\Startmenü
2016-03-07 11:22 - 2016-03-07 11:22 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2016-03-07 11:22 - 2016-03-07 11:22 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2016-03-07 11:22 - 2016-03-07 11:22 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2016-03-07 11:22 - 2016-03-07 11:22 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2016-03-07 11:22 - 2016-03-07 11:22 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos
2016-03-07 11:22 - 2016-03-07 11:22 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2016-03-07 11:22 - 2016-03-07 11:22 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2016-03-07 11:22 - 2016-03-07 11:22 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-03-07 11:22 - 2016-03-07 11:22 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2016-03-07 11:22 - 2016-03-07 11:22 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2016-03-07 11:22 - 2016-03-07 11:22 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2016-03-07 11:22 - 2016-03-07 11:22 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos
2016-03-07 11:22 - 2016-03-07 11:22 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2016-03-07 11:22 - 2016-03-07 11:22 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2016-03-07 11:22 - 2016-03-07 11:22 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-03-07 11:22 - 2016-03-07 11:22 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2016-03-07 11:22 - 2016-03-07 11:22 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2016-03-07 11:18 - 2016-03-21 00:14 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-03-07 11:10 - 2016-03-07 11:10 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-03-07 11:07 - 2016-03-07 11:12 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2016-03-07 11:05 - 2016-03-21 04:08 - 00000000 ____D C:\Users\FUCK Y
2016-03-07 11:05 - 2016-03-07 11:05 - 00000000 _SHDL C:\Users\FUCK Y\Vorlagen
2016-03-07 11:05 - 2016-03-07 11:05 - 00000000 _SHDL C:\Users\FUCK Y\Startmenü
2016-03-07 11:05 - 2016-03-07 11:05 - 00000000 _SHDL C:\Users\FUCK Y\Netzwerkumgebung
2016-03-07 11:05 - 2016-03-07 11:05 - 00000000 _SHDL C:\Users\FUCK Y\Lokale Einstellungen
2016-03-07 11:05 - 2016-03-07 11:05 - 00000000 _SHDL C:\Users\FUCK Y\Eigene Dateien
2016-03-07 11:05 - 2016-03-07 11:05 - 00000000 _SHDL C:\Users\FUCK Y\Druckumgebung
2016-03-07 11:05 - 2016-03-07 11:05 - 00000000 _SHDL C:\Users\FUCK Y\Documents\Eigene Videos
2016-03-07 11:05 - 2016-03-07 11:05 - 00000000 _SHDL C:\Users\FUCK Y\Documents\Eigene Musik
2016-03-07 11:05 - 2016-03-07 11:05 - 00000000 _SHDL C:\Users\FUCK Y\Documents\Eigene Bilder
2016-03-07 11:05 - 2016-03-07 11:05 - 00000000 _SHDL C:\Users\FUCK Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-03-07 11:05 - 2016-03-07 11:05 - 00000000 _SHDL C:\Users\FUCK Y\AppData\Local\Verlauf
2016-03-07 11:05 - 2016-03-07 11:05 - 00000000 _SHDL C:\Users\FUCK Y\AppData\Local\Anwendungsdaten
2016-03-07 11:05 - 2016-03-07 11:05 - 00000000 _SHDL C:\Users\FUCK Y\Anwendungsdaten
2016-03-07 11:02 - 2016-03-08 10:36 - 00000000 ____D C:\ProgramData\NVIDIA
2016-03-07 11:02 - 2016-03-08 10:35 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-03-07 11:02 - 2016-03-07 11:02 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2016-03-07 11:02 - 2016-03-07 11:02 - 00000000 ____D C:\WINDOWS\system32\SRSLabs
2016-03-07 11:02 - 2016-03-07 11:02 - 00000000 ____D C:\Program Files\Realtek
2016-03-07 11:02 - 2016-02-23 21:28 - 06368824 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2016-03-07 11:02 - 2016-02-23 21:28 - 06154909 _____ C:\WINDOWS\system32\nvcoproc.bin
2016-03-07 11:02 - 2016-02-23 21:28 - 02993720 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2016-03-07 11:02 - 2016-02-23 21:28 - 02563128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2016-03-07 11:02 - 2016-02-23 21:28 - 01263040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2016-03-07 11:02 - 2016-02-23 21:28 - 00393784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2016-03-07 11:02 - 2016-02-23 21:28 - 00071224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2016-03-07 11:01 - 2016-03-08 10:36 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2016-03-07 11:01 - 2016-03-07 11:07 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2016-03-07 11:01 - 2016-03-07 11:01 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2016-03-07 11:01 - 2015-10-30 08:17 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-03-07 10:59 - 2016-03-11 12:25 - 00194608 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-03-07 10:58 - 2016-03-07 12:00 - 00000000 ___DC C:\WINDOWS\Panther
2016-03-07 10:55 - 2016-03-07 10:56 - 00000000 ____D C:\Windows.old
2016-03-07 10:55 - 2016-03-07 10:55 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 03993600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 02843136 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2016-03-07 10:55 - 2016-03-07 10:55 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2016-03-07 10:55 - 2016-03-07 10:55 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 02352128 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 02001408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 01860096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 01814528 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 01717248 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 01648640 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 01042432 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00911648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00803840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00698208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00697856 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00675064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00586208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00586080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00578912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2016-03-07 10:55 - 2016-03-07 10:55 - 00523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00523616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2016-03-07 10:55 - 2016-03-07 10:55 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00511320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00470528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00454056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrvut.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00342016 _____ (Microsoft Corporation)
         

Alt 24.03.2016, 19:33   #2
Burning...
 
Windows 10: Skype Virus wurde von meinem Account verschickt - Standard

Windows 10: Skype Virus wurde von meinem Account verschickt



Teil 2 FRST.txt
Code:
ATTFilter
C:\WINDOWS\system32\SensorService.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00334736 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-03-07 10:55 - 2016-03-07 10:55 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00264192 _____ (Nokia) C:\WINDOWS\system32\NmaDirect.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00205824 _____ (Nokia) C:\WINDOWS\SysWOW64\NmaDirect.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-03-07 10:55 - 2016-03-07 10:55 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2016-03-07 10:55 - 2016-03-07 10:55 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rmcast.sys
2016-03-07 10:55 - 2016-03-07 10:55 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ETWCoreUIComponentsResources.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2016-03-07 10:55 - 2016-03-07 10:55 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\capimg.sys
2016-03-07 10:55 - 2016-03-07 10:55 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-03-07 10:55 - 2016-03-07 10:55 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MapControls.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00110032 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys
2016-03-07 10:55 - 2016-03-07 10:55 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00088392 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00080600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwapi.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssign32.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00073360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManagerProxy.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ihvrilproxy.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00063528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wwapi.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssign32.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00058408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosResource.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosResource.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rilproxy.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wwanpref.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00051680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsUtilsV2.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsplib.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.proxy.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthManagerProxy.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCoreRes.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCoreRes.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00035680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2016-03-07 10:55 - 2016-03-07 10:55 - 00035656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2016-03-07 10:55 - 2016-03-07 10:55 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00032040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe
2016-03-07 10:55 - 2016-03-07 10:55 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.proxy.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-03-07 10:55 - 2016-03-07 10:55 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshrm.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2016-03-07 10:55 - 2016-03-07 10:55 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\readingviewresources.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlStringsRes.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll
2016-03-07 10:55 - 2016-03-07 10:55 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2016-03-07 10:53 - 2016-03-07 10:53 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-03-07 10:52 - 2016-03-07 10:52 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2016-03-07 10:52 - 2016-03-07 10:52 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-03-07 10:52 - 2016-03-07 10:52 - 00000000 ____D C:\Program Files\MSBuild
2016-03-07 10:52 - 2016-03-07 10:52 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-03-07 10:52 - 2016-03-07 10:52 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-03-07 10:51 - 2015-10-23 17:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2016-03-07 10:51 - 2015-10-23 17:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-03-07 10:51 - 2015-10-23 17:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2016-03-07 10:51 - 2015-10-23 17:46 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-03-07 10:51 - 2015-10-23 17:46 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2016-03-07 10:51 - 2015-10-23 17:45 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-03-06 14:03 - 2016-03-07 16:43 - 00000000 ____D C:\Users\FUCK Y\AppData\Local\LogMeIn Hamachi
2016-03-06 14:02 - 2016-03-07 11:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2016-03-06 14:02 - 2016-03-06 14:02 - 08818688 _____ C:\Users\FUCK Y\Downloads\hamachi.msi
2016-03-06 14:02 - 2016-03-06 14:02 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
2016-03-01 15:54 - 2016-03-07 11:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24
2016-03-01 15:54 - 2016-03-01 15:54 - 00000000 ____D C:\Users\FUCK Y\AppData\Local\PDF24
2016-03-01 15:53 - 2016-03-01 15:54 - 00000000 ____D C:\Program Files (x86)\PDF24
2016-03-01 15:53 - 2016-03-01 15:53 - 01470472 _____ C:\Users\FUCK Y\Downloads\PDF24 Creator - CHIP-Installer.exe
2016-02-27 14:08 - 2016-02-27 14:08 - 00660259 _____ C:\Users\FUCK Y\Downloads\WIM-3.7.1.zip
2016-02-25 15:44 - 2016-02-25 18:59 - 00000000 ____D C:\Users\FUCK Y\Documents\Shiner
2016-02-25 15:44 - 2016-02-25 15:44 - 00000000 ____D C:\Users\FUCK Y\Documents\Robot Entertainment
2016-02-25 15:44 - 2016-02-25 15:44 - 00000000 ____D C:\Users\FUCK Y\AppData\Local\Robot Entertainment

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-03-24 19:10 - 2014-12-05 13:43 - 00000000 ____D C:\Users\FUCK Y\AppData\Local\Battle.net
2016-03-24 19:09 - 2014-12-05 14:09 - 00000000 ____D C:\Users\FUCK Y\AppData\Roaming\Spotify
2016-03-24 18:38 - 2014-12-05 13:30 - 00004152 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{C3CF2CE5-F3ED-458F-9BC5-153F3ACC13B6}
2016-03-24 18:31 - 2015-08-10 14:26 - 00001244 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-720079136-909011121-624151443-1002UA.job
2016-03-24 18:17 - 2014-12-05 13:31 - 00001134 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-03-24 18:08 - 2014-12-05 14:02 - 00000000 ____D C:\ProgramData\Skype
2016-03-24 18:06 - 2014-12-05 14:02 - 00000000 ____D C:\Users\FUCK Y\AppData\Roaming\Skype
2016-03-24 15:32 - 2014-12-05 13:33 - 00000000 ____D C:\Program Files (x86)\Steam
2016-03-24 15:31 - 2015-08-10 14:26 - 00001192 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-720079136-909011121-624151443-1002Core.job
2016-03-24 14:16 - 2014-12-05 13:31 - 00001130 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-03-24 13:39 - 2014-12-05 14:14 - 00000000 ____D C:\Users\FUCK Y\AppData\Local\Spotify
2016-03-24 13:28 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-03-24 12:31 - 2015-10-30 08:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-03-23 23:41 - 2014-12-05 14:36 - 00000000 ____D C:\Users\FUCK Y\AppData\Roaming\Dropbox
2016-03-23 01:01 - 2016-01-16 17:20 - 00000000 ____D C:\Users\FUCK Y\Desktop\Anschreiben
2016-03-22 21:23 - 2015-10-30 08:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-03-22 14:19 - 2015-04-14 12:43 - 00000080 _____ C:\Users\FUCK Y\AppData\Local剜捯獫慴⁲慇敭屳呇⁁屖湥楴汴浥湥⹴湩潦
2016-03-21 22:42 - 2015-09-29 18:39 - 00002271 _____ C:\Users\FUCK Y\Desktop\Discord.lnk
2016-03-21 22:42 - 2015-09-29 18:39 - 00000000 ____D C:\Users\FUCK Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc
2016-03-21 22:42 - 2015-09-29 18:39 - 00000000 ____D C:\Users\FUCK Y\AppData\Local\SquirrelTemp
2016-03-21 22:42 - 2015-09-29 18:39 - 00000000 ____D C:\Users\FUCK Y\AppData\Local\Discord
2016-03-21 22:29 - 2015-10-30 19:35 - 00776562 _____ C:\WINDOWS\system32\perfh007.dat
2016-03-21 22:29 - 2015-10-30 19:35 - 00155874 _____ C:\WINDOWS\system32\perfc007.dat
2016-03-21 22:29 - 2015-10-30 08:21 - 00000000 ____D C:\WINDOWS\INF
2016-03-21 22:29 - 2015-08-06 13:32 - 01802588 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-21 00:13 - 2015-10-30 07:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-03-20 21:33 - 2015-04-14 12:38 - 00000000 ____D C:\Program Files (x86)\Rockstar Games
2016-03-20 21:32 - 2015-04-14 12:43 - 00000000 ____D C:\Users\FUCK Y\AppData\Local\Rockstar Games
2016-03-20 21:32 - 2015-04-14 12:38 - 00000000 ____D C:\Program Files\Rockstar Games
2016-03-20 21:31 - 2015-04-14 12:38 - 00000000 ____D C:\Users\FUCK Y\Documents\Rockstar Games
2016-03-20 20:00 - 2015-01-01 02:06 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-03-20 19:58 - 2015-07-19 20:20 - 00000000 ____D C:\ProgramData\Hi-Rez Studios
2016-03-20 19:58 - 2015-07-19 20:20 - 00000000 ____D C:\Program Files (x86)\Hi-Rez Studios
2016-03-20 19:56 - 2016-01-19 09:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCSOFT
2016-03-14 23:25 - 2014-12-05 13:32 - 00002264 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-03-14 00:49 - 2014-12-20 20:29 - 00000272 _____ C:\Users\FUCK Y\Desktop\legit ID.txt
2016-03-12 15:00 - 2014-12-05 14:06 - 00000000 ____D C:\Users\FUCK Y\AppData\Roaming\TS3Client
2016-03-12 13:55 - 2014-12-03 09:49 - 143659408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-03-12 13:55 - 2014-12-03 09:49 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-03-11 17:34 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\rescache
2016-03-11 12:28 - 2014-12-03 13:29 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-03-11 03:07 - 2015-10-30 19:44 - 00000000 ____D C:\Program Files\Windows Journal
2016-03-11 03:07 - 2015-10-30 08:24 - 00000000 __RSD C:\WINDOWS\Media
2016-03-11 03:07 - 2015-10-30 08:24 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-03-11 03:07 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-03-11 03:07 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-03-11 03:07 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-03-11 03:07 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-03-11 03:07 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-03-11 03:07 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-03-11 03:07 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\Provisioning
2016-03-11 03:07 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-03-11 03:07 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-03-11 03:07 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-03-11 03:07 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-03-11 03:07 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2016-03-11 03:07 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-03-11 03:07 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-03-08 12:48 - 2014-12-05 13:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2016-03-08 12:46 - 2014-12-05 14:01 - 00137952 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2016-03-08 12:46 - 2014-12-05 14:01 - 00128664 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2016-03-08 12:46 - 2014-12-05 14:01 - 00068936 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys
2016-03-08 10:35 - 2014-12-03 09:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2016-03-08 10:02 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\appcompat
2016-03-08 08:12 - 2015-10-30 08:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-03-08 08:12 - 2015-10-30 08:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-03-07 11:54 - 2014-12-05 14:55 - 00000000 ___RD C:\Users\FUCK Y\Desktop\Desktop Sachen
2016-03-07 11:43 - 2014-12-05 11:25 - 00000000 ____D C:\Users\FUCK Y\AppData\Local\Packages
2016-03-07 11:41 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-03-07 11:27 - 2015-08-06 13:41 - 00002419 _____ C:\Users\FUCK Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-03-07 11:27 - 2015-08-06 13:41 - 00000000 ___RD C:\Users\FUCK Y\OneDrive
2016-03-07 11:24 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-03-07 11:24 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\MiracastView
2016-03-07 11:22 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\Registration
2016-03-07 11:22 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Windows NT
2016-03-07 11:22 - 2015-08-06 13:05 - 00019053 _____ C:\WINDOWS\diagwrn.xml
2016-03-07 11:22 - 2015-08-06 13:05 - 00019053 _____ C:\WINDOWS\diagerr.xml
2016-03-07 11:20 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-03-07 11:18 - 2015-10-30 08:24 - 00000000 __RHD C:\Users\Public\Libraries
2016-03-07 11:18 - 2015-08-10 14:26 - 00003912 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-720079136-909011121-624151443-1002UA
2016-03-07 11:18 - 2015-08-10 14:26 - 00003644 _____ C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-720079136-909011121-624151443-1002Core
2016-03-07 11:18 - 2015-08-06 13:34 - 00023056 _____ C:\WINDOWS\system32\emptyregdb.dat
2016-03-07 11:18 - 2014-12-05 13:31 - 00003646 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-03-07 11:18 - 2014-12-05 13:31 - 00003422 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-03-07 11:18 - 2014-12-05 11:30 - 00002934 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-720079136-909011121-624151443-1002
2016-03-07 11:18 - 2014-12-05 11:14 - 00002314 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-720079136-909011121-624151443-500
2016-03-07 11:18 - 2014-12-03 10:15 - 00002312 _____ C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask
2016-03-07 11:18 - 2014-12-03 09:31 - 00003046 _____ C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2016-03-07 11:18 - 2014-12-03 09:31 - 00002680 _____ C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon
2016-03-07 11:16 - 2014-12-03 09:32 - 01799166 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2016-03-07 11:12 - 2016-02-01 22:23 - 00000000 ____D C:\Users\FUCK Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2016-03-07 11:12 - 2015-12-14 16:46 - 00000000 ____D C:\WINDOWS\system32\STRING
2016-03-07 11:12 - 2015-12-14 16:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG6600 series Benutzerregistrierung
2016-03-07 11:12 - 2015-12-14 16:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG6600 series Manual
2016-03-07 11:12 - 2015-10-31 18:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft
2016-03-07 11:12 - 2015-10-30 21:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch
2016-03-07 11:12 - 2015-10-30 07:28 - 00008192 ___SH C:\WINDOWS\system32\config\ELAM
2016-03-07 11:12 - 2015-10-06 14:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoHotkey
2016-03-07 11:12 - 2015-07-30 13:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2016-03-07 11:12 - 2015-07-27 23:10 - 00000000 ____D C:\Users\FUCK Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OBS Multiplatform
2016-03-07 11:12 - 2015-07-05 20:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarCraft II
2016-03-07 11:12 - 2015-02-16 20:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RaidCall
2016-03-07 11:12 - 2015-01-18 14:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CHEwin
2016-03-07 11:12 - 2015-01-16 21:51 - 00000000 ____D C:\Users\FUCK Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Open Broadcaster Software
2016-03-07 11:12 - 2014-12-21 00:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-03-07 11:12 - 2014-12-19 16:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of the Storm
2016-03-07 11:12 - 2014-12-05 14:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III
2016-03-07 11:12 - 2014-12-05 14:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2016-03-07 11:12 - 2014-12-05 13:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
2016-03-07 11:12 - 2014-12-05 13:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2016-03-07 11:12 - 2014-12-05 13:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2016-03-07 11:12 - 2014-12-03 09:31 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2016-03-07 11:10 - 2015-07-10 10:05 - 00000000 ____D C:\Users\Default.migrated
2016-03-07 11:09 - 2015-10-30 19:35 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm
2016-03-07 11:09 - 2015-10-30 19:35 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN
2016-03-07 11:09 - 2015-10-30 19:35 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr
2016-03-07 11:09 - 2015-10-30 19:35 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2016-03-07 11:09 - 2015-10-30 19:35 - 00000000 ____D C:\WINDOWS\system32\winrm
2016-03-07 11:09 - 2015-10-30 19:35 - 00000000 ____D C:\WINDOWS\system32\WCN
2016-03-07 11:09 - 2015-10-30 19:35 - 00000000 ____D C:\WINDOWS\system32\slmgr
2016-03-07 11:09 - 2015-10-30 19:35 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2016-03-07 11:09 - 2015-10-30 08:24 - 00000000 ___SD C:\WINDOWS\system32\dsc
2016-03-07 11:09 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\spool
2016-03-07 11:09 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-03-07 11:09 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2016-03-07 11:09 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2016-03-07 11:09 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2016-03-07 11:07 - 2016-02-20 02:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2016-03-07 11:07 - 2016-01-19 09:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCWest
2016-03-07 11:07 - 2015-12-14 16:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2016-03-07 11:07 - 2015-10-30 19:44 - 00000000 ____D C:\WINDOWS\ShellNew
2016-03-07 11:07 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-03-07 11:07 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\InputMethod
2016-03-07 11:07 - 2015-10-30 08:24 - 00000000 ____D C:\ProgramData\USOPrivate
2016-03-07 11:07 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-03-07 11:07 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-03-07 11:07 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-03-07 11:07 - 2014-12-27 16:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\puush
2016-03-07 11:07 - 2014-12-05 13:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
2016-03-07 11:07 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\ADFS
2016-03-07 11:06 - 2016-01-30 12:14 - 00000000 ____D C:\Users\FUCK Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2016-03-07 11:04 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-03-07 11:02 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\Help
2016-03-07 10:59 - 2015-10-30 19:55 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2016-03-07 10:58 - 2015-10-30 08:24 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-03-07 10:52 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2016-03-07 10:52 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-03-07 10:52 - 2015-10-30 08:17 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll
2016-03-07 10:52 - 2015-10-30 08:17 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll
2016-03-07 10:52 - 2015-10-30 08:17 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll
2016-03-07 10:52 - 2015-10-30 08:17 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll
2016-03-07 10:52 - 2015-10-30 08:17 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll
2016-03-07 10:52 - 2015-10-30 08:17 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll
2016-03-07 10:52 - 2015-10-30 08:17 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe
2016-03-07 10:52 - 2015-10-30 08:17 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll
2016-03-07 10:52 - 2015-10-30 08:17 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe
2016-03-07 10:52 - 2015-10-30 08:17 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe
2016-03-07 10:52 - 2015-10-30 08:17 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll
2016-03-07 10:52 - 2015-10-30 08:17 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll
2016-03-07 10:52 - 2015-10-30 08:17 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll
2016-03-07 10:52 - 2015-10-30 08:17 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll
2016-03-07 10:52 - 2015-10-30 08:17 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll
2016-03-07 10:52 - 2015-10-30 08:17 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll
2016-03-07 10:52 - 2015-10-30 08:17 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll
2016-03-07 10:52 - 2015-10-30 08:17 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll
2016-03-07 10:39 - 2015-10-30 20:27 - 00000000 ___HD C:\$WINDOWS.~BT
2016-03-06 14:17 - 2015-01-22 23:24 - 00000000 ____D C:\Users\FUCK Y\AppData\Roaming\.minecraft
2016-03-06 14:10 - 2015-09-17 01:01 - 1059477852 _____ C:\WINDOWS\MEMORY.DMP
2016-03-02 12:56 - 2015-07-05 20:26 - 00000000 ____D C:\Users\FUCK Y\Documents\StarCraft II
2016-03-01 21:39 - 2014-12-05 11:25 - 00000000 ____D C:\Users\FUCK Y\AppData\Local\NVIDIA
2016-03-01 21:38 - 2014-12-05 11:25 - 00000000 ____D C:\Users\FUCK Y\AppData\Local\NVIDIA Corporation
2016-03-01 16:05 - 2016-01-03 00:34 - 00000000 ____D C:\Users\FUCK Y\AppData\Local\CrashDumps
2016-03-01 15:52 - 2014-12-05 13:30 - 00000000 __SHD C:\Users\FUCK Y\AppData\LocalLow\EmieUserList
2016-03-01 15:52 - 2014-12-05 13:30 - 00000000 __SHD C:\Users\FUCK Y\AppData\LocalLow\EmieSiteList
2016-02-29 17:58 - 2015-10-31 18:16 - 00000000 ____D C:\Program Files (x86)\Minecraft
2016-02-28 18:17 - 2016-01-16 16:48 - 00000000 ____D C:\Users\FUCK Y\Desktop\Lebenslauf
2016-02-25 02:04 - 2015-11-20 17:21 - 12479040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2016-02-24 00:57 - 2015-11-20 17:21 - 19779456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll
2016-02-24 00:57 - 2015-11-20 17:21 - 14115136 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll
2016-02-24 00:57 - 2015-11-20 17:21 - 03649760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2016-02-24 00:57 - 2015-11-20 17:21 - 03231360 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2016-02-24 00:57 - 2015-11-20 17:21 - 00035832 _____ C:\WINDOWS\system32\nvinfo.pb
2016-02-23 21:28 - 2015-12-27 19:55 - 00530368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2016-02-23 21:28 - 2015-12-27 19:55 - 00081856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2014-12-13 12:09 - 2015-08-06 19:55 - 0007601 _____ () C:\Users\FUCK Y\AppData\Local\Resmon.ResmonCfg

Einige Dateien in TEMP:
====================
C:\Users\FUCK Y\AppData\Local\Temp\avgnt.exe
C:\Users\FUCK Y\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\FUCK Y\AppData\Local\Temp\nvSCPAPI64.dll
C:\Users\FUCK Y\AppData\Local\Temp\nvStInst.exe
C:\Users\FUCK Y\AppData\Local\Temp\SkypeSetup.exe


==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-03-17 13:08

==================== Ende von FRST.txt ============================
         
Additions.txt Teil 1:
Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
durchgeführt von FUCK Y (2016-03-24 19:11:44)
Gestartet von C:\Users\FUCK Y\Downloads
Windows 10 Home Version 1511 (X64) (2016-03-07 10:23:01)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-720079136-909011121-624151443-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-720079136-909011121-624151443-503 - Limited - Disabled)
FUCK Y (S-1-5-21-720079136-909011121-624151443-1002 - Administrator - Enabled) => C:\Users\FUCK Y
Gast (S-1-5-21-720079136-909011121-624151443-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-720079136-909011121-624151443-1004 - Limited - Enabled)

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

7-Zip 15.14 (x64) (HKLM\...\7-Zip) (Version: 15.14 - Igor Pavlov)
Adobe Flash Player 10 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 10.3.183.90 - Adobe Systems Incorporated)
Assassin's Creed® III (HKLM-x32\...\Steam App 208480) (Version:  - Ubisoft Montreal)
AutoHotkey 1.1.22.07 (HKLM\...\AutoHotkey) (Version: 1.1.22.07 - Lexikos)
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.16.282 - Avira Operations GmbH & Co. KG)
Avira Launcher (HKLM-x32\...\{5dfbeba9-9f22-463d-8c95-c861911810a2}) (Version: 1.1.47.11018 - Avira Operations GmbH & Co. KG)
Avira Launcher (x32 Version: 1.1.47.11018 - Avira Operations GmbH & Co. KG) Hidden
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Brawlhalla (HKLM\...\Steam App 291550) (Version:  - Blue Mammoth Games)
Call of Duty: Black Ops II - Multiplayer (HKLM-x32\...\Steam App 202990) (Version:  - Treyarch)
Call of Duty: Black Ops II - Zombies (HKLM-x32\...\Steam App 212910) (Version:  - )
Call of Duty: Black Ops II (HKLM-x32\...\Steam App 202970) (Version:  - Treyarch)
Call of Duty: World at War (HKLM-x32\...\Steam App 10090) (Version:  - Treyarch)
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.6.0.0 - Canon Inc.)
Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: 1.5.2.3 - Canon Inc.)
Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.5.0 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.1.10.15 - Canon Inc.)
Canon MG6600 series Benutzerregistrierung (HKLM-x32\...\Canon MG6600 series Benutzerregistrierung) (Version:  - *Canon Inc.)
Canon MG6600 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG6600_series) (Version: 1.00 - Canon Inc.)
Canon MG6600 series On-screen Manual (HKLM-x32\...\Canon MG6600 series On-screen Manual) (Version: 7.7.1 - Canon Inc.)
Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 3.3.0 - Canon Inc.)
Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 3.2.0 - Canon Inc.)
Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.3.0 - Canon Inc.)
Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.6.1 - Canon Inc.)
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version:  - Valve)
CPUID CPU-Z 1.75 (HKLM\...\CPUID CPU-Z_is1) (Version:  - )
Diablo III (HKLM-x32\...\Diablo III) (Version:  - Blizzard Entertainment)
Discord (HKU\S-1-5-21-720079136-909011121-624151443-1002\...\Discord) (Version: 0.0.286 - Hammer & Chisel, Inc.)
Dropbox (HKU\S-1-5-21-720079136-909011121-624151443-1002\...\Dropbox) (Version: 3.16.1 - Dropbox, Inc.)
Dying Light (HKLM-x32\...\Steam App 239140) (Version:  - Techland)
Euro Truck Simulator 2 (HKLM-x32\...\Steam App 227300) (Version:  - SCS Software)
Evolve (HKLM\...\{670B1B49-9FD3-4827-9B41-471EFF580AA8}) (Version: 1.8.18 - Echobit, LLC)
Garry's Mod (HKLM-x32\...\Steam App 4000) (Version:  - Facepunch Studios)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 49.0.2623.87 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games)
Gyazo 3.2.1 (HKLM-x32\...\{6DB8C365-E719-4BA5-9594-10DFC244D3FD}_is1) (Version:  - Nota Inc.)
Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version:  - Blizzard Entertainment)
Hotline Miami 2: Wrong Number (HKLM-x32\...\Steam App 274170) (Version:  - Dennaton Games)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.0.1204 - Intel Corporation)
Intel(R) Network Connections 19.0.27.0 (HKLM\...\PROSetDX) (Version: 19.0.27.0 - Intel)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.0.0.1098 - Intel Corporation)
Intel(R) Update Manager (HKLM-x32\...\{B991A1BC-DE0F-41B3-9037-B2F948F706EC}) (Version: 3.1.1228 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.13 - Intel(R) Corporation) Hidden
Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
Killing Floor (HKLM-x32\...\Steam App 1250) (Version:  - Tripwire Interactive)
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games )
League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden
Left 4 Dead 2 (HKLM\...\Steam App 550) (Version:  - Valve)
Livestreamer 1.11.1 (HKLM-x32\...\Livestreamer) (Version:  - )
Logitech Gaming Software 8.70 (HKLM\...\Logitech Gaming Software) (Version: 8.70.315 - Logitech Inc.)
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.410 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.2.0.410 - LogMeIn, Inc.) Hidden
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
NCSOFT Game Launcher (HKLM-x32\...\NCLauncher_NCWest) (Version:  - NCSOFT)
Nuclear Throne (HKLM-x32\...\Steam App 242680) (Version:  - Vlambeer)
NVIDIA 3D Vision Controller-Treiber 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.10.2.40 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.10.2.40 - NVIDIA Corporation)
NVIDIA Grafiktreiber 362.00 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 362.00 - NVIDIA Corporation)
NVIDIA Miracast Virtueller Ton 353.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio) (Version: 353.06 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
OBS Multiplatform (HKLM-x32\...\OBS Multiplatform) (Version: 0.11.1 - OBS Project)
Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version:  - )
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Orcs Must Die! 2 (HKLM-x32\...\Steam App 201790) (Version:  - Robot Entertainment)
Origin (HKLM-x32\...\Origin) (Version: 9.7.2.53208 - Electronic Arts, Inc.)
Overwatch (HKLM-x32\...\Overwatch) (Version:  - Blizzard Entertainment)
PDF24 Creator 7.6.4 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.)
puush (HKLM-x32\...\{C3592426-531E-4110-911D-BFECE2CE284B}) (Version: 1.0.0.0 - Dean Herbert)
RaidCall (HKLM-x32\...\RaidCall) (Version: 7.3.6-1.0.13004.105 - raidcall.com)
Razer Chroma SDK Core Components (HKLM-x32\...\Razer Chroma SDK) (Version: 1.3.0 - Razer Inc.)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.21.28549 - Razer Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7004 - Realtek Semiconductor Corp.)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.7.8 - Rockstar Games)
Roguelands (HKLM-x32\...\Steam App 364420) (Version:  - SmashGames)
SHIELD Streaming (Version: 5.1.0270 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.10.2.40 - NVIDIA Corporation) Hidden
Spotify (HKU\S-1-5-21-720079136-909011121-624151443-1002\...\Spotify) (Version: 1.0.25.127.g58007b4c - Spotify AB)
StarCraft II (HKLM-x32\...\StarCraft II) (Version:  - Blizzard Entertainment)
Startfenster (HKLM-x32\...\Startfenster) (Version:  - Startfenster)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
Terraria (HKLM-x32\...\Steam App 105600) (Version:  - Re-Logic)
The Binding of Isaac: Rebirth (HKLM-x32\...\Steam App 250900) (Version:  - Nicalis, Inc.)
The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version:  - Bethesda Game Studios)
Tom Clancy's The Division (HKLM-x32\...\Steam App 365590) (Version:  - Massive Entertainment)
TrackMania² Stadium (HKLM-x32\...\Steam App 232910) (Version:  - Nadeo)
Unturned (HKLM-x32\...\Steam App 304930) (Version:  - Smartly Dressed Games)
Uplay (HKLM-x32\...\Uplay) (Version: 15.0 - Ubisoft)
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Warcraft III (HKLM-x32\...\Warcraft III) (Version:  - Blizzard Entertainment)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

CustomCLSID: HKU\S-1-5-21-720079136-909011121-624151443-1002_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-720079136-909011121-624151443-1002_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\FUCK Y\AppData\Local\Microsoft\OneDrive\17.3.6281.1202_1\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-720079136-909011121-624151443-1002_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-720079136-909011121-624151443-1002_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-720079136-909011121-624151443-1002_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-720079136-909011121-624151443-1002_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-720079136-909011121-624151443-1002_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-720079136-909011121-624151443-1002_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-720079136-909011121-624151443-1002_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-720079136-909011121-624151443-1002_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-720079136-909011121-624151443-1002_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-720079136-909011121-624151443-1002_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {00DA1F9A-78E1-42FF-80E6-6B44DDDD2099} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {0F64FE6C-C7C1-4A10-8D41-7333BA2F0021} - System32\Tasks\GyazoUpdateTaskMachine => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2016-02-17] ()
Task: {2AAD9952-A11E-4C6D-87D7-6956C5B8DB49} - \WPD\SqmUpload_S-1-5-21-720079136-909011121-624151443-1001 -> Keine Datei <==== ACHTUNG
Task: {2F93989E-0E23-47E2-8EE9-0EA11620948C} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG
Task: {35DF5E63-F924-45A7-90C7-A601A7E02E33} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-720079136-909011121-624151443-1002Core => C:\Users\FUCK Y\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-08-10] (Dropbox, Inc.)
Task: {37FF181D-B55F-47F0-9143-DD704E2C2DDC} - \Optimize Start Menu Cache Files-S-1-5-21-720079136-909011121-624151443-1001 -> Keine Datei <==== ACHTUNG
Task: {5273175B-46CC-43EB-9FD7-A23495BBE49D} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG
Task: {52A56BE6-6B72-4575-A952-5927EEEE7268} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG
Task: {55FEB03A-5941-4838-96F4-8E8466218B6A} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG
Task: {5E47468F-C6C4-4799-8882-D3BD8F5B38AF} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG
Task: {61AE9730-2560-4EAD-B986-C7728E85C021} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG
Task: {6B3D2469-6C87-45BD-9857-1F3EA35D0A11} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-720079136-909011121-624151443-1002UA => C:\Users\FUCK Y\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-08-10] (Dropbox, Inc.)
Task: {7A0B54A4-D608-4A43-A08A-E3C71172C88D} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation)
Task: {9A2842FB-BE6B-486A-9F43-00605E6A7912} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG
Task: {9D778F09-0AE0-4E6E-8C68-A0A285410383} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG
Task: {A20BE9C1-7B25-4DBC-8B6E-E7840F39A871} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe
Task: {AAC43CBB-2A62-4C92-AABC-0F4A3109D9B7} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG
Task: {C681E5AC-06CE-487E-8D8C-E8D1EF491B6F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {C9C6A621-F0C6-49AC-A3C8-5986426A0CC8} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG
Task: {D3D96AEC-9B2B-4F7D-9ED8-3B9415ECD7F3} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-03-12] (Microsoft Corporation)
Task: {D6768416-2C82-45C2-948F-5664D32BDBA1} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG
Task: {DEA4F5B2-2A07-4E45-9FB1-626045D8B496} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation)
Task: {F448F4BE-2841-4E0D-9F08-33545FCF12D2} - System32\Tasks\GyazoUpdateTaskMachineDaily => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2016-02-17] ()

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-720079136-909011121-624151443-1002Core.job => C:\Users\FUCK Y\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-720079136-909011121-624151443-1002UA.job => C:\Users\FUCK Y\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2016-03-01 21:38 - 2016-02-17 07:56 - 01416064 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll
2015-12-27 19:47 - 2016-02-17 07:56 - 00299392 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2016-03-01 21:38 - 2016-02-17 07:56 - 03613056 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll
2015-11-05 01:11 - 2015-11-05 01:12 - 00188072 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-03-07 11:02 - 2016-02-23 21:28 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-03-07 14:05 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-07 14:05 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-03-07 14:05 - 2015-12-07 05:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-03-07 14:05 - 2016-02-23 09:36 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-03-07 12:16 - 2016-03-07 12:16 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2016-03-04 12:00 - 2016-03-04 12:00 - 00016384 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2016-03-04 12:00 - 2016-03-04 12:00 - 16062976 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2016-03-04 12:00 - 2016-03-04 12:00 - 00291328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll
2016-03-07 14:06 - 2016-01-05 02:29 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-03-07 14:05 - 2016-01-05 02:23 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-03-07 14:06 - 2016-01-16 06:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-03-07 14:06 - 2016-01-16 06:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2014-03-20 11:43 - 2014-03-20 11:43 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2015-04-13 22:20 - 2016-02-17 08:02 - 00020352 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2016-01-06 02:11 - 2016-01-06 02:11 - 00137728 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll
2016-03-07 12:16 - 2016-03-07 12:16 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-03-07 12:16 - 2016-03-07 12:16 - 22330368 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2015-03-10 23:38 - 2016-03-18 13:37 - 47503472 _____ () C:\Users\FUCK Y\AppData\Roaming\Spotify\libcef.dll
2015-03-10 23:38 - 2016-03-18 13:37 - 01584240 _____ () C:\Users\FUCK Y\AppData\Roaming\Spotify\libglesv2.dll
2015-03-10 23:38 - 2016-03-18 13:37 - 00082032 _____ () C:\Users\FUCK Y\AppData\Roaming\Spotify\libegl.dll
2014-12-05 13:36 - 2016-02-10 02:17 - 00782336 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2015-01-20 15:49 - 2015-07-03 17:12 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll
2014-12-05 13:36 - 2016-03-10 20:02 - 02547792 _____ () C:\Program Files (x86)\Steam\video.dll
2014-12-05 13:36 - 2016-02-09 00:14 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2014-12-05 13:36 - 2016-02-09 00:14 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2014-12-05 13:36 - 2016-02-09 00:14 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2014-12-05 13:36 - 2016-02-09 00:14 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2014-12-05 13:36 - 2016-02-09 00:14 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2015-01-20 15:49 - 2015-07-03 17:12 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2015-01-20 15:49 - 2015-07-03 17:12 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2014-12-05 13:36 - 2016-03-10 20:02 - 00802896 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2016-03-10 12:26 - 2016-02-17 23:25 - 00281088 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
2014-12-05 13:36 - 2016-03-10 20:02 - 00139344 _____ () C:\Program Files (x86)\Steam\bin\audio.dll
2014-12-05 13:36 - 2014-11-11 19:48 - 00071680 _____ () C:\Program Files (x86)\Steam\bin\mssmp3.asi
2014-12-05 13:36 - 2014-11-11 19:48 - 00153088 _____ () C:\Program Files (x86)\Steam\bin\mssvoice.asi
2016-03-14 00:43 - 2016-03-14 00:43 - 26065408 _____ () D:\battle netz\Battle.net\Battle.net.6890\libcef.dll
2016-03-14 00:43 - 2016-03-14 00:43 - 00739840 _____ () D:\battle netz\Battle.net\Battle.net.6890\libGLESv2.dll
2016-03-14 00:43 - 2016-03-14 00:43 - 00293040 _____ () D:\battle netz\Battle.net\Battle.net.6890\ortp.dll
2016-03-14 00:43 - 2016-03-14 00:43 - 00909312 _____ () D:\battle netz\Battle.net\Battle.net.6890\platforms\qwindows.dll
2016-03-14 00:43 - 2016-03-14 00:43 - 00130048 _____ () D:\battle netz\Battle.net\Battle.net.6890\libEGL.dll
2016-03-14 00:43 - 2016-03-14 00:43 - 00020992 _____ () D:\battle netz\Battle.net\Battle.net.6890\imageformats\qgif.dll
2016-03-14 00:43 - 2016-03-14 00:43 - 00021504 _____ () D:\battle netz\Battle.net\Battle.net.6890\imageformats\qico.dll
2016-03-14 00:43 - 2016-03-14 00:43 - 00205312 _____ () D:\battle netz\Battle.net\Battle.net.6890\imageformats\qjpeg.dll
2016-03-14 00:43 - 2016-03-14 00:43 - 00225792 _____ () D:\battle netz\Battle.net\Battle.net.6890\imageformats\qmng.dll
2016-03-14 00:43 - 2016-03-14 00:43 - 00015872 _____ () D:\battle netz\Battle.net\Battle.net.6890\imageformats\qsvg.dll
2016-03-14 00:43 - 2016-03-14 00:43 - 00312832 _____ () D:\battle netz\Battle.net\Battle.net.6890\imageformats\qtiff.dll
2016-03-14 00:43 - 2016-03-14 00:43 - 00010240 _____ () D:\battle netz\Battle.net\Battle.net.6890\qml\QtQuick.2\qtquick2plugin.dll
2016-03-14 00:43 - 2016-03-14 00:43 - 00054272 _____ () D:\battle netz\Battle.net\Battle.net.6890\qml\QtQuick\Layouts\qquicklayoutsplugin.dll
2016-03-14 00:43 - 2016-03-14 00:43 - 00010240 _____ () D:\battle netz\Battle.net\Battle.net.6890\qml\QtQml\Models.2\modelsplugin.dll
2014-12-05 13:36 - 2016-02-09 02:33 - 48400672 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll
2015-01-20 15:49 - 2015-09-25 00:56 - 00119208 _____ () C:\Program Files (x86)\Steam\winh264.dll
2016-03-14 23:24 - 2016-03-08 03:48 - 01676440 _____ () C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.87\libglesv2.dll
2016-03-14 23:24 - 2016-03-08 03:48 - 00086168 _____ () C:\Program Files (x86)\Google\Chrome\Application\49.0.2623.87\libegl.dll
2016-03-24 15:21 - 2016-03-21 16:17 - 17541312 _____ () C:\Users\FUCK Y\AppData\Local\Google\Chrome\User Data\PepperFlash\21.0.0.197\pepflashplayer.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)

IE trusted site: HKU\S-1-5-21-720079136-909011121-624151443-1002\...\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\S-1-5-21-720079136-909011121-624151443-1002\...\freerealms.com -> freerealms.com
IE trusted site: HKU\S-1-5-21-720079136-909011121-624151443-1002\...\soe.com -> soe.com
IE trusted site: HKU\S-1-5-21-720079136-909011121-624151443-1002\...\sony.com -> sony.com

==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-720079136-909011121-624151443-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\FUCK Y\Dropbox\wallpaper-announcement-wide.jpg
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKLM\...\StartupApproved\Run: => "Launch LCore"
HKLM\...\StartupApproved\Run32: => "avgnt"
HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "IJNetworkScannerSelectorEX"
HKLM\...\StartupApproved\Run32: => "CanonQuickMenu"
HKLM\...\StartupApproved\Run32: => "PDFPrint"
HKU\S-1-5-21-720079136-909011121-624151443-1002\...\StartupApproved\StartupFolder: => "Dropbox.lnk"
HKU\S-1-5-21-720079136-909011121-624151443-1002\...\StartupApproved\StartupFolder: => "Curse.lnk"
HKU\S-1-5-21-720079136-909011121-624151443-1002\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_8A99E80C0B21D15FE2ACCF0F902F9E9B"
HKU\S-1-5-21-720079136-909011121-624151443-1002\...\StartupApproved\Run: => "Spotify Web Helper"
HKU\S-1-5-21-720079136-909011121-624151443-1002\...\StartupApproved\Run: => "puush"
HKU\S-1-5-21-720079136-909011121-624151443-1002\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-720079136-909011121-624151443-1002\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-720079136-909011121-624151443-1002\...\StartupApproved\Run: => "Dropbox Update"
HKU\S-1-5-21-720079136-909011121-624151443-1002\...\StartupApproved\Run: => "Spotify"
HKU\S-1-5-21-720079136-909011121-624151443-1002\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-720079136-909011121-624151443-1002\...\StartupApproved\Run: => "EvolveClient"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{15D80A78-A442-4BBA-AFCF-FAB84D4BBEB7}] => (Block) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{4DC1886D-6E34-4ECC-AB4E-6CB3C6C29FF7}] => (Block) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{72D9EA31-AE49-4C04-9D9E-8D36685AD8C9}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [TCP Query User{4147CDDA-2915-4801-BB39-FC54171DE434}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{9E19E8F9-D176-46C6-A11C-619DCF6F5293}] => (Allow) D:\steamgames\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{AF3BDE13-F114-4F95-827E-19264E9BEE5F}] => (Allow) D:\steamgames\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{B57C2C30-2E3A-4737-8471-4E3D33D97A30}] => (Allow) D:\steamgames\steamapps\common\Unturned\Unturned.exe
FirewallRules: [{15003A26-68DD-4D3E-A480-96453935BC11}] => (Allow) D:\steamgames\steamapps\common\Unturned\Unturned.exe
FirewallRules: [UDP Query User{3EDF3672-E1AA-4FD9-899D-B1C2CC6C12F7}D:\starcraft\starcraft ii\versions\base39576\sc2_x64.exe] => (Allow) D:\starcraft\starcraft ii\versions\base39576\sc2_x64.exe
FirewallRules: [TCP Query User{F223C001-8115-4450-90CB-FF8283E36FC9}D:\starcraft\starcraft ii\versions\base39576\sc2_x64.exe] => (Allow) D:\starcraft\starcraft ii\versions\base39576\sc2_x64.exe
FirewallRules: [UDP Query User{82776AEC-933A-4E1C-825D-C98CA9006F83}D:\heroes of the storm\heroes of the storm\versions\base41150\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base41150\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{092E51F7-9BB1-43B2-A67C-E6B0F4425A67}D:\heroes of the storm\heroes of the storm\versions\base41150\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base41150\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{764CBFFD-B8F9-4B92-B676-0909565D7627}D:\steamgames\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe] => (Block) D:\steamgames\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe
FirewallRules: [TCP Query User{E9ECEF9B-E81B-4C5B-9D39-625FFCBF03BB}D:\steamgames\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe] => (Block) D:\steamgames\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe
FirewallRules: [{5C68CCCD-E1FA-4187-8715-6BA9F15D9C2E}] => (Allow) D:\steamgames\steamapps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe
FirewallRules: [{259CA90A-C83F-44CB-AC48-C1FE9E31CAFE}] => (Allow) D:\steamgames\steamapps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe
FirewallRules: [{B22E6E59-D8AF-4EBA-A442-C5AEE0BAE022}] => (Allow) D:\steamgames\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe
FirewallRules: [{3842387B-9E86-4710-94BE-D0E58708599F}] => (Allow) D:\steamgames\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe
FirewallRules: [{78214FB7-BAC4-4C19-BFD4-E7AF9F203FB7}] => (Allow) D:\steamgames\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
FirewallRules: [{E5793870-EC7F-403A-B99C-1ED9CEC49156}] => (Allow) D:\steamgames\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
FirewallRules: [UDP Query User{F26E837B-F9E7-47F4-A062-2D8A1CE33A24}D:\heroes of the storm\heroes of the storm\versions\base40697\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base40697\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{C297B495-2910-41BB-A5E3-F5584E3962C6}D:\heroes of the storm\heroes of the storm\versions\base40697\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base40697\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{E594F87A-FFF4-4502-B4CB-2F8AC455EAC0}D:\starcraft\overwatch\overwatch.exe] => (Allow) D:\starcraft\overwatch\overwatch.exe
FirewallRules: [TCP Query User{6DE0B8C1-9055-48AF-889B-F2A27B93E32A}D:\starcraft\overwatch\overwatch.exe] => (Allow) D:\starcraft\overwatch\overwatch.exe
FirewallRules: [{6E922158-2FD2-42C9-9869-B5A687C1FDFA}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{45735968-9D47-4D62-8A3C-5B4DCFBA2409}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{B795AE14-AD73-4B69-85E0-43E4FF042E4C}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{F4B162C1-2AF4-4E12-BD21-420C614E8D18}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{B297B156-05A4-4786-AA1E-C60349ACF5D6}] => (Allow) D:\steamgames\steamapps\common\Call of Duty World at War\CoDWaWmp.exe
FirewallRules: [{9852F053-BDED-499E-9198-A469B28CBAA0}] => (Allow) D:\steamgames\steamapps\common\Call of Duty World at War\CoDWaWmp.exe
FirewallRules: [{F90A8C97-5AA5-4F96-AC1F-0B1D33EA6F80}] => (Allow) D:\steamgames\steamapps\common\Call of Duty World at War\CoDWaW.exe
FirewallRules: [{50EAED24-96B0-46C4-905B-86943BFCC8BF}] => (Allow) D:\steamgames\steamapps\common\Call of Duty World at War\CoDWaW.exe
FirewallRules: [UDP Query User{1225954F-6C84-4E1C-A3BC-3F1BC21CD87A}D:\heroes of the storm\heroes of the storm\versions\base40431\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base40431\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{FEFDDFDA-8431-4058-AAAB-06E55A4338DC}D:\heroes of the storm\heroes of the storm\versions\base40431\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base40431\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{E65C088A-39B9-4AF0-B3C3-6AED90F08D9E}C:\users\fuck y\desktop\cs2d\counterstrike2d.exe] => (Allow) C:\users\fuck y\desktop\cs2d\counterstrike2d.exe
FirewallRules: [TCP Query User{2ADC5186-8CF5-43BE-85D1-659092DDE699}C:\users\fuck y\desktop\cs2d\counterstrike2d.exe] => (Allow) C:\users\fuck y\desktop\cs2d\counterstrike2d.exe
FirewallRules: [UDP Query User{83D8BB3B-110C-4062-ABA2-A422428782C6}D:\steamgames\steamapps\common\borderlandspresequel\binaries\win32\borderlandspresequel.exe] => (Allow) D:\steamgames\steamapps\common\borderlandspresequel\binaries\win32\borderlandspresequel.exe
FirewallRules: [TCP Query User{2520C02A-5454-4807-AE87-F20F76A709EE}D:\steamgames\steamapps\common\borderlandspresequel\binaries\win32\borderlandspresequel.exe] => (Allow) D:\steamgames\steamapps\common\borderlandspresequel\binaries\win32\borderlandspresequel.exe
FirewallRules: [UDP Query User{B939A659-59CC-4C2F-BAA3-21966EA1E9FB}D:\heroes of the storm\heroes of the storm\versions\base39951\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base39951\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{1902B299-DF3A-406E-B3A0-9C3EA9F9E84A}D:\heroes of the storm\heroes of the storm\versions\base39951\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base39951\heroesofthestorm_x64.exe
FirewallRules: [{B72367A1-FFD4-4047-852B-249491A14D74}] => (Allow) D:\steamgames\steamapps\common\Warframe\Tools\RemoteCrashSender.exe
FirewallRules: [{ED285405-9E2C-4884-81CD-6EEC9FDE26AC}] => (Allow) D:\steamgames\steamapps\common\Warframe\Tools\Launcher.exe
FirewallRules: [{0CC9E90A-1994-44C8-B23D-E4F2780FF34F}] => (Allow) D:\steamgames\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{7F18B20C-1518-4AA9-8851-69F68D0F04FB}] => (Allow) D:\steamgames\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{204BD513-A57C-4CC4-87EA-0ECA8CD79F25}] => (Allow) D:\steamgames\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{11297B1C-99C7-449E-8CFF-0AA3F0A68113}] => (Allow) D:\steamgames\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{FB8684BE-5DB7-49FB-8375-BF5824E269E3}] => (Allow) D:\steamgames\steamapps\common\Warframe\Tools\RemoteCrashSender.exe
FirewallRules: [{D503FF30-CCE6-4DB9-A946-B6F5152C9550}] => (Allow) D:\steamgames\steamapps\common\Warframe\Tools\Launcher.exe
FirewallRules: [{CE4498F7-7DE2-4B02-A6F9-67198BA1656F}] => (Allow) D:\steamgames\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{62301431-0AFB-4379-B77C-09D8C1D9CBD6}] => (Allow) D:\steamgames\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{6CCF544D-8D09-4EC7-AB37-0DFCFD063ED3}] => (Allow) D:\steamgames\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{C61739E1-8BE0-4410-AC61-FEEC9EEF2E24}] => (Allow) D:\steamgames\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{69082489-F27E-4D4A-808A-42ADE5E002D3}] => (Allow) D:\steamgames\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe
FirewallRules: [{9C230F2F-8CDA-4129-A5D5-1D1913DD5BDB}] => (Allow) D:\steamgames\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe
FirewallRules: [{617C90C5-029E-45E0-B76C-B2668C728ADC}] => (Allow) D:\steamgames\steamapps\common\KillingFloor\System\KillingFloor.exe
FirewallRules: [{A14BC916-05DC-4B6A-BB7A-CCBB9424A616}] => (Allow) D:\steamgames\steamapps\common\KillingFloor\System\KillingFloor.exe
FirewallRules: [{067EB2B3-4723-4B02-A928-44C7C03BC073}] => (Allow) D:\steamgames\steamapps\common\Nuclear Throne\nuclearthrone.exe
FirewallRules: [{B760C64B-3212-4CB2-87BB-B81E038C1E84}] => (Allow) D:\steamgames\steamapps\common\Nuclear Throne\nuclearthrone.exe
FirewallRules: [{A7CBD2B2-65E9-4B2D-9867-E6768904D196}] => (Allow) D:\steamgames\steamapps\common\Hotline Miami 2\HotlineMiami2.exe
FirewallRules: [{93732DE2-39AB-44AE-B588-828198ABAD3E}] => (Allow) D:\steamgames\steamapps\common\Hotline Miami 2\HotlineMiami2.exe
FirewallRules: [{45144775-1983-4491-9433-0D341B5C3543}] => (Allow) C:\Program Files\Echobit\Evolve\EvolveClient.exe
FirewallRules: [{E897DF26-7BA4-4D28-807A-2F6EBBC78A21}] => (Allow) C:\Program Files\Echobit\Evolve\EvoSvc.exe
FirewallRules: [{E561523E-4E2A-450B-8969-739FD2355468}] => (Allow) D:\steamgames\steamapps\common\Roguelands\Roguelands.exe
FirewallRules: [{CA138122-EA54-4961-8105-36324DC5BE79}] => (Allow) D:\steamgames\steamapps\common\Roguelands\Roguelands.exe
FirewallRules: [UDP Query User{129F9F14-6FE5-4EF0-A012-AA4FEB4D97B0}D:\heroes of the storm\heroes of the storm\versions\base39709\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base39709\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{6EE9D21A-FCE0-4095-8873-0CB49B898C71}D:\heroes of the storm\heroes of the storm\versions\base39709\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base39709\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{00873743-1B5C-4DCD-A2CF-299BBD85DD5F}D:\heroes of the storm\heroes of the storm\versions\base39595\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base39595\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{A487158B-AB29-457E-B8C6-75CC3AF95413}D:\heroes of the storm\heroes of the storm\versions\base39595\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base39595\heroesofthestorm_x64.exe
FirewallRules: [{9972616A-C9DC-438C-AA31-67DD4A599F52}] => (Allow) D:\steamgames\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe
FirewallRules: [{315ABC69-054D-4301-A679-2E1082C7291C}] => (Allow) D:\steamgames\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe
FirewallRules: [{E842C877-5D64-4987-8A7C-75B0FC3C0AEF}] => (Allow) D:\steamgames\steamapps\common\Dying Light\DyingLightGame.exe
FirewallRules: [{1F47B1BF-879B-4476-8288-DCB58A336D5E}] => (Allow) D:\steamgames\steamapps\common\Dying Light\DyingLightGame.exe
FirewallRules: [UDP Query User{55423530-1EA8-4DB2-A0DD-30DF446F3D77}D:\heroes of the storm\heroes of the storm\versions\base39271\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base39271\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{8C2E3A0F-3E45-4772-95D8-388C35944E2D}D:\heroes of the storm\heroes of the storm\versions\base39271\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base39271\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{E2DD351F-CD98-4BB2-A029-156D87A59988}D:\heroes of the storm\heroes of the storm\versions\base39153\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base39153\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{6E1DC141-A011-4CD3-A6E0-5EDCD99BDC19}D:\heroes of the storm\heroes of the storm\versions\base39153\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base39153\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{47D46FB4-9494-4B37-89AC-9DDD0A138E14}D:\starcraft\overwatch\gameclientapp.exe] => (Allow) D:\starcraft\overwatch\gameclientapp.exe
FirewallRules: [TCP Query User{96F21D52-AEC9-4990-85C4-3EBA8FF046AC}D:\starcraft\overwatch\gameclientapp.exe] => (Allow) D:\starcraft\overwatch\gameclientapp.exe
FirewallRules: [UDP Query User{7405EBF8-37D3-4CD6-A63B-3ACAD3E29FF3}D:\heroes of the storm\heroes of the storm\versions\base38793\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base38793\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{AF420D13-A4F5-4977-A84C-A1F08B880C23}D:\heroes of the storm\heroes of the storm\versions\base38793\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base38793\heroesofthestorm_x64.exe
FirewallRules: [{C7199863-01A7-4A52-BB78-56D0A06AE862}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base38593\heroesofthestorm_x64.exe
FirewallRules: [{E15F6E7D-7907-42C6-94C5-CB6A267C83C4}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base38593\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{91E5F307-9ACA-4E66-85A4-7753EB23D345}D:\heroes of the storm\heroes of the storm\versions\base38593\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base38593\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{9CDAA512-816D-451D-9996-3E2B470209D4}D:\heroes of the storm\heroes of the storm\versions\base38593\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base38593\heroesofthestorm_x64.exe
FirewallRules: [{83C79BC5-C097-4C3F-A00A-0B016268999C}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base38500\heroesofthestorm_x64.exe
FirewallRules: [{063C9781-4445-4D12-9B42-F67071503B49}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base38500\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{458DFE4A-717B-40CB-A0C5-15A227F481AC}D:\heroes of the storm\heroes of the storm\versions\base38500\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base38500\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{D44BE39D-424B-4611-B0E4-EF6578DBABA9}D:\heroes of the storm\heroes of the storm\versions\base38500\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base38500\heroesofthestorm_x64.exe
FirewallRules: [{74B764F9-6B99-4EE4-B19C-F64EE5B8EB08}] => (Allow) C:\Program Files (x86)\Origin Games\STAR WARS Battlefront Beta\starwarsbattlefront.exe
FirewallRules: [{D93DD2EE-8C61-4B09-970C-BABCF7C5C010}] => (Allow) C:\Program Files (x86)\Origin Games\STAR WARS Battlefront Beta\starwarsbattlefront.exe
FirewallRules: [{2478E5B6-9EE2-4CB0-8785-14EF5095D728}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base38236\heroesofthestorm_x64.exe
FirewallRules: [{4F1D817A-0AC5-4E2F-8FC6-711AA61E92AA}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base38236\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{3C6E89DB-92E7-493B-8070-7698240A8AE3}D:\heroes of the storm\heroes of the storm\versions\base38236\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base38236\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{2578BD66-6D76-4782-B549-970FA1118E33}D:\heroes of the storm\heroes of the storm\versions\base38236\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base38236\heroesofthestorm_x64.exe
FirewallRules: [{FF4D7B94-29DF-4AAA-96C4-4C7694B25162}] => (Allow) D:\steamgames\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{C1853CEE-2183-4544-A17B-47B477011885}] => (Allow) D:\steamgames\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{33E47DCA-5C7D-46C1-9344-BF0C130DF28A}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base37795\heroesofthestorm_x64.exe
FirewallRules: [{6C5FA8B6-CCD5-41C3-8D2F-23C2F73E023D}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base37795\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{2F662D09-72FC-4E99-BA15-D8EC1B33A889}D:\heroes of the storm\heroes of the storm\versions\base37795\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base37795\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{8429F414-8F4F-4E2F-8D6F-74B9BBBBFB1A}D:\heroes of the storm\heroes of the storm\versions\base37795\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base37795\heroesofthestorm_x64.exe
FirewallRules: [{654DE537-A2C2-435D-8E00-C5A24241D4FB}] => (Allow) D:\steamgames\steamapps\common\Call of Duty Black Ops II\t6zm.exe
FirewallRules: [{928E3C1E-5C19-4BD1-9252-D0B651E39B9C}] => (Allow) D:\steamgames\steamapps\common\Call of Duty Black Ops II\t6zm.exe
FirewallRules: [{14BF2875-684E-4574-B6CE-7D784B474470}] => (Allow) D:\steamgames\steamapps\common\Call of Duty Black Ops II\t6mp.exe
FirewallRules: [{1BEDE908-7C1A-4C31-99D8-3AD9E6E98EA3}] => (Allow) D:\steamgames\steamapps\common\Call of Duty Black Ops II\t6mp.exe
FirewallRules: [{DBA7B2BD-6729-4EF9-823B-F83690680201}] => (Allow) D:\steamgames\steamapps\common\Call of Duty Black Ops II\t6sp.exe
FirewallRules: [{CE8A5DEB-E60A-4EB4-8190-1A7225B26795}] => (Allow) D:\steamgames\steamapps\common\Call of Duty Black Ops II\t6sp.exe
FirewallRules: [{45641712-986E-4435-933A-2724E0C629DA}] => (Block) D:\starcraft\starcraft ii\versions\base32283\sc2.exe
FirewallRules: [{4B46758B-C69D-4B00-89AE-9CFC8166D9EE}] => (Block) D:\starcraft\starcraft ii\versions\base32283\sc2.exe
FirewallRules: [UDP Query User{8CE2C839-75C9-443B-B2AD-77D9B6F7FB2E}D:\starcraft\starcraft ii\versions\base32283\sc2.exe] => (Allow) D:\starcraft\starcraft ii\versions\base32283\sc2.exe
FirewallRules: [TCP Query User{071488D5-F6A8-4638-8970-A75B35E0259C}D:\starcraft\starcraft ii\versions\base32283\sc2.exe] => (Allow) D:\starcraft\starcraft ii\versions\base32283\sc2.exe
FirewallRules: [{A96E5C47-658A-47D1-B625-0F4436B2AD3F}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base37569\heroesofthestorm_x64.exe
FirewallRules: [{236A1A7D-262B-415C-A359-E61033C710F2}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base37569\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{A5CEBDFE-2C31-4BC5-A266-EF3B506A8DE6}D:\heroes of the storm\heroes of the storm\versions\base37569\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base37569\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{A2B50593-9387-490E-95C3-619DB9E5C6C0}D:\heroes of the storm\heroes of the storm\versions\base37569\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base37569\heroesofthestorm_x64.exe
FirewallRules: [{535225F2-83E6-4EBB-BC93-DB9DFFDB9123}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base37351\heroesofthestorm_x64.exe
FirewallRules: [{E115E2FB-605F-4AF5-8434-D0B868701F4E}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base37351\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{3AEAA50F-071B-45EF-8357-95C873C69F76}D:\heroes of the storm\heroes of the storm\versions\base37351\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base37351\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{1CC5EF9B-F57C-4855-8DBF-5FD2F2C40606}D:\heroes of the storm\heroes of the storm\versions\base37351\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base37351\heroesofthestorm_x64.exe
FirewallRules: [{AE40EF8A-241F-4DAA-94AD-4AB2F0F6BFA0}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base37117\heroesofthestorm_x64.exe
FirewallRules: [{4F0872AD-1DDF-448A-A8EC-DA362AC74163}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base37117\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{255B9162-A4A8-419D-B0D7-72ADB8A5BFE8}D:\heroes of the storm\heroes of the storm\versions\base37117\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base37117\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{B402CCB3-A40D-49EF-9C5D-B4C11D1E23BA}D:\heroes of the storm\heroes of the storm\versions\base37117\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base37117\heroesofthestorm_x64.exe
FirewallRules: [{8DB5E5D1-BE74-4F3C-BAA8-772F74701C37}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{3BA14B21-2003-4BEC-B237-2D9927DB27D8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{8616E9F4-8187-4F47-A55D-DB846C0AC7FB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{4BCCF348-5D2B-4678-9DE0-F10BCBB486B6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{123438E8-D59D-47BB-8ECF-C8F55DC607DD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{AE622EE4-A8E2-49CE-9237-373C86ECF2B7}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{ED202D43-539E-46F0-BB04-13C9DCB8AB77}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{654149AE-E5DA-49DE-AD52-ABE426D4285A}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{AEBAD1CB-DF03-47E6-9CA2-33F5AE491EBB}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{9FD2D3E1-4F25-4C0E-980A-52F4B326787B}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{8463C5A5-4D31-4694-B945-150735FB28F8}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{6027B61A-758E-4409-A96F-3A43673653DB}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe
FirewallRules: [{780BD4CE-70EA-4819-9E2D-65C9FB86729C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe
FirewallRules: [{224E442E-8602-4902-BD3F-CC51C5C9349D}] => (Allow) D:\battle netz\Battle.net\Battle.net.exe
FirewallRules: [{307F094C-CBD9-4EF2-B7C0-02E073CAECDB}] => (Allow) D:\battle netz\Battle.net\Battle.net.exe
FirewallRules: [{49779345-F151-4A22-B050-C32CEE84F5EB}] => (Allow) D:\hearthstone\Hearthstone\Hearthstone.exe
FirewallRules: [{403C679D-F309-4194-AB18-2142E668ADFC}] => (Allow) D:\hearthstone\Hearthstone\Hearthstone.exe
FirewallRules: [TCP Query User{4FD05BCB-7D19-4108-8115-3BCACCE551B3}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{E37C9824-CFBE-4986-9936-28D8CB71896E}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{11F00422-18A5-45AF-9D50-55363E256DAF}C:\users\fuck y\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\fuck y\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{861526C0-6E78-4D23-8052-C91C9B4C1B2F}C:\users\fuck y\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\fuck y\appdata\roaming\spotify\spotify.exe
FirewallRules: [{8A7BA1AB-46B5-4091-9D0A-2BA46C635DC9}] => (Allow) D:\hearthstone\Diablo III\Diablo III.exe
FirewallRules: [{76485C8D-A589-439E-9B43-F398DDB58AFC}] => (Allow) D:\hearthstone\Diablo III\Diablo III.exe
FirewallRules: [{4ACE6601-1895-401F-AA20-777D64C7FFF4}] => (Allow) C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{D052105D-E0EB-408B-B1A3-6FB2FCE6A1DF}] => (Allow) C:\Users\FUCK Y\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{9A6D236A-57EF-46F2-92C8-A65A982DF74A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skyrim\SkyrimLauncher.exe
FirewallRules: [{8522380D-8F5C-40AA-ADE6-D085D924A674}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skyrim\SkyrimLauncher.exe
FirewallRules: [{CD5B08D8-9549-4788-A719-900C884ABAA3}] => (Allow) D:\steamgames\steamapps\common\Crysis 2 Game of the Year\bin32\Crysis2Launcher.exe
FirewallRules: [{CBACBD71-3174-4045-A83A-A4EE3D96036A}] => (Allow) D:\steamgames\steamapps\common\Crysis 2 Game of the Year\bin32\Crysis2Launcher.exe
FirewallRules: [{AE0CA633-F119-45E8-8C42-ECA56A7CB528}] => (Allow) D:\uplay\Ubisoft Game Launcher\games\Far Cry 4\bin\FarCry4.exe
FirewallRules: [{4A94D34B-6B11-4491-868B-55103376180B}] => (Allow) D:\uplay\Ubisoft Game Launcher\games\Far Cry 4\bin\FarCry4.exe
FirewallRules: [{84533BAE-6D9D-47F8-9FFD-650ECCF717FB}] => (Allow) D:\uplay\Ubisoft Game Launcher\games\Far Cry 4\bin\IGE_WPF64.exe
FirewallRules: [{72D58532-078D-4AAA-85CD-9CB11B038F8C}] => (Allow) D:\uplay\Ubisoft Game Launcher\games\Far Cry 4\bin\IGE_WPF64.exe
FirewallRules: [TCP Query User{47BD51A3-DB8E-41D0-A3BB-EC0EC7C018D2}D:\steamgames\steamapps\common\crysis 2 game of the year\bin32\crysis2.exe] => (Allow) D:\steamgames\steamapps\common\crysis 2 game of the year\bin32\crysis2.exe
FirewallRules: [UDP Query User{9557424D-04AC-408A-A6AB-AEE487F08D25}D:\steamgames\steamapps\common\crysis 2 game of the year\bin32\crysis2.exe] => (Allow) D:\steamgames\steamapps\common\crysis 2 game of the year\bin32\crysis2.exe
FirewallRules: [TCP Query User{7A186F64-76F9-45A5-9472-030D11DE6E59}D:\steamgames\steamapps\common\bloodline champions\binary\bloodlinechampions.exe] => (Allow) D:\steamgames\steamapps\common\bloodline champions\binary\bloodlinechampions.exe
FirewallRules: [UDP Query User{F3DADFCB-93C7-42E2-A783-B9D7F9012E5C}D:\steamgames\steamapps\common\bloodline champions\binary\bloodlinechampions.exe] => (Allow) D:\steamgames\steamapps\common\bloodline champions\binary\bloodlinechampions.exe
FirewallRules: [{A1BEAC80-24D9-45CE-AED3-FA63C676A030}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3632\Agent.exe
FirewallRules: [{A62812CC-D1CC-4F9A-82D5-2A6EA4707432}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3632\Agent.exe
FirewallRules: [{7611E32B-5AC6-466D-8F6A-E51FE8C09FE1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe
FirewallRules: [{0AE4BF84-80C9-4A85-94BD-63B11CA7F9AF}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe
FirewallRules: [TCP Query User{103E2B70-3AF9-4F8E-B9B7-7DE2DDF0B918}C:\users\fuck y\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\fuck y\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [UDP Query User{5064E034-180E-4E04-B2C6-312230D57939}C:\users\fuck y\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\fuck y\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [TCP Query User{1D4C34BB-37D7-4847-ADC6-E24D4F59016D}D:\heroes of the storm\heroes of the storm\versions\base33353\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base33353\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{EDC927FF-BBC0-46AC-AA49-774B1818D11A}D:\heroes of the storm\heroes of the storm\versions\base33353\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base33353\heroesofthestorm_x64.exe
FirewallRules: [{0B42ADCA-F1D5-410D-9B29-7C595EF95DFA}] => (Allow) D:\steamgames\steamapps\common\Duke Nukem 3D\bin\dosbox\dosbox.exe
FirewallRules: [{AB7D3618-F1D8-4DB1-8978-7D1352EDD769}] => (Allow) D:\steamgames\steamapps\common\Duke Nukem 3D\bin\dosbox\dosbox.exe
FirewallRules: [{40971883-F4BC-46A2-9774-5F2CFB62A66C}] => (Allow) D:\steamgames\steamapps\common\Shadow Warrior Classic\bin\sw.exe
FirewallRules: [{0F7270E2-F4DF-46E9-B677-6AA174100247}] => (Allow) D:\steamgames\steamapps\common\Shadow Warrior Classic\bin\sw.exe
FirewallRules: [{8DEAD474-F156-4B9D-B68E-BF7A65A46AA8}] => (Allow) D:\steamgames\steamapps\common\Shadow Warrior Classic\bin\dosbox\DOSBox.exe
FirewallRules: [{EC7C7F4C-68FB-4761-AD87-BD060BF1600D}] => (Allow) D:\steamgames\steamapps\common\Shadow Warrior Classic\bin\dosbox\DOSBox.exe
FirewallRules: [{D8CFE9F0-476E-4BB2-9526-EBAD85881936}] => (Allow) D:\steamgames\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe
FirewallRules: [{4FB44C9D-7371-4EAA-9BCE-D497568FDF17}] => (Allow) D:\steamgames\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe
FirewallRules: [{BE6FAFD4-9BCB-4D41-AECE-DA29BE42337C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe
FirewallRules: [{F15BB214-F525-4D5C-BA44-43B3BF2288CB}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe
FirewallRules: [TCP Query User{156B47BE-B6EF-43CC-8EB3-E5AB187FE419}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{F0BF455C-A845-44DA-A66D-EF81344B82C0}] => (Allow) C:\Program Files (x86)\OkayFreedom\polipo\node.exe
FirewallRules: [{9318EBBA-3B08-4A2A-9A6D-60732874C558}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3669\Agent.exe
FirewallRules: [{7E806E2D-8380-478D-818B-3154E0C6C4BD}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3669\Agent.exe
FirewallRules: [TCP Query User{F24CA9B4-E888-42DD-8195-B1A40AFB3E65}D:\heroes of the storm\heroes of the storm\versions\base33684\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base33684\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{D8B52DCE-D999-46C6-A456-9FB32E4E81B6}D:\heroes of the storm\heroes of the storm\versions\base33684\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base33684\heroesofthestorm_x64.exe
FirewallRules: [{C82B6E97-6CC1-4C4A-AA65-35EB912BC4C1}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base33684\heroesofthestorm_x64.exe
FirewallRules: [{F5C66CC5-D560-447D-A673-15EB18471A20}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base33684\heroesofthestorm_x64.exe
FirewallRules: [{5F6908C4-17FB-4DEF-BA2C-8CC043D220CF}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe
FirewallRules: [{18092FED-3120-4FBE-B3FF-304BF66FEC5B}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe
FirewallRules: [TCP Query User{5D90B802-08C1-4D93-863E-D5F0A0639964}D:\steamgames\steamapps\common\h1z1\h1z1.exe] => (Allow) D:\steamgames\steamapps\common\h1z1\h1z1.exe
FirewallRules: [UDP Query User{2DCF32C4-CAA8-40EA-A65C-5D1DD25E10DF}D:\steamgames\steamapps\common\h1z1\h1z1.exe] => (Allow) D:\steamgames\steamapps\common\h1z1\h1z1.exe
FirewallRules: [{71F067C2-DB6C-4D15-B6FC-6612344183B7}] => (Block) D:\steamgames\steamapps\common\h1z1\h1z1.exe
FirewallRules: [{78E05B6E-98CF-40C8-ACEA-D0CFD311C4E9}] => (Block) D:\steamgames\steamapps\common\h1z1\h1z1.exe
FirewallRules: [{EF1B815D-9EDF-4564-B95C-3B4899AC1BCF}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe
FirewallRules: [{0ED2AAEA-65F3-4931-B23B-F18A3D892E4B}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe
FirewallRules: [{6C6B1251-7125-4C39-9992-B69624E9B275}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe
FirewallRules: [{91EB8084-14F9-42FD-A830-11D798325B6F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe
FirewallRules: [TCP Query User{ACE9D931-C2FC-4F0B-AEEF-CC3B46464CF7}D:\heroes of the storm\heroes of the storm\versions\base34053\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base34053\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{6648D598-39FE-40AB-B505-3BFFF3A56396}D:\heroes of the storm\heroes of the storm\versions\base34053\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base34053\heroesofthestorm_x64.exe
FirewallRules: [{82B51230-7F07-4463-8328-43C8C2329F7D}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base34053\heroesofthestorm_x64.exe
FirewallRules: [{4066D19A-70C4-4407-A637-8AC911E18144}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base34053\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{58F175DE-F861-4B3A-A518-1EF005A1938B}D:\wow\diablo iii public test\diablo iii.exe] => (Allow) D:\wow\diablo iii public test\diablo iii.exe
FirewallRules: [UDP Query User{69B7255C-A190-49A2-8B68-FC66F5DB2925}D:\wow\diablo iii public test\diablo iii.exe] => (Allow) D:\wow\diablo iii public test\diablo iii.exe
FirewallRules: [{954461E4-A299-4532-8787-0A665370673E}] => (Block) D:\wow\diablo iii public test\diablo iii.exe
FirewallRules: [{280912C4-9DE7-4DDC-BF13-AE8D42BBB414}] => (Block) D:\wow\diablo iii public test\diablo iii.exe
FirewallRules: [TCP Query User{FEF103E3-7036-49C3-969C-B06BC9917EC4}D:\heroes of the storm\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{1B790A64-6D17-40F0-9CAD-CBAAED3C6EE0}D:\heroes of the storm\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe
FirewallRules: [{4AA8C6B6-09F9-41FB-BB16-0A2A8369A88E}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe
FirewallRules: [{942DEAC6-A40B-4E7E-B94C-A70B2C45C355}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{E6B21125-5750-4721-BFB0-CD278A5BAAC4}D:\gameforgelive\games\deu_deu\tera\tera-launcher.exe] => (Allow) D:\gameforgelive\games\deu_deu\tera\tera-launcher.exe
FirewallRules: [UDP Query User{AD17F8D7-279E-42B8-ABBD-67B50C654C05}D:\gameforgelive\games\deu_deu\tera\tera-launcher.exe] => (Allow) D:\gameforgelive\games\deu_deu\tera\tera-launcher.exe
FirewallRules: [{51D360E2-2313-427B-B0AA-EF15CB0C7075}] => (Block) D:\gameforgelive\games\deu_deu\tera\tera-launcher.exe
FirewallRules: [{D6F7A160-D671-481B-B092-441C9490CDF7}] => (Block) D:\gameforgelive\games\deu_deu\tera\tera-launcher.exe
FirewallRules: [TCP Query User{4A312A67-C1FF-4CE0-A49F-1466C1C4BD2E}D:\heroes of the storm\heroes of the storm\versions\base34659\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base34659\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{68DB6C5F-6F58-4B80-85D9-E7F75D9217C3}D:\heroes of the storm\heroes of the storm\versions\base34659\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base34659\heroesofthestorm_x64.exe
FirewallRules: [{C9B5322F-D04D-4781-9A30-279B9B215420}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base34659\heroesofthestorm_x64.exe
FirewallRules: [{FBA26E25-EEE9-4A35-B1E7-FFCD60273774}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base34659\heroesofthestorm_x64.exe
FirewallRules: [{6CDE410E-EFBF-4225-B8ED-740543091230}] => (Allow) C:\Users\FUCK Y\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{B4C01C56-FDEB-4993-BAF2-ABE4947ACADF}] => (Allow) C:\Users\FUCK Y\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{7158472B-FB96-48D8-AC6B-EC9FADB78E3F}D:\gtav\gta5.exe] => (Allow) D:\gtav\gta5.exe
FirewallRules: [UDP Query User{015D3AF4-7FFF-44D1-A4DC-47A85F979378}D:\gtav\gta5.exe] => (Allow) D:\gtav\gta5.exe
FirewallRules: [{7BF00BDE-0378-4D42-884F-E1AAAB363288}] => (Block) D:\gtav\gta5.exe
FirewallRules: [{238D94F9-4324-4491-839A-7A385F6A3235}] => (Block) D:\gtav\gta5.exe
FirewallRules: [TCP Query User{7490C97A-C9D4-4F5E-80D0-D1F7E718D4E3}D:\heroes of the storm\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{CB63E533-1B5F-4410-9E10-53064D3CC1C9}D:\heroes of the storm\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe
FirewallRules: [{B964FA9F-B748-4471-955E-7FA7CB6A6947}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe
FirewallRules: [{EDC6BA33-F9CA-4B35-BCED-5612FE6A277A}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base34846\heroesofthestorm_x64.exe
FirewallRules: [{4786E90E-A866-4BEF-8243-2860AEFD56C7}] => (Allow) D:\steamgames\steamapps\common\Duke Nukem 3D\bin\dosbox\dosbox.exe
FirewallRules: [{A3C1818D-F86A-40B9-8C06-50AD391AF8D0}] => (Allow) D:\steamgames\steamapps\common\Duke Nukem 3D\bin\dosbox\dosbox.exe
FirewallRules: [TCP Query User{18B903E9-C712-48FE-804E-038E47BD49D1}D:\heroes of the storm\heroes of the storm\versions\base35360\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base35360\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{212122AC-3FA6-4F9F-84EF-EEA01D62149B}D:\heroes of the storm\heroes of the storm\versions\base35360\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base35360\heroesofthestorm_x64.exe
FirewallRules: [{DA1AD415-DE5C-4F23-A2F9-F339102BBFFC}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base35360\heroesofthestorm_x64.exe
FirewallRules: [{BFB4D167-0130-41F2-8528-15D82CFC954F}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base35360\heroesofthestorm_x64.exe
FirewallRules: [{F06DE4F4-13B7-4068-BFF8-BE80B83955F0}] => (Allow) D:\steamgames\steamapps\common\Dark Souls II Scholar of the First Sin\Game\DarkSoulsII.exe
FirewallRules: [{53ACFE96-CF65-4EA4-814D-AAD87DEC3D2E}] => (Allow)
         
__________________


Alt 24.03.2016, 19:34   #3
Burning...
 
Windows 10: Skype Virus wurde von meinem Account verschickt - Standard

Windows 10: Skype Virus wurde von meinem Account verschickt



Teil 2 Additions.txt
Code:
ATTFilter
D:\steamgames\steamapps\common\Dark Souls II Scholar of the First Sin\Game\DarkSoulsII.exe
FirewallRules: [{36427429-1ACD-4AF5-A0DC-CA9353BF3DF9}] => (Allow) D:\steamgames\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [{3D442DE1-FB14-4D9E-8B1F-AE088E881F50}] => (Allow) D:\steamgames\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [{5E7327BB-9F41-4042-8F01-742CBAAAE867}] => (Allow) D:\steamgames\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGameServer.exe
FirewallRules: [{122F57F3-6F55-44E9-891E-ED842AC1B2DB}] => (Allow) D:\steamgames\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGameServer.exe
FirewallRules: [{B0CEC137-5773-48CD-BC12-33C9BABAE19B}] => (Allow) D:\steamgames\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGameOldLoad.exe
FirewallRules: [{5397F3F4-907A-4455-B934-D70BBB520703}] => (Allow) D:\steamgames\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGameOldLoad.exe
FirewallRules: [TCP Query User{5A2EB3BA-0C12-432E-AA5E-11A4F10EB0AE}D:\heroes of the storm\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{F783E109-D00A-446D-A7CA-72DE6D8CBFFC}D:\heroes of the storm\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe
FirewallRules: [{99AEC561-F44B-41C8-882E-405FA209B751}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe
FirewallRules: [{3AECA1C8-BF6F-47FA-87D4-2FF46A4C2F7A}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe
FirewallRules: [{BFDC7894-0C17-49DB-B877-8DB1A903D95E}] => (Allow) D:\steamgames\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanetLauncher.exe
FirewallRules: [{348B7819-64A2-4A78-9597-467190A4E5E0}] => (Allow) D:\steamgames\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanetLauncher.exe
FirewallRules: [{A190AD43-377C-43E5-AB1C-CDBC6541E531}] => (Allow) D:\steamgames\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanet.exe
FirewallRules: [{6119C276-0AF6-4589-9C19-6CAB0DC56A7D}] => (Allow) D:\steamgames\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanet.exe
FirewallRules: [{4C9A5DBC-8E67-4669-82EE-3F7BA4FC84A0}] => (Allow) D:\steamgames\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe
FirewallRules: [{16896176-761F-4FB4-A86E-9D953C4244BA}] => (Allow) D:\steamgames\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe
FirewallRules: [TCP Query User{EBBDB90A-F963-4712-B57A-D51D7A3FBE61}D:\steamgames\steamapps\common\arma 3\arma3.exe] => (Allow) D:\steamgames\steamapps\common\arma 3\arma3.exe
FirewallRules: [UDP Query User{CF25065D-6430-48C5-9C3E-DD73711D18E2}D:\steamgames\steamapps\common\arma 3\arma3.exe] => (Allow) D:\steamgames\steamapps\common\arma 3\arma3.exe
FirewallRules: [{DFDCC44C-D48F-4BDA-B711-6A11BD57799A}] => (Block) D:\steamgames\steamapps\common\arma 3\arma3.exe
FirewallRules: [{F713FCFD-E942-4E52-8C01-CAED679FA7BD}] => (Block) D:\steamgames\steamapps\common\arma 3\arma3.exe
FirewallRules: [{F600A490-1AAF-4B88-87A8-CDB866D29F7F}] => (Allow) D:\steamgames\steamapps\common\Assassin's Creed 3\AC3SP.exe
FirewallRules: [{D21715C9-7CDE-4796-99C3-E70FF1E90961}] => (Allow) D:\steamgames\steamapps\common\Assassin's Creed 3\AC3SP.exe
FirewallRules: [{AB8BA5BA-A5A1-44BC-8FD4-775188DDFCC8}] => (Allow) D:\steamgames\steamapps\common\Assassin's Creed 3\AC3MP.exe
FirewallRules: [{EA09C719-6D50-41B4-89D8-7818DE1B8FEE}] => (Allow) D:\steamgames\steamapps\common\Assassin's Creed 3\AC3MP.exe
FirewallRules: [{C781EEA9-C053-4A0F-A44B-1D2A762E2C56}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{85836ACE-106B-4F36-9FFC-CD74515EDB17}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{06B4B33D-E7AD-48B7-B473-03B49944AA97}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{F53A3F0A-2F16-44DD-BD1F-77854F4AE135}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [TCP Query User{8E42B335-0CB3-42B3-A8BD-66184C45B752}D:\heroes of the storm\heroes of the storm\versions\base36144\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base36144\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{53BE4A78-0619-4088-AE00-96C51679CF0A}D:\heroes of the storm\heroes of the storm\versions\base36144\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\heroes of the storm\versions\base36144\heroesofthestorm_x64.exe
FirewallRules: [{7CB645F6-7863-4A71-AA63-AF6728E47A44}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base36144\heroesofthestorm_x64.exe
FirewallRules: [{93298C71-E0CA-41B6-AEE7-C28947673019}] => (Block) D:\heroes of the storm\heroes of the storm\versions\base36144\heroesofthestorm_x64.exe
FirewallRules: [{B4574E7B-0319-4B31-9227-09BD355B812A}] => (Allow) D:\starcraft\StarCraft II\StarCraft II.exe
FirewallRules: [{065AEB5C-51A9-4697-9A13-598387E70464}] => (Allow) D:\starcraft\StarCraft II\StarCraft II.exe
FirewallRules: [{6CD27FF5-D370-46BA-B543-081171B68024}] => (Allow) D:\steamgames\steamapps\common\Terraria\Terraria.exe
FirewallRules: [{A6785108-B1EF-4773-B110-3EA93F3BBB62}] => (Allow) D:\steamgames\steamapps\common\Terraria\Terraria.exe
FirewallRules: [TCP Query User{C513CA11-685F-4F17-8B95-600108E0817E}D:\steamgames\steamapps\common\terraria\terrariaserver.exe] => (Allow) D:\steamgames\steamapps\common\terraria\terrariaserver.exe
FirewallRules: [UDP Query User{8C10C253-1A3B-4AAA-BEE7-DBFF9616B6DC}D:\steamgames\steamapps\common\terraria\terrariaserver.exe] => (Allow) D:\steamgames\steamapps\common\terraria\terrariaserver.exe
FirewallRules: [{65D0288D-880F-48CF-AC6D-EA248013F3AD}] => (Block) D:\steamgames\steamapps\common\terraria\terrariaserver.exe
FirewallRules: [{3B9C5AC1-C209-42E0-9AC3-00779F64534C}] => (Block) D:\steamgames\steamapps\common\terraria\terrariaserver.exe
FirewallRules: [TCP Query User{41E53D51-E877-4316-A2E7-2881F4A06A94}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe] => (Allow) C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe
FirewallRules: [UDP Query User{CDCBA8BC-6386-4860-AB63-537E1307B9DB}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe] => (Allow) C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe
FirewallRules: [{97A05376-ED3E-4A09-98D5-887AC3884350}] => (Block) C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe
FirewallRules: [{4C83846A-E22D-44B9-AB0E-0C96F595E78C}] => (Block) C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe
FirewallRules: [{5DC33EB7-31C4-4AE0-9C63-B608A1A4A499}] => (Allow) D:\steamgames\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe
FirewallRules: [{3FFBE79C-D80B-4B80-A365-CBEA4DCB395C}] => (Allow) D:\steamgames\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe
FirewallRules: [TCP Query User{0D26F225-D5DF-435C-9631-1A13EAA65B9B}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [UDP Query User{27719E75-36F6-4AFE-B41F-FFF18C194B34}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [{FEF77FC6-563D-4C56-8688-97AC87C88ACB}] => (Block) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [{925553BD-BC18-4F6B-80B1-A8C3810112C5}] => (Block) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [{83BE297F-8201-4B72-B270-8EC59F952A4D}] => (Allow) D:\steamgames\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
FirewallRules: [{ACE9DDDF-7F69-4803-B1DE-BFB4C1088484}] => (Allow) D:\steamgames\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
FirewallRules: [{C5A3A9C7-9EA7-4CC1-B303-A8EA4838ED1A}] => (Allow) D:\steamgames\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe
FirewallRules: [{99DEB0FC-41C0-4B65-835E-74DAC35B0F2C}] => (Allow) D:\steamgames\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe
FirewallRules: [{E3FF30C7-7A77-4088-B864-4A72A49E69D5}] => (Allow) D:\steamgames\steamapps\common\Tom Clancy's The Division\thedivision.exe
FirewallRules: [{BD013EDD-9527-49B1-82E6-75709630CD15}] => (Allow) D:\steamgames\steamapps\common\Tom Clancy's The Division\thedivision.exe
FirewallRules: [{252AC3FB-10D5-4710-BF6F-B5889F0A6C84}] => (Allow) D:\steamgames\steamapps\common\Brawlhalla\Brawlhalla.exe
FirewallRules: [{28822D25-4652-459B-9664-9FEE0CCBEA76}] => (Allow) D:\steamgames\steamapps\common\Brawlhalla\Brawlhalla.exe
FirewallRules: [TCP Query User{4BFAE768-14CA-41BA-BE2C-9979EC69D787}C:\users\fuck y\downloads\downloader_warcraft3_reign_of_chaos_engb.exe] => (Allow) C:\users\fuck y\downloads\downloader_warcraft3_reign_of_chaos_engb.exe
FirewallRules: [UDP Query User{26DD3BBF-2C4A-4C72-8BAF-23464BACEF56}C:\users\fuck y\downloads\downloader_warcraft3_reign_of_chaos_engb.exe] => (Allow) C:\users\fuck y\downloads\downloader_warcraft3_reign_of_chaos_engb.exe
FirewallRules: [{E616D52D-CC2D-452C-9F1B-4C92A861618D}] => (Block) C:\users\fuck y\downloads\downloader_warcraft3_reign_of_chaos_engb.exe
FirewallRules: [{48562941-6A77-4F23-AC1C-DCDCD528B832}] => (Block) C:\users\fuck y\downloads\downloader_warcraft3_reign_of_chaos_engb.exe
FirewallRules: [TCP Query User{57FBD150-30FA-4CCF-88E5-B5F064869FC0}C:\users\fuck y\downloads\downloader_warcraft3_the_frozen_throne_engb.exe] => (Allow) C:\users\fuck y\downloads\downloader_warcraft3_the_frozen_throne_engb.exe
FirewallRules: [UDP Query User{8C2F83FE-9116-41C7-9694-F2D7D91C8BBE}C:\users\fuck y\downloads\downloader_warcraft3_the_frozen_throne_engb.exe] => (Allow) C:\users\fuck y\downloads\downloader_warcraft3_the_frozen_throne_engb.exe
FirewallRules: [{BEEC508B-3E18-45B8-AFD0-42FFBF1398BC}] => (Block) C:\users\fuck y\downloads\downloader_warcraft3_the_frozen_throne_engb.exe
FirewallRules: [{B935771B-2F29-4827-85E4-CF6A0890FEA4}] => (Block) C:\users\fuck y\downloads\downloader_warcraft3_the_frozen_throne_engb.exe
FirewallRules: [TCP Query User{864A699D-11F5-426B-BDB3-F9606E7DC214}D:\warcraft 3\warcraft iii\war3.exe] => (Allow) D:\warcraft 3\warcraft iii\war3.exe
FirewallRules: [UDP Query User{B0E4F322-8F94-4876-BFDC-B20A910C5C43}D:\warcraft 3\warcraft iii\war3.exe] => (Allow) D:\warcraft 3\warcraft iii\war3.exe
FirewallRules: [{E47BF258-AB98-4392-9694-597A32F5E66A}] => (Block) D:\warcraft 3\warcraft iii\war3.exe
FirewallRules: [{B2D7B70F-F9AE-4195-8076-47F7609C552D}] => (Block) D:\warcraft 3\warcraft iii\war3.exe
FirewallRules: [{B34DDE9A-20AD-4C16-B813-1329CB24F486}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{58D3F877-1602-4A43-9475-06FCB4D65540}C:\users\fuck y\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\fuck y\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{DB75A57B-A805-435F-8118-13FEC20D7517}C:\users\fuck y\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\fuck y\appdata\roaming\spotify\spotify.exe
FirewallRules: [{E2A94882-41B0-473B-8FF9-FC4FA3B0F17C}] => (Allow) D:\steamgames\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{68E13983-28A1-47D5-8BB2-175982A1142B}] => (Allow) D:\steamgames\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{18ED9A77-7BC7-4CFA-94CF-2359097C5DF2}] => (Allow) D:\Grand Theft Auto V\GTA5.exe
FirewallRules: [{9F799B27-C405-4DE4-A538-8925F982DEDD}] => (Allow) D:\Grand Theft Auto V\GTA5.exe

==================== Wiederherstellungspunkte =========================

14-03-2016 13:03:06 Windows Modules Installer
20-03-2016 19:55:21 Removed Blade & Soul
24-03-2016 18:07:05 Removed Skype™ 7.17

==================== Fehlerhafte Geräte im Gerätemanager =============

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (03/24/2016 06:07:41 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert
.

Error: (03/24/2016 12:57:37 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: dwm.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d756
Name des fehlerhaften Moduls: combase.dll, Version: 10.0.10586.103, Zeitstempel: 0x56a849ab
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000067e3c
ID des fehlerhaften Prozesses: 0x2ce8
Startzeit der fehlerhaften Anwendung: 0xdwm.exe0
Pfad der fehlerhaften Anwendung: dwm.exe1
Pfad des fehlerhaften Moduls: dwm.exe2
Berichtskennung: dwm.exe3
Vollständiger Name des fehlerhaften Pakets: dwm.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: dwm.exe5

Error: (03/23/2016 04:20:39 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (03/22/2016 03:18:24 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: dwm.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d756
Name des fehlerhaften Moduls: combase.dll, Version: 10.0.10586.103, Zeitstempel: 0x56a849ab
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000067e3c
ID des fehlerhaften Prozesses: 0xc74
Startzeit der fehlerhaften Anwendung: 0xdwm.exe0
Pfad der fehlerhaften Anwendung: dwm.exe1
Pfad des fehlerhaften Moduls: dwm.exe2
Berichtskennung: dwm.exe3
Vollständiger Name des fehlerhaften Pakets: dwm.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: dwm.exe5

Error: (03/21/2016 02:48:29 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (03/21/2016 04:08:28 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: dwm.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d756
Name des fehlerhaften Moduls: combase.dll, Version: 10.0.10586.103, Zeitstempel: 0x56a849ab
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000067e3c
ID des fehlerhaften Prozesses: 0x294
Startzeit der fehlerhaften Anwendung: 0xdwm.exe0
Pfad der fehlerhaften Anwendung: dwm.exe1
Pfad des fehlerhaften Moduls: dwm.exe2
Berichtskennung: dwm.exe3
Vollständiger Name des fehlerhaften Pakets: dwm.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: dwm.exe5

Error: (03/21/2016 12:26:33 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: GTA5.exe, Version: 1.0.678.1, Zeitstempel: 0x56e29e89
Name des fehlerhaften Moduls: GTA5.exe, Version: 1.0.678.1, Zeitstempel: 0x56e29e89
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000129403f
ID des fehlerhaften Prozesses: 0x19d8
Startzeit der fehlerhaften Anwendung: 0xGTA5.exe0
Pfad der fehlerhaften Anwendung: GTA5.exe1
Pfad des fehlerhaften Moduls: GTA5.exe2
Berichtskennung: GTA5.exe3
Vollständiger Name des fehlerhaften Pakets: GTA5.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: GTA5.exe5

Error: (03/21/2016 12:16:56 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: Avira.ServiceHost.exe, Version: 1.1.47.11018, Zeitstempel: 0x55f12efe
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 10.0.10586.162, Zeitstempel: 0x56cd55ab
Ausnahmecode: 0xe0434352
Fehleroffset: 0x000bdad8
ID des fehlerhaften Prozesses: 0x18f4
Startzeit der fehlerhaften Anwendung: 0xAvira.ServiceHost.exe0
Pfad der fehlerhaften Anwendung: Avira.ServiceHost.exe1
Pfad des fehlerhaften Moduls: Avira.ServiceHost.exe2
Berichtskennung: Avira.ServiceHost.exe3
Vollständiger Name des fehlerhaften Pakets: Avira.ServiceHost.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Avira.ServiceHost.exe5

Error: (03/21/2016 12:16:56 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: Avira.ServiceHost.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: System.MissingMethodException
   bei Avira.OE.CertificateTools.AuthenticodeVerifier.HasTrustworthyAviraSignature(System.String)
   bei Avira.OE.CertificateTools.AuthenticodeVerifier.VerifyAviraSignature(System.String)
   bei Avira.OE.ServiceHost.AssemblyLoadVerifier.IsSignatureValid(Avira.OE.CertificateTools.IAuthenticodeVerifier, System.String)
   bei Avira.OE.ServiceHost.AssemblyLoadVerifier+<>c__DisplayClass2.<AreSignaturesValid>b__1(System.String)
   bei System.Linq.Enumerable.All[[System.__Canon, mscorlib, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089]](System.Collections.Generic.IEnumerable`1<System.__Canon>, System.Func`2<System.__Canon,Boolean>)
   bei Avira.OE.ServiceHost.AssemblyLoadVerifier.AreSignaturesValid(System.Collections.Generic.IEnumerable`1<System.String>)
   bei Avira.OE.ServiceHost.Program+<>c__DisplayClass1.<OnServiceStart>b__0(System.Object)
   bei System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
   bei System.Threading.ThreadPoolWorkQueue.Dispatch()
   bei System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()

Error: (03/21/2016 12:16:40 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: Avira.ServiceHost.exe, Version: 1.1.47.11018, Zeitstempel: 0x55f12efe
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 10.0.10586.162, Zeitstempel: 0x56cd55ab
Ausnahmecode: 0xe0434352
Fehleroffset: 0x000bdad8
ID des fehlerhaften Prozesses: 0x167c
Startzeit der fehlerhaften Anwendung: 0xAvira.ServiceHost.exe0
Pfad der fehlerhaften Anwendung: Avira.ServiceHost.exe1
Pfad des fehlerhaften Moduls: Avira.ServiceHost.exe2
Berichtskennung: Avira.ServiceHost.exe3
Vollständiger Name des fehlerhaften Pakets: Avira.ServiceHost.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Avira.ServiceHost.exe5


Systemfehler:
=============
Error: (03/24/2016 12:29:59 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}

Error: (03/24/2016 12:57:35 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Synchronisierungshost_7886c92" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (03/24/2016 12:57:34 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (03/23/2016 12:40:38 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}

Error: (03/23/2016 03:41:54 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Synchronisierungshost_4a4d316" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (03/23/2016 03:41:54 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (03/22/2016 01:56:40 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}

Error: (03/22/2016 03:18:20 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Synchronisierungshost_11ffa78" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (03/22/2016 03:18:19 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (03/21/2016 01:45:51 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}


CodeIntegrity:
===================================
  Date: 2016-03-23 12:40:00.645
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-14 15:56:12.406
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-12 12:48:24.753
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-11 12:26:58.538
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-08 12:29:11.813
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-08 12:25:06.215
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-07 11:18:32.355
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-07 11:15:48.222
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-07 11:00:14.097
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.


==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Core(TM) i5-4590 CPU @ 3.30GHz
Prozentuale Nutzung des RAM: 42%
Installierter physikalischer RAM: 8143.01 MB
Verfügbarer physikalischer RAM: 4648.52 MB
Summe virtueller Speicher: 12123.01 MB
Verfügbarer virtueller Speicher: 7440.21 MB

==================== Laufwerke ================================

Drive c: () (Fixed) (Total:243.36 GB) (Free:128.96 GB) NTFS
Drive d: () (Fixed) (Total:687.37 GB) (Free:344.71 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 3D4B8607)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=243.4 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
Partition 4: (Not Active) - (Size=687.4 GB) - (Type=07 NTFS)

==================== Ende von Addition.txt ============================
         
__________________

Alt 29.03.2016, 10:11   #4
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 10: Skype Virus wurde von meinem Account verschickt - Standard

Windows 10: Skype Virus wurde von meinem Account verschickt



moin


Bitte Avira deinstallieren. Das Teil empfehlen wir schon seit Jahren aus mehreren Gründen nicht mehr. Ein Grund ist ne rel. hohe Fehlalarmquote, der zweite Hauptgrund ist, dass die immer noch mit ASK zusammenarbeiten (Avira Suchfunktion geht über ASK). Auch andere Freewareanbieter wie AVG, Avast oder Panda sprangen auf diesen Zug auf; so was ist bei Sicherheitssoftware einfach inakzeptabel. Vgl. Antivirensoftware: Schutz Für Ihre Dateien, Aber Auf Kosten Ihrer Privatsphäre? | Emsisoft Blog

Wenn wir hier durch sind, kannst du auf einen anderen Virenscanner umsteigen.

Gib Bescheid wenn Avira weg ist.
__________________
Logfiles bitte immer in CODE-Tags posten

Antwort

Themen zu Windows 10: Skype Virus wurde von meinem Account verschickt
.dll, administrator, antivir, avira, defender, desktop, downloader, explorer, geforce, google, home, homepage, mozilla, nvidia, problem, proxy, prozesse, realtek, registry, rundll, scan, software, system, trick, virus, windows, windowsapps




Ähnliche Themen: Windows 10: Skype Virus wurde von meinem Account verschickt


  1. Es werden Spam Mails von meinem e-mail account verschickt
    Plagegeister aller Art und deren Bekämpfung - 30.01.2016 (24)
  2. Windows 8.1/N900: Skype verschickt mit meinem Account "Hi! goo.gl/*"
    Plagegeister aller Art und deren Bekämpfung - 10.07.2015 (15)
  3. Windows 7, von meinem Yahoo Account werden scheinbar Spam-Mails verschickt
    Plagegeister aller Art und deren Bekämpfung - 13.11.2014 (11)
  4. Windows 7: Spam-Mails von meinem Yahoo Account verschickt
    Log-Analyse und Auswertung - 28.04.2014 (7)
  5. E-Mail Account gehackt - unauthorisierte Mails von meinem Account werden verschickt
    Log-Analyse und Auswertung - 19.04.2014 (5)
  6. Unauthorisierte Mails von meinem Account werden verschickt
    Mülltonne - 13.04.2014 (1)
  7. Mail-Account verschickt regelmäßig automatisch Spam-Mails aus meinem Postkorb
    Log-Analyse und Auswertung - 13.08.2012 (34)
  8. Spammails werden von meinem Hotmail account verschickt
    Plagegeister aller Art und deren Bekämpfung - 10.07.2012 (2)
  9. Trojaner verschickt Spam-Mails aus meinem yahoo-Account
    Plagegeister aller Art und deren Bekämpfung - 24.06.2012 (3)
  10. von meinem WEB.DE Account werden Spam-Mails verschickt
    Plagegeister aller Art und deren Bekämpfung - 16.02.2012 (23)
  11. unbekannte Mails werden von meinem web.de account verschickt
    Plagegeister aller Art und deren Bekämpfung - 09.01.2012 (40)
  12. Spam-Mails mit meinem E-Mail-Account verschickt.
    Plagegeister aller Art und deren Bekämpfung - 20.12.2011 (17)
  13. Spam-Nachrichten von meinem E-Mail-Account verschickt - Befürchtung, daß ich 'nen Virus hab...
    Log-Analyse und Auswertung - 25.11.2011 (12)
  14. Spam-Email von meinem Account verschickt
    Log-Analyse und Auswertung - 19.11.2011 (1)
  15. Virus der Sich über Skype verschickt
    Log-Analyse und Auswertung - 26.09.2010 (21)
  16. ICQ verschickt von meinem Account aus russische Nachrichten
    Log-Analyse und Auswertung - 14.03.2010 (0)
  17. Mein Skype Account wurde verändert - was tun ?
    Plagegeister aller Art und deren Bekämpfung - 22.02.2007 (7)

Zum Thema Windows 10: Skype Virus wurde von meinem Account verschickt - Guten Tag, ich werde nun Stichpunkte angeben, um das Problem so genau wie möglich zu definieren: -Heute um 11:30 habe ich an diversen Kontakten in Skype einen bit.ly link geschickt - Windows 10: Skype Virus wurde von meinem Account verschickt...
Archiv
Du betrachtest: Windows 10: Skype Virus wurde von meinem Account verschickt auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.