|
Log-Analyse und Auswertung: Windows 10 bei Klick öffnet sich neues FensterWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
11.10.2016, 17:26 | #1 |
| Windows 10 bei Klick öffnet sich neues Fenster Hallo, Bei jedem Klick in chrome öffnet sich ein neues Fenster mit Werbung oder leeren Seiten,meist Reparatur Tools. Was kann ich tun ? Geändert von lauracmanns (11.10.2016 um 17:34 Uhr) |
11.10.2016, 18:02 | #2 |
/// TB-Ausbilder /// Anleitungs-Guru | Windows 10 bei Klick öffnet sich neues FensterMein Name ist Jürgen und ich werde Dir bei Deinem Problem behilflich sein. Zusammen schaffen wir das...
Hinweis: Ich kann Dir niemals eine Garantie geben, dass wir alle schädlichen Dateien finden werden. Eine Formatierung ist meist der schnellere und immer der sicherste Weg, aber auch nur bei wirklicher Malware empfehlenswert. Adware & Co. können wir sehr gut entfernen. Solltest Du Dich für eine Bereinigung entscheiden, arbeite solange mit, bis Du mein clean bekommst. Los geht's: Schritt 1 Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff Posten in CODE-Tags: So gehts... Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert uns massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
11.10.2016, 18:15 | #3 |
| Windows 10 bei Klick öffnet sich neues FensterCode:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 10-10-2016 durchgeführt von laura (Administrator) auf DESKTOP-0TG2UTJ (11-10-2016 19:06:49) Gestartet von C:\Users\laura\Downloads Geladene Profile: laura (Verfügbare Profile: laura) Platform: Windows 10 Home Version 1607 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Edge) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe (Lenovo Group Limited) C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\HidMonitorSvc.exe (Intel Corporation) C:\Windows\System32\ibtsiva.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Lenovo) C:\ProgramData\LenovoTransition\Server\x64\ymc.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Reimage®) C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe (Intel Security, Inc.) C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe (Reimage®) C:\Program Files\Reimage\Reimage Protector\ReiSystem.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\hidfind.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe () C:\Program Files\Lenovo\LenovoUtility\utility.exe (Spotify Ltd) C:\Users\laura\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Spotify Ltd) C:\Users\laura\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd) C:\Users\laura\AppData\Roaming\Spotify\SpotifyCrashService.exe (Spotify Ltd) C:\Users\laura\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd) C:\Users\laura\AppData\Roaming\Spotify\Spotify.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McUICnt.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe (Lenovo) C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe (Lenovo) C:\Program Files (x86)\Lenovo\GDCAgentSetupRed\GDCAgent.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe (Lenovo) C:\Program Files (x86)\Lenovo\CCSDK\WinGather.exe (Lenovo Group Limited) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeHost.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Security) C:\Program Files\Common Files\McAfee\ClientAnalytics\McClientAnalytics.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [Apoint] => C:\Program Files\Apoint2K\Apoint.exe [699728 2016-09-06] (Alps Electric Co., Ltd.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16405744 2015-09-10] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1408752 2015-09-10] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1408752 2015-09-10] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1408752 2015-09-10] (Realtek Semiconductor) HKLM\...\Run: [LenovoUtility] => C:\Program Files\Lenovo\LenovoUtility\utility.exe [791848 2016-01-06] () HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-06-23] (Intel Corporation) HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [60136 2016-08-19] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [917584 2016-10-11] (Avira Operations GmbH & Co. KG) HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\...\Run: [Chromium] => c:\users\laura\appdata\local\chromium\application\chrome.exe [1068544 2016-03-18] (The Chromium Authors) HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\...\Run: [Spotify Web Helper] => C:\Users\laura\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1529456 2016-09-20] (Spotify Ltd) HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\...\Run: [Spotify] => C:\Users\laura\AppData\Roaming\Spotify\Spotify.exe [6795376 2016-09-20] (Spotify Ltd) GroupPolicy: Beschränkung <======= ACHTUNG ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{3bf02ba2-c435-446c-ae1a-6a7f12088dc9}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{b15a5a4b-b934-4324-afde-461767d033d1}: [DhcpNameServer] 172.168.127.2 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE13&ocid=UE13DHP HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo15.msn.com/?pc=LCTE SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1616461286-2091979816-1760888700-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1616461286-2091979816-1760888700-1001 -> {416EC25E-9423-4E13-82AA-3E65169B8E67} URL = Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2016-07-11] (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2016-07-11] (McAfee, Inc.) FireFox: ======== FF ProfilePath: C:\Users\laura\AppData\Roaming\Mozilla\Firefox\Profiles\bdPHnmnz.default [2016-10-11] FF Extension: (Avira Browser Safety) - C:\Users\laura\AppData\Roaming\Mozilla\Firefox\Profiles\bdPHnmnz.default\Extensions\abs@avira.com [2016-09-06] FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2016-09-08] [ist nicht signiert] FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2016-07-11] () FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2016-07-11] () FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-09-06] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-09-06] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-10-01] (Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default [2016-10-11] CHR Extension: (Google Präsentationen) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-09-06] CHR Extension: (Google Docs) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-09-06] CHR Extension: (Google Drive) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-09-06] CHR Extension: (YouTube) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-09-06] CHR Extension: (Text Mode) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpeffcnnffodaeaklkhdhfgnpkdamoan [2016-09-26] CHR Extension: (Adblock Plus) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-09-06] CHR Extension: (Google Tabellen) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-09-06] CHR Extension: (Avira Browserschutz) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2016-09-21] CHR Extension: (Google Docs Offline) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-09-06] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-09-06] CHR Extension: (Google Mail) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-09-06] CHR Extension: (Chrome Media Router) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-09-22] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1086040 2016-10-11] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [475232 2016-10-11] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [475232 2016-10-11] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1489240 2016-10-11] (Avira Operations GmbH & Co. KG) R2 ApHidMonitorService; C:\Program Files\Apoint2K\HidMonitorSvc.exe [88920 2016-09-06] (Alps Electric Co., Ltd.) R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [324304 2016-08-19] (Avira Operations GmbH & Co. KG) R2 CCSDK; C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe [650680 2015-07-29] (Lenovo) S3 cplspcon; C:\Windows\system32\IntelCpHDCPSvc.exe [623072 2016-09-06] (Intel Corporation) R2 GDCAgent; C:\Program Files (x86)\Lenovo\GDCAgentSetupRed\GDCAgent.exe [1155512 2015-07-29] (Lenovo) R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [599864 2016-04-23] (McAfee, Inc.) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-06-23] (Intel Corporation) R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [373728 2016-09-06] (Intel Corporation) R2 ImControllerService; c:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [60752 2016-09-13] (Lenovo Group Limited) S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [271296 2015-08-07] (Lenovo) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [989192 2016-07-11] (McAfee, Inc.) S3 McAWFwk; C:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [338208 2015-03-19] (McAfee, Inc.) R2 mcbootdelaystartsvc; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [599864 2016-04-23] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [599864 2016-04-23] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [599864 2016-04-23] (McAfee, Inc.) S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [795528 2016-04-20] (McAfee, Inc.) S4 McOobeSv2; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [599864 2016-04-23] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [599864 2016-04-23] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [599864 2016-04-23] (McAfee, Inc.) R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232688 2016-04-26] (McAfee, Inc.) R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [382456 2016-07-11] (McAfee, Inc.) R3 mfevtp; C:\Windows\system32\mfevtps.exe [277744 2016-04-26] (McAfee, Inc.) R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1424352 2016-04-21] (McAfee, Inc.) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2015-06-12] () R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [50688 2016-06-15] (HP Inc.) [Datei ist nicht signiert] R2 PEFService; C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [1045336 2016-05-25] (Intel Security, Inc.) R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [66048 2016-06-15] (HP Inc.) [Datei ist nicht signiert] R2 ReimageRealTimeProtector; C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [7953776 2016-09-28] (Reimage®) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation) R2 ymc; C:\ProgramData\LenovoTransition\Server\x64\ymc.exe [34744 2015-08-21] (Lenovo) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3831200 2015-06-12] (Intel® Corporation) R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 ApkbfiltrService; C:\Windows\System32\drivers\Apkbfiltr.sys [31016 2015-07-20] (Alps Electric Co., Ltd.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [149832 2016-10-11] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [153392 2016-10-11] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2016-08-25] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [78208 2016-08-25] (Avira Operations GmbH & Co. KG) R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [78632 2016-04-27] (McAfee, Inc.) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [207968 2016-02-24] (McAfee, Inc.) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [349960 2016-09-08] (Intel Corporation) R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [419616 2016-04-27] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [349480 2016-04-27] (McAfee, Inc.) S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [83608 2016-04-27] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [493352 2016-04-27] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [843048 2016-04-27] (McAfee, Inc.) R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [543488 2016-02-10] (McAfee, Inc.) S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [109480 2016-02-10] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [243488 2016-04-27] (McAfee, Inc.) S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () S3 NETwNe64; C:\Windows\System32\drivers\NETwew01.sys [3354384 2015-07-10] (Intel Corporation) R3 Netwtw04; C:\Windows\System32\drivers\Netwtw04.sys [7116288 2016-07-16] (Intel Corporation) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [895256 2015-06-18] (Realtek ) R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [3059416 2015-06-11] (Realtek Semiconductor Corp.) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-10-11 18:11 - 2016-10-11 18:11 - 01474568 _____ C:\Users\laura\Downloads\HijackThis - CHIP-Installer.exe 2016-10-11 17:57 - 2016-10-11 17:58 - 00031158 _____ C:\Users\laura\Downloads\Addition.txt 2016-10-11 17:56 - 2016-10-11 19:07 - 00020760 _____ C:\Users\laura\Downloads\FRST.txt 2016-10-11 17:56 - 2016-10-11 19:06 - 00000000 ____D C:\FRST 2016-10-11 17:55 - 2016-10-11 17:55 - 02407424 _____ (Farbar) C:\Users\laura\Downloads\FRST64.exe 2016-10-11 17:55 - 2016-10-11 17:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee 2016-10-11 17:54 - 2016-10-11 17:54 - 01757184 _____ (Farbar) C:\Users\laura\Downloads\FRST.exe 2016-10-11 17:52 - 2016-10-11 17:52 - 00000000 ___HD C:\OneDriveTemp 2016-10-11 17:47 - 2016-10-11 17:47 - 00000000 ____D C:\Users\laura\AppData\Local\ElevatedDiagnostics 2016-10-11 17:32 - 2016-10-11 17:32 - 00004352 _____ C:\WINDOWS\System32\Tasks\ReimageUpdater 2016-10-11 17:32 - 2016-10-11 17:32 - 00003548 _____ C:\WINDOWS\System32\Tasks\Reimage Reminder 2016-10-11 17:31 - 2016-10-11 17:32 - 00000140 _____ C:\WINDOWS\Reimage.ini 2016-10-11 17:31 - 2016-10-11 17:32 - 00000000 ____D C:\rei 2016-10-11 17:31 - 2016-10-11 17:32 - 00000000 ____D C:\ProgramData\Reimage Protector 2016-10-11 17:31 - 2016-10-11 17:32 - 00000000 ____D C:\Program Files\Reimage 2016-10-11 17:31 - 2016-10-11 17:31 - 00604928 _____ (Reimage) C:\Users\laura\Downloads\ReimageRepair (2).exe 2016-10-11 17:31 - 2016-10-11 17:31 - 00001951 _____ C:\Users\Public\Desktop\PC Scan & Repair by Reimage.lnk 2016-10-11 17:31 - 2016-10-11 17:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Repair 2016-10-11 17:29 - 2016-10-11 17:29 - 01430736 _____ (Essentware) C:\Users\laura\Downloads\PCKeeper Installer.exe 2016-10-11 16:07 - 2016-10-11 16:06 - 00023640 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avusbflt.sys 2016-10-08 19:51 - 2016-10-08 19:51 - 00000000 ____D C:\ProgramData\HP 2016-10-08 19:51 - 2016-10-08 19:51 - 00000000 ____D C:\ProgramData\Hewlett-Packard 2016-10-08 19:51 - 2016-10-08 19:51 - 00000000 _____ C:\WINDOWS\HPMProp.INI 2016-10-06 16:55 - 2016-10-11 15:56 - 00004208 _____ C:\WINDOWS\System32\Tasks\Intel Security DAT Reputation (AMCore) Post DAT update endpoint safety pulse 2016-10-06 16:24 - 2016-10-06 16:39 - 00000000 ____D C:\AdwCleaner 2016-10-06 16:12 - 2016-10-06 16:12 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_ldiagio_uefi_01009.Wdf 2016-10-06 16:11 - 2016-10-06 16:11 - 00000000 ____D C:\Users\laura\AppData\Roaming\Lenovo 2016-10-03 18:05 - 2016-08-26 09:42 - 00604584 _____ (HP Inc.) C:\WINDOWS\SysWOW64\hpcdmc32.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00484776 _____ (HP Inc.) C:\WINDOWS\system32\hpcpn190.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00453544 _____ (HP Inc.) C:\WINDOWS\SysWOW64\hpcc3190.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00310512 _____ (HP Inc.) C:\WINDOWS\system32\hpmlm190.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00264944 _____ (HP Inc.) C:\WINDOWS\system32\hpmml190.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00241904 _____ (HP Inc.) C:\WINDOWS\system32\hpmja190.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00229800 _____ (HP Inc.) C:\WINDOWS\system32\hpmpm081.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00204200 _____ (HP Inc.) C:\WINDOWS\system32\hpmtp190.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00195496 _____ (Hewlett-Packard) C:\WINDOWS\system32\hppdcompio.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00178088 _____ (HP Inc.) C:\WINDOWS\system32\hpcjpm.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00169384 _____ (Hewlett-Packard) C:\WINDOWS\SysWOW64\hppccompio.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00127912 _____ (HP Inc.) C:\WINDOWS\system32\hpmpw081.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00061168 _____ (Hewlett-Packard) C:\WINDOWS\system32\FxCompChannel_x64.dll 2016-10-01 20:12 - 2012-06-13 17:10 - 00102376 _____ ("CyberLink) C:\WINDOWS\system32\Drivers\wsvd.sys 2016-10-01 20:11 - 2016-10-01 20:11 - 00002212 _____ C:\Users\Public\Desktop\Lenovo Photo Master.lnk 2016-10-01 20:11 - 2016-10-01 20:11 - 00000000 ____D C:\Users\laura\AppData\Roaming\CyberLink 2016-10-01 20:11 - 2016-10-01 20:11 - 00000000 ____D C:\Program Files (x86)\CyberLink 2016-10-01 14:59 - 2016-09-15 19:40 - 00965472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2016-10-01 14:59 - 2016-09-15 19:35 - 00455040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll 2016-10-01 14:59 - 2016-09-15 19:34 - 00279904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2016-10-01 14:59 - 2016-09-15 19:33 - 00083120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devenum.dll 2016-10-01 14:59 - 2016-09-15 19:29 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll 2016-10-01 14:59 - 2016-09-15 19:28 - 07812960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-10-01 14:59 - 2016-09-15 19:27 - 00434528 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2016-10-01 14:59 - 2016-09-15 19:23 - 01430720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2016-10-01 14:59 - 2016-09-15 19:22 - 00860512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2016-10-01 14:59 - 2016-09-15 19:22 - 00116576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll 2016-10-01 14:59 - 2016-09-15 19:21 - 01980776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2016-10-01 14:59 - 2016-09-15 19:21 - 01000288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2016-10-01 14:59 - 2016-09-15 19:20 - 00634944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2016-10-01 14:59 - 2016-09-15 19:15 - 00218976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys 2016-10-01 14:59 - 2016-09-15 19:14 - 01267512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2016-10-01 14:59 - 2016-09-15 19:14 - 00119648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys 2016-10-01 14:59 - 2016-09-15 19:13 - 00113504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll 2016-10-01 14:59 - 2016-09-15 19:12 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2016-10-01 14:59 - 2016-09-15 19:06 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2016-10-01 14:59 - 2016-09-15 19:06 - 00387872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll 2016-10-01 14:59 - 2016-09-15 19:03 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll 2016-10-01 14:59 - 2016-09-15 19:03 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TempSignedLicenseExchangeTask.dll 2016-10-01 14:59 - 2016-09-15 19:02 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfksproxy.dll 2016-10-01 14:59 - 2016-09-15 18:58 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2016-10-01 14:59 - 2016-09-15 18:57 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll 2016-10-01 14:59 - 2016-09-15 18:56 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManagerApi.dll 2016-10-01 14:59 - 2016-09-15 18:55 - 00213504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll 2016-10-01 14:59 - 2016-09-15 18:53 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll 2016-10-01 14:59 - 2016-09-15 18:52 - 00857600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll 2016-10-01 14:59 - 2016-09-15 18:50 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe 2016-10-01 14:59 - 2016-09-15 18:49 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll 2016-10-01 14:59 - 2016-09-15 18:49 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll 2016-10-01 14:59 - 2016-09-15 18:44 - 12345856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2016-10-01 14:59 - 2016-09-15 18:43 - 07467520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2016-10-01 14:59 - 2016-09-15 18:42 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll 2016-10-01 14:59 - 2016-09-15 18:40 - 05061120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2016-10-01 14:59 - 2016-09-15 18:40 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2016-10-01 14:59 - 2016-09-15 18:40 - 00327680 _____ C:\WINDOWS\system32\wc_storage.dll 2016-10-01 14:59 - 2016-09-15 18:39 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll 2016-10-01 14:59 - 2016-09-15 18:39 - 00598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll 2016-10-01 14:59 - 2016-09-15 18:39 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2016-10-01 14:59 - 2016-09-15 18:38 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2016-10-01 14:59 - 2016-09-15 18:38 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2016-10-01 14:59 - 2016-09-15 18:38 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll 2016-10-01 14:59 - 2016-09-15 18:38 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe 2016-10-01 14:59 - 2016-09-15 18:37 - 00390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll 2016-10-01 14:59 - 2016-09-15 18:37 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll 2016-10-01 14:59 - 2016-09-15 18:36 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll 2016-10-01 14:59 - 2016-09-15 18:36 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2016-10-01 14:59 - 2016-09-15 18:36 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll 2016-10-01 14:59 - 2016-09-15 18:35 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll 2016-10-01 14:59 - 2016-09-15 18:35 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2016-10-01 14:59 - 2016-09-15 18:34 - 00671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll 2016-10-01 14:59 - 2016-09-15 18:34 - 00560640 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll 2016-10-01 14:59 - 2016-09-15 18:32 - 01037312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll 2016-10-01 14:59 - 2016-09-15 18:30 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll 2016-10-01 14:59 - 2016-09-15 18:27 - 00883712 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2016-10-01 14:59 - 2016-09-15 18:26 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe 2016-10-01 14:59 - 2016-09-15 18:25 - 13434368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2016-10-01 14:59 - 2016-09-15 18:25 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll 2016-10-01 14:59 - 2016-09-15 18:23 - 03405824 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2016-10-01 14:59 - 2016-09-15 18:23 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2016-10-01 14:59 - 2016-09-15 18:21 - 02538496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2016-10-01 14:59 - 2016-09-15 18:21 - 01491968 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-10-01 14:59 - 2016-09-15 18:21 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2016-10-01 14:59 - 2016-09-15 18:20 - 01535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll 2016-10-01 14:59 - 2016-09-15 18:20 - 01266176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll 2016-10-01 14:59 - 2016-09-15 18:20 - 00908800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2016-10-01 14:59 - 2016-09-15 18:20 - 00845824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll 2016-10-01 14:59 - 2016-09-15 18:20 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll 2016-10-01 14:59 - 2016-09-15 18:19 - 00903680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2016-10-01 14:59 - 2016-09-15 18:19 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2016-10-01 14:59 - 2016-09-15 18:16 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2016-10-01 14:59 - 2016-08-05 10:29 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.UXRes.dll 2016-10-01 14:58 - 2016-09-24 07:55 - 00406016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2016-10-01 14:58 - 2016-09-15 20:14 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2016-10-01 14:58 - 2016-09-15 19:35 - 01705976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2016-10-01 14:58 - 2016-09-15 19:35 - 01570680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2016-10-01 14:58 - 2016-09-15 19:32 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2016-10-01 14:58 - 2016-09-15 19:30 - 00646136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2016-10-01 14:58 - 2016-09-15 19:30 - 00354264 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe 2016-10-01 14:58 - 2016-09-15 19:29 - 01377016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe 2016-10-01 14:58 - 2016-09-15 19:29 - 01117024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2016-10-01 14:58 - 2016-09-15 19:29 - 00512416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll 2016-10-01 14:58 - 2016-09-15 19:29 - 00218008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe 2016-10-01 14:58 - 2016-09-15 19:29 - 00081760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2016-10-01 14:58 - 2016-09-15 19:29 - 00023392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cmimcext.sys 2016-10-01 14:58 - 2016-09-15 19:28 - 02213248 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2016-10-01 14:58 - 2016-09-15 19:28 - 00498960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll 2016-10-01 14:58 - 2016-09-15 19:27 - 05622088 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2016-10-01 14:58 - 2016-09-15 19:27 - 00553312 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2016-10-01 14:58 - 2016-09-15 19:26 - 00090400 _____ (Microsoft Corporation) C:\WINDOWS\system32\devenum.dll 2016-10-01 14:58 - 2016-09-15 19:25 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2016-10-01 14:58 - 2016-09-15 19:25 - 00262960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll 2016-10-01 14:58 - 2016-09-15 19:24 - 00764936 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2016-10-01 14:58 - 2016-09-15 19:23 - 01503032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2016-10-01 14:58 - 2016-09-15 19:23 - 00170960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2016-10-01 14:58 - 2016-09-15 19:22 - 02256080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-10-01 14:58 - 2016-09-15 19:22 - 00975744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2016-10-01 14:58 - 2016-09-15 19:21 - 01218912 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2016-10-01 14:58 - 2016-09-15 19:20 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll 2016-10-01 14:58 - 2016-09-15 19:19 - 00361104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 03893376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 01201872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 01123368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 00980832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 00955528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 00856872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 00404832 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll 2016-10-01 14:58 - 2016-09-15 19:17 - 20965248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-10-01 14:58 - 2016-09-15 19:17 - 00360040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2016-10-01 14:58 - 2016-09-15 19:16 - 02750384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-10-01 14:58 - 2016-09-15 19:16 - 02190176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-10-01 14:58 - 2016-09-15 19:16 - 01859264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2016-10-01 14:58 - 2016-09-15 19:16 - 01738040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2016-10-01 14:58 - 2016-09-15 19:16 - 01292640 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2016-10-01 14:58 - 2016-09-15 19:16 - 01157000 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2016-10-01 14:58 - 2016-09-15 19:16 - 00657760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-10-01 14:58 - 2016-09-15 19:16 - 00527808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll 2016-10-01 14:58 - 2016-09-15 19:16 - 00401760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2016-10-01 14:58 - 2016-09-15 19:16 - 00206096 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2016-10-01 14:58 - 2016-09-15 19:16 - 00146784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll 2016-10-01 14:58 - 2016-09-15 19:15 - 02446704 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2016-10-01 14:58 - 2016-09-15 19:15 - 00649568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2016-10-01 14:58 - 2016-09-15 19:15 - 00341936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2016-10-01 14:58 - 2016-09-15 19:15 - 00130912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys 2016-10-01 14:58 - 2016-09-15 19:13 - 01264912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2016-10-01 14:58 - 2016-09-15 19:12 - 08158672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2016-10-01 14:58 - 2016-09-15 19:11 - 04673296 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-10-01 14:58 - 2016-09-15 19:11 - 00773168 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2016-10-01 14:58 - 2016-09-15 19:10 - 01600632 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2016-10-01 14:58 - 2016-09-15 19:10 - 00918848 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll 2016-10-01 14:58 - 2016-09-15 19:06 - 01469120 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2016-10-01 14:58 - 2016-09-15 19:06 - 01046880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2016-10-01 14:58 - 2016-09-15 19:06 - 00587968 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2016-10-01 14:58 - 2016-09-15 19:06 - 00050880 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2016-10-01 14:58 - 2016-09-15 19:03 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll 2016-10-01 14:58 - 2016-09-15 19:01 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll 2016-10-01 14:58 - 2016-09-15 19:00 - 00518656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll 2016-10-01 14:58 - 2016-09-15 19:00 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Diagnostics.dll 2016-10-01 14:58 - 2016-09-15 19:00 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll 2016-10-01 14:58 - 2016-09-15 19:00 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRHelper.dll 2016-10-01 14:58 - 2016-09-15 19:00 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll 2016-10-01 14:58 - 2016-09-15 18:59 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovslegacy.dll 2016-10-01 14:58 - 2016-09-15 18:58 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe 2016-10-01 14:58 - 2016-09-15 18:58 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlancfg.dll 2016-10-01 14:58 - 2016-09-15 18:58 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll 2016-10-01 14:58 - 2016-09-15 18:58 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll 2016-10-01 14:58 - 2016-09-15 18:58 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.UserDeviceAssociation.dll 2016-10-01 14:58 - 2016-09-15 18:57 - 00404992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll 2016-10-01 14:58 - 2016-09-15 18:57 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll 2016-10-01 14:58 - 2016-09-15 18:57 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll 2016-10-01 14:58 - 2016-09-15 18:57 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2016-10-01 14:58 - 2016-09-15 18:57 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2016-10-01 14:58 - 2016-09-15 18:56 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2016-10-01 14:58 - 2016-09-15 18:56 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll 2016-10-01 14:58 - 2016-09-15 18:56 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2016-10-01 14:58 - 2016-09-15 18:56 - 00413184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll 2016-10-01 14:58 - 2016-09-15 18:56 - 00265728 _____ C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll 2016-10-01 14:58 - 2016-09-15 18:56 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll 2016-10-01 14:58 - 2016-09-15 18:56 - 00257536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll 2016-10-01 14:58 - 2016-09-15 18:56 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 01243136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe 2016-10-01 14:58 - 2016-09-15 18:55 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\biwinrt.dll 2016-10-01 14:58 - 2016-09-15 18:54 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll 2016-10-01 14:58 - 2016-09-15 18:54 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll 2016-10-01 14:58 - 2016-09-15 18:54 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll 2016-10-01 14:58 - 2016-09-15 18:54 - 00431104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll 2016-10-01 14:58 - 2016-09-15 18:53 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll 2016-10-01 14:58 - 2016-09-15 18:53 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2016-10-01 14:58 - 2016-09-15 18:53 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll 2016-10-01 14:58 - 2016-09-15 18:53 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll 2016-10-01 14:58 - 2016-09-15 18:52 - 01358336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2016-10-01 14:58 - 2016-09-15 18:52 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll 2016-10-01 14:58 - 2016-09-15 18:52 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll 2016-10-01 14:58 - 2016-09-15 18:52 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll 2016-10-01 14:58 - 2016-09-15 18:52 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll 2016-10-01 14:58 - 2016-09-15 18:52 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll 2016-10-01 14:58 - 2016-09-15 18:51 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll 2016-10-01 14:58 - 2016-09-15 18:51 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll 2016-10-01 14:58 - 2016-09-15 18:50 - 07625728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-10-01 14:58 - 2016-09-15 18:50 - 07219200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2016-10-01 14:58 - 2016-09-15 18:50 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll 2016-10-01 14:58 - 2016-09-15 18:49 - 19416576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-10-01 14:58 - 2016-09-15 18:49 - 04612608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2016-10-01 14:58 - 2016-09-15 18:49 - 00901120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2016-10-01 14:58 - 2016-09-15 18:49 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll 2016-10-01 14:58 - 2016-09-15 18:49 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll 2016-10-01 14:58 - 2016-09-15 18:47 - 19416576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-10-01 14:58 - 2016-09-15 18:47 - 01077760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll 2016-10-01 14:58 - 2016-09-15 18:47 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2016-10-01 14:58 - 2016-09-15 18:47 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll 2016-10-01 14:58 - 2016-09-15 18:47 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll 2016-10-01 14:58 - 2016-09-15 18:46 - 22566912 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-10-01 14:58 - 2016-09-15 18:46 - 03305984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2016-10-01 14:58 - 2016-09-15 18:46 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll 2016-10-01 14:58 - 2016-09-15 18:46 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll 2016-10-01 14:58 - 2016-09-15 18:46 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ffbroker.dll 2016-10-01 14:58 - 2016-09-15 18:45 - 12174848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-10-01 14:58 - 2016-09-15 18:45 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll 2016-10-01 14:58 - 2016-09-15 18:44 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2016-10-01 14:58 - 2016-09-15 18:44 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAC3ENC.DLL 2016-10-01 14:58 - 2016-09-15 18:43 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2.dll 2016-10-01 14:58 - 2016-09-15 18:43 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfksproxy.dll 2016-10-01 14:58 - 2016-09-15 18:43 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll 2016-10-01 14:58 - 2016-09-15 18:43 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe 2016-10-01 14:58 - 2016-09-15 18:43 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys 2016-10-01 14:58 - 2016-09-15 18:43 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll 2016-10-01 14:58 - 2016-09-15 18:42 - 01220608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll 2016-10-01 14:58 - 2016-09-15 18:42 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe 2016-10-01 14:58 - 2016-09-15 18:42 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll 2016-10-01 14:58 - 2016-09-15 18:42 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2016-10-01 14:58 - 2016-09-15 18:42 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys 2016-10-01 14:58 - 2016-09-15 18:41 - 06043136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.SyncEngine.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Printers.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\NfcRadioMedia.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 02646016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 02026496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2016-10-01 14:58 - 2016-09-15 18:40 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.UserDeviceAssociation.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 02740224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 02254848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 01880576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 01595904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00711168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00418304 _____ C:\WINDOWS\system32\Windows.Perception.Stub.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneBackupHandler.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flights.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 02999296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2016-10-01 14:58 - 2016-09-15 18:38 - 02005504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 01291264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00850944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrGidsHandler.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2016-10-01 14:58 - 2016-09-15 18:38 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00743424 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 03105792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe 2016-10-01 14:58 - 2016-09-15 18:36 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00686592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregcmd.exe 2016-10-01 14:58 - 2016-09-15 18:36 - 00648192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovslegacy.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe 2016-10-01 14:58 - 2016-09-15 18:35 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00783360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll 2016-10-01 14:58 - 2016-09-15 18:34 - 00441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll 2016-10-01 14:58 - 2016-09-15 18:34 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll 2016-10-01 14:58 - 2016-09-15 18:34 - 00424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll 2016-10-01 14:58 - 2016-09-15 18:34 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll 2016-10-01 14:58 - 2016-09-15 18:33 - 03753984 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll 2016-10-01 14:58 - 2016-09-15 18:33 - 01004032 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2016-10-01 14:58 - 2016-09-15 18:33 - 00963584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll 2016-10-01 14:58 - 2016-09-15 18:33 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll 2016-10-01 14:58 - 2016-09-15 18:33 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprapi.dll 2016-10-01 14:58 - 2016-09-15 18:32 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2016-10-01 14:58 - 2016-09-15 18:32 - 00634368 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll 2016-10-01 14:58 - 2016-09-15 18:32 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll 2016-10-01 14:58 - 2016-09-15 18:31 - 09129984 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-10-01 14:58 - 2016-09-15 18:31 - 01912320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll 2016-10-01 14:58 - 2016-09-15 18:31 - 01553408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll 2016-10-01 14:58 - 2016-09-15 18:31 - 01053184 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll 2016-10-01 14:58 - 2016-09-15 18:31 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe 2016-10-01 14:58 - 2016-09-15 18:30 - 01227264 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2016-10-01 14:58 - 2016-09-15 18:30 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll 2016-10-01 14:58 - 2016-09-15 18:30 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CastLaunch.dll 2016-10-01 14:58 - 2016-09-15 18:29 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll 2016-10-01 14:58 - 2016-09-15 18:29 - 01082368 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2016-10-01 14:58 - 2016-09-15 18:29 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll 2016-10-01 14:58 - 2016-09-15 18:29 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2016-10-01 14:58 - 2016-09-15 18:29 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RelPost.exe 2016-10-01 14:58 - 2016-09-15 18:28 - 23680512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-10-01 14:58 - 2016-09-15 18:28 - 03288064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2016-10-01 14:58 - 2016-09-15 18:28 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2016-10-01 14:58 - 2016-09-15 18:28 - 00718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll 2016-10-01 14:58 - 2016-09-15 18:28 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 05111296 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 02860032 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 01078784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 00702976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceControl.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\discan.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\manage-bde.exe 2016-10-01 14:58 - 2016-09-15 18:27 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvenotify.exe 2016-10-01 14:58 - 2016-09-15 18:27 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Sens.dll 2016-10-01 14:58 - 2016-09-15 18:26 - 13081088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-10-01 14:58 - 2016-09-15 18:26 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2.dll 2016-10-01 14:58 - 2016-09-15 18:26 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2016-10-01 14:58 - 2016-09-15 18:26 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll 2016-10-01 14:58 - 2016-09-15 18:26 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeui.dll 2016-10-01 14:58 - 2016-09-15 18:25 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2016-10-01 14:58 - 2016-09-15 18:25 - 00947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_sr.dll 2016-10-01 14:58 - 2016-09-15 18:25 - 00936960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2016-10-01 14:58 - 2016-09-15 18:25 - 00804864 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll 2016-10-01 14:58 - 2016-09-15 18:25 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll 2016-10-01 14:58 - 2016-09-15 18:25 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceAgent.exe 2016-10-01 14:58 - 2016-09-15 18:25 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundMediaPolicy.dll 2016-10-01 14:58 - 2016-09-15 18:24 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll 2016-10-01 14:58 - 2016-09-15 18:24 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2016-10-01 14:58 - 2016-09-15 18:23 - 08122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-10-01 14:58 - 2016-09-15 18:23 - 01361408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2016-10-01 14:58 - 2016-09-15 18:23 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll 2016-10-01 14:58 - 2016-09-15 18:23 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll 2016-10-01 14:58 - 2016-09-15 18:23 - 00611328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2016-10-01 14:58 - 2016-09-15 18:23 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 01709056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 01643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 00983040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 00960000 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 00770560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll 2016-10-01 14:58 - 2016-09-15 18:21 - 04136960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll 2016-10-01 14:58 - 2016-09-15 18:21 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll 2016-10-01 14:58 - 2016-09-15 18:21 - 02208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll 2016-10-01 14:58 - 2016-09-15 18:21 - 00971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2016-10-01 14:58 - 2016-09-15 18:21 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2016-10-01 14:58 - 2016-09-15 18:20 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe |
11.10.2016, 19:30 | #4 |
| Windows 10 bei Klick öffnet sich neues FensterCode:
ATTFilter 4496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll 2016-10-01 14:57 - 2016-09-15 18:59 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp 2016-10-01 14:57 - 2016-09-15 18:59 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinRtTracing.dll 2016-10-01 14:57 - 2016-09-15 18:59 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll 2016-10-01 14:57 - 2016-09-15 18:59 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll 2016-10-01 14:57 - 2016-09-15 18:58 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll 2016-10-01 14:57 - 2016-09-15 18:58 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll 2016-10-01 14:57 - 2016-09-15 18:58 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll 2016-10-01 14:57 - 2016-09-15 18:58 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll 2016-10-01 14:57 - 2016-09-15 18:58 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll 2016-10-01 14:57 - 2016-09-15 18:57 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll 2016-10-01 14:57 - 2016-09-15 18:57 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll 2016-10-01 14:57 - 2016-09-15 18:57 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsensorgroup.dll 2016-10-01 14:57 - 2016-09-15 18:57 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ClipboardServer.dll 2016-10-01 14:57 - 2016-09-15 18:56 - 01300480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll 2016-10-01 14:57 - 2016-09-15 18:56 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll 2016-10-01 14:57 - 2016-09-15 18:56 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2016-10-01 14:57 - 2016-09-15 18:56 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetworkCollectionAgent.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe 2016-10-01 14:57 - 2016-09-15 18:54 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2016-10-01 14:57 - 2016-09-15 18:54 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll 2016-10-01 14:57 - 2016-09-15 18:53 - 00819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll 2016-10-01 14:57 - 2016-09-15 18:52 - 00500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll 2016-10-01 14:57 - 2016-09-15 18:52 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprapi.dll 2016-10-01 14:57 - 2016-09-15 18:52 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2016-10-01 14:57 - 2016-09-15 18:51 - 00762368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll 2016-10-01 14:57 - 2016-09-15 18:50 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe 2016-10-01 14:57 - 2016-09-15 18:50 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pwrshplugin.dll 2016-10-01 14:57 - 2016-09-15 18:49 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.InkControls.dll 2016-10-01 14:57 - 2016-09-15 18:48 - 01321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll 2016-10-01 14:57 - 2016-09-15 18:48 - 01320448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll 2016-10-01 14:57 - 2016-09-15 18:48 - 01112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll 2016-10-01 14:57 - 2016-09-15 18:46 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll 2016-10-01 14:57 - 2016-09-15 18:46 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll 2016-10-01 14:57 - 2016-09-15 18:46 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll 2016-10-01 14:57 - 2016-09-15 18:45 - 02749440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll 2016-10-01 14:57 - 2016-09-15 18:45 - 02642944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2016-10-01 14:57 - 2016-09-15 18:45 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll 2016-10-01 14:57 - 2016-09-15 18:45 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll 2016-10-01 14:57 - 2016-09-15 18:44 - 02153984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll 2016-10-01 14:57 - 2016-09-15 18:44 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.MediaPlayer.dll 2016-10-01 14:57 - 2016-09-15 18:44 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll 2016-10-01 14:57 - 2016-09-15 18:43 - 03520512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe 2016-10-01 14:57 - 2016-09-15 18:43 - 03196416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2016-10-01 14:57 - 2016-09-15 18:43 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll 2016-10-01 14:57 - 2016-09-15 18:43 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToReceiver.dll 2016-10-01 14:57 - 2016-09-15 18:43 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2016-10-01 14:57 - 2016-09-15 18:43 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll 2016-10-01 14:57 - 2016-09-15 18:42 - 00719872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_sr.dll 2016-10-01 14:57 - 2016-09-15 18:42 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundMediaPolicy.dll 2016-10-01 14:57 - 2016-09-15 18:41 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll 2016-10-01 14:57 - 2016-09-15 18:41 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll 2016-10-01 14:57 - 2016-09-15 18:41 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll 2016-10-01 14:57 - 2016-09-15 18:41 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp 2016-10-01 14:57 - 2016-09-15 18:40 - 03369984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 02138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 01988096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthLEEnum.sys 2016-10-01 14:57 - 2016-09-15 18:40 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 00113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2016-10-01 14:57 - 2016-09-15 18:39 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll 2016-10-01 14:57 - 2016-09-15 18:39 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll 2016-10-01 14:57 - 2016-09-15 18:39 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll 2016-10-01 14:57 - 2016-09-15 18:39 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll 2016-10-01 14:57 - 2016-09-15 18:39 - 00873472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll 2016-10-01 14:57 - 2016-09-15 18:39 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll 2016-10-01 14:57 - 2016-09-15 18:38 - 00773120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2016-10-01 14:57 - 2016-09-15 18:38 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkCollectionAgent.dll 2016-10-01 14:57 - 2016-09-15 18:38 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2016-10-01 14:57 - 2016-09-15 18:38 - 00427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll 2016-10-01 14:57 - 2016-09-15 18:38 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvcext.dll 2016-10-01 14:57 - 2016-09-15 18:38 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll 2016-10-01 14:57 - 2016-09-15 18:38 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll 2016-10-01 14:57 - 2016-09-15 18:37 - 01507840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll 2016-10-01 14:57 - 2016-09-15 18:37 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll 2016-10-01 14:57 - 2016-09-15 18:37 - 00651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll 2016-10-01 14:57 - 2016-09-15 18:37 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlancfg.dll 2016-10-01 14:57 - 2016-09-15 18:37 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.HostName.dll 2016-10-01 14:57 - 2016-09-15 18:37 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\biwinrt.dll 2016-10-01 14:57 - 2016-09-15 18:37 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll 2016-10-01 14:57 - 2016-09-15 18:36 - 00719360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys 2016-10-01 14:57 - 2016-09-15 18:36 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll 2016-10-01 14:57 - 2016-09-15 18:36 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2016-10-01 14:57 - 2016-09-15 18:36 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll 2016-10-01 14:57 - 2016-09-15 18:36 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2016-10-01 14:57 - 2016-09-15 18:36 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll 2016-10-01 14:57 - 2016-09-15 18:35 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll 2016-10-01 14:57 - 2016-09-15 18:35 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll 2016-10-01 14:57 - 2016-09-15 18:35 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2016-10-01 14:57 - 2016-09-15 18:35 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll 2016-10-01 14:57 - 2016-09-15 18:35 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll 2016-10-01 14:57 - 2016-09-15 18:35 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\rshx32.dll 2016-10-01 14:57 - 2016-09-15 18:34 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll 2016-10-01 14:57 - 2016-09-15 18:33 - 06285312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2016-10-01 14:57 - 2016-09-15 18:33 - 01145344 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll 2016-10-01 14:57 - 2016-09-15 18:33 - 00966144 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll 2016-10-01 14:57 - 2016-09-15 18:33 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe 2016-10-01 14:57 - 2016-09-15 18:33 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll 2016-10-01 14:57 - 2016-09-15 18:31 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwrshplugin.dll 2016-10-01 14:57 - 2016-09-15 18:30 - 03776512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2016-10-01 14:57 - 2016-09-15 18:30 - 01639424 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll 2016-10-01 14:57 - 2016-09-15 18:30 - 01589248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll 2016-10-01 14:57 - 2016-09-15 18:30 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll 2016-10-01 14:57 - 2016-09-15 18:30 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2016-10-01 14:57 - 2016-09-15 18:30 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll 2016-10-01 14:57 - 2016-09-15 18:29 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll 2016-10-01 14:57 - 2016-09-15 18:28 - 01908224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2016-10-01 14:57 - 2016-09-15 18:28 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll 2016-10-01 14:57 - 2016-09-15 18:28 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll 2016-10-01 14:57 - 2016-09-15 18:27 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2016-10-01 14:57 - 2016-09-15 18:27 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll 2016-10-01 14:57 - 2016-09-15 18:27 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAC3ENC.DLL 2016-10-01 14:57 - 2016-09-15 18:25 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll 2016-10-01 14:57 - 2016-09-15 18:25 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2016-10-01 14:57 - 2016-09-15 18:24 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe 2016-10-01 14:57 - 2016-09-15 18:24 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2016-10-01 14:57 - 2016-09-15 18:24 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll 2016-10-01 14:57 - 2016-09-15 18:24 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll 2016-10-01 14:57 - 2016-09-15 18:24 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll 2016-10-01 14:57 - 2016-09-15 18:23 - 04474368 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2016-10-01 14:57 - 2016-09-15 18:23 - 01040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll 2016-10-01 14:57 - 2016-09-15 18:23 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll 2016-10-01 14:57 - 2016-09-15 18:22 - 08075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2016-10-01 14:57 - 2016-09-15 18:22 - 05611008 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2016-10-01 14:57 - 2016-09-15 18:22 - 00911872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll 2016-10-01 14:57 - 2016-09-15 18:22 - 00857600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll 2016-10-01 14:57 - 2016-09-15 18:20 - 02688512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2016-10-01 14:57 - 2016-09-15 18:20 - 01984512 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2016-10-01 14:57 - 2016-09-15 18:20 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2016-10-01 14:57 - 2016-09-15 18:20 - 00875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2016-10-01 14:57 - 2016-09-15 18:20 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll 2016-10-01 14:57 - 2016-09-15 18:20 - 00765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2016-10-01 14:57 - 2016-09-15 18:19 - 03617792 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-10-01 14:57 - 2016-09-15 18:19 - 01840640 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2016-10-01 14:57 - 2016-09-15 18:19 - 01424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll 2016-10-01 14:57 - 2016-09-15 18:19 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll 2016-10-01 14:57 - 2016-09-15 18:19 - 01013760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll 2016-10-01 14:57 - 2016-09-15 18:19 - 00774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll 2016-10-01 14:57 - 2016-09-15 18:18 - 01369088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll 2016-10-01 14:57 - 2016-09-15 18:18 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2016-10-01 14:57 - 2016-09-15 18:17 - 00924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll 2016-10-01 14:57 - 2016-09-15 18:17 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll 2016-10-01 14:57 - 2016-09-15 18:16 - 00998912 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll 2016-10-01 14:57 - 2016-09-15 18:16 - 00886784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll 2016-10-01 14:57 - 2016-09-15 18:16 - 00531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll 2016-10-01 14:57 - 2016-09-15 16:00 - 00445765 _____ C:\WINDOWS\system32\ApnDatabase.xml 2016-10-01 14:57 - 2016-08-06 05:33 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smphost.dll 2016-10-01 14:51 - 2016-10-01 14:51 - 00604928 _____ (Reimage) C:\Users\laura\Downloads\ReimageRepair (1).exe 2016-09-28 13:51 - 2016-09-28 13:51 - 00604928 _____ (Reimage) C:\Users\laura\Downloads\ReimageRepair.exe 2016-09-27 11:56 - 2016-09-27 11:56 - 00000000 ____D C:\Users\laura\AppData\Roaming\Avira 2016-09-26 15:57 - 2016-09-26 15:57 - 00063231 _____ C:\Users\laura\Downloads\studbesch_B4013B4C87C6C0BCAE9664A0848D0A84.cit-prod-tomcat3.pdf 2016-09-26 15:56 - 2016-09-26 15:56 - 00023501 _____ C:\Users\laura\Downloads\bafoeg_B4013B4C87C6C0BCAE9664A0848D0A84.cit-prod-tomcat3.pdf 2016-09-26 15:47 - 2016-09-26 15:47 - 00063315 _____ C:\Users\laura\Downloads\EinzureichendeUnterlagen (1).pdf 2016-09-26 15:46 - 2016-09-26 15:46 - 00159522 _____ C:\Users\laura\Downloads\BG_Formblatt3_Laura_Carolina_Ramiro_Pires_Manns.pdf 2016-09-26 15:46 - 2016-09-26 15:46 - 00008917 _____ C:\Users\laura\Downloads\BAfoeG_Formblatt3_Walter_Josef_Manns.dgef 2016-09-26 15:42 - 2016-09-26 15:42 - 00123208 _____ C:\Users\laura\Downloads\BG_Anlage1FB1_Laura_Carolina_Ramiro_Pires_Manns.pdf 2016-09-26 15:40 - 2016-09-26 15:40 - 00170607 _____ C:\Users\laura\Downloads\BG_Formblatt1_Laura_Carolina_Ramiro_Pires_Manns.pdf 2016-09-26 15:35 - 2016-09-26 15:35 - 00070011 _____ C:\Users\laura\Downloads\EinzureichendeUnterlagen.pdf 2016-09-26 15:35 - 2016-09-26 15:35 - 00008613 _____ C:\Users\laura\Downloads\bafoeg_Formblatt1_Laura_Carolina_Ramiro_Pires_Manns (3).dgef 2016-09-26 15:25 - 2016-10-11 18:23 - 00004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2016-09-26 15:25 - 2016-10-11 18:22 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-09-26 15:25 - 2016-09-26 15:25 - 00002131 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk 2016-09-26 15:25 - 2016-09-26 15:25 - 00000000 ____D C:\Users\laura\AppData\LocalLow\Adobe 2016-09-26 15:25 - 2016-09-26 15:25 - 00000000 ____D C:\Program Files (x86)\Adobe 2016-09-26 15:24 - 2016-09-26 15:42 - 00000000 ____D C:\ProgramData\Adobe 2016-09-26 15:23 - 2016-09-26 15:25 - 00000000 ____D C:\Users\laura\AppData\Local\Adobe 2016-09-26 14:52 - 2016-09-26 14:52 - 00004053 _____ C:\Users\laura\Downloads\BAfoeG_Anlage1FB1_Laura_Carolina_Ramiro_Pires_Manns (1).dgef 2016-09-26 14:48 - 2016-09-26 14:52 - 00004053 _____ C:\Users\laura\Downloads\BAfoeG_Anlage1FB1_Laura_Carolina_Ramiro_Pires_Manns.dgef 2016-09-26 12:14 - 2016-09-26 12:14 - 00008581 _____ C:\Users\laura\Downloads\bafoeg_Formblatt1_Laura_Carolina_Ramiro_Pires_Manns (2).dgef 2016-09-26 11:12 - 2016-09-26 11:12 - 00008373 _____ C:\Users\laura\Downloads\bafoeg_Formblatt1_Laura_Carolina_Ramiro_Pires_Manns (1).dgef 2016-09-24 17:40 - 2016-09-24 17:40 - 00276560 _____ C:\Users\laura\OneDrive\Dokumente\Orientierungswoche-Oktober-2016_Stundenplan.pdf 2016-09-21 17:20 - 2016-09-21 17:20 - 01525618 _____ C:\Users\laura\Downloads\Selbstauskunft KWG_Palmsanlage 2a.pdf 2016-09-21 17:12 - 2016-09-21 17:12 - 01326246 _____ C:\Users\laura\Downloads\Selbstauskunft DDI_Nägelsbachstr 24.pdf 2016-09-21 16:38 - 2016-09-21 16:38 - 00000000 ____D C:\Users\Default\AppData\Local\AVG 2016-09-21 16:38 - 2016-09-21 16:38 - 00000000 ____D C:\Users\Default User\AppData\Local\AVG 2016-09-20 14:30 - 2016-10-11 18:52 - 00000000 ____D C:\Users\laura\AppData\Roaming\Spotify 2016-09-20 14:30 - 2016-10-11 17:52 - 00000000 ____D C:\Users\laura\AppData\Local\Spotify 2016-09-20 14:30 - 2016-09-20 14:30 - 00356056 _____ (Spotify Ltd) C:\Users\laura\Downloads\SpotifySetup.exe 2016-09-20 14:30 - 2016-09-20 14:30 - 00001857 _____ C:\Users\laura\Desktop\Spotify.lnk 2016-09-20 14:30 - 2016-09-20 14:30 - 00001843 _____ C:\Users\laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2016-09-20 14:30 - 2016-09-20 14:30 - 00000000 ____D C:\Users\laura\AppData\Local\CEF 2016-09-18 16:30 - 2016-09-18 16:35 - 00008704 _____ C:\Users\laura\OneDrive\Dokumente\wohnungsübersicht.xls 2016-09-18 14:22 - 2016-09-18 14:22 - 00007168 _____ C:\Users\laura\OneDrive\Dokumente\wohnungsübersicht.xlt 2016-09-18 14:20 - 2016-09-18 14:21 - 00012398 _____ C:\Users\laura\OneDrive\Dokumente\wohnungsübersicht.ods 2016-09-18 13:51 - 2016-09-18 13:51 - 00000000 ____D C:\Users\laura\AppData\Roaming\OpenOffice 2016-09-16 22:49 - 2016-09-16 22:49 - 626467013 _____ C:\WINDOWS\MEMORY.DMP 2016-09-16 22:49 - 2016-09-16 22:49 - 00416636 _____ C:\WINDOWS\Minidump\091616-13531-01.dmp 2016-09-16 22:49 - 2016-09-16 22:49 - 00000000 ____D C:\WINDOWS\Minidump 2016-09-15 18:33 - 2016-09-15 18:33 - 09135234 _____ C:\Users\laura\Downloads\Unterlagen.zip 2016-09-14 17:18 - 2016-09-14 17:18 - 01472732 _____ C:\Users\laura\Downloads\StudOn-Flyer.pdf 2016-09-14 17:16 - 2016-09-14 17:16 - 00407785 _____ C:\Users\laura\Downloads\StudOn-Erstsemester-Informationsblatt.pdf 2016-09-13 22:03 - 2016-09-07 07:53 - 02183792 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll 2016-09-13 22:03 - 2016-09-07 07:48 - 00379744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2016-09-13 22:03 - 2016-09-07 07:41 - 00303968 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2016-09-13 22:03 - 2016-09-07 07:37 - 01966288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll 2016-09-13 22:03 - 2016-09-07 07:36 - 00187232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2016-09-13 22:03 - 2016-09-07 07:33 - 00681304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys 2016-09-13 22:03 - 2016-09-07 07:32 - 02206496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2016-09-13 22:03 - 2016-09-07 07:29 - 00811416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2016-09-13 22:03 - 2016-09-07 07:29 - 00595488 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2016-09-13 22:03 - 2016-09-07 07:24 - 00057400 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe 2016-09-13 22:03 - 2016-09-07 07:13 - 00529928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll 2016-09-13 22:03 - 2016-09-07 07:04 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll 2016-09-13 22:03 - 2016-09-07 07:03 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosResource.dll 2016-09-13 22:03 - 2016-09-07 07:03 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll 2016-09-13 22:03 - 2016-09-07 07:03 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll 2016-09-13 22:03 - 2016-09-07 07:03 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccessRes.dll 2016-09-13 22:03 - 2016-09-07 07:02 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll 2016-09-13 22:03 - 2016-09-07 07:02 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll 2016-09-13 22:03 - 2016-09-07 07:02 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll 2016-09-13 22:03 - 2016-09-07 07:02 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll 2016-09-13 22:03 - 2016-09-07 07:02 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll 2016-09-13 22:03 - 2016-09-07 07:02 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll 2016-09-13 22:03 - 2016-09-07 07:01 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AddressParser.dll 2016-09-13 22:03 - 2016-09-07 07:01 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll 2016-09-13 22:03 - 2016-09-07 07:00 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2016-09-13 22:03 - 2016-09-07 07:00 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll 2016-09-13 22:03 - 2016-09-07 07:00 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll 2016-09-13 22:03 - 2016-09-07 07:00 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosResource.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MapControls.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappprxy.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactActivation.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.UI.Logon.ProxyStub.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AddressParser.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccessRes.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll 2016-09-13 22:03 - 2016-09-07 06:57 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll 2016-09-13 22:03 - 2016-09-07 06:57 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2016-09-13 22:03 - 2016-09-07 06:56 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll 2016-09-13 22:03 - 2016-09-07 06:56 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2016-09-13 22:03 - 2016-09-07 06:56 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll 2016-09-13 22:03 - 2016-09-07 06:56 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\XamlTileRender.dll 2016-09-13 22:03 - 2016-09-07 06:56 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll 2016-09-13 22:03 - 2016-09-07 06:56 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll 2016-09-13 22:03 - 2016-09-07 06:56 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll 2016-09-13 22:03 - 2016-09-07 06:56 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll 2016-09-13 22:03 - 2016-09-07 06:56 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactActivation.dll 2016-09-13 22:03 - 2016-09-07 06:55 - 00820736 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll 2016-09-13 22:03 - 2016-09-07 06:55 - 00781824 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll 2016-09-13 22:03 - 2016-09-07 06:55 - 00323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll 2016-09-13 22:03 - 2016-09-07 06:55 - 00243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll 2016-09-13 22:03 - 2016-09-07 06:55 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll 2016-09-13 22:03 - 2016-09-07 06:55 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2016-09-13 22:03 - 2016-09-07 06:55 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2016-09-13 22:03 - 2016-09-07 06:55 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll 2016-09-13 22:03 - 2016-09-07 06:54 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2016-09-13 22:03 - 2016-09-07 06:54 - 00678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll 2016-09-13 22:03 - 2016-09-07 06:54 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2016-09-13 22:03 - 2016-09-07 06:54 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\NmaDirect.dll 2016-09-13 22:03 - 2016-09-07 06:54 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Phoneutil.dll 2016-09-13 22:03 - 2016-09-07 06:54 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappprxy.dll 2016-09-13 22:03 - 2016-09-07 06:54 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll 2016-09-13 22:03 - 2016-09-07 06:53 - 00302592 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll 2016-09-13 22:03 - 2016-09-07 06:53 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll 2016-09-13 22:03 - 2016-09-07 06:53 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll 2016-09-13 22:03 - 2016-09-07 06:52 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2016-09-13 22:03 - 2016-09-07 06:52 - 00536576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll 2016-09-13 22:03 - 2016-09-07 06:52 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll 2016-09-13 22:03 - 2016-09-07 06:52 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.UI.Logon.ProxyStub.dll 2016-09-13 22:03 - 2016-09-07 06:50 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2016-09-13 22:03 - 2016-09-07 06:50 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll 2016-09-13 22:03 - 2016-09-07 06:49 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2016-09-13 22:03 - 2016-09-07 06:49 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys 2016-09-13 22:03 - 2016-09-07 06:49 - 00260096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Phoneutil.dll 2016-09-13 22:03 - 2016-09-07 06:47 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll 2016-09-13 22:03 - 2016-09-07 06:46 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll 2016-09-13 22:03 - 2016-09-07 06:46 - 00755200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2016-09-13 22:03 - 2016-09-07 06:46 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll 2016-09-13 22:03 - 2016-09-07 06:45 - 01456640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2016-09-13 22:03 - 2016-09-07 06:45 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2016-09-13 22:03 - 2016-09-07 06:45 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2016-09-13 22:03 - 2016-09-07 06:43 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2016-09-13 22:03 - 2016-09-07 06:41 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2016-09-13 22:03 - 2016-09-07 06:41 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2016-09-13 22:03 - 2016-09-07 06:39 - 03116544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAJApi.dll 2016-09-13 22:03 - 2016-09-07 06:38 - 02315264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2016-09-13 22:03 - 2016-09-07 06:38 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2016-09-13 22:03 - 2016-09-07 06:37 - 00936448 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll 2016-09-13 22:03 - 2016-09-07 06:37 - 00905216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2016-09-13 22:03 - 2016-09-07 06:36 - 02423296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAJApi.dll 2016-09-13 22:03 - 2016-09-07 06:35 - 00650240 _____ (Microsoft) C:\WINDOWS\system32\DbgModel.dll 2016-09-13 22:03 - 2016-09-07 06:34 - 00761344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll 2016-09-13 22:03 - 2016-09-07 06:34 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll 2016-09-13 22:03 - 2016-09-07 06:33 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll 2016-09-13 22:03 - 2016-09-07 06:31 - 00461312 _____ (Microsoft) C:\WINDOWS\SysWOW64\DbgModel.dll 2016-09-13 22:03 - 2016-08-06 06:26 - 00409944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2016-09-13 22:03 - 2016-08-06 06:16 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2016-09-13 22:03 - 2016-08-06 06:16 - 00020320 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll 2016-09-13 22:03 - 2016-08-06 05:50 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2016-09-13 22:03 - 2016-08-06 05:48 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2016-09-13 22:03 - 2016-08-06 05:48 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe 2016-09-13 22:03 - 2016-08-06 05:48 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2016-09-13 22:03 - 2016-08-06 05:47 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2016-09-13 22:03 - 2016-08-06 05:43 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipboardServer.dll 2016-09-13 22:03 - 2016-08-06 05:40 - 00259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe 2016-09-13 22:03 - 2016-08-06 05:39 - 00261120 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll 2016-09-13 22:03 - 2016-08-06 05:37 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll 2016-09-13 22:03 - 2016-08-06 05:35 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll 2016-09-13 22:03 - 2016-08-06 05:29 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll 2016-09-13 22:03 - 2016-08-02 10:44 - 00114192 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll 2016-09-13 22:03 - 2016-08-02 10:21 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll 2016-09-13 22:03 - 2016-08-02 10:20 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2016-09-13 22:03 - 2016-08-02 10:15 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll 2016-09-13 22:03 - 2016-08-02 10:14 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll 2016-09-13 22:03 - 2016-08-02 10:13 - 01081856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2016-09-13 22:03 - 2016-08-02 06:47 - 00079536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll 2016-09-13 22:03 - 2016-08-02 06:37 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll 2016-09-13 22:03 - 2016-08-02 06:36 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys 2016-09-13 22:03 - 2016-07-22 02:49 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2016-09-13 22:02 - 2016-09-07 07:54 - 00133472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys 2016-09-13 22:02 - 2016-09-07 07:53 - 02481768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2016-09-13 22:02 - 2016-09-07 07:50 - 00773200 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2016-09-13 22:02 - 2016-09-07 07:48 - 02256224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2016-09-13 22:02 - 2016-09-07 07:46 - 00423776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe 2016-09-13 22:02 - 2016-09-07 07:44 - 02049480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2016-09-13 22:02 - 2016-09-07 07:41 - 00172528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll 2016-09-13 22:02 - 2016-09-07 07:34 - 00857440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2016-09-13 22:02 - 2016-09-07 07:34 - 00584544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2016-09-13 22:02 - 2016-09-07 07:34 - 00178528 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll 2016-09-13 22:02 - 2016-09-07 07:33 - 00450392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2016-09-13 22:02 - 2016-09-07 07:32 - 02913104 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2016-09-13 22:02 - 2016-09-07 07:30 - 00601200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2016-09-13 22:02 - 2016-09-07 07:29 - 01694712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2016-09-13 22:02 - 2016-09-07 07:29 - 01274712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2016-09-13 22:02 - 2016-09-07 07:29 - 00755656 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll 2016-09-13 22:02 - 2016-09-07 07:29 - 00523712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.dll 2016-09-13 22:02 - 2016-09-07 07:29 - 00382272 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe 2016-09-13 22:02 - 2016-09-07 07:29 - 00118112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\EhStorTcgDrv.sys 2016-09-13 22:02 - 2016-09-07 07:27 - 01362504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpmde.dll 2016-09-13 22:02 - 2016-09-07 07:24 - 02537824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2016-09-13 22:02 - 2016-09-07 07:17 - 00782176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2016-09-13 22:02 - 2016-09-07 07:17 - 00509792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2016-09-13 22:02 - 2016-09-07 07:15 - 02166232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2016-09-13 22:02 - 2016-09-07 07:13 - 01853232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2016-09-13 22:02 - 2016-09-07 07:13 - 01557296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2016-09-13 22:02 - 2016-09-07 07:13 - 01360456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll 2016-09-13 22:02 - 2016-09-07 07:13 - 00959104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2016-09-13 22:02 - 2016-09-07 07:13 - 00640976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll 2016-09-13 22:02 - 2016-09-07 07:12 - 00321792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe 2016-09-13 22:02 - 2016-09-07 07:07 - 00117240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll 2016-09-13 22:02 - 2016-09-07 07:03 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll 2016-09-13 22:02 - 2016-09-07 07:03 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll 2016-09-13 22:02 - 2016-09-07 07:02 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll 2016-09-13 22:02 - 2016-09-07 07:02 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll 2016-09-13 22:02 - 2016-09-07 07:02 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneutilRes.dll 2016-09-13 22:02 - 2016-09-07 07:02 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneServiceRes.dll 2016-09-13 22:02 - 2016-09-07 07:02 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll 2016-09-13 22:02 - 2016-09-07 07:01 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll 2016-09-13 22:02 - 2016-09-07 06:59 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll 2016-09-13 22:02 - 2016-09-07 06:59 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlStringsRes.dll 2016-09-13 22:02 - 2016-09-07 06:58 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll 2016-09-13 22:02 - 2016-09-07 06:58 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneutilRes.dll 2016-09-13 22:02 - 2016-09-07 06:57 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll 2016-09-13 22:02 - 2016-09-07 06:56 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2016-09-13 22:02 - 2016-09-07 06:55 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2016-09-13 22:02 - 2016-09-07 06:54 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll 2016-09-13 22:02 - 2016-09-07 06:54 - 00446464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2016-09-13 22:02 - 2016-09-07 06:54 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll 2016-09-13 22:02 - 2016-09-07 06:54 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll 2016-09-13 22:02 - 2016-09-07 06:53 - 02083840 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceFlows.DataModel.dll 2016-09-13 22:02 - 2016-09-07 06:53 - 01388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll 2016-09-13 22:02 - 2016-09-07 06:53 - 00526848 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2016-09-13 22:02 - 2016-09-07 06:53 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll 2016-09-13 22:02 - 2016-09-07 06:52 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2016-09-13 22:02 - 2016-09-07 06:52 - 00509952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll 2016-09-13 22:02 - 2016-09-07 06:52 - 00438784 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDec.dll 2016-09-13 22:02 - 2016-09-07 06:52 - 00331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2016-09-13 22:02 - 2016-09-07 06:52 - 00289280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NmaDirect.dll 2016-09-13 22:02 - 2016-09-07 06:50 - 01755136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceFlows.DataModel.dll 2016-09-13 22:02 - 2016-09-07 06:50 - 00866816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll 2016-09-13 22:02 - 2016-09-07 06:50 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll 2016-09-13 22:02 - 2016-09-07 06:48 - 07792640 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2016-09-13 22:02 - 2016-09-07 06:47 - 07654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2016-09-13 22:02 - 2016-09-07 06:46 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2016-09-13 22:02 - 2016-09-07 06:46 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll 2016-09-13 22:02 - 2016-09-07 06:45 - 01228288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll 2016-09-13 22:02 - 2016-09-07 06:42 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2016-09-13 22:02 - 2016-09-07 06:41 - 03435008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll 2016-09-13 22:02 - 2016-09-07 06:41 - 02947072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll 2016-09-13 22:02 - 2016-09-07 06:41 - 02510848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2016-09-13 22:02 - 2016-09-07 06:41 - 01891328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll 2016-09-13 22:02 - 2016-09-07 06:41 - 00932864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2016-09-13 22:02 - 2016-09-07 06:41 - 00758784 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2016-09-13 22:02 - 2016-09-07 06:40 - 02852864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2016-09-13 22:02 - 2016-09-07 06:40 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll 2016-09-13 22:02 - 2016-09-07 06:40 - 01312768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe 2016-09-13 22:02 - 2016-09-07 06:40 - 01282048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2016-09-13 22:02 - 2016-09-07 06:40 - 01029632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2016-09-13 22:02 - 2016-09-07 06:40 - 01006080 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll 2016-09-13 22:02 - 2016-09-07 06:39 - 06109184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2016-09-13 22:02 - 2016-09-07 06:39 - 05384192 _____ (Microsoft) C:\WINDOWS\system32\dbgeng.dll 2016-09-13 22:02 - 2016-09-07 06:39 - 05376000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2016-09-13 22:02 - 2016-09-07 06:39 - 04747776 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-09-13 22:02 - 2016-09-07 06:39 - 00895488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll 2016-09-13 22:02 - 2016-09-07 06:38 - 02289664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2016-09-13 22:02 - 2016-09-07 06:38 - 01555456 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe 2016-09-13 22:02 - 2016-09-07 06:38 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2016-09-13 22:02 - 2016-09-07 06:37 - 02820096 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2016-09-13 22:02 - 2016-09-07 06:37 - 02370048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2016-09-13 22:02 - 2016-09-07 06:37 - 01637888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2016-09-13 22:02 - 2016-09-07 06:37 - 01349120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2016-09-13 22:02 - 2016-09-07 06:37 - 01062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2016-09-13 22:02 - 2016-09-07 06:37 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll 2016-09-13 22:02 - 2016-09-07 06:36 - 03667456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-09-13 22:02 - 2016-09-07 06:36 - 02360832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll 2016-09-13 22:02 - 2016-09-07 06:36 - 01726976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2016-09-13 22:02 - 2016-09-07 06:35 - 02107392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll 2016-09-13 22:02 - 2016-09-07 06:35 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2016-09-13 22:02 - 2016-09-07 06:34 - 04557824 _____ (Microsoft) C:\WINDOWS\SysWOW64\dbgeng.dll 2016-09-13 22:02 - 2016-09-07 06:34 - 01993216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2016-09-13 22:02 - 2016-09-07 06:34 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2016-09-13 22:02 - 2016-09-07 06:34 - 00860672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2016-09-13 22:02 - 2016-09-07 06:34 - 00444416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll 2016-09-13 22:02 - 2016-09-07 06:32 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2016-09-13 22:02 - 2016-09-07 06:31 - 01293312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe 2016-09-13 22:02 - 2016-08-06 06:16 - 00073568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys 2016-09-13 22:02 - 2016-08-06 06:13 - 01453992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll 2016-09-13 22:02 - 2016-08-06 05:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2016-09-13 22:02 - 2016-08-06 05:38 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2016-09-13 22:02 - 2016-08-06 05:37 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2016-09-13 22:02 - 2016-08-02 10:15 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2016-09-13 22:02 - 2016-08-02 06:33 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll 2016-09-13 22:01 - 2016-09-07 06:55 - 06574592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll 2016-09-13 22:01 - 2016-09-07 06:52 - 17187840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2016-09-13 22:01 - 2016-09-07 06:49 - 13867520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2016-09-13 22:01 - 2016-09-07 06:45 - 05398016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll 2016-09-13 22:01 - 2016-09-07 06:41 - 05511680 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2016-09-13 22:01 - 2016-09-07 06:37 - 04148224 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2016-09-13 22:01 - 2016-09-07 06:35 - 03299328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe 2016-09-13 21:25 - 2016-09-13 21:25 - 00569616 _____ (Hewlett Packard) C:\WINDOWS\system32\hpmprein.dll 2016-09-13 21:25 - 2016-09-13 21:25 - 00144840 _____ (HP Inc.) C:\WINDOWS\system32\hpmco190.dll 2016-09-13 18:14 - 2016-09-13 18:14 - 00257872 _____ (Lenovo Group Limited) C:\WINDOWS\system32\iMDriverHelper.dll 2016-09-13 17:29 - 2016-09-14 13:56 - 00000000 ____D C:\Users\laura\OneDrive\Dokumente\wohnung 2016-09-13 15:43 - 2016-09-13 15:43 - 00010743 _____ C:\Users\laura\Downloads\form (2) 2016-09-13 15:42 - 2016-09-13 15:42 - 00041434 _____ C:\Users\laura\Downloads\data.xml 2016-09-13 15:42 - 2016-09-13 15:42 - 00010743 _____ C:\Users\laura\Downloads\form (1) 2016-09-13 15:41 - 2016-09-13 15:41 - 00010743 _____ C:\Users\laura\Downloads\form 2016-09-13 15:21 - 2016-09-13 15:21 - 00008341 _____ C:\Users\laura\Downloads\bafoeg_Formblatt1_Laura_Carolina_Ramiro_Pires_Manns.dgef 2016-09-13 14:57 - 2016-09-13 14:57 - 00193699 _____ C:\Users\laura\Downloads\Selbstauskunft.pdf 2016-09-13 14:49 - 2016-09-13 14:49 - 00000000 ____D C:\Users\laura\AppData\LocalLow\Temp 2016-09-13 14:46 - 2016-09-13 14:49 - 00561875 _____ C:\Users\laura\OneDrive\Dokumente\arbeitsvertrag1473770717.pdf ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-10-11 17:56 - 2016-07-17 00:51 - 00670534 _____ C:\WINDOWS\system32\perfh007.dat 2016-10-11 17:56 - 2016-07-17 00:51 - 00136826 _____ C:\WINDOWS\system32\perfc007.dat 2016-10-11 17:56 - 2015-07-16 17:54 - 01786062 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-10-11 17:52 - 2016-09-09 13:10 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2016-10-11 17:52 - 2016-09-06 12:28 - 00000000 ___RD C:\Users\laura\OneDrive 2016-10-11 17:52 - 2016-09-06 12:26 - 00000000 __SHD C:\Users\laura\IntelGraphicsProfiles 2016-10-11 17:51 - 2016-09-09 13:15 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-10-11 17:51 - 2016-07-16 08:04 - 00008192 _____ C:\WINDOWS\system32\config\ELAM 2016-10-11 17:50 - 2016-07-16 08:04 - 00786432 _____ C:\WINDOWS\system32\config\BBI 2016-10-11 17:36 - 2016-09-09 13:15 - 00004020 _____ C:\WINDOWS\System32\Tasks\Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse 2016-10-11 17:02 - 2016-09-09 13:09 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2016-10-11 16:12 - 2016-07-16 13:47 - 00000000 ___HD C:\Program Files\WindowsApps 2016-10-11 16:12 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-10-11 16:08 - 2016-09-06 12:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2016-10-11 16:06 - 2016-09-06 12:53 - 00153392 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2016-10-11 16:06 - 2016-09-06 12:53 - 00149832 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys 2016-10-07 13:09 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\rescache 2016-10-06 16:12 - 2016-01-06 11:57 - 00000000 ____D C:\ProgramData\Lenovo 2016-10-04 20:23 - 2016-09-06 12:26 - 00000000 ____D C:\Users\laura\AppData\Local\Packages 2016-10-04 20:22 - 2016-09-06 12:42 - 00000000 ____D C:\Users\laura\AppData\Local\AvgSetupLog 2016-10-04 20:22 - 2016-09-06 12:42 - 00000000 ____D C:\ProgramData\Avg 2016-10-04 20:22 - 2016-09-06 12:42 - 00000000 ____D C:\Program Files (x86)\AVG 2016-10-04 20:16 - 2016-09-09 13:11 - 00000000 ____D C:\Users\laura 2016-10-04 19:38 - 2016-09-06 21:09 - 00002271 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-10-04 19:38 - 2016-09-06 21:09 - 00002259 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-10-04 19:37 - 2016-07-16 13:45 - 00000000 ____D C:\WINDOWS\INF 2016-10-02 16:23 - 2016-07-16 13:36 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-10-02 12:54 - 2016-01-06 11:56 - 00000000 ____D C:\ProgramData\CyberLink 2016-10-02 12:39 - 2015-07-16 17:49 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ___SD C:\WINDOWS\system32\F12 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\SysWOW64\setup 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\setup 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\oobe 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\appraiser 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\ShellExperiences 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\Provisioning 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\bcastdvr 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2016-10-02 00:47 - 2016-07-16 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2016-10-02 00:47 - 2016-07-16 08:04 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2016-10-02 00:47 - 2016-07-16 08:04 - 00000000 ____D C:\WINDOWS\system32\Dism 2016-10-01 20:14 - 2016-01-06 11:54 - 00000000 ____D C:\Program Files (x86)\Lenovo 2016-10-01 20:12 - 2016-09-09 13:15 - 00000000 ____D C:\WINDOWS\System32\Tasks\Lenovo 2016-10-01 20:12 - 2016-01-06 11:55 - 00000000 ____D C:\Program Files\Lenovo 2016-10-01 20:12 - 2016-01-06 11:54 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2016-10-01 20:11 - 2016-09-09 13:15 - 00000000 ____D C:\WINDOWS\System32\Tasks\CyberLink 2016-10-01 20:11 - 2016-09-06 12:26 - 00000000 ____D C:\Users\laura\AppData\Local\CyberLink 2016-10-01 20:11 - 2016-01-06 11:55 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2016-10-01 20:11 - 2016-01-06 11:55 - 00000000 ____D C:\ProgramData\SUPPORTDIR 2016-10-01 20:10 - 2016-01-06 11:55 - 00000000 ____D C:\ProgramData\Temp 2016-09-26 15:25 - 2016-09-06 12:26 - 00000000 ____D C:\Users\laura\AppData\Roaming\Adobe 2016-09-14 09:21 - 2016-09-09 13:33 - 00000000 ____D C:\Users\laura\AppData\Local\PackageStaging 2016-09-14 09:19 - 2016-09-09 13:09 - 00224392 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-09-13 23:48 - 2016-07-16 13:47 - 00000000 ___SD C:\WINDOWS\system32\dsc 2016-09-13 23:48 - 2016-07-16 13:47 - 00000000 ___RD C:\Program Files\Windows Defender 2016-09-13 23:48 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\lv-LV 2016-09-13 23:48 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\lt-LT 2016-09-13 23:48 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\et-EE 2016-09-13 23:48 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\es-MX 2016-09-13 23:48 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\en-GB 2016-09-13 23:48 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2016-09-13 22:09 - 2016-09-07 14:20 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-09-13 22:06 - 2016-09-07 14:20 - 144199024 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-09-11 11:48 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\appcompat 2016-09-11 11:46 - 2016-09-09 13:33 - 00000000 ____D C:\Users\laura\AppData\Local\ConnectedDevicesPlatform ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2016-09-06 13:52 - 2016-09-06 13:52 - 0000044 _____ () C:\Users\laura\AppData\Roaming\WB.CFG 2016-09-09 13:10 - 2016-09-09 13:10 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Dateien, die verschoben oder gelöscht werden sollten: ==================== C:\Windows\Tasks\{5A14B1A7-7683-8627-7FBC-58746775569D}.job Einige Dateien in TEMP: ==================== C:\Users\laura\AppData\Local\Temp\avgnt.exe C:\Users\laura\AppData\Local\Temp\DRHelper_uninstallComplete.exe C:\Users\laura\AppData\Local\Temp\libeay32.dll C:\Users\laura\AppData\Local\Temp\msvcr120.dll C:\Users\laura\AppData\Local\Temp\ReimagePackage.exe C:\Users\laura\AppData\Local\Temp\sqlite3.dll C:\Users\laura\AppData\Local\Temp\Windows10Upgrade.exe ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-10-03 13:52 ==================== Ende von FRST.txt ============================ Was jetzt? Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 10-10-2016 durchgeführt von laura (11-10-2016 19:07:28) Gestartet von C:\Users\laura\Downloads Windows 10 Home Version 1607 (X64) (2016-09-09 11:18:43) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-1616461286-2091979816-1760888700-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1616461286-2091979816-1760888700-503 - Limited - Disabled) Gast (S-1-5-21-1616461286-2091979816-1760888700-501 - Limited - Disabled) laura (S-1-5-21-1616461286-2091979816-1760888700-1001 - Administrator - Enabled) => C:\Users\laura ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {DA9F8ED0-D0DE-39CC-F55A-51AB4CC1B556} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {61FE6F34-F6E4-3642-CFEA-6AD93746FFEB} FW: McAfee Firewall (Enabled) {E2A40FF5-9AB1-3894-DE05-F89EB212F22D} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 64 Bit HP CIO Components Installer (Version: 21.2.1 - HP Inc.) Hidden Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.020.20039 - Adobe Systems Incorporated) ALPS Touch Pad Driver (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 8.201.1611.248 - Alps Electric) Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.22.54 - Avira Operations GmbH & Co. KG) Avira Launcher (HKLM-x32\...\{82dc2ab6-088f-4e0a-8e27-bb829481d3bc}) (Version: 1.2.70.16079 - Avira Operations GmbH & Co. KG) Avira Launcher (x32 Version: 1.2.70.16079 - Avira Operations GmbH & Co. KG) Hidden Benutzerhandbücher (x32 Version: 4.0.0.1 - Lenovo) Hidden Components (x32 Version: 1.0.023.00 - Lenovo) Hidden Genesys USB Mass Storage Device (HKLM-x32\...\{959B7F35-2819-40C5-A0CD-3C53B5FCC935}) (Version: 4.5.0.6.1001 - Genesys Logic) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.143 - Google Inc.) Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1158 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4364 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.5.0.1081 - Intel Corporation) Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1519.7 - Intel Corporation) Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{11D7286D-F28D-45D6-8D7A-92A3BFAAFBE9}) (Version: 17.1.1530.1652 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (x32 Version: 10.1.1.9 - Intel(R) Corporation) Hidden Intel® PROSet/Wireless Software (HKLM-x32\...\{e6f0207e-ac43-48a9-bfff-3d879b45694d}) (Version: 18.12.1 - Intel Corporation) Lenovo EasyCamera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 6.3.9600.11105 - Realtek Semiconductor Corp.) Lenovo Experience Improvement (HKLM\...\LenovoExperienceImprovement) (Version: 2.0.9.0 - Lenovo) Lenovo FusionEngine (HKLM-x32\...\Lenovo FusionEngine) (Version: 1.0.13.0 - Lenovo, Inc.) Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.1.0.4706 - CyberLink Corp.) Lenovo OneKey Recovery (Version: 8.1.0.4706 - CyberLink Corp.) Hidden Lenovo Photo Master (HKLM-x32\...\{BC94C56A-3649-420C-8756-2ADEBE399D33}) (Version: 2.1.5222.01 - CyberLink Corp.) Lenovo Photos (HKLM-x32\...\Lenovo Photos) (Version: 6.0.4 - CEWE Stiftung u Co. KGaA) Lenovo Product Demo (HKLM-x32\...\{8EA60981-2735-458E-9F11-1E8813B278EA}) (Version: 2.0.5 - Lenovo) Lenovo QuickOptimizer (HKLM\...\{8D2C871B-1B9F-45AC-9C43-2BB18089CDFA}) (Version: 1.0.019.00 - Lenovo) Lenovo Solution Center (HKLM\...\{F925868A-2F2C-414B-A5A7-C613039CE9E4}) (Version: 3.1.001.00 - Lenovo) Lenovo System Interface Foundation (HKLM\...\{C2E5CA37-C862-4A69-AC6D-24F450A20C16}) (Version: 1.0.066.01 - Lenovo) LenovoUtility (HKLM-x32\...\InstallShield_{6ADA7E88-8D16-4D0D-BC90-2B93AC5E56DA}) (Version: 3.0.0.4 - Lenovo) LenovoUtility (x32 Version: 3.0.0.4 - Lenovo) Hidden McAfee LiveSafe (HKLM-x32\...\MSC) (Version: 14.0.9052 - McAfee, Inc.) Metric Collection SDK (x32 Version: 1.1.0012.00 - Lenovo Group Limited) Hidden Metric Collection SDK 35 (x32 Version: 1.2.0010.00 - Lenovo Group Limited) Hidden Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4693.1005 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) OpenOffice 4.1.1 (HKLM-x32\...\{ACD0FFF9-6B35-43C1-82DB-9FF6990E8602}) (Version: 4.11.9775 - Apache Software Foundation) REACHit (HKLM-x32\...\{4532E4C5-C84D-4040-A044-ECFCC5C6995B}) (Version: 2.5.005.12 - Lenovo) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7606 - Realtek Semiconductor Corp.) Reimage Repair (HKLM\...\Reimage Repair) (Version: 1.8.4.8 - Reimage) <==== ACHTUNG Spotify (HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\...\Spotify) (Version: 1.0.38.171.g5e1cd7b2 - Spotify AB) User Manuals (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 4.0.0.1 - Lenovo) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-1616461286-2091979816-1760888700-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\laura\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\FileCoAuth.exe (Microsoft Corporation) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {078E4E48-C85F-49D2-9293-31D3D30CCE45} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2015-08-07] (Lenovo) Task: {0FB09CDE-7D9D-4AE6-8A49-E4203C7522A5} - System32\Tasks\Intel Security DAT Reputation (AMCore) Post DAT update endpoint safety pulse => C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe [2016-09-07] (McAfee, Inc.) Task: {40CD5750-AE24-481E-9A5B-B7245E49019C} - System32\Tasks\Lenovo\Experience Improvement => C:\Program Files\Lenovo\ExperienceImprovement\LenovoExperienceImprovement.exe [2016-09-06] (Lenovo) Task: {460009F0-0DAB-4A68-80E8-2C6AC5F56E1F} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2015-07-08] (Lenovo) Task: {4D2C8B17-F9D0-491E-A867-1191EB264807} - System32\Tasks\ReimageUpdater => C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [2016-09-28] (Reimage®) <==== ACHTUNG Task: {4FFCAA27-52EB-49C7-B259-7A1F5B75D4BD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-09-06] (Google Inc.) Task: {5BD8772E-992A-4BB1-A073-331EA8A9B234} - System32\Tasks\Yahoo! Powered ceril => Wscript.exe "C:\ProgramData\{B3307653-3972-FC95-BFB4-62D725F6E919}\lema.txt" "687474703a2f2f7761676e672e636f6d" "433a5c50726f6772616d446174615c7b42333330373635332d333937322d464339352d424642342d3632443732354636453931397d5c64616e696e65" "433a5c50726f6772616d446174615c7b42333330373635332d333937322d464339352d424642 (Der Dateneintrag hat 78 mehr Zeichen). Task: {618535C3-8481-48E1-B0F9-928BB784CE11} - System32\Tasks\Microsoft\Windows\PLA\LSC Memory => Rundll32.exe C:\Windows\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)" Task: {73C1EC18-0964-44AB-B365-6D7F78D78998} - System32\Tasks\{5A14B1A7-7683-8627-7FBC-58746775569D} => C:\Users\laura\AppData\Roaming\{DA2FE~1\Sync.exe <==== ACHTUNG Task: {843C1C5F-6FAD-42D2-9A10-432FBEC023F6} - System32\Tasks\CyberLink\Photo Master Gadget startup => C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoMasterWorker.exe [2016-04-22] (CyberLink Corp.) Task: {884396FA-12CC-445F-AF02-9827D48B5B8B} - System32\Tasks\Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse => C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe [2016-09-07] (McAfee, Inc.) Task: {898DED2C-3ABC-4739-A773-26B69E33634B} - System32\Tasks\McAfee\McAfee Idle Detection Task Task: {941B0163-8F6A-48C1-AF0E-C194BF9EC0BE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16] (Adobe Systems Incorporated) Task: {98ADE326-A3E2-4FFD-837A-D15C4C83FAF9} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [2015-08-07] (Lenovo) Task: {C3541FA7-1F2B-4175-A751-789159A4E26A} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_TVSUUpdateTask => add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32 Task: {CA0817A2-23EF-4523-9EFE-38CC6143DAFA} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent Task: {CB3D2FF7-DA71-44E5-A746-07F9FF947067} - System32\Tasks\Lenovo\REACHit Agent Startup => C:\Program Files (x86)\Lenovo\REACHit\REACHitAgent.exe [2016-05-18] (Lenovo) Task: {D2607D4E-47EC-4C4F-A05A-BF67C7B222C5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-09-06] (Google Inc.) Task: {D38A42EF-F236-413B-856B-F4E4CE9DCB78} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\laura\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe [2016-09-07] (Microsoft Corporation) Task: {D8BC26EB-E36D-4EA0-9CB9-90C3591B0D3D} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => Sc.exe START ImControllerService Task: {E86400BB-C194-49D1-911E-BC6A63319B2F} - System32\Tasks\Reimage Reminder => C:\Program Files\Reimage\Reimage Repair\ReimageReminder.exe [2016-09-29] (Reimage ltd.) <==== ACHTUNG Task: {F61D5921-746A-47D5-BFB2-BE820E08ED3C} - System32\Tasks\Lenovo\REACHit Agent Update => C:\Program Files (x86)\Lenovo\REACHit\REACHitAgent.exe [2016-05-18] (Lenovo) Task: {FA45C8C6-B86A-4C0E-BCA8-66B95603D9C6} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2015-08-07] () Task: {FD3D3BB6-17C7-4221-9805-712B21412028} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\McAfee\platform\McUICnt.exe [2016-04-23] (McAfee, Inc.) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\Yahoo! Powered ceril.job => Wscript.exe C:\ProgramData\{B3307653-3972-FC95-BFB4-62D725F6E919}\lema.txt <==== ACHTUNG Task: C:\WINDOWS\Tasks\{5A14B1A7-7683-8627-7FBC-58746775569D}.job => ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-10-01 14:58 - 2016-09-15 19:25 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-01-06 11:54 - 2015-08-19 04:59 - 00058296 _____ () C:\ProgramData\LenovoTransition\Server\x64\dptf.dll 2016-01-06 11:54 - 2015-08-21 08:43 - 00043960 _____ () C:\ProgramData\LenovoTransition\Server\x64\EnableAutoRotation.dll 2016-10-01 14:58 - 2016-09-15 19:25 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2016-09-09 13:35 - 2016-09-09 13:35 - 01864384 _____ () C:\Users\laura\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\amd64\ClientTelemetry.dll 2016-09-06 12:24 - 2016-09-06 12:24 - 00402912 _____ () C:\WINDOWS\system32\igfxTray.exe 2016-09-13 22:02 - 2016-09-07 06:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2016-01-06 11:55 - 2016-01-06 11:55 - 00791848 _____ () C:\Program Files\Lenovo\LenovoUtility\utility.exe 2016-01-06 11:55 - 2016-01-06 11:55 - 00097048 _____ () C:\Program Files\Lenovo\LenovoUtility\kbdhook.dll 2016-10-04 19:38 - 2016-09-25 08:02 - 02279528 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\libglesv2.dll 2016-10-04 19:38 - 2016-09-25 08:02 - 00107112 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\libegl.dll 2016-09-28 22:33 - 2016-09-28 22:34 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2016-09-28 22:33 - 2016-09-28 22:34 - 00178176 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2016-09-28 22:33 - 2016-09-28 22:34 - 35250688 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2016-10-01 14:58 - 2016-09-15 18:18 - 01401344 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-10-01 14:58 - 2016-09-15 18:24 - 09760256 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-10-01 14:58 - 2016-09-15 18:17 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2016-10-01 14:58 - 2016-09-15 18:18 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 2016-10-01 14:58 - 2016-09-15 18:18 - 02424832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-10-01 14:58 - 2016-09-15 18:20 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-10-01 14:58 - 2016-09-15 18:18 - 04046848 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Signals.dll 2016-09-09 13:35 - 2016-09-09 13:35 - 01383616 _____ () C:\Users\laura\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\ClientTelemetry.dll 2016-09-09 13:35 - 2016-09-09 13:35 - 00118976 _____ () C:\Users\laura\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\FileSyncViews.dll 2016-09-20 14:30 - 2016-09-20 14:30 - 51272816 _____ () C:\Users\laura\AppData\Roaming\Spotify\libcef.dll 2016-09-20 14:30 - 2016-09-20 14:30 - 01765488 _____ () C:\Users\laura\AppData\Roaming\Spotify\libglesv2.dll 2016-09-20 14:30 - 2016-09-20 14:30 - 00088176 _____ () C:\Users\laura\AppData\Roaming\Spotify\libegl.dll 2016-01-06 11:56 - 2015-02-12 17:02 - 00224696 _____ () C:\Program Files (x86)\Lenovo\CCSDK\SDKClient.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: ========================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2015-07-10 13:04 - 2016-10-02 12:32 - 00002024 ____A C:\WINDOWS\system32\Drivers\etc\hosts 0.0.0.0 0.0.0.0 # fix for traceroute and netstat display anomaly 0.0.0.0 tracking.opencandy.com.s3.amazonaws.com 0.0.0.0 media.opencandy.com 0.0.0.0 cdn.opencandy.com 0.0.0.0 tracking.opencandy.com 0.0.0.0 api.opencandy.com 0.0.0.0 api.recommendedsw.com 0.0.0.0 installer.betterinstaller.com 0.0.0.0 installer.filebulldog.com 0.0.0.0 d3oxtn1x3b8d7i.cloudfront.net 0.0.0.0 inno.bisrv.com 0.0.0.0 nsis.bisrv.com 0.0.0.0 cdn.file2desktop.com 0.0.0.0 cdn.goateastcach.us 0.0.0.0 cdn.guttastatdk.us 0.0.0.0 cdn.inskinmedia.com 0.0.0.0 cdn.insta.oibundles2.com 0.0.0.0 cdn.insta.playbryte.com 0.0.0.0 cdn.llogetfastcach.us 0.0.0.0 cdn.montiera.com 0.0.0.0 cdn.msdwnld.com 0.0.0.0 cdn.mypcbackup.com 0.0.0.0 cdn.ppdownload.com 0.0.0.0 cdn.riceateastcach.us 0.0.0.0 cdn.shyapotato.us 0.0.0.0 cdn.solimba.com 0.0.0.0 cdn.tuto4pc.com 0.0.0.0 cdn.appround.biz 0.0.0.0 cdn.bigspeedpro.com 0.0.0.0 cdn.bispd.com Da befinden sich 4 zusätzliche Einträge. ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\laura\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\{e9f5678c-3468-4dce-b59b-8e6ed6a6fd7f}.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{3BC81711-1A87-43D3-85FA-144043E6361A}] => (Allow) C:\Users\laura\AppData\Local\Chromium\Application\chrome.exe FirewallRules: [{AAFA20E7-0463-438C-B6C5-CAB8853DD63E}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{D6D8EF65-13B1-4A56-9335-6B7024657354}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{5D5A58FF-E841-4136-962C-83211EBA3F24}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe FirewallRules: [{00DE2E24-87E0-4918-9F8E-492FA349A3F8}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe FirewallRules: [TCP Query User{2A126811-3611-471D-AE26-35C398271E1E}C:\users\laura\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\laura\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{C5B9287B-4FF2-4401-BB66-CCF87B787D8F}C:\users\laura\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\laura\appdata\roaming\spotify\spotify.exe FirewallRules: [{DDE58511-BC69-4ECD-A602-DA59BFA78CBD}] => (Allow) C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoPlus.exe FirewallRules: [{A5CDF65A-D6E3-4F36-95A9-F47394A47794}] => (Allow) C:\Program Files (x86)\Lenovo\Lenovo Photo Master\subsys\AdvPhotoEditor\PhotoDirector5.exe FirewallRules: [{484208D8-07FC-43B8-A532-795E0A0F6375}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Wiederherstellungspunkte ========================= ACHTUNG: Systemwiederherstellung ist deaktiviert ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (10/09/2016 11:13:00 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-0TG2UTJ) Description: Bei der Aktivierung der App „Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (10/08/2016 06:21:20 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: mcvulctr.exe, Version: 4.0.9022.0, Zeitstempel: 0x571de37b Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.14393.206, Zeitstempel: 0x57dac931 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000003c12b ID des fehlerhaften Prozesses: 0x1464 Startzeit der fehlerhaften Anwendung: 0x01d2208add38e5fd Pfad der fehlerhaften Anwendung: c:\PROGRA~1\mcafee\vul\mcvulctr.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll Berichtskennung: 87c85550-1727-4b22-8a60-1a116f9b0399 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (10/08/2016 12:26:05 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-0TG2UTJ) Description: Bei der Aktivierung der App „Microsoft.WindowsAlarms_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (10/08/2016 12:26:05 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-0TG2UTJ) Description: Bei der Aktivierung der App „microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (10/07/2016 12:54:41 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: mcvulctr.exe, Version: 4.0.9022.0, Zeitstempel: 0x571de37b Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.14393.206, Zeitstempel: 0x57dac931 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000003c12b ID des fehlerhaften Prozesses: 0x28b4 Startzeit der fehlerhaften Anwendung: 0x01d22018d0d5d30f Pfad der fehlerhaften Anwendung: c:\PROGRA~1\mcafee\vul\mcvulctr.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll Berichtskennung: 9021dd28-2344-41ae-8c56-fb1efd7e13f0 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (10/06/2016 04:37:50 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-0TG2UTJ) Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (10/06/2016 04:37:50 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-0TG2UTJ) Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2147023170. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (10/06/2016 04:37:50 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-0TG2UTJ) Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (10/02/2016 12:39:59 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: Die Open-Prozedur für den Dienst "BITS" in der DLL "C:\Windows\System32\bitsperf.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode. Error: (10/02/2016 12:32:56 PM) (Source: CertEnroll) (EventID: 86) (User: NT-AUTORITÄT) Description: Fehler bei der Initialisierung der SCEP-Zertifikatregistrierung für WORKGROUP\DESKTOP-0TG2UTJ$ über https://INTC-KeyId-5e73c89aa3e902b272b9f0741f7d8730e3ec724a.microsoftaik.azure.net/templates/Aik/scep: GetCACaps Methode: GET(12500ms) Phase: GetCACaps Der Servername oder die Serveradresse konnte nicht verarbeitet werden. 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED) Systemfehler: ============= Error: (10/11/2016 07:05:41 PM) (Source: DCOM) (EventID: 10000) (User: DESKTOP-0TG2UTJ) Description: Ein DCOM-Server konnte nicht gestartet werden: {8F2BC96B-68C5-40E8-9CE1-368E3ACAC09B}. Fehler: "193" Aufgetreten beim Start dieses Befehls: C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPService.dll -Embedding Error: (10/11/2016 07:05:41 PM) (Source: DCOM) (EventID: 10000) (User: DESKTOP-0TG2UTJ) Description: Ein DCOM-Server konnte nicht gestartet werden: {8F2BC96B-68C5-40E8-9CE1-368E3ACAC09B}. Fehler: "193" Aufgetreten beim Start dieses Befehls: C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPService.dll -Embedding Error: (10/11/2016 07:05:41 PM) (Source: DCOM) (EventID: 10000) (User: DESKTOP-0TG2UTJ) Description: Ein DCOM-Server konnte nicht gestartet werden: {8F2BC96B-68C5-40E8-9CE1-368E3ACAC09B}. Fehler: "193" Aufgetreten beim Start dieses Befehls: C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPService.dll -Embedding Error: (10/11/2016 07:05:41 PM) (Source: DCOM) (EventID: 10000) (User: DESKTOP-0TG2UTJ) Description: Ein DCOM-Server konnte nicht gestartet werden: {8F2BC96B-68C5-40E8-9CE1-368E3ACAC09B}. Fehler: "193" Aufgetreten beim Start dieses Befehls: C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPService.dll -Embedding Error: (10/11/2016 06:36:55 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 4003) (User: NT-AUTORITÄT) Description: Bei der automatischen WLAN-Konfiguration wurde eine eingeschränkte Konnektivität erkannt, "Reset/Recover.adapter" wird ausgeführt. Code: 8 0x0 0x0 Error: (10/11/2016 06:36:54 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 4003) (User: NT-AUTORITÄT) Description: Bei der automatischen WLAN-Konfiguration wurde eine eingeschränkte Konnektivität erkannt, "Reset/Recover.adapter" wird ausgeführt. Code: 2 0xdeaddeed 0xeeec Error: (10/11/2016 06:36:54 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 4003) (User: NT-AUTORITÄT) Description: Bei der automatischen WLAN-Konfiguration wurde eine eingeschränkte Konnektivität erkannt, "Reset/Recover.adapter" wird ausgeführt. Code: 1 0xc 0x4 Error: (10/11/2016 06:19:42 PM) (Source: DCOM) (EventID: 10000) (User: NT-AUTORITÄT) Description: Ein DCOM-Server konnte nicht gestartet werden: {8F2BC96B-68C5-40E8-9CE1-368E3ACAC09B}. Fehler: "193" Aufgetreten beim Start dieses Befehls: C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPService.dll -Embedding Error: (10/11/2016 06:19:42 PM) (Source: DCOM) (EventID: 10000) (User: NT-AUTORITÄT) Description: Ein DCOM-Server konnte nicht gestartet werden: {8F2BC96B-68C5-40E8-9CE1-368E3ACAC09B}. Fehler: "193" Aufgetreten beim Start dieses Befehls: C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPService.dll -Embedding Error: (10/11/2016 06:19:42 PM) (Source: DCOM) (EventID: 10000) (User: NT-AUTORITÄT) Description: Ein DCOM-Server konnte nicht gestartet werden: {8F2BC96B-68C5-40E8-9CE1-368E3ACAC09B}. Fehler: "193" Aufgetreten beim Start dieses Befehls: C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPService.dll -Embedding ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i5-6200U CPU @ 2.30GHz Prozentuale Nutzung des RAM: 73% Installierter physikalischer RAM: 3890.05 MB Verfügbarer physikalischer RAM: 1024.34 MB Summe virtueller Speicher: 6578.05 MB Verfügbarer virtueller Speicher: 2203.52 MB ==================== Laufwerke ================================ Drive c: (Windows) (Fixed) (Total:97.2 GB) (Free:59.73 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)] ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 119.2 GB) (Disk ID: F64C892E) Partition: GPT. ==================== Ende von Addition.txt ============================ |
12.10.2016, 18:58 | #5 |
/// TB-Ausbilder /// Anleitungs-Guru | Windows 10 bei Klick öffnet sich neues Fenster McAfee und Avira bitte deinstallieren. Bei Windows 10 reicht der Defender und passt von der Performance auch besser zu Win10 als diese Fremdprodukte. Das hier auch deinstallieren: Reimage Repair Anschließend bitte nochmal frische Logs. Schritt 1 Bitte starte FRST erneut, markiere auch die checkbox und drücke auf Untersuchen. Bitte poste mir den Inhalt der beiden Logs die erstellt werden.
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
12.10.2016, 19:58 | #6 |
| Windows 10 bei Klick öffnet sich neues FensterCode:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 10-10-2016 durchgeführt von laura (Administrator) auf DESKTOP-0TG2UTJ (12-10-2016 20:41:45) Gestartet von C:\Users\laura\Downloads Geladene Profile: laura (Verfügbare Profile: laura) Platform: Windows 10 Home Version 1607 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Edge) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\HidMonitorSvc.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel Corporation) C:\Windows\System32\ibtsiva.exe (Lenovo Group Limited) C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Lenovo) C:\ProgramData\LenovoTransition\Server\x64\ymc.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\hidfind.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeHost.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe () C:\Program Files\Lenovo\LenovoUtility\utility.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Spotify Ltd) C:\Users\laura\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd) C:\Users\laura\AppData\Roaming\Spotify\SpotifyCrashService.exe (Spotify Ltd) C:\Users\laura\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd) C:\Users\laura\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Spotify Ltd) C:\Users\laura\AppData\Roaming\Spotify\Spotify.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe (Lenovo) C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.14393.82_none_5be7b69702339d1d\TiWorker.exe (Lenovo) C:\Program Files (x86)\Lenovo\GDCAgentSetupRed\GDCAgent.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Lenovo) C:\Program Files (x86)\Lenovo\CCSDK\WinGather.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [Apoint] => C:\Program Files\Apoint2K\Apoint.exe [699728 2016-09-06] (Alps Electric Co., Ltd.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16405744 2015-09-10] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1408752 2015-09-10] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1408752 2015-09-10] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1408752 2015-09-10] (Realtek Semiconductor) HKLM\...\Run: [LenovoUtility] => C:\Program Files\Lenovo\LenovoUtility\utility.exe [791848 2016-01-06] () HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-06-23] (Intel Corporation) HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-09-07] (Microsoft Corporation) HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\...\Run: [Chromium] => c:\users\laura\appdata\local\chromium\application\chrome.exe [1068544 2016-03-18] (The Chromium Authors) HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\...\Run: [Spotify Web Helper] => C:\Users\laura\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1483888 2016-10-12] (Spotify Ltd) HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\...\Run: [Spotify] => C:\Users\laura\AppData\Roaming\Spotify\Spotify.exe [6884976 2016-10-12] (Spotify Ltd) GroupPolicy: Beschränkung <======= ACHTUNG ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{3bf02ba2-c435-446c-ae1a-6a7f12088dc9}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{b15a5a4b-b934-4324-afde-461767d033d1}: [DhcpNameServer] 172.168.127.2 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE13&ocid=UE13DHP HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo15.msn.com/?pc=LCTE SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1616461286-2091979816-1760888700-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1616461286-2091979816-1760888700-1001 -> {416EC25E-9423-4E13-82AA-3E65169B8E67} URL = FireFox: ======== FF ProfilePath: C:\Users\laura\AppData\Roaming\Mozilla\Firefox\Profiles\bdPHnmnz.default [2016-10-12] FF Extension: (Avira Browser Safety) - C:\Users\laura\AppData\Roaming\Mozilla\Firefox\Profiles\bdPHnmnz.default\Extensions\abs@avira.com [2016-09-06] FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-09-06] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-09-06] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-10-01] (Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default [2016-10-12] CHR Extension: (Google Präsentationen) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-09-06] CHR Extension: (Google Docs) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-09-06] CHR Extension: (Google Drive) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-09-06] CHR Extension: (YouTube) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-09-06] CHR Extension: (Text Mode) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpeffcnnffodaeaklkhdhfgnpkdamoan [2016-09-26] CHR Extension: (Adblock Plus) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-09-06] CHR Extension: (Google Tabellen) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-09-06] CHR Extension: (Avira Browserschutz) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2016-09-21] CHR Extension: (Google Docs Offline) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-09-06] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-09-06] CHR Extension: (Google Mail) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-09-06] CHR Extension: (Chrome Media Router) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-09-22] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 ApHidMonitorService; C:\Program Files\Apoint2K\HidMonitorSvc.exe [88920 2016-09-06] (Alps Electric Co., Ltd.) R2 CCSDK; C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe [650680 2015-07-29] (Lenovo) S3 cplspcon; C:\Windows\system32\IntelCpHDCPSvc.exe [623072 2016-09-06] (Intel Corporation) R2 GDCAgent; C:\Program Files (x86)\Lenovo\GDCAgentSetupRed\GDCAgent.exe [1155512 2015-07-29] (Lenovo) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-06-23] (Intel Corporation) R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [373728 2016-09-06] (Intel Corporation) R2 ImControllerService; c:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [60752 2016-09-13] (Lenovo Group Limited) S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [271296 2015-08-07] (Lenovo) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2015-06-12] () R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [50688 2016-06-15] (HP Inc.) [Datei ist nicht signiert] R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [66048 2016-06-15] (HP Inc.) [Datei ist nicht signiert] R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation) R2 ymc; C:\ProgramData\LenovoTransition\Server\x64\ymc.exe [34744 2015-08-21] (Lenovo) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3831200 2015-06-12] (Intel® Corporation) R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 ApkbfiltrService; C:\Windows\System32\drivers\Apkbfiltr.sys [31016 2015-07-20] (Alps Electric Co., Ltd.) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [349960 2016-09-08] (Intel Corporation) S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () S3 NETwNe64; C:\Windows\System32\drivers\NETwew01.sys [3354384 2015-07-10] (Intel Corporation) R3 Netwtw04; C:\Windows\System32\drivers\Netwtw04.sys [7116288 2016-07-16] (Intel Corporation) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [895256 2015-06-18] (Realtek ) R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [3059416 2015-06-11] (Realtek Semiconductor Corp.) S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-10-12 20:38 - 2016-10-12 20:38 - 00000000 ___HD C:\OneDriveTemp 2016-10-11 18:11 - 2016-10-11 18:11 - 01474568 _____ C:\Users\laura\Downloads\HijackThis - CHIP-Installer.exe 2016-10-11 17:57 - 2016-10-11 19:08 - 00031500 _____ C:\Users\laura\Downloads\Addition.txt 2016-10-11 17:56 - 2016-10-12 20:42 - 00014698 _____ C:\Users\laura\Downloads\FRST.txt 2016-10-11 17:56 - 2016-10-12 20:41 - 00000000 ____D C:\FRST 2016-10-11 17:55 - 2016-10-11 17:55 - 02407424 _____ (Farbar) C:\Users\laura\Downloads\FRST64.exe 2016-10-11 17:54 - 2016-10-11 17:54 - 01757184 _____ (Farbar) C:\Users\laura\Downloads\FRST.exe 2016-10-11 17:47 - 2016-10-11 17:47 - 00000000 ____D C:\Users\laura\AppData\Local\ElevatedDiagnostics 2016-10-11 17:31 - 2016-10-12 20:39 - 00000000 ____D C:\Program Files\Reimage 2016-10-11 17:31 - 2016-10-11 17:32 - 00000140 _____ C:\WINDOWS\Reimage.ini 2016-10-11 17:31 - 2016-10-11 17:31 - 00604928 _____ (Reimage) C:\Users\laura\Downloads\ReimageRepair (2).exe 2016-10-11 17:29 - 2016-10-11 17:29 - 01430736 _____ (Essentware) C:\Users\laura\Downloads\PCKeeper Installer.exe 2016-10-08 19:51 - 2016-10-08 19:51 - 00000000 ____D C:\ProgramData\HP 2016-10-08 19:51 - 2016-10-08 19:51 - 00000000 ____D C:\ProgramData\Hewlett-Packard 2016-10-08 19:51 - 2016-10-08 19:51 - 00000000 _____ C:\WINDOWS\HPMProp.INI 2016-10-06 16:24 - 2016-10-06 16:39 - 00000000 ____D C:\AdwCleaner 2016-10-06 16:12 - 2016-10-06 16:12 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_ldiagio_uefi_01009.Wdf 2016-10-06 16:11 - 2016-10-06 16:11 - 00000000 ____D C:\Users\laura\AppData\Roaming\Lenovo 2016-10-03 18:05 - 2016-08-26 09:42 - 00604584 _____ (HP Inc.) C:\WINDOWS\SysWOW64\hpcdmc32.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00484776 _____ (HP Inc.) C:\WINDOWS\system32\hpcpn190.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00453544 _____ (HP Inc.) C:\WINDOWS\SysWOW64\hpcc3190.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00310512 _____ (HP Inc.) C:\WINDOWS\system32\hpmlm190.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00264944 _____ (HP Inc.) C:\WINDOWS\system32\hpmml190.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00241904 _____ (HP Inc.) C:\WINDOWS\system32\hpmja190.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00229800 _____ (HP Inc.) C:\WINDOWS\system32\hpmpm081.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00204200 _____ (HP Inc.) C:\WINDOWS\system32\hpmtp190.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00195496 _____ (Hewlett-Packard) C:\WINDOWS\system32\hppdcompio.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00178088 _____ (HP Inc.) C:\WINDOWS\system32\hpcjpm.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00169384 _____ (Hewlett-Packard) C:\WINDOWS\SysWOW64\hppccompio.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00127912 _____ (HP Inc.) C:\WINDOWS\system32\hpmpw081.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00061168 _____ (Hewlett-Packard) C:\WINDOWS\system32\FxCompChannel_x64.dll 2016-10-01 20:12 - 2012-06-13 17:10 - 00102376 _____ ("CyberLink) C:\WINDOWS\system32\Drivers\wsvd.sys 2016-10-01 20:11 - 2016-10-01 20:11 - 00002212 _____ C:\Users\Public\Desktop\Lenovo Photo Master.lnk 2016-10-01 20:11 - 2016-10-01 20:11 - 00000000 ____D C:\Users\laura\AppData\Roaming\CyberLink 2016-10-01 20:11 - 2016-10-01 20:11 - 00000000 ____D C:\Program Files (x86)\CyberLink 2016-10-01 14:59 - 2016-09-15 19:40 - 00965472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2016-10-01 14:59 - 2016-09-15 19:35 - 00455040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll 2016-10-01 14:59 - 2016-09-15 19:34 - 00279904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2016-10-01 14:59 - 2016-09-15 19:33 - 00083120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devenum.dll 2016-10-01 14:59 - 2016-09-15 19:29 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll 2016-10-01 14:59 - 2016-09-15 19:28 - 07812960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-10-01 14:59 - 2016-09-15 19:27 - 00434528 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2016-10-01 14:59 - 2016-09-15 19:23 - 01430720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2016-10-01 14:59 - 2016-09-15 19:22 - 00860512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2016-10-01 14:59 - 2016-09-15 19:22 - 00116576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll 2016-10-01 14:59 - 2016-09-15 19:21 - 01980776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2016-10-01 14:59 - 2016-09-15 19:21 - 01000288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2016-10-01 14:59 - 2016-09-15 19:20 - 00634944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2016-10-01 14:59 - 2016-09-15 19:15 - 00218976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys 2016-10-01 14:59 - 2016-09-15 19:14 - 01267512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2016-10-01 14:59 - 2016-09-15 19:14 - 00119648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys 2016-10-01 14:59 - 2016-09-15 19:13 - 00113504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll 2016-10-01 14:59 - 2016-09-15 19:12 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2016-10-01 14:59 - 2016-09-15 19:06 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2016-10-01 14:59 - 2016-09-15 19:06 - 00387872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll 2016-10-01 14:59 - 2016-09-15 19:03 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll 2016-10-01 14:59 - 2016-09-15 19:03 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TempSignedLicenseExchangeTask.dll 2016-10-01 14:59 - 2016-09-15 19:02 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfksproxy.dll 2016-10-01 14:59 - 2016-09-15 18:58 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2016-10-01 14:59 - 2016-09-15 18:57 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll 2016-10-01 14:59 - 2016-09-15 18:56 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManagerApi.dll 2016-10-01 14:59 - 2016-09-15 18:55 - 00213504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll 2016-10-01 14:59 - 2016-09-15 18:53 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll 2016-10-01 14:59 - 2016-09-15 18:52 - 00857600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll 2016-10-01 14:59 - 2016-09-15 18:50 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe 2016-10-01 14:59 - 2016-09-15 18:49 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll 2016-10-01 14:59 - 2016-09-15 18:49 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll 2016-10-01 14:59 - 2016-09-15 18:44 - 12345856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2016-10-01 14:59 - 2016-09-15 18:43 - 07467520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2016-10-01 14:59 - 2016-09-15 18:42 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll 2016-10-01 14:59 - 2016-09-15 18:40 - 05061120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2016-10-01 14:59 - 2016-09-15 18:40 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2016-10-01 14:59 - 2016-09-15 18:40 - 00327680 _____ C:\WINDOWS\system32\wc_storage.dll 2016-10-01 14:59 - 2016-09-15 18:39 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll 2016-10-01 14:59 - 2016-09-15 18:39 - 00598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll 2016-10-01 14:59 - 2016-09-15 18:39 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2016-10-01 14:59 - 2016-09-15 18:38 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2016-10-01 14:59 - 2016-09-15 18:38 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2016-10-01 14:59 - 2016-09-15 18:38 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll 2016-10-01 14:59 - 2016-09-15 18:38 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe 2016-10-01 14:59 - 2016-09-15 18:37 - 00390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll 2016-10-01 14:59 - 2016-09-15 18:37 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll 2016-10-01 14:59 - 2016-09-15 18:36 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll 2016-10-01 14:59 - 2016-09-15 18:36 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2016-10-01 14:59 - 2016-09-15 18:36 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll 2016-10-01 14:59 - 2016-09-15 18:35 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll 2016-10-01 14:59 - 2016-09-15 18:35 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2016-10-01 14:59 - 2016-09-15 18:34 - 00671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll 2016-10-01 14:59 - 2016-09-15 18:34 - 00560640 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll 2016-10-01 14:59 - 2016-09-15 18:32 - 01037312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll 2016-10-01 14:59 - 2016-09-15 18:30 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll 2016-10-01 14:59 - 2016-09-15 18:27 - 00883712 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2016-10-01 14:59 - 2016-09-15 18:26 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe 2016-10-01 14:59 - 2016-09-15 18:25 - 13434368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2016-10-01 14:59 - 2016-09-15 18:25 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll 2016-10-01 14:59 - 2016-09-15 18:23 - 03405824 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2016-10-01 14:59 - 2016-09-15 18:23 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2016-10-01 14:59 - 2016-09-15 18:21 - 02538496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2016-10-01 14:59 - 2016-09-15 18:21 - 01491968 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-10-01 14:59 - 2016-09-15 18:21 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2016-10-01 14:59 - 2016-09-15 18:20 - 01535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll 2016-10-01 14:59 - 2016-09-15 18:20 - 01266176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll 2016-10-01 14:59 - 2016-09-15 18:20 - 00908800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2016-10-01 14:59 - 2016-09-15 18:20 - 00845824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll 2016-10-01 14:59 - 2016-09-15 18:20 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll 2016-10-01 14:59 - 2016-09-15 18:19 - 00903680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2016-10-01 14:59 - 2016-09-15 18:19 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2016-10-01 14:59 - 2016-09-15 18:16 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2016-10-01 14:59 - 2016-08-05 10:29 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.UXRes.dll 2016-10-01 14:58 - 2016-09-24 07:55 - 00406016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2016-10-01 14:58 - 2016-09-15 20:14 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2016-10-01 14:58 - 2016-09-15 19:35 - 01705976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2016-10-01 14:58 - 2016-09-15 19:35 - 01570680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2016-10-01 14:58 - 2016-09-15 19:32 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2016-10-01 14:58 - 2016-09-15 19:30 - 00646136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2016-10-01 14:58 - 2016-09-15 19:30 - 00354264 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe 2016-10-01 14:58 - 2016-09-15 19:29 - 01377016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe 2016-10-01 14:58 - 2016-09-15 19:29 - 01117024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2016-10-01 14:58 - 2016-09-15 19:29 - 00512416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll 2016-10-01 14:58 - 2016-09-15 19:29 - 00218008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe 2016-10-01 14:58 - 2016-09-15 19:29 - 00081760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2016-10-01 14:58 - 2016-09-15 19:29 - 00023392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cmimcext.sys 2016-10-01 14:58 - 2016-09-15 19:28 - 02213248 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2016-10-01 14:58 - 2016-09-15 19:28 - 00498960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll 2016-10-01 14:58 - 2016-09-15 19:27 - 05622088 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2016-10-01 14:58 - 2016-09-15 19:27 - 00553312 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2016-10-01 14:58 - 2016-09-15 19:26 - 00090400 _____ (Microsoft Corporation) C:\WINDOWS\system32\devenum.dll 2016-10-01 14:58 - 2016-09-15 19:25 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2016-10-01 14:58 - 2016-09-15 19:25 - 00262960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll 2016-10-01 14:58 - 2016-09-15 19:24 - 00764936 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2016-10-01 14:58 - 2016-09-15 19:23 - 01503032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2016-10-01 14:58 - 2016-09-15 19:23 - 00170960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2016-10-01 14:58 - 2016-09-15 19:22 - 02256080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-10-01 14:58 - 2016-09-15 19:22 - 00975744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2016-10-01 14:58 - 2016-09-15 19:21 - 01218912 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2016-10-01 14:58 - 2016-09-15 19:20 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll 2016-10-01 14:58 - 2016-09-15 19:19 - 00361104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 03893376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 01201872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 01123368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 00980832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 00955528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 00856872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 00404832 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll 2016-10-01 14:58 - 2016-09-15 19:17 - 20965248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-10-01 14:58 - 2016-09-15 19:17 - 00360040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2016-10-01 14:58 - 2016-09-15 19:16 - 02750384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-10-01 14:58 - 2016-09-15 19:16 - 02190176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-10-01 14:58 - 2016-09-15 19:16 - 01859264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2016-10-01 14:58 - 2016-09-15 19:16 - 01738040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2016-10-01 14:58 - 2016-09-15 19:16 - 01292640 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2016-10-01 14:58 - 2016-09-15 19:16 - 01157000 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2016-10-01 14:58 - 2016-09-15 19:16 - 00657760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-10-01 14:58 - 2016-09-15 19:16 - 00527808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll 2016-10-01 14:58 - 2016-09-15 19:16 - 00401760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2016-10-01 14:58 - 2016-09-15 19:16 - 00206096 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2016-10-01 14:58 - 2016-09-15 19:16 - 00146784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll 2016-10-01 14:58 - 2016-09-15 19:15 - 02446704 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2016-10-01 14:58 - 2016-09-15 19:15 - 00649568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2016-10-01 14:58 - 2016-09-15 19:15 - 00341936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2016-10-01 14:58 - 2016-09-15 19:15 - 00130912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys 2016-10-01 14:58 - 2016-09-15 19:13 - 01264912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2016-10-01 14:58 - 2016-09-15 19:12 - 08158672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2016-10-01 14:58 - 2016-09-15 19:11 - 04673296 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-10-01 14:58 - 2016-09-15 19:11 - 00773168 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2016-10-01 14:58 - 2016-09-15 19:10 - 01600632 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2016-10-01 14:58 - 2016-09-15 19:10 - 00918848 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll 2016-10-01 14:58 - 2016-09-15 19:06 - 01469120 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2016-10-01 14:58 - 2016-09-15 19:06 - 01046880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2016-10-01 14:58 - 2016-09-15 19:06 - 00587968 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2016-10-01 14:58 - 2016-09-15 19:06 - 00050880 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2016-10-01 14:58 - 2016-09-15 19:03 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll 2016-10-01 14:58 - 2016-09-15 19:01 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll 2016-10-01 14:58 - 2016-09-15 19:00 - 00518656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll 2016-10-01 14:58 - 2016-09-15 19:00 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Diagnostics.dll 2016-10-01 14:58 - 2016-09-15 19:00 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll 2016-10-01 14:58 - 2016-09-15 19:00 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRHelper.dll 2016-10-01 14:58 - 2016-09-15 19:00 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll 2016-10-01 14:58 - 2016-09-15 18:59 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovslegacy.dll 2016-10-01 14:58 - 2016-09-15 18:58 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe 2016-10-01 14:58 - 2016-09-15 18:58 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlancfg.dll 2016-10-01 14:58 - 2016-09-15 18:58 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll 2016-10-01 14:58 - 2016-09-15 18:58 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll 2016-10-01 14:58 - 2016-09-15 18:58 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.UserDeviceAssociation.dll 2016-10-01 14:58 - 2016-09-15 18:57 - 00404992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll 2016-10-01 14:58 - 2016-09-15 18:57 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll 2016-10-01 14:58 - 2016-09-15 18:57 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll 2016-10-01 14:58 - 2016-09-15 18:57 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2016-10-01 14:58 - 2016-09-15 18:57 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2016-10-01 14:58 - 2016-09-15 18:56 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2016-10-01 14:58 - 2016-09-15 18:56 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll 2016-10-01 14:58 - 2016-09-15 18:56 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2016-10-01 14:58 - 2016-09-15 18:56 - 00413184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll 2016-10-01 14:58 - 2016-09-15 18:56 - 00265728 _____ C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll 2016-10-01 14:58 - 2016-09-15 18:56 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll 2016-10-01 14:58 - 2016-09-15 18:56 - 00257536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll 2016-10-01 14:58 - 2016-09-15 18:56 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 01243136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe 2016-10-01 14:58 - 2016-09-15 18:55 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\biwinrt.dll 2016-10-01 14:58 - 2016-09-15 18:54 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll 2016-10-01 14:58 - 2016-09-15 18:54 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll 2016-10-01 14:58 - 2016-09-15 18:54 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll 2016-10-01 14:58 - 2016-09-15 18:54 - 00431104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll 2016-10-01 14:58 - 2016-09-15 18:53 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll 2016-10-01 14:58 - 2016-09-15 18:53 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2016-10-01 14:58 - 2016-09-15 18:53 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll 2016-10-01 14:58 - 2016-09-15 18:53 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll 2016-10-01 14:58 - 2016-09-15 18:52 - 01358336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2016-10-01 14:58 - 2016-09-15 18:52 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll 2016-10-01 14:58 - 2016-09-15 18:52 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll 2016-10-01 14:58 - 2016-09-15 18:52 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll 2016-10-01 14:58 - 2016-09-15 18:52 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll 2016-10-01 14:58 - 2016-09-15 18:52 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll 2016-10-01 14:58 - 2016-09-15 18:51 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll 2016-10-01 14:58 - 2016-09-15 18:51 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll 2016-10-01 14:58 - 2016-09-15 18:50 - 07625728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-10-01 14:58 - 2016-09-15 18:50 - 07219200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2016-10-01 14:58 - 2016-09-15 18:50 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll 2016-10-01 14:58 - 2016-09-15 18:49 - 19416576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-10-01 14:58 - 2016-09-15 18:49 - 04612608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2016-10-01 14:58 - 2016-09-15 18:49 - 00901120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2016-10-01 14:58 - 2016-09-15 18:49 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll 2016-10-01 14:58 - 2016-09-15 18:49 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll 2016-10-01 14:58 - 2016-09-15 18:47 - 19416576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-10-01 14:58 - 2016-09-15 18:47 - 01077760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll 2016-10-01 14:58 - 2016-09-15 18:47 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2016-10-01 14:58 - 2016-09-15 18:47 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll 2016-10-01 14:58 - 2016-09-15 18:47 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll 2016-10-01 14:58 - 2016-09-15 18:46 - 22566912 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-10-01 14:58 - 2016-09-15 18:46 - 03305984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2016-10-01 14:58 - 2016-09-15 18:46 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll 2016-10-01 14:58 - 2016-09-15 18:46 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll 2016-10-01 14:58 - 2016-09-15 18:46 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ffbroker.dll 2016-10-01 14:58 - 2016-09-15 18:45 - 12174848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-10-01 14:58 - 2016-09-15 18:45 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll 2016-10-01 14:58 - 2016-09-15 18:44 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2016-10-01 14:58 - 2016-09-15 18:44 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAC3ENC.DLL 2016-10-01 14:58 - 2016-09-15 18:43 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2.dll 2016-10-01 14:58 - 2016-09-15 18:43 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfksproxy.dll 2016-10-01 14:58 - 2016-09-15 18:43 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll 2016-10-01 14:58 - 2016-09-15 18:43 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe 2016-10-01 14:58 - 2016-09-15 18:43 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys 2016-10-01 14:58 - 2016-09-15 18:43 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll 2016-10-01 14:58 - 2016-09-15 18:42 - 01220608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll 2016-10-01 14:58 - 2016-09-15 18:42 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe 2016-10-01 14:58 - 2016-09-15 18:42 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll 2016-10-01 14:58 - 2016-09-15 18:42 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2016-10-01 14:58 - 2016-09-15 18:42 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys 2016-10-01 14:58 - 2016-09-15 18:41 - 06043136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.SyncEngine.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Printers.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\NfcRadioMedia.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 02646016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 02026496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2016-10-01 14:58 - 2016-09-15 18:40 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.UserDeviceAssociation.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 02740224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 02254848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 01880576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 01595904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00711168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00418304 _____ C:\WINDOWS\system32\Windows.Perception.Stub.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneBackupHandler.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flights.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 02999296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2016-10-01 14:58 - 2016-09-15 18:38 - 02005504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 01291264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00850944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrGidsHandler.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2016-10-01 14:58 - 2016-09-15 18:38 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00743424 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 03105792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe 2016-10-01 14:58 - 2016-09-15 18:36 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00686592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregcmd.exe 2016-10-01 14:58 - 2016-09-15 18:36 - 00648192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovslegacy.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe 2016-10-01 14:58 - 2016-09-15 18:35 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00783360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll 2016-10-01 14:58 - 2016-09-15 18:34 - 00441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll 2016-10-01 14:58 - 2016-09-15 18:34 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll 2016-10-01 14:58 - 2016-09-15 18:34 - 00424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll 2016-10-01 14:58 - 2016-09-15 18:34 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll 2016-10-01 14:58 - 2016-09-15 18:33 - 03753984 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll 2016-10-01 14:58 - 2016-09-15 18:33 - 01004032 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2016-10-01 14:58 - 2016-09-15 18:33 - 00963584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll Code:
ATTFilter 2016-10-01 14:58 - 2016-09-15 18:33 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll 2016-10-01 14:58 - 2016-09-15 18:33 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprapi.dll 2016-10-01 14:58 - 2016-09-15 18:32 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2016-10-01 14:58 - 2016-09-15 18:32 - 00634368 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll 2016-10-01 14:58 - 2016-09-15 18:32 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll 2016-10-01 14:58 - 2016-09-15 18:31 - 09129984 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-10-01 14:58 - 2016-09-15 18:31 - 01912320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll 2016-10-01 14:58 - 2016-09-15 18:31 - 01553408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll 2016-10-01 14:58 - 2016-09-15 18:31 - 01053184 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll 2016-10-01 14:58 - 2016-09-15 18:31 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe 2016-10-01 14:58 - 2016-09-15 18:30 - 01227264 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2016-10-01 14:58 - 2016-09-15 18:30 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll 2016-10-01 14:58 - 2016-09-15 18:30 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CastLaunch.dll 2016-10-01 14:58 - 2016-09-15 18:29 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll 2016-10-01 14:58 - 2016-09-15 18:29 - 01082368 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2016-10-01 14:58 - 2016-09-15 18:29 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll 2016-10-01 14:58 - 2016-09-15 18:29 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2016-10-01 14:58 - 2016-09-15 18:29 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RelPost.exe 2016-10-01 14:58 - 2016-09-15 18:28 - 23680512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-10-01 14:58 - 2016-09-15 18:28 - 03288064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2016-10-01 14:58 - 2016-09-15 18:28 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2016-10-01 14:58 - 2016-09-15 18:28 - 00718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll 2016-10-01 14:58 - 2016-09-15 18:28 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 05111296 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 02860032 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 01078784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 00702976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceControl.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\discan.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\manage-bde.exe 2016-10-01 14:58 - 2016-09-15 18:27 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvenotify.exe 2016-10-01 14:58 - 2016-09-15 18:27 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Sens.dll 2016-10-01 14:58 - 2016-09-15 18:26 - 13081088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-10-01 14:58 - 2016-09-15 18:26 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2.dll 2016-10-01 14:58 - 2016-09-15 18:26 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2016-10-01 14:58 - 2016-09-15 18:26 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll 2016-10-01 14:58 - 2016-09-15 18:26 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeui.dll 2016-10-01 14:58 - 2016-09-15 18:25 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2016-10-01 14:58 - 2016-09-15 18:25 - 00947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_sr.dll 2016-10-01 14:58 - 2016-09-15 18:25 - 00936960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2016-10-01 14:58 - 2016-09-15 18:25 - 00804864 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll 2016-10-01 14:58 - 2016-09-15 18:25 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll 2016-10-01 14:58 - 2016-09-15 18:25 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceAgent.exe 2016-10-01 14:58 - 2016-09-15 18:25 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundMediaPolicy.dll 2016-10-01 14:58 - 2016-09-15 18:24 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll 2016-10-01 14:58 - 2016-09-15 18:24 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2016-10-01 14:58 - 2016-09-15 18:23 - 08122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-10-01 14:58 - 2016-09-15 18:23 - 01361408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2016-10-01 14:58 - 2016-09-15 18:23 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll 2016-10-01 14:58 - 2016-09-15 18:23 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll 2016-10-01 14:58 - 2016-09-15 18:23 - 00611328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2016-10-01 14:58 - 2016-09-15 18:23 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 01709056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 01643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 00983040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 00960000 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 00770560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll 2016-10-01 14:58 - 2016-09-15 18:21 - 04136960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll 2016-10-01 14:58 - 2016-09-15 18:21 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll 2016-10-01 14:58 - 2016-09-15 18:21 - 02208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll 2016-10-01 14:58 - 2016-09-15 18:21 - 00971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2016-10-01 14:58 - 2016-09-15 18:21 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2016-10-01 14:58 - 2016-09-15 18:20 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe 2016-10-01 14:58 - 2016-09-15 18:20 - 02914304 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2016-10-01 14:58 - 2016-09-15 18:20 - 02668544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2016-10-01 14:58 - 2016-09-15 18:20 - 02476544 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2016-10-01 14:58 - 2016-09-15 18:20 - 02424320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll 2016-10-01 14:58 - 2016-09-15 18:20 - 02095616 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2016-10-01 14:58 - 2016-09-15 18:20 - 01779712 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-10-01 14:58 - 2016-09-15 18:20 - 01710080 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2016-10-01 14:58 - 2016-09-15 18:20 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll 2016-10-01 14:58 - 2016-09-15 18:19 - 03202048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2016-10-01 14:58 - 2016-09-15 18:19 - 01130496 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2016-10-01 14:58 - 2016-09-15 18:19 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2016-10-01 14:58 - 2016-09-15 18:19 - 00788992 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2016-10-01 14:58 - 2016-09-15 18:19 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll 2016-10-01 14:58 - 2016-09-15 18:19 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll 2016-10-01 14:58 - 2016-09-15 18:18 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2016-10-01 14:58 - 2016-09-15 18:17 - 01107456 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll 2016-10-01 14:58 - 2016-09-15 18:17 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2016-10-01 14:58 - 2016-09-15 18:16 - 01817088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll 2016-10-01 14:58 - 2016-09-15 18:16 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2016-10-01 14:58 - 2016-09-15 18:16 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\spaceman.exe 2016-10-01 14:58 - 2016-08-06 05:34 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\smphost.dll 2016-10-01 14:58 - 2016-08-05 10:29 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll 2016-10-01 14:57 - 2016-09-24 07:46 - 01690112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2016-10-01 14:57 - 2016-09-24 07:44 - 02264064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2016-10-01 14:57 - 2016-09-15 19:37 - 00590960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2016-10-01 14:57 - 2016-09-15 19:37 - 00496872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2016-10-01 14:57 - 2016-09-15 19:37 - 00402352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll 2016-10-01 14:57 - 2016-09-15 19:30 - 01051112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2016-10-01 14:57 - 2016-09-15 19:30 - 00894096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2016-10-01 14:57 - 2016-09-15 19:29 - 00424640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll 2016-10-01 14:57 - 2016-09-15 19:29 - 00169056 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll 2016-10-01 14:57 - 2016-09-15 19:29 - 00074080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vpci.sys 2016-10-01 14:57 - 2016-09-15 19:28 - 01353768 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2016-10-01 14:57 - 2016-09-15 19:28 - 01172472 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2016-10-01 14:57 - 2016-09-15 19:27 - 01883784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2016-10-01 14:57 - 2016-09-15 19:27 - 00128352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys 2016-10-01 14:57 - 2016-09-15 19:25 - 00340320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2016-10-01 14:57 - 2016-09-15 19:25 - 00280472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeunlock.exe 2016-10-01 14:57 - 2016-09-15 19:24 - 01182048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2016-10-01 14:57 - 2016-09-15 19:22 - 05722320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2016-10-01 14:57 - 2016-09-15 19:22 - 00433832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll 2016-10-01 14:57 - 2016-09-15 19:21 - 00272720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll 2016-10-01 14:57 - 2016-09-15 19:18 - 06654616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2016-10-01 14:57 - 2016-09-15 19:17 - 04311736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2016-10-01 14:57 - 2016-09-15 19:16 - 07219672 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2016-10-01 14:57 - 2016-09-15 19:15 - 00557408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2016-10-01 14:57 - 2016-09-15 19:15 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2016-10-01 14:57 - 2016-09-15 19:15 - 00223584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2016-10-01 14:57 - 2016-09-15 19:14 - 01415752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2016-10-01 14:57 - 2016-09-15 19:14 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2016-10-01 14:57 - 2016-09-15 19:14 - 00988512 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2016-10-01 14:57 - 2016-09-15 19:14 - 00947552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi 2016-10-01 14:57 - 2016-09-15 19:14 - 00811872 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe 2016-10-01 14:57 - 2016-09-15 19:14 - 00435040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys 2016-10-01 14:57 - 2016-09-15 19:12 - 04131464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2016-10-01 14:57 - 2016-09-15 19:12 - 01472536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2016-10-01 14:57 - 2016-09-15 19:11 - 22219328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-10-01 14:57 - 2016-09-15 19:11 - 01990640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2016-10-01 14:57 - 2016-09-15 19:11 - 01300600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2016-10-01 14:57 - 2016-09-15 19:11 - 01071728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll 2016-10-01 14:57 - 2016-09-15 19:11 - 01066104 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2016-10-01 14:57 - 2016-09-15 19:11 - 00862064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2016-10-01 14:57 - 2016-09-15 19:11 - 00725664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2016-10-01 14:57 - 2016-09-15 19:11 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll 2016-10-01 14:57 - 2016-09-15 19:11 - 00160096 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll 2016-10-01 14:57 - 2016-09-15 19:08 - 05683712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2016-10-01 14:57 - 2016-09-15 19:07 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2016-10-01 14:57 - 2016-09-15 19:07 - 01418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2016-10-01 14:57 - 2016-09-15 19:07 - 00128864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2016-10-01 14:57 - 2016-09-15 19:06 - 00372440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll 2016-10-01 14:57 - 2016-09-15 19:01 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll 2016-10-01 14:57 - 2016-09-15 19:00 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll 2016-10-01 14:57 - 2016-09-15 19:00 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll 2016-10-01 14:57 - 2016-09-15 18:59 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp 2016-10-01 14:57 - 2016-09-15 18:59 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinRtTracing.dll 2016-10-01 14:57 - 2016-09-15 18:59 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll 2016-10-01 14:57 - 2016-09-15 18:59 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll 2016-10-01 14:57 - 2016-09-15 18:58 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll 2016-10-01 14:57 - 2016-09-15 18:58 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll 2016-10-01 14:57 - 2016-09-15 18:58 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll 2016-10-01 14:57 - 2016-09-15 18:58 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll 2016-10-01 14:57 - 2016-09-15 18:58 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll 2016-10-01 14:57 - 2016-09-15 18:57 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll 2016-10-01 14:57 - 2016-09-15 18:57 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll 2016-10-01 14:57 - 2016-09-15 18:57 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsensorgroup.dll 2016-10-01 14:57 - 2016-09-15 18:57 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ClipboardServer.dll 2016-10-01 14:57 - 2016-09-15 18:56 - 01300480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll 2016-10-01 14:57 - 2016-09-15 18:56 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll 2016-10-01 14:57 - 2016-09-15 18:56 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2016-10-01 14:57 - 2016-09-15 18:56 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetworkCollectionAgent.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe 2016-10-01 14:57 - 2016-09-15 18:54 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2016-10-01 14:57 - 2016-09-15 18:54 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll 2016-10-01 14:57 - 2016-09-15 18:53 - 00819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll 2016-10-01 14:57 - 2016-09-15 18:52 - 00500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll 2016-10-01 14:57 - 2016-09-15 18:52 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprapi.dll 2016-10-01 14:57 - 2016-09-15 18:52 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2016-10-01 14:57 - 2016-09-15 18:51 - 00762368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll 2016-10-01 14:57 - 2016-09-15 18:50 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe 2016-10-01 14:57 - 2016-09-15 18:50 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pwrshplugin.dll 2016-10-01 14:57 - 2016-09-15 18:49 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.InkControls.dll 2016-10-01 14:57 - 2016-09-15 18:48 - 01321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll 2016-10-01 14:57 - 2016-09-15 18:48 - 01320448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll 2016-10-01 14:57 - 2016-09-15 18:48 - 01112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll 2016-10-01 14:57 - 2016-09-15 18:46 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll 2016-10-01 14:57 - 2016-09-15 18:46 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll 2016-10-01 14:57 - 2016-09-15 18:46 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll 2016-10-01 14:57 - 2016-09-15 18:45 - 02749440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll 2016-10-01 14:57 - 2016-09-15 18:45 - 02642944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2016-10-01 14:57 - 2016-09-15 18:45 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll 2016-10-01 14:57 - 2016-09-15 18:45 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll 2016-10-01 14:57 - 2016-09-15 18:44 - 02153984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll 2016-10-01 14:57 - 2016-09-15 18:44 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.MediaPlayer.dll 2016-10-01 14:57 - 2016-09-15 18:44 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll 2016-10-01 14:57 - 2016-09-15 18:43 - 03520512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe 2016-10-01 14:57 - 2016-09-15 18:43 - 03196416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2016-10-01 14:57 - 2016-09-15 18:43 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll 2016-10-01 14:57 - 2016-09-15 18:43 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToReceiver.dll 2016-10-01 14:57 - 2016-09-15 18:43 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2016-10-01 14:57 - 2016-09-15 18:43 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll 2016-10-01 14:57 - 2016-09-15 18:42 - 00719872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_sr.dll 2016-10-01 14:57 - 2016-09-15 18:42 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundMediaPolicy.dll 2016-10-01 14:57 - 2016-09-15 18:41 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll 2016-10-01 14:57 - 2016-09-15 18:41 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll 2016-10-01 14:57 - 2016-09-15 18:41 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll 2016-10-01 14:57 - 2016-09-15 18:41 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp 2016-10-01 14:57 - 2016-09-15 18:40 - 03369984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 02138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 01988096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthLEEnum.sys 2016-10-01 14:57 - 2016-09-15 18:40 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 00113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2016-10-01 14:57 - 2016-09-15 18:39 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll 2016-10-01 14:57 - 2016-09-15 18:39 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll 2016-10-01 14:57 - 2016-09-15 18:39 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll 2016-10-01 14:57 - 2016-09-15 18:39 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll 2016-10-01 14:57 - 2016-09-15 18:39 - 00873472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll 2016-10-01 14:57 - 2016-09-15 18:39 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll 2016-10-01 14:57 - 2016-09-15 18:38 - 00773120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2016-10-01 14:57 - 2016-09-15 18:38 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkCollectionAgent.dll 2016-10-01 14:57 - 2016-09-15 18:38 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2016-10-01 14:57 - 2016-09-15 18:38 - 00427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll 2016-10-01 14:57 - 2016-09-15 18:38 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvcext.dll 2016-10-01 14:57 - 2016-09-15 18:38 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll 2016-10-01 14:57 - 2016-09-15 18:38 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll 2016-10-01 14:57 - 2016-09-15 18:37 - 01507840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll 2016-10-01 14:57 - 2016-09-15 18:37 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll 2016-10-01 14:57 - 2016-09-15 18:37 - 00651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll 2016-10-01 14:57 - 2016-09-15 18:37 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlancfg.dll 2016-10-01 14:57 - 2016-09-15 18:37 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.HostName.dll 2016-10-01 14:57 - 2016-09-15 18:37 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\biwinrt.dll 2016-10-01 14:57 - 2016-09-15 18:37 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll 2016-10-01 14:57 - 2016-09-15 18:36 - 00719360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys 2016-10-01 14:57 - 2016-09-15 18:36 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll 2016-10-01 14:57 - 2016-09-15 18:36 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2016-10-01 14:57 - 2016-09-15 18:36 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll 2016-10-01 14:57 - 2016-09-15 18:36 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2016-10-01 14:57 - 2016-09-15 18:36 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll 2016-10-01 14:57 - 2016-09-15 18:35 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll 2016-10-01 14:57 - 2016-09-15 18:35 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll 2016-10-01 14:57 - 2016-09-15 18:35 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2016-10-01 14:57 - 2016-09-15 18:35 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll 2016-10-01 14:57 - 2016-09-15 18:35 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll 2016-10-01 14:57 - 2016-09-15 18:35 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\rshx32.dll 2016-10-01 14:57 - 2016-09-15 18:34 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll 2016-10-01 14:57 - 2016-09-15 18:33 - 06285312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2016-10-01 14:57 - 2016-09-15 18:33 - 01145344 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll 2016-10-01 14:57 - 2016-09-15 18:33 - 00966144 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll 2016-10-01 14:57 - 2016-09-15 18:33 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe 2016-10-01 14:57 - 2016-09-15 18:33 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll 2016-10-01 14:57 - 2016-09-15 18:31 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwrshplugin.dll 2016-10-01 14:57 - 2016-09-15 18:30 - 03776512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2016-10-01 14:57 - 2016-09-15 18:30 - 01639424 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll 2016-10-01 14:57 - 2016-09-15 18:30 - 01589248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll 2016-10-01 14:57 - 2016-09-15 18:30 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll 2016-10-01 14:57 - 2016-09-15 18:30 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2016-10-01 14:57 - 2016-09-15 18:30 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll 2016-10-01 14:57 - 2016-09-15 18:29 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll 2016-10-01 14:57 - 2016-09-15 18:28 - 01908224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2016-10-01 14:57 - 2016-09-15 18:28 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll 2016-10-01 14:57 - 2016-09-15 18:28 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll 2016-10-01 14:57 - 2016-09-15 18:27 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2016-10-01 14:57 - 2016-09-15 18:27 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll |
12.10.2016, 20:01 | #7 |
| Windows 10 bei Klick öffnet sich neues FensterCode:
ATTFilter 2016-10-01 14:57 - 2016-09-15 18:27 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAC3ENC.DLL 2016-10-01 14:57 - 2016-09-15 18:25 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll 2016-10-01 14:57 - 2016-09-15 18:25 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2016-10-01 14:57 - 2016-09-15 18:24 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe 2016-10-01 14:57 - 2016-09-15 18:24 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2016-10-01 14:57 - 2016-09-15 18:24 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll 2016-10-01 14:57 - 2016-09-15 18:24 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll 2016-10-01 14:57 - 2016-09-15 18:24 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll 2016-10-01 14:57 - 2016-09-15 18:23 - 04474368 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2016-10-01 14:57 - 2016-09-15 18:23 - 01040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll 2016-10-01 14:57 - 2016-09-15 18:23 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll 2016-10-01 14:57 - 2016-09-15 18:22 - 08075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2016-10-01 14:57 - 2016-09-15 18:22 - 05611008 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2016-10-01 14:57 - 2016-09-15 18:22 - 00911872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll 2016-10-01 14:57 - 2016-09-15 18:22 - 00857600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll 2016-10-01 14:57 - 2016-09-15 18:20 - 02688512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2016-10-01 14:57 - 2016-09-15 18:20 - 01984512 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2016-10-01 14:57 - 2016-09-15 18:20 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2016-10-01 14:57 - 2016-09-15 18:20 - 00875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2016-10-01 14:57 - 2016-09-15 18:20 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll 2016-10-01 14:57 - 2016-09-15 18:20 - 00765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2016-10-01 14:57 - 2016-09-15 18:19 - 03617792 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-10-01 14:57 - 2016-09-15 18:19 - 01840640 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2016-10-01 14:57 - 2016-09-15 18:19 - 01424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll 2016-10-01 14:57 - 2016-09-15 18:19 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll 2016-10-01 14:57 - 2016-09-15 18:19 - 01013760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll 2016-10-01 14:57 - 2016-09-15 18:19 - 00774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll 2016-10-01 14:57 - 2016-09-15 18:18 - 01369088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll 2016-10-01 14:57 - 2016-09-15 18:18 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2016-10-01 14:57 - 2016-09-15 18:17 - 00924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll 2016-10-01 14:57 - 2016-09-15 18:17 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll 2016-10-01 14:57 - 2016-09-15 18:16 - 00998912 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll 2016-10-01 14:57 - 2016-09-15 18:16 - 00886784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll 2016-10-01 14:57 - 2016-09-15 18:16 - 00531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll 2016-10-01 14:57 - 2016-09-15 16:00 - 00445765 _____ C:\WINDOWS\system32\ApnDatabase.xml 2016-10-01 14:57 - 2016-08-06 05:33 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smphost.dll 2016-10-01 14:51 - 2016-10-01 14:51 - 00604928 _____ (Reimage) C:\Users\laura\Downloads\ReimageRepair (1).exe 2016-09-28 13:51 - 2016-09-28 13:51 - 00604928 _____ (Reimage) C:\Users\laura\Downloads\ReimageRepair.exe 2016-09-26 15:57 - 2016-09-26 15:57 - 00063231 _____ C:\Users\laura\Downloads\studbesch_B4013B4C87C6C0BCAE9664A0848D0A84.cit-prod-tomcat3.pdf 2016-09-26 15:56 - 2016-09-26 15:56 - 00023501 _____ C:\Users\laura\Downloads\bafoeg_B4013B4C87C6C0BCAE9664A0848D0A84.cit-prod-tomcat3.pdf 2016-09-26 15:47 - 2016-09-26 15:47 - 00063315 _____ C:\Users\laura\Downloads\EinzureichendeUnterlagen (1).pdf 2016-09-26 15:46 - 2016-09-26 15:46 - 00159522 _____ C:\Users\laura\Downloads\BG_Formblatt3_Laura_Carolina_Ramiro_Pires_Manns.pdf 2016-09-26 15:46 - 2016-09-26 15:46 - 00008917 _____ C:\Users\laura\Downloads\BAfoeG_Formblatt3_Walter_Josef_Manns.dgef 2016-09-26 15:42 - 2016-09-26 15:42 - 00123208 _____ C:\Users\laura\Downloads\BG_Anlage1FB1_Laura_Carolina_Ramiro_Pires_Manns.pdf 2016-09-26 15:40 - 2016-09-26 15:40 - 00170607 _____ C:\Users\laura\Downloads\BG_Formblatt1_Laura_Carolina_Ramiro_Pires_Manns.pdf 2016-09-26 15:35 - 2016-09-26 15:35 - 00070011 _____ C:\Users\laura\Downloads\EinzureichendeUnterlagen.pdf 2016-09-26 15:35 - 2016-09-26 15:35 - 00008613 _____ C:\Users\laura\Downloads\bafoeg_Formblatt1_Laura_Carolina_Ramiro_Pires_Manns (3).dgef 2016-09-26 15:25 - 2016-10-11 18:23 - 00004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2016-09-26 15:25 - 2016-10-11 18:22 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-09-26 15:25 - 2016-09-26 15:25 - 00002131 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk 2016-09-26 15:25 - 2016-09-26 15:25 - 00000000 ____D C:\Users\laura\AppData\LocalLow\Adobe 2016-09-26 15:25 - 2016-09-26 15:25 - 00000000 ____D C:\Program Files (x86)\Adobe 2016-09-26 15:24 - 2016-09-26 15:42 - 00000000 ____D C:\ProgramData\Adobe 2016-09-26 15:23 - 2016-09-26 15:25 - 00000000 ____D C:\Users\laura\AppData\Local\Adobe 2016-09-26 14:52 - 2016-09-26 14:52 - 00004053 _____ C:\Users\laura\Downloads\BAfoeG_Anlage1FB1_Laura_Carolina_Ramiro_Pires_Manns (1).dgef 2016-09-26 14:48 - 2016-09-26 14:52 - 00004053 _____ C:\Users\laura\Downloads\BAfoeG_Anlage1FB1_Laura_Carolina_Ramiro_Pires_Manns.dgef 2016-09-26 12:14 - 2016-09-26 12:14 - 00008581 _____ C:\Users\laura\Downloads\bafoeg_Formblatt1_Laura_Carolina_Ramiro_Pires_Manns (2).dgef 2016-09-26 11:12 - 2016-09-26 11:12 - 00008373 _____ C:\Users\laura\Downloads\bafoeg_Formblatt1_Laura_Carolina_Ramiro_Pires_Manns (1).dgef 2016-09-24 17:40 - 2016-09-24 17:40 - 00276560 _____ C:\Users\laura\OneDrive\Dokumente\Orientierungswoche-Oktober-2016_Stundenplan.pdf 2016-09-21 17:20 - 2016-09-21 17:20 - 01525618 _____ C:\Users\laura\Downloads\Selbstauskunft KWG_Palmsanlage 2a.pdf 2016-09-21 17:12 - 2016-09-21 17:12 - 01326246 _____ C:\Users\laura\Downloads\Selbstauskunft DDI_Nägelsbachstr 24.pdf 2016-09-21 16:38 - 2016-09-21 16:38 - 00000000 ____D C:\Users\Default\AppData\Local\AVG 2016-09-21 16:38 - 2016-09-21 16:38 - 00000000 ____D C:\Users\Default User\AppData\Local\AVG 2016-09-20 14:30 - 2016-10-12 20:38 - 00000000 ____D C:\Users\laura\AppData\Roaming\Spotify 2016-09-20 14:30 - 2016-10-12 20:38 - 00000000 ____D C:\Users\laura\AppData\Local\Spotify 2016-09-20 14:30 - 2016-09-20 14:30 - 00356056 _____ (Spotify Ltd) C:\Users\laura\Downloads\SpotifySetup.exe 2016-09-20 14:30 - 2016-09-20 14:30 - 00001857 _____ C:\Users\laura\Desktop\Spotify.lnk 2016-09-20 14:30 - 2016-09-20 14:30 - 00001843 _____ C:\Users\laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2016-09-20 14:30 - 2016-09-20 14:30 - 00000000 ____D C:\Users\laura\AppData\Local\CEF 2016-09-18 16:30 - 2016-09-18 16:35 - 00008704 _____ C:\Users\laura\OneDrive\Dokumente\wohnungsübersicht.xls 2016-09-18 14:22 - 2016-09-18 14:22 - 00007168 _____ C:\Users\laura\OneDrive\Dokumente\wohnungsübersicht.xlt 2016-09-18 14:20 - 2016-09-18 14:21 - 00012398 _____ C:\Users\laura\OneDrive\Dokumente\wohnungsübersicht.ods 2016-09-18 13:51 - 2016-09-18 13:51 - 00000000 ____D C:\Users\laura\AppData\Roaming\OpenOffice 2016-09-16 22:49 - 2016-09-16 22:49 - 626467013 _____ C:\WINDOWS\MEMORY.DMP 2016-09-16 22:49 - 2016-09-16 22:49 - 00416636 _____ C:\WINDOWS\Minidump\091616-13531-01.dmp 2016-09-16 22:49 - 2016-09-16 22:49 - 00000000 ____D C:\WINDOWS\Minidump 2016-09-15 18:33 - 2016-09-15 18:33 - 09135234 _____ C:\Users\laura\Downloads\Unterlagen.zip 2016-09-14 17:18 - 2016-09-14 17:18 - 01472732 _____ C:\Users\laura\Downloads\StudOn-Flyer.pdf 2016-09-14 17:16 - 2016-09-14 17:16 - 00407785 _____ C:\Users\laura\Downloads\StudOn-Erstsemester-Informationsblatt.pdf 2016-09-13 22:03 - 2016-09-07 07:53 - 02183792 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll 2016-09-13 22:03 - 2016-09-07 07:48 - 00379744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2016-09-13 22:03 - 2016-09-07 07:41 - 00303968 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2016-09-13 22:03 - 2016-09-07 07:37 - 01966288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll 2016-09-13 22:03 - 2016-09-07 07:36 - 00187232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2016-09-13 22:03 - 2016-09-07 07:33 - 00681304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys 2016-09-13 22:03 - 2016-09-07 07:32 - 02206496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2016-09-13 22:03 - 2016-09-07 07:29 - 00811416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2016-09-13 22:03 - 2016-09-07 07:29 - 00595488 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2016-09-13 22:03 - 2016-09-07 07:24 - 00057400 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe 2016-09-13 22:03 - 2016-09-07 07:13 - 00529928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll 2016-09-13 22:03 - 2016-09-07 07:04 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll 2016-09-13 22:03 - 2016-09-07 07:03 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosResource.dll 2016-09-13 22:03 - 2016-09-07 07:03 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll 2016-09-13 22:03 - 2016-09-07 07:03 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll 2016-09-13 22:03 - 2016-09-07 07:03 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccessRes.dll 2016-09-13 22:03 - 2016-09-07 07:02 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll 2016-09-13 22:03 - 2016-09-07 07:02 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll 2016-09-13 22:03 - 2016-09-07 07:02 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll 2016-09-13 22:03 - 2016-09-07 07:02 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll 2016-09-13 22:03 - 2016-09-07 07:02 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll 2016-09-13 22:03 - 2016-09-07 07:02 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll 2016-09-13 22:03 - 2016-09-07 07:01 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AddressParser.dll 2016-09-13 22:03 - 2016-09-07 07:01 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll 2016-09-13 22:03 - 2016-09-07 07:00 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2016-09-13 22:03 - 2016-09-07 07:00 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll 2016-09-13 22:03 - 2016-09-07 07:00 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll 2016-09-13 22:03 - 2016-09-07 07:00 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosResource.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MapControls.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappprxy.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactActivation.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll 2016-09-13 22:03 - 2016-09-07 06:59 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.UI.Logon.ProxyStub.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AddressParser.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccessRes.dll 2016-09-13 22:03 - 2016-09-07 06:58 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll 2016-09-13 22:03 - 2016-09-07 06:57 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll 2016-09-13 22:03 - 2016-09-07 06:57 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2016-09-13 22:03 - 2016-09-07 06:56 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll 2016-09-13 22:03 - 2016-09-07 06:56 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2016-09-13 22:03 - 2016-09-07 06:56 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll 2016-09-13 22:03 - 2016-09-07 06:56 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\XamlTileRender.dll 2016-09-13 22:03 - 2016-09-07 06:56 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll 2016-09-13 22:03 - 2016-09-07 06:56 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll 2016-09-13 22:03 - 2016-09-07 06:56 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll 2016-09-13 22:03 - 2016-09-07 06:56 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll 2016-09-13 22:03 - 2016-09-07 06:56 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactActivation.dll 2016-09-13 22:03 - 2016-09-07 06:55 - 00820736 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll 2016-09-13 22:03 - 2016-09-07 06:55 - 00781824 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll 2016-09-13 22:03 - 2016-09-07 06:55 - 00323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll 2016-09-13 22:03 - 2016-09-07 06:55 - 00243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll 2016-09-13 22:03 - 2016-09-07 06:55 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll 2016-09-13 22:03 - 2016-09-07 06:55 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2016-09-13 22:03 - 2016-09-07 06:55 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2016-09-13 22:03 - 2016-09-07 06:55 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll 2016-09-13 22:03 - 2016-09-07 06:54 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2016-09-13 22:03 - 2016-09-07 06:54 - 00678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll 2016-09-13 22:03 - 2016-09-07 06:54 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2016-09-13 22:03 - 2016-09-07 06:54 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\NmaDirect.dll 2016-09-13 22:03 - 2016-09-07 06:54 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Phoneutil.dll 2016-09-13 22:03 - 2016-09-07 06:54 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappprxy.dll 2016-09-13 22:03 - 2016-09-07 06:54 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll 2016-09-13 22:03 - 2016-09-07 06:53 - 00302592 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll 2016-09-13 22:03 - 2016-09-07 06:53 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll 2016-09-13 22:03 - 2016-09-07 06:53 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll 2016-09-13 22:03 - 2016-09-07 06:52 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2016-09-13 22:03 - 2016-09-07 06:52 - 00536576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll 2016-09-13 22:03 - 2016-09-07 06:52 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll 2016-09-13 22:03 - 2016-09-07 06:52 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.UI.Logon.ProxyStub.dll 2016-09-13 22:03 - 2016-09-07 06:50 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2016-09-13 22:03 - 2016-09-07 06:50 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll 2016-09-13 22:03 - 2016-09-07 06:49 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2016-09-13 22:03 - 2016-09-07 06:49 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys 2016-09-13 22:03 - 2016-09-07 06:49 - 00260096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Phoneutil.dll 2016-09-13 22:03 - 2016-09-07 06:47 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll 2016-09-13 22:03 - 2016-09-07 06:46 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll 2016-09-13 22:03 - 2016-09-07 06:46 - 00755200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2016-09-13 22:03 - 2016-09-07 06:46 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll 2016-09-13 22:03 - 2016-09-07 06:45 - 01456640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2016-09-13 22:03 - 2016-09-07 06:45 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2016-09-13 22:03 - 2016-09-07 06:45 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2016-09-13 22:03 - 2016-09-07 06:43 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2016-09-13 22:03 - 2016-09-07 06:41 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2016-09-13 22:03 - 2016-09-07 06:41 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2016-09-13 22:03 - 2016-09-07 06:39 - 03116544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAJApi.dll 2016-09-13 22:03 - 2016-09-07 06:38 - 02315264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2016-09-13 22:03 - 2016-09-07 06:38 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2016-09-13 22:03 - 2016-09-07 06:37 - 00936448 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll 2016-09-13 22:03 - 2016-09-07 06:37 - 00905216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2016-09-13 22:03 - 2016-09-07 06:36 - 02423296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAJApi.dll 2016-09-13 22:03 - 2016-09-07 06:35 - 00650240 _____ (Microsoft) C:\WINDOWS\system32\DbgModel.dll 2016-09-13 22:03 - 2016-09-07 06:34 - 00761344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll 2016-09-13 22:03 - 2016-09-07 06:34 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll 2016-09-13 22:03 - 2016-09-07 06:33 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll 2016-09-13 22:03 - 2016-09-07 06:31 - 00461312 _____ (Microsoft) C:\WINDOWS\SysWOW64\DbgModel.dll 2016-09-13 22:03 - 2016-08-06 06:26 - 00409944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2016-09-13 22:03 - 2016-08-06 06:16 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2016-09-13 22:03 - 2016-08-06 06:16 - 00020320 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll 2016-09-13 22:03 - 2016-08-06 05:50 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2016-09-13 22:03 - 2016-08-06 05:48 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2016-09-13 22:03 - 2016-08-06 05:48 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe 2016-09-13 22:03 - 2016-08-06 05:48 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2016-09-13 22:03 - 2016-08-06 05:47 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2016-09-13 22:03 - 2016-08-06 05:43 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipboardServer.dll 2016-09-13 22:03 - 2016-08-06 05:40 - 00259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe 2016-09-13 22:03 - 2016-08-06 05:39 - 00261120 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll 2016-09-13 22:03 - 2016-08-06 05:37 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll 2016-09-13 22:03 - 2016-08-06 05:35 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll 2016-09-13 22:03 - 2016-08-06 05:29 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll 2016-09-13 22:03 - 2016-08-02 10:44 - 00114192 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll 2016-09-13 22:03 - 2016-08-02 10:21 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll 2016-09-13 22:03 - 2016-08-02 10:20 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2016-09-13 22:03 - 2016-08-02 10:15 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll 2016-09-13 22:03 - 2016-08-02 10:14 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll 2016-09-13 22:03 - 2016-08-02 10:13 - 01081856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2016-09-13 22:03 - 2016-08-02 06:47 - 00079536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll 2016-09-13 22:03 - 2016-08-02 06:37 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll 2016-09-13 22:03 - 2016-08-02 06:36 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys 2016-09-13 22:03 - 2016-07-22 02:49 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2016-09-13 22:02 - 2016-09-07 07:54 - 00133472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys 2016-09-13 22:02 - 2016-09-07 07:53 - 02481768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2016-09-13 22:02 - 2016-09-07 07:50 - 00773200 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2016-09-13 22:02 - 2016-09-07 07:48 - 02256224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2016-09-13 22:02 - 2016-09-07 07:46 - 00423776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe 2016-09-13 22:02 - 2016-09-07 07:44 - 02049480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2016-09-13 22:02 - 2016-09-07 07:41 - 00172528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll 2016-09-13 22:02 - 2016-09-07 07:34 - 00857440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2016-09-13 22:02 - 2016-09-07 07:34 - 00584544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2016-09-13 22:02 - 2016-09-07 07:34 - 00178528 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll 2016-09-13 22:02 - 2016-09-07 07:33 - 00450392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2016-09-13 22:02 - 2016-09-07 07:32 - 02913104 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2016-09-13 22:02 - 2016-09-07 07:30 - 00601200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2016-09-13 22:02 - 2016-09-07 07:29 - 01694712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2016-09-13 22:02 - 2016-09-07 07:29 - 01274712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2016-09-13 22:02 - 2016-09-07 07:29 - 00755656 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll 2016-09-13 22:02 - 2016-09-07 07:29 - 00523712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.dll 2016-09-13 22:02 - 2016-09-07 07:29 - 00382272 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe 2016-09-13 22:02 - 2016-09-07 07:29 - 00118112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\EhStorTcgDrv.sys 2016-09-13 22:02 - 2016-09-07 07:27 - 01362504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpmde.dll 2016-09-13 22:02 - 2016-09-07 07:24 - 02537824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2016-09-13 22:02 - 2016-09-07 07:17 - 00782176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2016-09-13 22:02 - 2016-09-07 07:17 - 00509792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2016-09-13 22:02 - 2016-09-07 07:15 - 02166232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2016-09-13 22:02 - 2016-09-07 07:13 - 01853232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2016-09-13 22:02 - 2016-09-07 07:13 - 01557296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2016-09-13 22:02 - 2016-09-07 07:13 - 01360456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll 2016-09-13 22:02 - 2016-09-07 07:13 - 00959104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2016-09-13 22:02 - 2016-09-07 07:13 - 00640976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll 2016-09-13 22:02 - 2016-09-07 07:12 - 00321792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe 2016-09-13 22:02 - 2016-09-07 07:07 - 00117240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll 2016-09-13 22:02 - 2016-09-07 07:03 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll 2016-09-13 22:02 - 2016-09-07 07:03 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll 2016-09-13 22:02 - 2016-09-07 07:02 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll 2016-09-13 22:02 - 2016-09-07 07:02 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll 2016-09-13 22:02 - 2016-09-07 07:02 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneutilRes.dll 2016-09-13 22:02 - 2016-09-07 07:02 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneServiceRes.dll 2016-09-13 22:02 - 2016-09-07 07:02 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll 2016-09-13 22:02 - 2016-09-07 07:01 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll 2016-09-13 22:02 - 2016-09-07 06:59 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll 2016-09-13 22:02 - 2016-09-07 06:59 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlStringsRes.dll 2016-09-13 22:02 - 2016-09-07 06:58 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll 2016-09-13 22:02 - 2016-09-07 06:58 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneutilRes.dll 2016-09-13 22:02 - 2016-09-07 06:57 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll 2016-09-13 22:02 - 2016-09-07 06:56 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2016-09-13 22:02 - 2016-09-07 06:55 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2016-09-13 22:02 - 2016-09-07 06:54 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll 2016-09-13 22:02 - 2016-09-07 06:54 - 00446464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2016-09-13 22:02 - 2016-09-07 06:54 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll 2016-09-13 22:02 - 2016-09-07 06:54 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll 2016-09-13 22:02 - 2016-09-07 06:53 - 02083840 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceFlows.DataModel.dll 2016-09-13 22:02 - 2016-09-07 06:53 - 01388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll 2016-09-13 22:02 - 2016-09-07 06:53 - 00526848 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2016-09-13 22:02 - 2016-09-07 06:53 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll 2016-09-13 22:02 - 2016-09-07 06:52 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2016-09-13 22:02 - 2016-09-07 06:52 - 00509952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll 2016-09-13 22:02 - 2016-09-07 06:52 - 00438784 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDec.dll 2016-09-13 22:02 - 2016-09-07 06:52 - 00331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2016-09-13 22:02 - 2016-09-07 06:52 - 00289280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NmaDirect.dll 2016-09-13 22:02 - 2016-09-07 06:50 - 01755136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceFlows.DataModel.dll 2016-09-13 22:02 - 2016-09-07 06:50 - 00866816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll 2016-09-13 22:02 - 2016-09-07 06:50 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll 2016-09-13 22:02 - 2016-09-07 06:48 - 07792640 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2016-09-13 22:02 - 2016-09-07 06:47 - 07654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2016-09-13 22:02 - 2016-09-07 06:46 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2016-09-13 22:02 - 2016-09-07 06:46 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll 2016-09-13 22:02 - 2016-09-07 06:45 - 01228288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll 2016-09-13 22:02 - 2016-09-07 06:42 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2016-09-13 22:02 - 2016-09-07 06:41 - 03435008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll 2016-09-13 22:02 - 2016-09-07 06:41 - 02947072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll 2016-09-13 22:02 - 2016-09-07 06:41 - 02510848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2016-09-13 22:02 - 2016-09-07 06:41 - 01891328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll 2016-09-13 22:02 - 2016-09-07 06:41 - 00932864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2016-09-13 22:02 - 2016-09-07 06:41 - 00758784 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2016-09-13 22:02 - 2016-09-07 06:40 - 02852864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2016-09-13 22:02 - 2016-09-07 06:40 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll 2016-09-13 22:02 - 2016-09-07 06:40 - 01312768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe 2016-09-13 22:02 - 2016-09-07 06:40 - 01282048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2016-09-13 22:02 - 2016-09-07 06:40 - 01029632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2016-09-13 22:02 - 2016-09-07 06:40 - 01006080 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll 2016-09-13 22:02 - 2016-09-07 06:39 - 06109184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2016-09-13 22:02 - 2016-09-07 06:39 - 05384192 _____ (Microsoft) C:\WINDOWS\system32\dbgeng.dll 2016-09-13 22:02 - 2016-09-07 06:39 - 05376000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2016-09-13 22:02 - 2016-09-07 06:39 - 04747776 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-09-13 22:02 - 2016-09-07 06:39 - 00895488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll 2016-09-13 22:02 - 2016-09-07 06:38 - 02289664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2016-09-13 22:02 - 2016-09-07 06:38 - 01555456 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe 2016-09-13 22:02 - 2016-09-07 06:38 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2016-09-13 22:02 - 2016-09-07 06:37 - 02820096 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2016-09-13 22:02 - 2016-09-07 06:37 - 02370048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2016-09-13 22:02 - 2016-09-07 06:37 - 01637888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2016-09-13 22:02 - 2016-09-07 06:37 - 01349120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2016-09-13 22:02 - 2016-09-07 06:37 - 01062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2016-09-13 22:02 - 2016-09-07 06:37 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll 2016-09-13 22:02 - 2016-09-07 06:36 - 03667456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-09-13 22:02 - 2016-09-07 06:36 - 02360832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll 2016-09-13 22:02 - 2016-09-07 06:36 - 01726976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2016-09-13 22:02 - 2016-09-07 06:35 - 02107392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll 2016-09-13 22:02 - 2016-09-07 06:35 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2016-09-13 22:02 - 2016-09-07 06:34 - 04557824 _____ (Microsoft) C:\WINDOWS\SysWOW64\dbgeng.dll 2016-09-13 22:02 - 2016-09-07 06:34 - 01993216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2016-09-13 22:02 - 2016-09-07 06:34 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2016-09-13 22:02 - 2016-09-07 06:34 - 00860672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2016-09-13 22:02 - 2016-09-07 06:34 - 00444416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll 2016-09-13 22:02 - 2016-09-07 06:32 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2016-09-13 22:02 - 2016-09-07 06:31 - 01293312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe 2016-09-13 22:02 - 2016-08-06 06:16 - 00073568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys 2016-09-13 22:02 - 2016-08-06 06:13 - 01453992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll 2016-09-13 22:02 - 2016-08-06 05:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2016-09-13 22:02 - 2016-08-06 05:38 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2016-09-13 22:02 - 2016-08-06 05:37 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2016-09-13 22:02 - 2016-08-02 10:15 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2016-09-13 22:02 - 2016-08-02 06:33 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll 2016-09-13 22:01 - 2016-09-07 06:55 - 06574592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll 2016-09-13 22:01 - 2016-09-07 06:52 - 17187840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2016-09-13 22:01 - 2016-09-07 06:49 - 13867520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2016-09-13 22:01 - 2016-09-07 06:45 - 05398016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll 2016-09-13 22:01 - 2016-09-07 06:41 - 05511680 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2016-09-13 22:01 - 2016-09-07 06:37 - 04148224 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2016-09-13 22:01 - 2016-09-07 06:35 - 03299328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe 2016-09-13 21:25 - 2016-09-13 21:25 - 00569616 _____ (Hewlett Packard) C:\WINDOWS\system32\hpmprein.dll 2016-09-13 21:25 - 2016-09-13 21:25 - 00144840 _____ (HP Inc.) C:\WINDOWS\system32\hpmco190.dll 2016-09-13 18:14 - 2016-09-13 18:14 - 00257872 _____ (Lenovo Group Limited) C:\WINDOWS\system32\iMDriverHelper.dll 2016-09-13 17:29 - 2016-09-14 13:56 - 00000000 ____D C:\Users\laura\OneDrive\Dokumente\wohnung 2016-09-13 15:43 - 2016-09-13 15:43 - 00010743 _____ C:\Users\laura\Downloads\form (2) 2016-09-13 15:42 - 2016-09-13 15:42 - 00041434 _____ C:\Users\laura\Downloads\data.xml 2016-09-13 15:42 - 2016-09-13 15:42 - 00010743 _____ C:\Users\laura\Downloads\form (1) 2016-09-13 15:41 - 2016-09-13 15:41 - 00010743 _____ C:\Users\laura\Downloads\form 2016-09-13 15:21 - 2016-09-13 15:21 - 00008341 _____ C:\Users\laura\Downloads\bafoeg_Formblatt1_Laura_Carolina_Ramiro_Pires_Manns.dgef 2016-09-13 14:57 - 2016-09-13 14:57 - 00193699 _____ C:\Users\laura\Downloads\Selbstauskunft.pdf 2016-09-13 14:49 - 2016-09-13 14:49 - 00000000 ____D C:\Users\laura\AppData\LocalLow\Temp 2016-09-13 14:46 - 2016-09-13 14:49 - 00561875 _____ C:\Users\laura\OneDrive\Dokumente\arbeitsvertrag1473770717.pdf ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-10-12 20:41 - 2016-07-16 13:36 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-10-12 20:40 - 2016-01-06 11:54 - 00000000 ____D C:\ProgramData\Package Cache 2016-10-12 20:38 - 2016-09-06 12:28 - 00000000 ___RD C:\Users\laura\OneDrive 2016-10-12 20:37 - 2016-09-09 13:15 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-10-12 20:37 - 2016-09-09 13:10 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2016-10-12 20:37 - 2016-09-06 12:26 - 00000000 __SHD C:\Users\laura\IntelGraphicsProfiles 2016-10-12 20:37 - 2016-01-06 11:56 - 00000000 ____D C:\ProgramData\McAfee 2016-10-12 20:37 - 2016-01-06 11:56 - 00000000 ____D C:\Program Files\Common Files\McAfee 2016-10-12 20:36 - 2016-07-16 08:04 - 00786432 _____ C:\WINDOWS\system32\config\BBI 2016-10-12 20:35 - 2016-07-16 13:45 - 00000000 ____D C:\WINDOWS\INF 2016-10-12 20:35 - 2016-07-16 08:04 - 00032768 _____ C:\WINDOWS\system32\config\ELAM 2016-10-12 20:34 - 2015-07-10 11:05 - 00000000 ____D C:\Users\Default.migrated 2016-10-12 19:54 - 2016-09-09 13:09 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2016-10-12 17:14 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-10-12 15:14 - 2016-07-16 13:47 - 00000000 ___HD C:\Program Files\WindowsApps 2016-10-11 17:56 - 2016-07-17 00:51 - 00670534 _____ C:\WINDOWS\system32\perfh007.dat 2016-10-11 17:56 - 2016-07-17 00:51 - 00136826 _____ C:\WINDOWS\system32\perfc007.dat 2016-10-11 17:56 - 2015-07-16 17:54 - 01786062 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-10-07 13:09 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\rescache 2016-10-06 16:12 - 2016-01-06 11:57 - 00000000 ____D C:\ProgramData\Lenovo 2016-10-04 20:23 - 2016-09-06 12:26 - 00000000 ____D C:\Users\laura\AppData\Local\Packages 2016-10-04 20:22 - 2016-09-06 12:42 - 00000000 ____D C:\Users\laura\AppData\Local\AvgSetupLog 2016-10-04 20:22 - 2016-09-06 12:42 - 00000000 ____D C:\ProgramData\Avg 2016-10-04 20:22 - 2016-09-06 12:42 - 00000000 ____D C:\Program Files (x86)\AVG 2016-10-04 20:16 - 2016-09-09 13:11 - 00000000 ____D C:\Users\laura 2016-10-04 19:38 - 2016-09-06 21:09 - 00002271 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-10-04 19:38 - 2016-09-06 21:09 - 00002259 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-10-02 12:54 - 2016-01-06 11:56 - 00000000 ____D C:\ProgramData\CyberLink 2016-10-02 12:39 - 2015-07-16 17:49 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ___SD C:\WINDOWS\system32\F12 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\SysWOW64\setup 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\setup 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\oobe 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\appraiser 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\ShellExperiences 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\Provisioning 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\bcastdvr 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2016-10-02 00:47 - 2016-07-16 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2016-10-02 00:47 - 2016-07-16 08:04 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2016-10-02 00:47 - 2016-07-16 08:04 - 00000000 ____D C:\WINDOWS\system32\Dism 2016-10-01 20:14 - 2016-01-06 11:54 - 00000000 ____D C:\Program Files (x86)\Lenovo 2016-10-01 20:12 - 2016-09-09 13:15 - 00000000 ____D C:\WINDOWS\System32\Tasks\Lenovo 2016-10-01 20:12 - 2016-01-06 11:55 - 00000000 ____D C:\Program Files\Lenovo 2016-10-01 20:12 - 2016-01-06 11:54 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2016-10-01 20:11 - 2016-09-09 13:15 - 00000000 ____D C:\WINDOWS\System32\Tasks\CyberLink 2016-10-01 20:11 - 2016-09-06 12:26 - 00000000 ____D C:\Users\laura\AppData\Local\CyberLink 2016-10-01 20:11 - 2016-01-06 11:55 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2016-10-01 20:11 - 2016-01-06 11:55 - 00000000 ____D C:\ProgramData\SUPPORTDIR 2016-10-01 20:10 - 2016-01-06 11:55 - 00000000 ____D C:\ProgramData\Temp 2016-09-26 15:25 - 2016-09-06 12:26 - 00000000 ____D C:\Users\laura\AppData\Roaming\Adobe 2016-09-14 09:21 - 2016-09-09 13:33 - 00000000 ____D C:\Users\laura\AppData\Local\PackageStaging 2016-09-14 09:19 - 2016-09-09 13:09 - 00224392 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-09-13 23:48 - 2016-07-16 13:47 - 00000000 ___SD C:\WINDOWS\system32\dsc 2016-09-13 23:48 - 2016-07-16 13:47 - 00000000 ___RD C:\Program Files\Windows Defender 2016-09-13 23:48 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\lv-LV 2016-09-13 23:48 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\lt-LT 2016-09-13 23:48 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\et-EE 2016-09-13 23:48 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\es-MX 2016-09-13 23:48 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\en-GB 2016-09-13 23:48 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2016-09-13 22:09 - 2016-09-07 14:20 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-09-13 22:06 - 2016-09-07 14:20 - 144199024 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2016-09-06 13:52 - 2016-09-06 13:52 - 0000044 _____ () C:\Users\laura\AppData\Roaming\WB.CFG 2016-09-09 13:10 - 2016-09-09 13:10 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Dateien, die verschoben oder gelöscht werden sollten: ==================== C:\Windows\Tasks\{5A14B1A7-7683-8627-7FBC-58746775569D}.job Einige Dateien in TEMP: ==================== C:\Users\laura\AppData\Local\Temp\0065481476297285mcinst.exe C:\Users\laura\AppData\Local\Temp\avgnt.exe C:\Users\laura\AppData\Local\Temp\DRHelper_uninstallComplete.exe C:\Users\laura\AppData\Local\Temp\libeay32.dll C:\Users\laura\AppData\Local\Temp\msvcr120.dll C:\Users\laura\AppData\Local\Temp\ReimagePackage.exe C:\Users\laura\AppData\Local\Temp\sqlite3.dll C:\Users\laura\AppData\Local\Temp\Windows10Upgrade.exe ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-10-03 13:52 ==================== Ende von FRST.txt ============================ Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 10-10-2016 durchgeführt von laura (12-10-2016 20:42:28) Gestartet von C:\Users\laura\Downloads Windows 10 Home Version 1607 (X64) (2016-09-09 11:18:43) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-1616461286-2091979816-1760888700-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1616461286-2091979816-1760888700-503 - Limited - Disabled) Gast (S-1-5-21-1616461286-2091979816-1760888700-501 - Limited - Disabled) laura (S-1-5-21-1616461286-2091979816-1760888700-1001 - Administrator - Enabled) => C:\Users\laura ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 64 Bit HP CIO Components Installer (Version: 21.2.1 - HP Inc.) Hidden Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.020.20039 - Adobe Systems Incorporated) ALPS Touch Pad Driver (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 8.201.1611.248 - Alps Electric) Benutzerhandbücher (x32 Version: 4.0.0.1 - Lenovo) Hidden Components (x32 Version: 1.0.023.00 - Lenovo) Hidden Genesys USB Mass Storage Device (HKLM-x32\...\{959B7F35-2819-40C5-A0CD-3C53B5FCC935}) (Version: 4.5.0.6.1001 - Genesys Logic) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.143 - Google Inc.) Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1158 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4364 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.5.0.1081 - Intel Corporation) Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1519.7 - Intel Corporation) Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{11D7286D-F28D-45D6-8D7A-92A3BFAAFBE9}) (Version: 17.1.1530.1652 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (x32 Version: 10.1.1.9 - Intel(R) Corporation) Hidden Intel® PROSet/Wireless Software (HKLM-x32\...\{e6f0207e-ac43-48a9-bfff-3d879b45694d}) (Version: 18.12.1 - Intel Corporation) Lenovo EasyCamera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 6.3.9600.11105 - Realtek Semiconductor Corp.) Lenovo Experience Improvement (HKLM\...\LenovoExperienceImprovement) (Version: 2.0.9.0 - Lenovo) Lenovo FusionEngine (HKLM-x32\...\Lenovo FusionEngine) (Version: 1.0.13.0 - Lenovo, Inc.) Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.1.0.4706 - CyberLink Corp.) Lenovo OneKey Recovery (Version: 8.1.0.4706 - CyberLink Corp.) Hidden Lenovo Photo Master (HKLM-x32\...\{BC94C56A-3649-420C-8756-2ADEBE399D33}) (Version: 2.1.5222.01 - CyberLink Corp.) Lenovo Photos (HKLM-x32\...\Lenovo Photos) (Version: 6.0.4 - CEWE Stiftung u Co. KGaA) Lenovo Product Demo (HKLM-x32\...\{8EA60981-2735-458E-9F11-1E8813B278EA}) (Version: 2.0.5 - Lenovo) Lenovo QuickOptimizer (HKLM\...\{8D2C871B-1B9F-45AC-9C43-2BB18089CDFA}) (Version: 1.0.019.00 - Lenovo) Lenovo Solution Center (HKLM\...\{F925868A-2F2C-414B-A5A7-C613039CE9E4}) (Version: 3.1.001.00 - Lenovo) Lenovo System Interface Foundation (HKLM\...\{C2E5CA37-C862-4A69-AC6D-24F450A20C16}) (Version: 1.0.066.01 - Lenovo) LenovoUtility (HKLM-x32\...\InstallShield_{6ADA7E88-8D16-4D0D-BC90-2B93AC5E56DA}) (Version: 3.0.0.4 - Lenovo) LenovoUtility (x32 Version: 3.0.0.4 - Lenovo) Hidden Metric Collection SDK (x32 Version: 1.1.0012.00 - Lenovo Group Limited) Hidden Metric Collection SDK 35 (x32 Version: 1.2.0010.00 - Lenovo Group Limited) Hidden Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4693.1005 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) OpenOffice 4.1.1 (HKLM-x32\...\{ACD0FFF9-6B35-43C1-82DB-9FF6990E8602}) (Version: 4.11.9775 - Apache Software Foundation) REACHit (HKLM-x32\...\{4532E4C5-C84D-4040-A044-ECFCC5C6995B}) (Version: 2.5.005.12 - Lenovo) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7606 - Realtek Semiconductor Corp.) Spotify (HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\...\Spotify) (Version: 1.0.39.157.g674ae377 - Spotify AB) User Manuals (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 4.0.0.1 - Lenovo) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-1616461286-2091979816-1760888700-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\laura\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\FileCoAuth.exe (Microsoft Corporation) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {078E4E48-C85F-49D2-9293-31D3D30CCE45} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2015-08-07] (Lenovo) Task: {40CD5750-AE24-481E-9A5B-B7245E49019C} - System32\Tasks\Lenovo\Experience Improvement => C:\Program Files\Lenovo\ExperienceImprovement\LenovoExperienceImprovement.exe [2016-09-06] (Lenovo) Task: {460009F0-0DAB-4A68-80E8-2C6AC5F56E1F} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2015-07-08] (Lenovo) Task: {4FFCAA27-52EB-49C7-B259-7A1F5B75D4BD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-09-06] (Google Inc.) Task: {5BD8772E-992A-4BB1-A073-331EA8A9B234} - System32\Tasks\Yahoo! Powered ceril => Wscript.exe "C:\ProgramData\{B3307653-3972-FC95-BFB4-62D725F6E919}\lema.txt" "687474703a2f2f7761676e672e636f6d" "433a5c50726f6772616d446174615c7b42333330373635332d333937322d464339352d424642342d3632443732354636453931397d5c64616e696e65" "433a5c50726f6772616d446174615c7b42333330373635332d333937322d464339352d424642 (Der Dateneintrag hat 78 mehr Zeichen). Task: {618535C3-8481-48E1-B0F9-928BB784CE11} - System32\Tasks\Microsoft\Windows\PLA\LSC Memory => Rundll32.exe C:\Windows\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)" Task: {73C1EC18-0964-44AB-B365-6D7F78D78998} - System32\Tasks\{5A14B1A7-7683-8627-7FBC-58746775569D} => C:\Users\laura\AppData\Roaming\{DA2FE~1\Sync.exe <==== ACHTUNG Task: {843C1C5F-6FAD-42D2-9A10-432FBEC023F6} - System32\Tasks\CyberLink\Photo Master Gadget startup => C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoMasterWorker.exe [2016-04-22] (CyberLink Corp.) Task: {941B0163-8F6A-48C1-AF0E-C194BF9EC0BE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16] (Adobe Systems Incorporated) Task: {98ADE326-A3E2-4FFD-837A-D15C4C83FAF9} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [2015-08-07] (Lenovo) Task: {C3541FA7-1F2B-4175-A751-789159A4E26A} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_TVSUUpdateTask => add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32 Task: {CB3D2FF7-DA71-44E5-A746-07F9FF947067} - System32\Tasks\Lenovo\REACHit Agent Startup => C:\Program Files (x86)\Lenovo\REACHit\REACHitAgent.exe [2016-05-18] (Lenovo) Task: {D2607D4E-47EC-4C4F-A05A-BF67C7B222C5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-09-06] (Google Inc.) Task: {D38A42EF-F236-413B-856B-F4E4CE9DCB78} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\laura\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe [2016-09-07] (Microsoft Corporation) Task: {D8BC26EB-E36D-4EA0-9CB9-90C3591B0D3D} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => Sc.exe START ImControllerService Task: {F61D5921-746A-47D5-BFB2-BE820E08ED3C} - System32\Tasks\Lenovo\REACHit Agent Update => C:\Program Files (x86)\Lenovo\REACHit\REACHitAgent.exe [2016-05-18] (Lenovo) Task: {FA45C8C6-B86A-4C0E-BCA8-66B95603D9C6} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2015-08-07] () (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\Yahoo! Powered ceril.job => Wscript.exe C:\ProgramData\{B3307653-3972-FC95-BFB4-62D725F6E919}\lema.txt <==== ACHTUNG Task: C:\WINDOWS\Tasks\{5A14B1A7-7683-8627-7FBC-58746775569D}.job => ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-10-01 14:58 - 2016-09-15 19:25 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-01-06 11:54 - 2015-08-19 04:59 - 00058296 _____ () C:\ProgramData\LenovoTransition\Server\x64\dptf.dll 2016-01-06 11:54 - 2015-08-21 08:43 - 00043960 _____ () C:\ProgramData\LenovoTransition\Server\x64\EnableAutoRotation.dll 2016-10-01 14:58 - 2016-09-15 19:25 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2016-09-09 13:35 - 2016-09-09 13:35 - 01864384 _____ () C:\Users\laura\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\amd64\ClientTelemetry.dll 2016-09-06 12:24 - 2016-09-06 12:24 - 00402912 _____ () C:\WINDOWS\system32\igfxTray.exe 2016-09-13 22:02 - 2016-09-07 06:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2016-10-01 14:58 - 2016-09-15 18:24 - 09760256 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-10-01 14:58 - 2016-09-15 18:18 - 01401344 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-10-01 14:58 - 2016-09-15 18:17 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2016-10-01 14:58 - 2016-09-15 18:18 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 2016-10-01 14:58 - 2016-09-15 18:18 - 02424832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-10-01 14:58 - 2016-09-15 18:20 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-09-28 22:33 - 2016-09-28 22:34 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2016-09-28 22:33 - 2016-09-28 22:34 - 00178176 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2016-09-28 22:33 - 2016-09-28 22:34 - 35250688 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2016-10-01 14:58 - 2016-09-15 18:18 - 04046848 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Signals.dll 2016-10-01 14:58 - 2016-09-15 18:16 - 00114176 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Dss.BackgroundTask.dll 2016-10-01 14:58 - 2016-09-15 18:17 - 01475584 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.IntentExtraction.dll 2016-07-16 13:42 - 2016-07-16 13:42 - 01872384 _____ () C:\Windows\System32\speech_onecore\engines\tts\MSTTSEngine_OneCore.dll 2016-01-06 11:55 - 2016-01-06 11:55 - 00791848 _____ () C:\Program Files\Lenovo\LenovoUtility\utility.exe 2016-01-06 11:55 - 2016-01-06 11:55 - 00097048 _____ () C:\Program Files\Lenovo\LenovoUtility\kbdhook.dll 2016-10-04 19:38 - 2016-09-25 08:02 - 02279528 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\libglesv2.dll 2016-10-04 19:38 - 2016-09-25 08:02 - 00107112 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\libegl.dll 2016-09-09 13:35 - 2016-09-09 13:35 - 01383616 _____ () C:\Users\laura\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\ClientTelemetry.dll 2016-09-09 13:35 - 2016-09-09 13:35 - 00118976 _____ () C:\Users\laura\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\FileSyncViews.dll 2016-09-20 14:30 - 2016-10-12 20:38 - 51889264 _____ () C:\Users\laura\AppData\Roaming\Spotify\libcef.dll 2016-09-20 14:30 - 2016-10-12 20:38 - 01803888 _____ () C:\Users\laura\AppData\Roaming\Spotify\libglesv2.dll 2016-09-20 14:30 - 2016-10-12 20:38 - 00086128 _____ () C:\Users\laura\AppData\Roaming\Spotify\libegl.dll 2016-01-06 11:56 - 2015-02-12 17:02 - 00224696 _____ () C:\Program Files (x86)\Lenovo\CCSDK\SDKClient.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: ========================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2015-07-10 13:04 - 2016-10-02 12:32 - 00002024 ____A C:\WINDOWS\system32\Drivers\etc\hosts 0.0.0.0 0.0.0.0 # fix for traceroute and netstat display anomaly 0.0.0.0 tracking.opencandy.com.s3.amazonaws.com 0.0.0.0 media.opencandy.com 0.0.0.0 cdn.opencandy.com 0.0.0.0 tracking.opencandy.com 0.0.0.0 api.opencandy.com 0.0.0.0 api.recommendedsw.com 0.0.0.0 installer.betterinstaller.com 0.0.0.0 installer.filebulldog.com 0.0.0.0 d3oxtn1x3b8d7i.cloudfront.net 0.0.0.0 inno.bisrv.com 0.0.0.0 nsis.bisrv.com 0.0.0.0 cdn.file2desktop.com 0.0.0.0 cdn.goateastcach.us 0.0.0.0 cdn.guttastatdk.us 0.0.0.0 cdn.inskinmedia.com 0.0.0.0 cdn.insta.oibundles2.com 0.0.0.0 cdn.insta.playbryte.com 0.0.0.0 cdn.llogetfastcach.us 0.0.0.0 cdn.montiera.com 0.0.0.0 cdn.msdwnld.com 0.0.0.0 cdn.mypcbackup.com 0.0.0.0 cdn.ppdownload.com 0.0.0.0 cdn.riceateastcach.us 0.0.0.0 cdn.shyapotato.us 0.0.0.0 cdn.solimba.com 0.0.0.0 cdn.tuto4pc.com 0.0.0.0 cdn.appround.biz 0.0.0.0 cdn.bigspeedpro.com 0.0.0.0 cdn.bispd.com Da befinden sich 4 zusätzliche Einträge. ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\laura\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\{e9f5678c-3468-4dce-b59b-8e6ed6a6fd7f}.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{3BC81711-1A87-43D3-85FA-144043E6361A}] => (Allow) C:\Users\laura\AppData\Local\Chromium\Application\chrome.exe FirewallRules: [{AAFA20E7-0463-438C-B6C5-CAB8853DD63E}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{5D5A58FF-E841-4136-962C-83211EBA3F24}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe FirewallRules: [{00DE2E24-87E0-4918-9F8E-492FA349A3F8}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe FirewallRules: [TCP Query User{2A126811-3611-471D-AE26-35C398271E1E}C:\users\laura\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\laura\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{C5B9287B-4FF2-4401-BB66-CCF87B787D8F}C:\users\laura\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\laura\appdata\roaming\spotify\spotify.exe FirewallRules: [{DDE58511-BC69-4ECD-A602-DA59BFA78CBD}] => (Allow) C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoPlus.exe FirewallRules: [{A5CDF65A-D6E3-4F36-95A9-F47394A47794}] => (Allow) C:\Program Files (x86)\Lenovo\Lenovo Photo Master\subsys\AdvPhotoEditor\PhotoDirector5.exe FirewallRules: [{484208D8-07FC-43B8-A532-795E0A0F6375}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Wiederherstellungspunkte ========================= ACHTUNG: Systemwiederherstellung ist deaktiviert ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (10/11/2016 08:32:14 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: ReiGuard.exe, Version: 2.0.1.3, Zeitstempel: 0x57c84ea6 Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.14393.206, Zeitstempel: 0x57dac931 Ausnahmecode: 0xc0000374 Fehleroffset: 0x00000000000f73f3 ID des fehlerhaften Prozesses: 0xad4 Startzeit der fehlerhaften Anwendung: 0x01d223d74fc7d139 Pfad der fehlerhaften Anwendung: C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll Berichtskennung: 1b1ef60d-ddd7-4cee-bab8-2085971dfb27 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (10/09/2016 11:13:00 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-0TG2UTJ) Description: Bei der Aktivierung der App „Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (10/08/2016 06:21:20 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: mcvulctr.exe, Version: 4.0.9022.0, Zeitstempel: 0x571de37b Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.14393.206, Zeitstempel: 0x57dac931 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000003c12b ID des fehlerhaften Prozesses: 0x1464 Startzeit der fehlerhaften Anwendung: 0x01d2208add38e5fd Pfad der fehlerhaften Anwendung: c:\PROGRA~1\mcafee\vul\mcvulctr.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll Berichtskennung: 87c85550-1727-4b22-8a60-1a116f9b0399 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (10/08/2016 12:26:05 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-0TG2UTJ) Description: Bei der Aktivierung der App „Microsoft.WindowsAlarms_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (10/08/2016 12:26:05 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-0TG2UTJ) Description: Bei der Aktivierung der App „microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (10/07/2016 12:54:41 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: mcvulctr.exe, Version: 4.0.9022.0, Zeitstempel: 0x571de37b Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.14393.206, Zeitstempel: 0x57dac931 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000003c12b ID des fehlerhaften Prozesses: 0x28b4 Startzeit der fehlerhaften Anwendung: 0x01d22018d0d5d30f Pfad der fehlerhaften Anwendung: c:\PROGRA~1\mcafee\vul\mcvulctr.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll Berichtskennung: 9021dd28-2344-41ae-8c56-fb1efd7e13f0 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (10/06/2016 04:37:50 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-0TG2UTJ) Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (10/06/2016 04:37:50 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-0TG2UTJ) Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2147023170. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (10/06/2016 04:37:50 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-0TG2UTJ) Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (10/02/2016 12:39:59 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: Die Open-Prozedur für den Dienst "BITS" in der DLL "C:\Windows\System32\bitsperf.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode. Systemfehler: ============= Error: (10/12/2016 08:37:31 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} und der APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden. Error: (10/12/2016 08:36:12 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-0TG2UTJ) Description: Der Server "{0002DF02-0000-0000-C000-000000000046}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (10/12/2016 08:35:30 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT) Description: Der Server "{ADA518B9-B7A3-4C36-B4ED-49EB3FA189FC}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (10/12/2016 08:35:07 PM) (Source: DCOM) (EventID: 10000) (User: DESKTOP-0TG2UTJ) Description: Ein DCOM-Server konnte nicht gestartet werden: {8F2BC96B-68C5-40E8-9CE1-368E3ACAC09B}. Fehler: "193" Aufgetreten beim Start dieses Befehls: C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPService.dll -Embedding Error: (10/12/2016 08:35:07 PM) (Source: DCOM) (EventID: 10000) (User: DESKTOP-0TG2UTJ) Description: Ein DCOM-Server konnte nicht gestartet werden: {8F2BC96B-68C5-40E8-9CE1-368E3ACAC09B}. Fehler: "193" Aufgetreten beim Start dieses Befehls: C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPService.dll -Embedding Error: (10/12/2016 08:35:03 PM) (Source: DCOM) (EventID: 10000) (User: DESKTOP-0TG2UTJ) Description: Ein DCOM-Server konnte nicht gestartet werden: {8F2BC96B-68C5-40E8-9CE1-368E3ACAC09B}. Fehler: "193" Aufgetreten beim Start dieses Befehls: C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPService.dll -Embedding Error: (10/12/2016 08:35:03 PM) (Source: DCOM) (EventID: 10000) (User: DESKTOP-0TG2UTJ) Description: Ein DCOM-Server konnte nicht gestartet werden: {8F2BC96B-68C5-40E8-9CE1-368E3ACAC09B}. Fehler: "193" Aufgetreten beim Start dieses Befehls: C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPService.dll -Embedding Error: (10/12/2016 08:35:03 PM) (Source: DCOM) (EventID: 10000) (User: DESKTOP-0TG2UTJ) Description: Ein DCOM-Server konnte nicht gestartet werden: {8F2BC96B-68C5-40E8-9CE1-368E3ACAC09B}. Fehler: "193" Aufgetreten beim Start dieses Befehls: C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPService.dll -Embedding Error: (10/12/2016 08:35:03 PM) (Source: DCOM) (EventID: 10000) (User: DESKTOP-0TG2UTJ) Description: Ein DCOM-Server konnte nicht gestartet werden: {8F2BC96B-68C5-40E8-9CE1-368E3ACAC09B}. Fehler: "193" Aufgetreten beim Start dieses Befehls: C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPService.dll -Embedding Error: (10/12/2016 08:35:02 PM) (Source: DCOM) (EventID: 10000) (User: NT-AUTORITÄT) Description: Ein DCOM-Server konnte nicht gestartet werden: {8F2BC96B-68C5-40E8-9CE1-368E3ACAC09B}. Fehler: "193" Aufgetreten beim Start dieses Befehls: C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\McCSPService.dll -Embedding ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i5-6200U CPU @ 2.30GHz Prozentuale Nutzung des RAM: 73% Installierter physikalischer RAM: 3890.05 MB Verfügbarer physikalischer RAM: 1021.69 MB Summe virtueller Speicher: 7090.05 MB Verfügbarer virtueller Speicher: 3908.76 MB ==================== Laufwerke ================================ Drive c: (Windows) (Fixed) (Total:97.2 GB) (Free:60.48 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)] ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 119.2 GB) (Disk ID: F64C892E) Partition: GPT. ==================== Ende von Addition.txt ============================ |
13.10.2016, 18:49 | #8 |
/// TB-Ausbilder /// Anleitungs-Guru | Windows 10 bei Klick öffnet sich neues FensterSchritt 1 Downloade Dir bitte AdwCleaner auf deinen Desktop.
Schritt 2
Schritt 3 Bitte starte FRST erneut, markiere auch die checkbox und drücke auf Untersuchen. Bitte poste mir den Inhalt der beiden Logs die erstellt werden.
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
14.10.2016, 17:48 | #9 |
| Windows 10 bei Klick öffnet sich neues FensterCode:
ATTFilter # AdwCleaner v6.021 - Bericht erstellt am 14/10/2016 um 18:12:17 # Aktualisiert am 06/10/2016 von ToolsLib # Datenbank : 2016-10-14.1 [Server] # Betriebssystem : Windows 10 Home (X64) # Benutzername : laura - DESKTOP-0TG2UTJ # Gestartet von : C:\Users\laura\Downloads\adwcleaner_6.021.exe # Modus: Löschen # Unterstützung : https://toolslib.net/forum ***** [ Dienste ] ***** ***** [ Ordner ] ***** ***** [ Dateien ] ***** [-] Datei gelöscht: C:\WINDOWS\Reimage.ini ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Verknüpfungen ] ***** ***** [ Aufgabenplanung ] ***** ***** [ Registrierungsdatenbank ] ***** [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1 [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1 [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36} [-] Schlüssel gelöscht: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10ECCE17-29B5-4880-A8F5-EAD298611484} [-] Schlüssel gelöscht: HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\Software\Reimage [-] Schlüssel gelöscht: HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief. [#] Schlüssel mit Neustart gelöscht: HKCU\Software\Reimage [#] Schlüssel mit Neustart gelöscht: HKCU\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief. [#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\Reimage [#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief. [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Reimage [-] Schlüssel gelöscht: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\castplatform.com [-] Schlüssel gelöscht: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.castplatform.com [#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\castplatform.com [#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.castplatform.com [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL ***** [ Browser ] ***** ************************* :: "Tracing" Schlüssel gelöscht :: Winsock Einstellungen zurückgesetzt :: Proxy Einstellungen zurückgesetzt :: Internet Explorer Richtlinien gelöscht :: Chrome Richtlinien gelöscht ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [7206 Bytes] - [06/10/2016 16:26:26] C:\AdwCleaner\AdwCleaner[C2].txt - [3064 Bytes] - [14/10/2016 18:12:17] C:\AdwCleaner\AdwCleaner[S0].txt - [6221 Bytes] - [06/10/2016 16:25:50] C:\AdwCleaner\AdwCleaner[S1].txt - [1480 Bytes] - [06/10/2016 16:39:34] C:\AdwCleaner\AdwCleaner[S2].txt - [3329 Bytes] - [14/10/2016 18:11:32] ########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [3356 Bytes] ########## Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 14.10.2016 Suchlaufzeit: 18:32 Protokolldatei: AdwCleanerscan protokoll.txt Administrator: Ja Version: 2.2.1.1043 Malware-Datenbank: v2016.10.14.07 Rootkit-Datenbank: v2016.09.26.02 Lizenz: Kostenlose Version Malware-Schutz: Deaktiviert Schutz vor bösartigen Websites: Deaktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 10 CPU: x64 Dateisystem: NTFS Benutzer: laura Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 331338 Abgelaufene Zeit: 8 Min., 57 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Aktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 5 Trojan.Dropper, C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe, 3404, Löschen bei Neustart, [35eacbce1684df57b4266e7cf90be51b] Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmservice.exe, 9620, Löschen bei Neustart, [5bc449502a707cba4670a8e356aa53ad] Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmropn.exe, 2332, Löschen bei Neustart, [ba650198debcdf5795216c1faf51ce32] PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmropn.exe, 2332, Löschen bei Neustart, [b56a4f4a702a999d1389a218ce3438c8] PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmservice.exe, 9620, Löschen bei Neustart, [b56a4f4a702a999d1389a218ce3438c8] Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 19 Trojan.Dropper, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\rtop, In Quarantäne, [35eacbce1684df57b4266e7cf90be51b], Adware.PremierOpinion, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PremierOpinion, In Quarantäne, [5bc449502a707cba4670a8e356aa53ad], Adware.PremierOpinion, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{eeb86aef-4a5d-4b75-9d74-f16d438fc286}, In Quarantäne, [ba650198debcdf5795216c1faf51ce32], PUP.Optional.Reimage, HKLM\SOFTWARE\CLASSES\CLSID\{10ECCE17-29B5-4880-A8F5-EAD298611484}, In Quarantäne, [42dd3960b0ea70c6167eb046030125db], PUP.Optional.Reimage, HKLM\SOFTWARE\CLASSES\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB}, In Quarantäne, [a37c1c7dcbcfc4728b0a11e516ee09f7], PUP.Optional.SearchManager, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\pilplloabdedfmialnfchjomjmpjcoej, In Quarantäne, [cd529aff4e4c20167d020dedab58b54b], PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0CE02FFA-A6B0-46F6-BA2F-BD32C3630126}, In Quarantäne, [6eb1abeef9a189ad5609c108a161ae52], PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{5BD8772E-992A-4BB1-A073-331EA8A9B234}, Löschen bei Neustart, [78a70b8e03975bdbb6572b897a8ab24e], PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Yahoo! Powered ceril, Löschen bei Neustart, [43dc2f6a8218b97d29e5278d3aca46ba], PUP.Optional.RelevantKnowledge, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\mkndcbhcgphcfkkddanakjiepeknbgle, In Quarantäne, [33ec37625c3e201601b2e2cf37cc34cc], PUP.Optional.SearchManager, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\pilplloabdedfmialnfchjomjmpjcoej, In Quarantäne, [2cf33960cfcb96a0a0df9d5d8182d729], PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0CE02FFA-A6B0-46F6-BA2F-BD32C3630126}, In Quarantäne, [66b98e0baeec73c3500f517816ec23dd], PUP.Optional.InstallCore, HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\SOFTWARE\csastats, In Quarantäne, [6bb46e2b9109c96d82f8d02a55aea957], PUP.Optional.InstallCore, HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\SOFTWARE\ICSW1.23, In Quarantäne, [bf607d1c1a80999d4dba96110df6b848], PUP.Optional.SearchManager, HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\pilplloabdedfmialnfchjomjmpjcoej, In Quarantäne, [63bc59406c2efe38099aa724fa082fd1], PUP.Optional.WinYahoo, HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0CE02FFA-A6B0-46F6-BA2F-BD32C3630126}, In Quarantäne, [f92678213f5bbc7a5707ddec6b976d93], PUP.Optional.ProductSetup, HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\SOFTWARE\PRODUCTSETUP, In Quarantäne, [eb340a8f53470630f7c5149c778cae52], PUP.Optional.PremierOpinion, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{eeb86aef-4a5d-4b75-9d74-f16d438fc286}, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PremierOpinion, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], Registrierungswerte: 8 PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0CE02FFA-A6B0-46F6-BA2F-BD32C3630126}|URL, https://de.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_secureddownload_16_41_ssg01¶m1=1¶m2=f[6eb1abeef9a189ad5609c108a161ae52]D4%26b[6eb1abeef9a189ad5609c108a161ae52]DIE%26cc[6eb1abeef9a189ad5609c108a161ae52]Dde%26pa[6eb1abeef9a189ad5609c108a161ae52]Dwinyahoo%26cd[6eb1abeef9a189ad5609c108a161ae52]D2XzuyEtN2Y1L1Qzu0EtDzyyEyCyB0C0FtC0DyB0DzzyE0DzztN0D0Tzu0StCyByEzztN1L2XzutAtFtByEtFtCtAtFyDtCtN1L1Czu1BtBtN1L1G1B1V1N2Y1L1Qzu2SyC0EtCtByDyEtDyBtGyC0C0D0DtGtDzzzztCtGtCyCtAzytGtA0CtBtAyBtAyEtD0B0C0BtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2SzytD0FyD0D0C0B0EtG0FyE0FzytGyEzzyC0EtG0B0CtDyDtGtA0AyD0C0C0DyCtCzzyBtC0E2QtN0A0LzuyE%26cr[6eb1abeef9a189ad5609c108a161ae52]D1890240485%26a[6eb1abeef9a189ad5609c108a161ae52]Dwbf_secureddownload_16_41_ssg01%26os_ver[6eb1abeef9a189ad5609c108a161ae52]D10.0%26os[6eb1abeef9a189ad5609c108a161ae52]DWindowsIn QuarantäneB10In QuarantäneBHome&p={searchTerms}, %4, %5 PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{5BD8772E-992A-4BB1-A073-331EA8A9B234}|Path, \Yahoo! Powered ceril, Löschen bei Neustart, [78a70b8e03975bdbb6572b897a8ab24e] PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0CE02FFA-A6B0-46F6-BA2F-BD32C3630126}|URL, https://de.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_secureddownload_16_41_ssg01¶m1=1¶m2=f[66b98e0baeec73c3500f517816ec23dd]D4%26b[66b98e0baeec73c3500f517816ec23dd]DIE%26cc[66b98e0baeec73c3500f517816ec23dd]Dde%26pa[66b98e0baeec73c3500f517816ec23dd]Dwinyahoo%26cd[66b98e0baeec73c3500f517816ec23dd]D2XzuyEtN2Y1L1Qzu0EtDzyyEyCyB0C0FtC0DyB0DzzyE0DzztN0D0Tzu0StCyByEzztN1L2XzutAtFtByEtFtCtAtFyDtCtN1L1Czu1BtBtN1L1G1B1V1N2Y1L1Qzu2SyC0EtCtByDyEtDyBtGyC0C0D0DtGtDzzzztCtGtCyCtAzytGtA0CtBtAyBtAyEtD0B0C0BtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2SzytD0FyD0D0C0B0EtG0FyE0FzytGyEzzyC0EtG0B0CtDyDtGtA0AyD0C0C0DyCtCzzyBtC0E2QtN0A0LzuyE%26cr[66b98e0baeec73c3500f517816ec23dd]D1890240485%26a[66b98e0baeec73c3500f517816ec23dd]Dwbf_secureddownload_16_41_ssg01%26os_ver[66b98e0baeec73c3500f517816ec23dd]D10.0%26os[66b98e0baeec73c3500f517816ec23dd]DWindowsIn QuarantäneB10In QuarantäneBHome&p={searchTerms}, %4, %5 PUP.Optional.OpinionSquare, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|{C7AE725D-FA5C-4027-BB4C-787EF9F8248A}, C:\Program Files (x86)\PremierOpinion\firefox, In Quarantäne, [3ce347523862c96d2526268812f1b24e] PUP.Optional.PremierOpinion, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{4428B89A-0E7D-45B4-99B4-C1B3563E16AE}, v2.26|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Program Files (x86)\PremierOpinion\pmropn.exe|Name=pmropn.exe|, In Quarantäne, [5ac51f7afd9ddb5b033c35b82bd89868] PUP.Optional.PremierOpinion, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{546A6874-DEA6-42AF-8AC5-808A94F0C1CA}, v2.26|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Program Files (x86)\PremierOpinion\pmropn.exe|Name=pmropn.exe|, In Quarantäne, [bd62a4f524762412b48b608d48bb50b0] PUP.Optional.WinYahoo, HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0CE02FFA-A6B0-46F6-BA2F-BD32C3630126}|URL, https://de.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_secureddownload_16_41_ssg01¶m1=1¶m2=f[f92678213f5bbc7a5707ddec6b976d93]D4%26b[f92678213f5bbc7a5707ddec6b976d93]DIE%26cc[f92678213f5bbc7a5707ddec6b976d93]Dde%26pa[f92678213f5bbc7a5707ddec6b976d93]Dwinyahoo%26cd[f92678213f5bbc7a5707ddec6b976d93]D2XzuyEtN2Y1L1Qzu0EtDzyyEyCyB0C0FtC0DyB0DzzyE0DzztN0D0Tzu0StCyByEzztN1L2XzutAtFtByEtFtCtAtFyDtCtN1L1Czu1BtBtN1L1G1B1V1N2Y1L1Qzu2SyC0EtCtByDyEtDyBtGyC0C0D0DtGtDzzzztCtGtCyCtAzytGtA0CtBtAyBtAyEtD0B0C0BtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2SzytD0FyD0D0C0B0EtG0FyE0FzytGyEzzyC0EtG0B0CtDyDtGtA0AyD0C0C0DyCtCzzyBtC0E2QtN0A0LzuyE%26cr[f92678213f5bbc7a5707ddec6b976d93]D1890240485%26a[f92678213f5bbc7a5707ddec6b976d93]Dwbf_secureddownload_16_41_ssg01%26os_ver[f92678213f5bbc7a5707ddec6b976d93]D10.0%26os[f92678213f5bbc7a5707ddec6b976d93]DWindowsIn QuarantäneB10In QuarantäneBHome&p={searchTerms}, %4, %5 PUP.Optional.ProductSetup, HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\SOFTWARE\PRODUCTSETUP|tb, 0G2O2W1R0C1R1H, In Quarantäne, [eb340a8f53470630f7c5149c778cae52] Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Ordner: 58 Adware.PremierOpinion, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PremierOpinion, In Quarantäne, [50cf0b8e8a10e74fe4d4801eb44e1ee2], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion, Löschen bei Neustart, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\components, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\defaults, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\defaults\preferences, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\addon, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\console, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\content, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\core, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\events, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\traits, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\dom, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\event, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\io, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\l10n, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\lang, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\loader, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\net, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\page-mod, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\platform, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\preferences, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\private-browsing, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\private-browsing\window, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\system, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\util, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\window, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\windows, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\toolkit, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\dpjs, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\dpjs\data, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\dpjs\lib, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Users\laura\AppData\Local\Temp\PremierOpinion, In Quarantäne, [78a7fe9b9703ba7c108de0daad55ba46], PUP.Optional.RelevantKnowledge, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle, In Quarantäne, [1e01e7b2772380b62053318aae541ce4], PUP.Optional.RelevantKnowledge, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle\1.3.337.4_0, In Quarantäne, [1e01e7b2772380b62053318aae541ce4], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\chrome, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\common, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\external, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\search, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\css, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\external, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\fonts, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\_metadata, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], Dateien: 258 Trojan.Dropper, C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe, Löschen bei Neustart, [35eacbce1684df57b4266e7cf90be51b], Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmservice.exe, Löschen bei Neustart, [5bc449502a707cba4670a8e356aa53ad], Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmropn.exe, Löschen bei Neustart, [ba650198debcdf5795216c1faf51ce32], Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmropn32.exe, Löschen bei Neustart, [fb242d6cff9b4beb991d0c7fb34d41bf], Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmropn64.exe, Löschen bei Neustart, [29f61a7f2f6b84b28432fd8e619f8878], Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmls.dll, In Quarantäne, [b669e0b97f1b59dd4c6a038860a0e719], Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmls64.dll, In Quarantäne, [2af5445547536ec815a14348b14f21df], Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmph.dll, In Quarantäne, [cb54495008923cfa4b6bb6d5ac54b64a], Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmxf.dll, In Quarantäne, [b6696435c8d281b59c1a1f6c837d04fc], Adware.PremierOpinion, C:\Windows\System32\pmls64.dll, Löschen bei Neustart, [e6397a1f0496ed49496d4f3ce21e0cf4], Adware.PremierOpinion, C:\Windows\System32\pmls64.dl_, In Quarantäne, [8d921b7ea4f6df57fdb96427ab55b44c], Adware.PremierOpinion, C:\Windows\SysWOW64\pmls.dll, Löschen bei Neustart, [be615247cad044f24b6bdead34cc44bc], Adware.PremierOpinion, C:\Windows\SysWOW64\pmls.dl_, In Quarantäne, [22fdfb9e4f4b6bcb872fabe0ce32fe02], PUP.Optional.383Media, C:\Users\laura\AppData\Local\Temp\DRHelper_uninstallComplete.exe, In Quarantäne, [4fd0dcbdaaf096a09bc955106b96768a], PUP.Optional.Reimage, C:\Users\laura\AppData\Local\Temp\ReimagePackage.exe, In Quarantäne, [76a9e4b506947eb8c2ba9e5826de54ac], PUP.Optional.Reimage, C:\Users\laura\Downloads\ReimageRepair (1).exe, In Quarantäne, [1e01c8d1e3b7b383502cf303669ee41c], PUP.Optional.Reimage, C:\Users\laura\Downloads\ReimageRepair (2).exe, In Quarantäne, [cf50c1d88a10bd796517fef8d52fed13], PUP.Optional.Reimage, C:\Users\laura\Downloads\ReimageRepair.exe, In Quarantäne, [59c64752ebaffd39037944b264a06997], PUP.Optional.DownloadGuide, C:\Users\laura\Downloads\install-apache-openoffice.exe, In Quarantäne, [d34c5b3e1387d2646dcd09ae5aaaa65a], PUP.Optional.InstallCore, C:\Users\laura\Downloads\malwarebytes-anti-malware.exe, In Quarantäne, [d54ab8e1603ac76fe48786b544bd6799], PUP.Optional.PCKeeper, C:\Users\laura\Downloads\PCKeeper Installer.exe, In Quarantäne, [ae71e3b663376cca2a3ac2d08e76d030], PUP.Optional.PricePeep, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage, In Quarantäne, [bb6403961585d264611688283bc828d8], PUP.Optional.PricePeep, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage-journal, In Quarantäne, [4cd36930aeec9d99d7a0d8d8de2532ce], PUP.Optional.BestPriceNinja, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pstatic.bestpriceninja.com_0.localstorage, In Quarantäne, [eb349aff5f3b1d19f5e911d0867d51af], PUP.Optional.BestPriceNinja, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pstatic.bestpriceninja.com_0.localstorage-journal, In Quarantäne, [6ab578218911e056459923bec53e847c], PUP.Optional.ReMarkIt.PrxySvrRST, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.re-markit00.re-markit.co_0.localstorage, In Quarantäne, [a6796f2adbbfb680dc63e00e32d121df], PUP.Optional.ReMarkIt.PrxySvrRST, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.re-markit00.re-markit.co_0.localstorage-journal, In Quarantäne, [7ca393067e1c0b2b4df243ab689b2fd1], PUP.Optional.UTop, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_utop.it_0.localstorage, In Quarantäne, [ef3060395f3b84b2213b5b96b15230d0], PUP.Optional.UTop, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_utop.it_0.localstorage-journal, In Quarantäne, [dd4291087129191db7a549a8c142cc34], PUP.Optional.UTop, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_utop.it_0.localstorage, In Quarantäne, [b36c1a7f207a053117451ad7847f39c7], PUP.Optional.UTop, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_utop.it_0.localstorage-journal, In Quarantäne, [3be490093862d462510b2bc6ed1658a8], PUP.Optional.Yontoo, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.coupontime00.coupontime.co_0.localstorage, In Quarantäne, [b966dcbda4f6a492b7cf099a956ff40c], PUP.Optional.Yontoo, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.coupontime00.coupontime.co_0.localstorage-journal, In Quarantäne, [e33c83169cfe1422a5e1bbe8cf35e11f], PUP.Optional.WinYahoo, C:\Windows\Tasks\Yahoo! Powered ceril.job, In Quarantäne, [b66943564951db5b888410a428dc36ca], PUP.Optional.WinYahoo, C:\Windows\System32\Tasks\Yahoo! Powered ceril, In Quarantäne, [fc23e4b58119c1756ea15064a36112ee], Adware.PremierOpinion, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PremierOpinion\PremierOpinion.lnk, In Quarantäne, [50cf0b8e8a10e74fe4d4801eb44e1ee2], PUP.Optional.PremierOpinion, c:\program files (x86)\premieropinion\asmcf.dat, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\chrome.manifest, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\install.rdf, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmcm.crx, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmcm.txt, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmls.dll, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmls64.dll, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmoci.bin, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmph.dll, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmropn.exe, Löschen bei Neustart, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmropn32.exe, Löschen bei Neustart, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmropn64.exe, Löschen bei Neustart, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmservice.exe, Löschen bei Neustart, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmxf.dll, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\readme.txt, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, c:\program files (x86)\premieropinion\shfscp.dat, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\components\pmxg.dll, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\bootstrap.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\harness-options.json, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\install.rdf, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\locales.json, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\pmnx.dll, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\defaults\preferences\prefs.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\chrome.manifest, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\base64.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\page-mod.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\private-browsing.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\self.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\system.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\timers.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\url.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\windows.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\addon\runner.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\console\plain-text.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\console\traceback.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\content\content-proxy.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\content\content-worker.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\content\loader.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\content\thumbnail.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\content\worker.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\core\heritage.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\core\namespace.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\core\promise.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\api-utils.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\cortex.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\errors.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\events.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\light-traits.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\list.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\memory.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\observer-service.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\traits.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\window-utils.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\events\assembler.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\traits\core.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\dom\events.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\event\core.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\event\target.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\io\byte-streams.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\io\data.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\io\file.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\io\text-streams.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\l10n\core.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\l10n\html.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\l10n\loader.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\l10n\locale.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\l10n\prefs.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\lang\functional.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\loader\cuddlefish.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\loader\sandbox.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\net\url.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\page-mod\match-pattern.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\platform\xpcom.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\preferences\service.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\private-browsing\utils.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\private-browsing\window\utils.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\system\environment.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\system\events.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\system\globals.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\system\runtime.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\system\unload.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\system\xul-app.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\common.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\events.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\helpers.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\namespace.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\observer.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\tab-fennec.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\tab-firefox.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\tab.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\tabs-firefox.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\tabs.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\utils.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\worker.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\util\array.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\util\deprecate.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\util\list.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\util\object.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\util\registry.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\util\uuid.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\window\browser.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\window\namespace.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\window\utils.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\windows\dom.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\windows\fennec.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\windows\firefox.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\windows\loader.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\windows\observer.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\windows\tabs-fennec.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\windows\tabs-firefox.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\toolkit\loader.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\dpjs\data\content.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\dpjs\lib\dompilot.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\dpjs\lib\dputil.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\dpjs\lib\main.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.RelevantKnowledge, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle\1.3.337.4_0\background.js, In Quarantäne, [1e01e7b2772380b62053318aae541ce4], PUP.Optional.RelevantKnowledge, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle\1.3.337.4_0\contentscript.js, In Quarantäne, [1e01e7b2772380b62053318aae541ce4], PUP.Optional.RelevantKnowledge, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle\1.3.337.4_0\icon128.png, In Quarantäne, [1e01e7b2772380b62053318aae541ce4], PUP.Optional.RelevantKnowledge, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle\1.3.337.4_0\icon48.png, In Quarantäne, [1e01e7b2772380b62053318aae541ce4], PUP.Optional.RelevantKnowledge, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle\1.3.337.4_0\manifest.json, In Quarantäne, [1e01e7b2772380b62053318aae541ce4], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\manifest.json, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\background.html, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\favicon.ico, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\newtab.html, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\chrome\common.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\chrome\lifecycle.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\chrome\settings.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\chrome\setup.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\chrome\utils.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\common\abtest.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\common\conf-sys.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\common\conf.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\common\nt_ptr.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\common\prefs-sys.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\common\prefs.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\common\settings-dev.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\common\udata.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\external\jquery-2.1.1.min.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\external\md5.min.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\external\progressbar.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\external\string.min.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\external\underscore-min.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\search\AutoSuggest.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\search\contentscript.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\search\newtab-base.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\search\newtab-msg.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\search\search-engines.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\search\search-form.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\search\search-redirect.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\css\newtab.css, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\css\search.css, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\css\search2.css, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\css\styles.css, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\css\white_bg.css, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\external\normalize.css, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\fonts\HelveticaNeue-Thin.otf, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\fonts\neue-bold.woff, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\fonts\neue.woff, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\128.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\16.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\48.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\close.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\01d.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\01n.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\02d.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\02n.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\03d.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\03n.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\04d.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\04n.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\09d.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\09n.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\10d.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\10n.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\11d.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\11n.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\13d.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\13n.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\50d.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\50n.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\bg.jpg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\bing.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\bluesky-bg.jpg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\brush.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\clock.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\cloud.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\cupcake-bg.jpg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\desk-bg.jpg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\doodle.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\down.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\google.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\just-the-box.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\mountain-bg.jpg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\sea-bg.jpg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\yahoo.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\yahoo.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\_metadata\verified_contents.json, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\HowToRemove.html, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\chromium-min.jpg, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\control panel-min-min.JPG, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\down.png, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\ff menu.JPG, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\ff search engine-min.png, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\hp-min ff.png, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\hp-min ie.png, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\search engine.gif, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\setup pages.gif, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\sp-min.png, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\start-min.jpg, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\up.png, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\bapi16.dat, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\bapi17.dat, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\install.log, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\laso.dat, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\mali, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\neni, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\rasi.cfg, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\sito, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\Sqlite3.dll, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\uninst.dat, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\uninst.exe, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) |
14.10.2016, 17:49 | #10 |
| Windows 10 bei Klick öffnet sich neues FensterCode:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 14.10.2016 Suchlaufzeit: 18:32 Protokolldatei: AdwCleanerscan protokoll.txt Administrator: Ja Version: 2.2.1.1043 Malware-Datenbank: v2016.10.14.07 Rootkit-Datenbank: v2016.09.26.02 Lizenz: Kostenlose Version Malware-Schutz: Deaktiviert Schutz vor bösartigen Websites: Deaktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 10 CPU: x64 Dateisystem: NTFS Benutzer: laura Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 331338 Abgelaufene Zeit: 8 Min., 57 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Aktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 5 Trojan.Dropper, C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe, 3404, Löschen bei Neustart, [35eacbce1684df57b4266e7cf90be51b] Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmservice.exe, 9620, Löschen bei Neustart, [5bc449502a707cba4670a8e356aa53ad] Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmropn.exe, 2332, Löschen bei Neustart, [ba650198debcdf5795216c1faf51ce32] PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmropn.exe, 2332, Löschen bei Neustart, [b56a4f4a702a999d1389a218ce3438c8] PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmservice.exe, 9620, Löschen bei Neustart, [b56a4f4a702a999d1389a218ce3438c8] Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 19 Trojan.Dropper, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\rtop, In Quarantäne, [35eacbce1684df57b4266e7cf90be51b], Adware.PremierOpinion, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PremierOpinion, In Quarantäne, [5bc449502a707cba4670a8e356aa53ad], Adware.PremierOpinion, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{eeb86aef-4a5d-4b75-9d74-f16d438fc286}, In Quarantäne, [ba650198debcdf5795216c1faf51ce32], PUP.Optional.Reimage, HKLM\SOFTWARE\CLASSES\CLSID\{10ECCE17-29B5-4880-A8F5-EAD298611484}, In Quarantäne, [42dd3960b0ea70c6167eb046030125db], PUP.Optional.Reimage, HKLM\SOFTWARE\CLASSES\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB}, In Quarantäne, [a37c1c7dcbcfc4728b0a11e516ee09f7], PUP.Optional.SearchManager, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\pilplloabdedfmialnfchjomjmpjcoej, In Quarantäne, [cd529aff4e4c20167d020dedab58b54b], PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0CE02FFA-A6B0-46F6-BA2F-BD32C3630126}, In Quarantäne, [6eb1abeef9a189ad5609c108a161ae52], PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{5BD8772E-992A-4BB1-A073-331EA8A9B234}, Löschen bei Neustart, [78a70b8e03975bdbb6572b897a8ab24e], PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Yahoo! Powered ceril, Löschen bei Neustart, [43dc2f6a8218b97d29e5278d3aca46ba], PUP.Optional.RelevantKnowledge, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\mkndcbhcgphcfkkddanakjiepeknbgle, In Quarantäne, [33ec37625c3e201601b2e2cf37cc34cc], PUP.Optional.SearchManager, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\pilplloabdedfmialnfchjomjmpjcoej, In Quarantäne, [2cf33960cfcb96a0a0df9d5d8182d729], PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0CE02FFA-A6B0-46F6-BA2F-BD32C3630126}, In Quarantäne, [66b98e0baeec73c3500f517816ec23dd], PUP.Optional.InstallCore, HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\SOFTWARE\csastats, In Quarantäne, [6bb46e2b9109c96d82f8d02a55aea957], PUP.Optional.InstallCore, HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\SOFTWARE\ICSW1.23, In Quarantäne, [bf607d1c1a80999d4dba96110df6b848], PUP.Optional.SearchManager, HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\pilplloabdedfmialnfchjomjmpjcoej, In Quarantäne, [63bc59406c2efe38099aa724fa082fd1], PUP.Optional.WinYahoo, HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0CE02FFA-A6B0-46F6-BA2F-BD32C3630126}, In Quarantäne, [f92678213f5bbc7a5707ddec6b976d93], PUP.Optional.ProductSetup, HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\SOFTWARE\PRODUCTSETUP, In Quarantäne, [eb340a8f53470630f7c5149c778cae52], PUP.Optional.PremierOpinion, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{eeb86aef-4a5d-4b75-9d74-f16d438fc286}, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PremierOpinion, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], Registrierungswerte: 8 PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0CE02FFA-A6B0-46F6-BA2F-BD32C3630126}|URL, https://de.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_secureddownload_16_41_ssg01¶m1=1¶m2=f[6eb1abeef9a189ad5609c108a161ae52]D4%26b[6eb1abeef9a189ad5609c108a161ae52]DIE%26cc[6eb1abeef9a189ad5609c108a161ae52]Dde%26pa[6eb1abeef9a189ad5609c108a161ae52]Dwinyahoo%26cd[6eb1abeef9a189ad5609c108a161ae52]D2XzuyEtN2Y1L1Qzu0EtDzyyEyCyB0C0FtC0DyB0DzzyE0DzztN0D0Tzu0StCyByEzztN1L2XzutAtFtByEtFtCtAtFyDtCtN1L1Czu1BtBtN1L1G1B1V1N2Y1L1Qzu2SyC0EtCtByDyEtDyBtGyC0C0D0DtGtDzzzztCtGtCyCtAzytGtA0CtBtAyBtAyEtD0B0C0BtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2SzytD0FyD0D0C0B0EtG0FyE0FzytGyEzzyC0EtG0B0CtDyDtGtA0AyD0C0C0DyCtCzzyBtC0E2QtN0A0LzuyE%26cr[6eb1abeef9a189ad5609c108a161ae52]D1890240485%26a[6eb1abeef9a189ad5609c108a161ae52]Dwbf_secureddownload_16_41_ssg01%26os_ver[6eb1abeef9a189ad5609c108a161ae52]D10.0%26os[6eb1abeef9a189ad5609c108a161ae52]DWindowsIn QuarantäneB10In QuarantäneBHome&p={searchTerms}, %4, %5 PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{5BD8772E-992A-4BB1-A073-331EA8A9B234}|Path, \Yahoo! Powered ceril, Löschen bei Neustart, [78a70b8e03975bdbb6572b897a8ab24e] PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0CE02FFA-A6B0-46F6-BA2F-BD32C3630126}|URL, https://de.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_secureddownload_16_41_ssg01¶m1=1¶m2=f[66b98e0baeec73c3500f517816ec23dd]D4%26b[66b98e0baeec73c3500f517816ec23dd]DIE%26cc[66b98e0baeec73c3500f517816ec23dd]Dde%26pa[66b98e0baeec73c3500f517816ec23dd]Dwinyahoo%26cd[66b98e0baeec73c3500f517816ec23dd]D2XzuyEtN2Y1L1Qzu0EtDzyyEyCyB0C0FtC0DyB0DzzyE0DzztN0D0Tzu0StCyByEzztN1L2XzutAtFtByEtFtCtAtFyDtCtN1L1Czu1BtBtN1L1G1B1V1N2Y1L1Qzu2SyC0EtCtByDyEtDyBtGyC0C0D0DtGtDzzzztCtGtCyCtAzytGtA0CtBtAyBtAyEtD0B0C0BtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2SzytD0FyD0D0C0B0EtG0FyE0FzytGyEzzyC0EtG0B0CtDyDtGtA0AyD0C0C0DyCtCzzyBtC0E2QtN0A0LzuyE%26cr[66b98e0baeec73c3500f517816ec23dd]D1890240485%26a[66b98e0baeec73c3500f517816ec23dd]Dwbf_secureddownload_16_41_ssg01%26os_ver[66b98e0baeec73c3500f517816ec23dd]D10.0%26os[66b98e0baeec73c3500f517816ec23dd]DWindowsIn QuarantäneB10In QuarantäneBHome&p={searchTerms}, %4, %5 PUP.Optional.OpinionSquare, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|{C7AE725D-FA5C-4027-BB4C-787EF9F8248A}, C:\Program Files (x86)\PremierOpinion\firefox, In Quarantäne, [3ce347523862c96d2526268812f1b24e] PUP.Optional.PremierOpinion, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{4428B89A-0E7D-45B4-99B4-C1B3563E16AE}, v2.26|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Program Files (x86)\PremierOpinion\pmropn.exe|Name=pmropn.exe|, In Quarantäne, [5ac51f7afd9ddb5b033c35b82bd89868] PUP.Optional.PremierOpinion, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{546A6874-DEA6-42AF-8AC5-808A94F0C1CA}, v2.26|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Program Files (x86)\PremierOpinion\pmropn.exe|Name=pmropn.exe|, In Quarantäne, [bd62a4f524762412b48b608d48bb50b0] PUP.Optional.WinYahoo, HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0CE02FFA-A6B0-46F6-BA2F-BD32C3630126}|URL, https://de.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_secureddownload_16_41_ssg01¶m1=1¶m2=f[f92678213f5bbc7a5707ddec6b976d93]D4%26b[f92678213f5bbc7a5707ddec6b976d93]DIE%26cc[f92678213f5bbc7a5707ddec6b976d93]Dde%26pa[f92678213f5bbc7a5707ddec6b976d93]Dwinyahoo%26cd[f92678213f5bbc7a5707ddec6b976d93]D2XzuyEtN2Y1L1Qzu0EtDzyyEyCyB0C0FtC0DyB0DzzyE0DzztN0D0Tzu0StCyByEzztN1L2XzutAtFtByEtFtCtAtFyDtCtN1L1Czu1BtBtN1L1G1B1V1N2Y1L1Qzu2SyC0EtCtByDyEtDyBtGyC0C0D0DtGtDzzzztCtGtCyCtAzytGtA0CtBtAyBtAyEtD0B0C0BtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2SzytD0FyD0D0C0B0EtG0FyE0FzytGyEzzyC0EtG0B0CtDyDtGtA0AyD0C0C0DyCtCzzyBtC0E2QtN0A0LzuyE%26cr[f92678213f5bbc7a5707ddec6b976d93]D1890240485%26a[f92678213f5bbc7a5707ddec6b976d93]Dwbf_secureddownload_16_41_ssg01%26os_ver[f92678213f5bbc7a5707ddec6b976d93]D10.0%26os[f92678213f5bbc7a5707ddec6b976d93]DWindowsIn QuarantäneB10In QuarantäneBHome&p={searchTerms}, %4, %5 PUP.Optional.ProductSetup, HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\SOFTWARE\PRODUCTSETUP|tb, 0G2O2W1R0C1R1H, In Quarantäne, [eb340a8f53470630f7c5149c778cae52] Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Ordner: 58 Adware.PremierOpinion, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PremierOpinion, In Quarantäne, [50cf0b8e8a10e74fe4d4801eb44e1ee2], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion, Löschen bei Neustart, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\components, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\defaults, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\defaults\preferences, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\addon, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\console, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\content, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\core, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\events, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\traits, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\dom, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\event, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\io, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\l10n, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\lang, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\loader, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\net, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\page-mod, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\platform, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\preferences, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\private-browsing, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\private-browsing\window, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\system, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\util, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\window, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\windows, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\toolkit, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\dpjs, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\dpjs\data, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\dpjs\lib, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Users\laura\AppData\Local\Temp\PremierOpinion, In Quarantäne, [78a7fe9b9703ba7c108de0daad55ba46], PUP.Optional.RelevantKnowledge, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle, In Quarantäne, [1e01e7b2772380b62053318aae541ce4], PUP.Optional.RelevantKnowledge, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle\1.3.337.4_0, In Quarantäne, [1e01e7b2772380b62053318aae541ce4], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\chrome, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\common, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\external, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\search, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\css, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\external, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\fonts, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\_metadata, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], Dateien: 258 Trojan.Dropper, C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe, Löschen bei Neustart, [35eacbce1684df57b4266e7cf90be51b], Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmservice.exe, Löschen bei Neustart, [5bc449502a707cba4670a8e356aa53ad], Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmropn.exe, Löschen bei Neustart, [ba650198debcdf5795216c1faf51ce32], Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmropn32.exe, Löschen bei Neustart, [fb242d6cff9b4beb991d0c7fb34d41bf], Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmropn64.exe, Löschen bei Neustart, [29f61a7f2f6b84b28432fd8e619f8878], Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmls.dll, In Quarantäne, [b669e0b97f1b59dd4c6a038860a0e719], Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmls64.dll, In Quarantäne, [2af5445547536ec815a14348b14f21df], Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmph.dll, In Quarantäne, [cb54495008923cfa4b6bb6d5ac54b64a], Adware.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmxf.dll, In Quarantäne, [b6696435c8d281b59c1a1f6c837d04fc], Adware.PremierOpinion, C:\Windows\System32\pmls64.dll, Löschen bei Neustart, [e6397a1f0496ed49496d4f3ce21e0cf4], Adware.PremierOpinion, C:\Windows\System32\pmls64.dl_, In Quarantäne, [8d921b7ea4f6df57fdb96427ab55b44c], Adware.PremierOpinion, C:\Windows\SysWOW64\pmls.dll, Löschen bei Neustart, [be615247cad044f24b6bdead34cc44bc], Adware.PremierOpinion, C:\Windows\SysWOW64\pmls.dl_, In Quarantäne, [22fdfb9e4f4b6bcb872fabe0ce32fe02], PUP.Optional.383Media, C:\Users\laura\AppData\Local\Temp\DRHelper_uninstallComplete.exe, In Quarantäne, [4fd0dcbdaaf096a09bc955106b96768a], PUP.Optional.Reimage, C:\Users\laura\AppData\Local\Temp\ReimagePackage.exe, In Quarantäne, [76a9e4b506947eb8c2ba9e5826de54ac], PUP.Optional.Reimage, C:\Users\laura\Downloads\ReimageRepair (1).exe, In Quarantäne, [1e01c8d1e3b7b383502cf303669ee41c], PUP.Optional.Reimage, C:\Users\laura\Downloads\ReimageRepair (2).exe, In Quarantäne, [cf50c1d88a10bd796517fef8d52fed13], PUP.Optional.Reimage, C:\Users\laura\Downloads\ReimageRepair.exe, In Quarantäne, [59c64752ebaffd39037944b264a06997], PUP.Optional.DownloadGuide, C:\Users\laura\Downloads\install-apache-openoffice.exe, In Quarantäne, [d34c5b3e1387d2646dcd09ae5aaaa65a], PUP.Optional.InstallCore, C:\Users\laura\Downloads\malwarebytes-anti-malware.exe, In Quarantäne, [d54ab8e1603ac76fe48786b544bd6799], PUP.Optional.PCKeeper, C:\Users\laura\Downloads\PCKeeper Installer.exe, In Quarantäne, [ae71e3b663376cca2a3ac2d08e76d030], PUP.Optional.PricePeep, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage, In Quarantäne, [bb6403961585d264611688283bc828d8], PUP.Optional.PricePeep, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage-journal, In Quarantäne, [4cd36930aeec9d99d7a0d8d8de2532ce], PUP.Optional.BestPriceNinja, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pstatic.bestpriceninja.com_0.localstorage, In Quarantäne, [eb349aff5f3b1d19f5e911d0867d51af], PUP.Optional.BestPriceNinja, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pstatic.bestpriceninja.com_0.localstorage-journal, In Quarantäne, [6ab578218911e056459923bec53e847c], PUP.Optional.ReMarkIt.PrxySvrRST, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.re-markit00.re-markit.co_0.localstorage, In Quarantäne, [a6796f2adbbfb680dc63e00e32d121df], PUP.Optional.ReMarkIt.PrxySvrRST, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.re-markit00.re-markit.co_0.localstorage-journal, In Quarantäne, [7ca393067e1c0b2b4df243ab689b2fd1], PUP.Optional.UTop, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_utop.it_0.localstorage, In Quarantäne, [ef3060395f3b84b2213b5b96b15230d0], PUP.Optional.UTop, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_utop.it_0.localstorage-journal, In Quarantäne, [dd4291087129191db7a549a8c142cc34], PUP.Optional.UTop, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_utop.it_0.localstorage, In Quarantäne, [b36c1a7f207a053117451ad7847f39c7], PUP.Optional.UTop, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_utop.it_0.localstorage-journal, In Quarantäne, [3be490093862d462510b2bc6ed1658a8], PUP.Optional.Yontoo, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.coupontime00.coupontime.co_0.localstorage, In Quarantäne, [b966dcbda4f6a492b7cf099a956ff40c], PUP.Optional.Yontoo, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.coupontime00.coupontime.co_0.localstorage-journal, In Quarantäne, [e33c83169cfe1422a5e1bbe8cf35e11f], PUP.Optional.WinYahoo, C:\Windows\Tasks\Yahoo! Powered ceril.job, In Quarantäne, [b66943564951db5b888410a428dc36ca], PUP.Optional.WinYahoo, C:\Windows\System32\Tasks\Yahoo! Powered ceril, In Quarantäne, [fc23e4b58119c1756ea15064a36112ee], Adware.PremierOpinion, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PremierOpinion\PremierOpinion.lnk, In Quarantäne, [50cf0b8e8a10e74fe4d4801eb44e1ee2], PUP.Optional.PremierOpinion, c:\program files (x86)\premieropinion\asmcf.dat, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\chrome.manifest, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\install.rdf, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmcm.crx, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmcm.txt, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmls.dll, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmls64.dll, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmoci.bin, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmph.dll, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmropn.exe, Löschen bei Neustart, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmropn32.exe, Löschen bei Neustart, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmropn64.exe, Löschen bei Neustart, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmservice.exe, Löschen bei Neustart, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\pmxf.dll, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\readme.txt, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, c:\program files (x86)\premieropinion\shfscp.dat, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\components\pmxg.dll, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\bootstrap.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\harness-options.json, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\install.rdf, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\locales.json, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\pmnx.dll, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\defaults\preferences\prefs.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\chrome.manifest, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\base64.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\page-mod.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\private-browsing.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\self.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\system.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\timers.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\url.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\windows.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\addon\runner.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\console\plain-text.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\console\traceback.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\content\content-proxy.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\content\content-worker.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\content\loader.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\content\thumbnail.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\content\worker.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\core\heritage.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\core\namespace.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\core\promise.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\api-utils.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\cortex.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\errors.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\events.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\light-traits.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\list.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\memory.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\observer-service.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\traits.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\window-utils.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\events\assembler.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\deprecated\traits\core.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\dom\events.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\event\core.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\event\target.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\io\byte-streams.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\io\data.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\io\file.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\io\text-streams.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\l10n\core.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\l10n\html.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\l10n\loader.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\l10n\locale.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\l10n\prefs.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\lang\functional.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\loader\cuddlefish.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\loader\sandbox.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\net\url.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\page-mod\match-pattern.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\platform\xpcom.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\preferences\service.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\private-browsing\utils.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\private-browsing\window\utils.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\system\environment.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\system\events.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\system\globals.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\system\runtime.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\system\unload.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\system\xul-app.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\common.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\events.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\helpers.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\namespace.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\observer.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\tab-fennec.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\tab-firefox.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\tab.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\tabs-firefox.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\tabs.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\utils.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\tabs\worker.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\util\array.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\util\deprecate.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\util\list.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\util\object.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\util\registry.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\util\uuid.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\window\browser.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\window\namespace.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\window\utils.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\windows\dom.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\windows\fennec.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\windows\firefox.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\windows\loader.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\windows\observer.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\windows\tabs-fennec.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\sdk\windows\tabs-firefox.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\addon-sdk\lib\toolkit\loader.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\dpjs\data\content.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\dpjs\lib\dompilot.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\dpjs\lib\dputil.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.PremierOpinion, C:\Program Files (x86)\PremierOpinion\firefox\resources\dpjs\lib\main.js, In Quarantäne, [b56a4f4a702a999d1389a218ce3438c8], PUP.Optional.RelevantKnowledge, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle\1.3.337.4_0\background.js, In Quarantäne, [1e01e7b2772380b62053318aae541ce4], PUP.Optional.RelevantKnowledge, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle\1.3.337.4_0\contentscript.js, In Quarantäne, [1e01e7b2772380b62053318aae541ce4], PUP.Optional.RelevantKnowledge, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle\1.3.337.4_0\icon128.png, In Quarantäne, [1e01e7b2772380b62053318aae541ce4], PUP.Optional.RelevantKnowledge, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle\1.3.337.4_0\icon48.png, In Quarantäne, [1e01e7b2772380b62053318aae541ce4], PUP.Optional.RelevantKnowledge, C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle\1.3.337.4_0\manifest.json, In Quarantäne, [1e01e7b2772380b62053318aae541ce4], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\manifest.json, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\background.html, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\favicon.ico, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\newtab.html, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\chrome\common.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\chrome\lifecycle.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\chrome\settings.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\chrome\setup.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\chrome\utils.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\common\abtest.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\common\conf-sys.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\common\conf.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\common\nt_ptr.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\common\prefs-sys.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\common\prefs.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\common\settings-dev.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\common\udata.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\external\jquery-2.1.1.min.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\external\md5.min.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\external\progressbar.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\external\string.min.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\external\underscore-min.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\search\AutoSuggest.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\search\contentscript.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\search\newtab-base.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\search\newtab-msg.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\search\search-engines.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\search\search-form.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\content\search\search-redirect.js, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\css\newtab.css, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\css\search.css, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\css\search2.css, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\css\styles.css, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\css\white_bg.css, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\external\normalize.css, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\fonts\HelveticaNeue-Thin.otf, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\fonts\neue-bold.woff, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\fonts\neue.woff, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\128.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\16.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\48.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\close.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\01d.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\01n.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\02d.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\02n.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\03d.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\03n.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\04d.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\04n.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\09d.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\09n.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\10d.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\10n.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\11d.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\11n.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\13d.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\13n.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\50d.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\icons\weather\50n.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\bg.jpg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\bing.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\bluesky-bg.jpg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\brush.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\clock.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\cloud.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\cupcake-bg.jpg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\desk-bg.jpg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\doodle.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\down.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\google.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\just-the-box.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\mountain-bg.jpg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\sea-bg.jpg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\yahoo.png, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\skin\images\yahoo.svg, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.SearchManager, C:\Users\laura\AppData\Local\chromium\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej\1.0.9.1_0\_metadata\verified_contents.json, In Quarantäne, [9f80d2c7b7e388ae03dcab1cfc0633cd], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\HowToRemove.html, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\chromium-min.jpg, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\control panel-min-min.JPG, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\down.png, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\ff menu.JPG, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\ff search engine-min.png, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\hp-min ff.png, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\hp-min ie.png, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\search engine.gif, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\setup pages.gif, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\sp-min.png, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\start-min.jpg, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\HowToRemove\up.png, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\bapi16.dat, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\bapi17.dat, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\install.log, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\laso.dat, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\mali, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\neni, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\rasi.cfg, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\sito, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\Sqlite3.dll, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\uninst.dat, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], PUP.Optional.WinYahoo, C:\Users\laura\AppData\Local\{DA72EC2E-FEDA-8096-9342-A57EB72A59E6}\uninst.exe, In Quarantäne, [62bdbcdd0298f93daa9bf0adc93b6898], Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) |
14.10.2016, 17:53 | #11 |
| Windows 10 bei Klick öffnet sich neues FensterCode:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 13-10-2016 durchgeführt von laura (Administrator) auf DESKTOP-0TG2UTJ (14-10-2016 18:51:04) Gestartet von C:\Users\laura\Downloads Geladene Profile: laura (Verfügbare Profile: laura) Platform: Windows 10 Home Version 1607 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Edge) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\HidMonitorSvc.exe (Intel Corporation) C:\Windows\System32\ibtsiva.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Lenovo Group Limited) C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Lenovo) C:\ProgramData\LenovoTransition\Server\x64\ymc.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe (Microsoft Corporation) C:\Windows\System32\runonce.exe (Microsoft Corporation) C:\Windows\SysWOW64\runonce.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\hidfind.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (Malwarebytes) C:\ProgramData\Malwarebytes\ Malwarebytes Anti-Malware \mbamdor.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeHost.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Microsoft Corporation) C:\Windows\System32\cmd.exe () C:\Program Files\Lenovo\LenovoUtility\utility.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Byte Technologies LLC) C:\Program Files\ByteFence\ByteFence.exe (Spotify Ltd) C:\Users\laura\AppData\Roaming\Spotify\SpotifyWebHelper.exe () C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe () C:\Program Files\ByteFence\rtop\bin\rtop_bg.exe (Spotify Ltd) C:\Users\laura\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd) C:\Users\laura\AppData\Roaming\Spotify\SpotifyCrashService.exe (Spotify Ltd) C:\Users\laura\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd) C:\Users\laura\AppData\Roaming\Spotify\Spotify.exe () C:\Program Files\Realtek\Audio\HDA\FMAPP.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe (Lenovo) C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe (Lenovo) C:\Program Files (x86)\Lenovo\GDCAgentSetupRed\GDCAgent.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Lenovo) C:\Program Files (x86)\Lenovo\CCSDK\WinGather.exe (Microsoft Corporation) C:\Windows\System32\cmd.exe (Microsoft Corporation) C:\Windows\System32\cmd.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Lenovo Group Limited) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.exe (Lenovo Group Limited) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.exe (Lenovo Group Limited) C:\Program Files (x86)\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.exe (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.14393.82_none_5be7b69702339d1d\TiWorker.exe (Microsoft Corporation) C:\Windows\System32\cmd.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [Apoint] => C:\Program Files\Apoint2K\Apoint.exe [699728 2016-09-06] (Alps Electric Co., Ltd.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16405744 2015-09-10] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1408752 2015-09-10] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1408752 2015-09-10] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1408752 2015-09-10] (Realtek Semiconductor) HKLM\...\Run: [LenovoUtility] => C:\Program Files\Lenovo\LenovoUtility\utility.exe [791848 2016-01-06] () HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-06-23] (Intel Corporation) HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-09-07] (Microsoft Corporation) HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\...\Run: [Chromium] => c:\users\laura\appdata\local\chromium\application\chrome.exe [1068544 2016-03-18] (The Chromium Authors) HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\...\Run: [Spotify Web Helper] => C:\Users\laura\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1483888 2016-10-12] (Spotify Ltd) HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\...\Run: [Spotify] => C:\Users\laura\AppData\Roaming\Spotify\Spotify.exe [6884976 2016-10-12] (Spotify Ltd) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{3bf02ba2-c435-446c-ae1a-6a7f12088dc9}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{b15a5a4b-b934-4324-afde-461767d033d1}: [DhcpNameServer] 172.168.127.2 ManualProxies: Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131209363385338798&GUID=D76A2B41-2196-4AC2-96C7-8858A90C36EF HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131209363385343086&GUID=D76A2B41-2196-4AC2-96C7-8858A90C36EF HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131209363385359709&GUID=D76A2B41-2196-4AC2-96C7-8858A90C36EF HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo15.msn.com/?pc=LCTE SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1616461286-2091979816-1760888700-1001 -> {416EC25E-9423-4E13-82AA-3E65169B8E67} URL = StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF ProfilePath: C:\Users\laura\AppData\Roaming\Mozilla\Firefox\Profiles\bdPHnmnz.default [2016-10-12] FF Extension: (Avira Browser Safety) - C:\Users\laura\AppData\Roaming\Mozilla\Firefox\Profiles\bdPHnmnz.default\Extensions\abs@avira.com [2016-09-06] FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-09-06] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-09-06] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-10-01] (Adobe Systems Inc.) Chrome: ======= CHR DefaultSearchURL: Default -> hxxp://srch.bar/{searchTerms} CHR DefaultSuggestURL: Default -> hxxp://srch.bar/?s={searchTerms} CHR Profile: C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default [2016-10-14] CHR Extension: (Google Präsentationen) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-09-06] CHR Extension: (Google Docs) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-09-06] CHR Extension: (Google Drive) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-09-06] CHR Extension: (YouTube) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-09-06] CHR Extension: (Text Mode) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpeffcnnffodaeaklkhdhfgnpkdamoan [2016-09-26] CHR Extension: (Adblock Plus) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-09-06] CHR Extension: (Google Tabellen) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-09-06] CHR Extension: (Avira Browserschutz) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2016-09-21] CHR Extension: (Google Docs Offline) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-09-06] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-09-06] CHR Extension: (Google Mail) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-09-06] CHR Extension: (Chrome Media Router) - C:\Users\laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-09-22] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 ApHidMonitorService; C:\Program Files\Apoint2K\HidMonitorSvc.exe [88920 2016-09-06] (Alps Electric Co., Ltd.) R2 CCSDK; C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe [650680 2015-07-29] (Lenovo) S3 cplspcon; C:\Windows\system32\IntelCpHDCPSvc.exe [623072 2016-09-06] (Intel Corporation) R2 GDCAgent; C:\Program Files (x86)\Lenovo\GDCAgentSetupRed\GDCAgent.exe [1155512 2015-07-29] (Lenovo) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-06-23] (Intel Corporation) R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [373728 2016-09-06] (Intel Corporation) R2 ImControllerService; c:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [60752 2016-09-13] (Lenovo Group Limited) S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [271296 2015-08-07] (Lenovo) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2015-06-12] () R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [50688 2016-06-15] (HP Inc.) [Datei ist nicht signiert] R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [66048 2016-06-15] (HP Inc.) [Datei ist nicht signiert] R2 rtop; C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe [254280 2016-10-14] () R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation) R2 ymc; C:\ProgramData\LenovoTransition\Server\x64\ymc.exe [34744 2015-08-21] (Lenovo) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3831200 2015-06-12] (Intel® Corporation) R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 ApkbfiltrService; C:\Windows\System32\drivers\Apkbfiltr.sys [31016 2015-07-20] (Alps Electric Co., Ltd.) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [349960 2016-09-08] (Intel Corporation) S0 megasas2i; C:\Windows\System32\drivers\MegaSas2i.sys [64352 2016-10-05] (Avago Technologies) S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () S3 NETwNe64; C:\Windows\System32\drivers\NETwew01.sys [3354384 2015-07-10] (Intel Corporation) R3 Netwtw04; C:\Windows\System32\drivers\Netwtw04.sys [7116288 2016-07-16] (Intel Corporation) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [895256 2015-06-18] (Realtek ) R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [3059416 2015-06-11] (Realtek Semiconductor Corp.) S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-10-14 18:50 - 2016-10-14 18:50 - 00000000 ____D C:\Users\laura\Downloads\FRST-OlderVersion 2016-10-14 18:47 - 2016-10-14 18:47 - 00065796 _____ C:\AdwCleanerscan protokoll.txt 2016-10-14 18:44 - 2016-10-14 18:44 - 00000000 ___HD C:\OneDriveTemp 2016-10-14 18:26 - 2016-10-14 18:44 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-10-14 18:25 - 2016-10-14 18:25 - 00000000 ____D C:\ProgramData\ByteFence 2016-10-14 18:22 - 2016-10-14 18:22 - 00001182 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2016-10-14 18:22 - 2016-10-14 18:22 - 00000000 ____D C:\Users\laura\AppData\Roaming\Malwarebytes 2016-10-14 18:22 - 2016-10-14 18:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware 2016-10-14 18:22 - 2016-10-14 18:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2016-10-14 18:22 - 2016-10-14 18:22 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2016-10-14 18:22 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2016-10-14 18:22 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2016-10-14 18:22 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2016-10-14 18:21 - 2016-10-14 18:22 - 00000000 ____D C:\ProgramData\Malwarebytes 2016-10-14 18:21 - 2016-10-14 18:22 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2016-10-14 18:20 - 2016-10-14 18:44 - 00000000 ____D C:\Program Files\ByteFence 2016-10-14 18:20 - 2016-10-14 18:20 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\laura\Downloads\malwarebytes-anti-malware [1].exe 2016-10-14 18:20 - 2016-10-14 18:20 - 00003454 _____ C:\WINDOWS\System32\Tasks\ByteFence 2016-10-14 18:20 - 2016-10-14 18:20 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy 2016-10-14 18:19 - 2016-10-14 18:19 - 22851472 _____ (Malwarebytes ) C:\Users\laura\Downloads\mbam-setup-2.2.1.1043.exe 2016-10-14 18:08 - 2016-10-14 18:09 - 03874368 _____ C:\Users\laura\Downloads\adwcleaner_6.021.exe 2016-10-12 20:43 - 2016-10-12 20:38 - 00504488 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2016-10-12 20:39 - 2016-10-05 12:03 - 01705976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2016-10-12 20:39 - 2016-10-05 11:51 - 01430720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2016-10-12 20:39 - 2016-10-05 11:50 - 02256592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-10-12 20:39 - 2016-10-05 11:50 - 00116576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll 2016-10-12 20:39 - 2016-10-05 11:49 - 01980768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2016-10-12 20:39 - 2016-10-05 11:48 - 01022304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll 2016-10-12 20:39 - 2016-10-05 11:46 - 03892352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2016-10-12 20:39 - 2016-10-05 11:46 - 01360456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll 2016-10-12 20:39 - 2016-10-05 11:46 - 00980824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll 2016-10-12 20:39 - 2016-10-05 11:45 - 20965240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-10-12 20:39 - 2016-10-05 11:41 - 00545944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2016-10-12 20:39 - 2016-10-05 11:31 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ConfigureExpandedStorage.dll 2016-10-12 20:39 - 2016-10-05 11:28 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll 2016-10-12 20:39 - 2016-10-05 11:28 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll 2016-10-12 20:39 - 2016-10-05 11:28 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.HostName.dll 2016-10-12 20:39 - 2016-10-05 11:27 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll 2016-10-12 20:39 - 2016-10-05 11:27 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll 2016-10-12 20:39 - 2016-10-05 11:26 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2016-10-12 20:39 - 2016-10-05 11:26 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll 2016-10-12 20:39 - 2016-10-05 11:26 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsensorgroup.dll 2016-10-12 20:39 - 2016-10-05 11:26 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll 2016-10-12 20:39 - 2016-10-05 11:26 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll 2016-10-12 20:39 - 2016-10-05 11:25 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2016-10-12 20:39 - 2016-10-05 11:25 - 00404992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll 2016-10-12 20:39 - 2016-10-05 11:25 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll 2016-10-12 20:39 - 2016-10-05 11:25 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll 2016-10-12 20:39 - 2016-10-05 11:24 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll 2016-10-12 20:39 - 2016-10-05 11:23 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll 2016-10-12 20:39 - 2016-10-05 11:23 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll 2016-10-12 20:39 - 2016-10-05 11:23 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll 2016-10-12 20:39 - 2016-10-05 11:23 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll 2016-10-12 20:39 - 2016-10-05 11:21 - 03689984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2016-10-12 20:39 - 2016-10-05 11:21 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll 2016-10-12 20:39 - 2016-10-05 11:21 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2016-10-12 20:39 - 2016-10-05 11:20 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll 2016-10-12 20:39 - 2016-10-05 11:18 - 04612608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2016-10-12 20:39 - 2016-10-05 11:18 - 00858112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll 2016-10-12 20:39 - 2016-10-05 11:17 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsmsext.dll 2016-10-12 20:39 - 2016-10-05 11:16 - 19418624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-10-12 20:39 - 2016-10-05 11:16 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2016-10-12 20:39 - 2016-10-05 11:15 - 07625728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-10-12 20:39 - 2016-10-05 11:15 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll 2016-10-12 20:39 - 2016-10-05 11:14 - 19416576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-10-12 20:39 - 2016-10-05 11:14 - 01456640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2016-10-12 20:39 - 2016-10-05 11:14 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2016-10-12 20:39 - 2016-10-05 11:13 - 12345856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2016-10-12 20:39 - 2016-10-05 11:13 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll 2016-10-12 20:39 - 2016-10-05 11:11 - 12174848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-10-12 20:39 - 2016-10-05 11:11 - 06108672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2016-10-12 20:39 - 2016-10-05 11:11 - 06043136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-10-12 20:39 - 2016-10-05 11:11 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll 2016-10-12 20:39 - 2016-10-05 11:10 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe 2016-10-12 20:39 - 2016-10-05 11:09 - 07467520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2016-10-12 20:39 - 2016-10-05 11:09 - 03369984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll 2016-10-12 20:39 - 2016-10-05 11:09 - 00884224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2016-10-12 20:39 - 2016-10-05 11:09 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll 2016-10-12 20:39 - 2016-10-05 11:09 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2016-10-12 20:39 - 2016-10-05 11:09 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll 2016-10-12 20:39 - 2016-10-05 11:08 - 02356736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll 2016-10-12 20:39 - 2016-10-05 11:08 - 00873472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll 2016-10-12 20:39 - 2016-10-05 11:08 - 00598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll 2016-10-12 20:39 - 2016-10-05 11:07 - 03667456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-10-12 20:39 - 2016-10-05 11:07 - 02682880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll 2016-10-12 20:39 - 2016-10-05 11:07 - 02646016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll 2016-10-12 20:39 - 2016-10-05 11:07 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2016-10-12 20:39 - 2016-10-05 11:07 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll 2016-10-12 20:39 - 2016-10-05 11:07 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll 2016-10-12 20:39 - 2016-10-05 11:06 - 02999296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2016-10-12 20:39 - 2016-10-05 11:06 - 02254336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2016-10-12 20:39 - 2016-10-05 11:06 - 02005504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2016-10-12 20:39 - 2016-10-05 11:06 - 01880576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2016-10-12 20:39 - 2016-10-05 11:06 - 01594368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-10-12 20:39 - 2016-10-05 11:06 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll 2016-10-12 20:39 - 2016-10-05 11:06 - 00850944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll 2016-10-12 20:39 - 2016-10-05 11:06 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2016-10-12 20:39 - 2016-10-05 11:05 - 03105792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe 2016-10-12 20:39 - 2016-10-05 11:05 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2016-10-12 20:38 - 2016-10-05 12:35 - 00279904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2016-10-12 20:38 - 2016-10-05 12:34 - 01051104 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2016-10-12 20:38 - 2016-10-05 12:34 - 00894088 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2016-10-12 20:38 - 2016-10-05 12:33 - 00128864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys 2016-10-12 20:38 - 2016-10-05 12:31 - 02213248 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2016-10-12 20:38 - 2016-10-05 12:31 - 01353768 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2016-10-12 20:38 - 2016-10-05 12:31 - 01172472 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2016-10-12 20:38 - 2016-10-05 12:30 - 07812448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-10-12 20:38 - 2016-10-05 12:22 - 01181536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2016-10-12 20:38 - 2016-10-05 12:17 - 01322848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll 2016-10-12 20:38 - 2016-10-05 12:16 - 00187232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2016-10-12 20:38 - 2016-10-05 12:13 - 02750384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-10-12 20:38 - 2016-10-05 12:13 - 01859264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2016-10-12 20:38 - 2016-10-05 12:13 - 00146784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll 2016-10-12 20:38 - 2016-10-05 12:12 - 02446696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2016-10-12 20:38 - 2016-10-05 12:12 - 01112928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll 2016-10-12 20:38 - 2016-10-05 12:12 - 00619368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2016-10-12 20:38 - 2016-10-05 12:09 - 22219328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-10-12 20:38 - 2016-10-05 12:09 - 04129928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2016-10-12 20:38 - 2016-10-05 12:09 - 01071728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll 2016-10-12 20:38 - 2016-10-05 12:09 - 00244816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2016-10-12 20:38 - 2016-10-05 12:09 - 00064352 _____ (Avago Technologies) C:\WINDOWS\system32\Drivers\MegaSas2i.sys 2016-10-12 20:38 - 2016-10-05 12:08 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll 2016-10-12 20:38 - 2016-10-05 12:04 - 02537824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2016-10-12 20:38 - 2016-10-05 12:04 - 00628032 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2016-10-12 20:38 - 2016-10-05 11:44 - 22568960 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-10-12 20:38 - 2016-10-05 11:38 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll 2016-10-12 20:38 - 2016-10-05 11:38 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll 2016-10-12 20:38 - 2016-10-05 11:36 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys 2016-10-12 20:38 - 2016-10-05 11:36 - 00113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll 2016-10-12 20:38 - 2016-10-05 11:36 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll 2016-10-12 20:38 - 2016-10-05 11:35 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll 2016-10-12 20:38 - 2016-10-05 11:35 - 00327680 _____ C:\WINDOWS\system32\wc_storage.dll 2016-10-12 20:38 - 2016-10-05 11:35 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll 2016-10-12 20:38 - 2016-10-05 11:35 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll 2016-10-12 20:38 - 2016-10-05 11:35 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll 2016-10-12 20:38 - 2016-10-05 11:34 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2016-10-12 20:38 - 2016-10-05 11:34 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2016-10-12 20:38 - 2016-10-05 11:33 - 00651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll 2016-10-12 20:38 - 2016-10-05 11:33 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll 2016-10-12 20:38 - 2016-10-05 11:33 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll 2016-10-12 20:38 - 2016-10-05 11:33 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll 2016-10-12 20:38 - 2016-10-05 11:32 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll 2016-10-12 20:38 - 2016-10-05 11:32 - 00379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll 2016-10-12 20:38 - 2016-10-05 11:32 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.HostName.dll 2016-10-12 20:38 - 2016-10-05 11:32 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll 2016-10-12 20:38 - 2016-10-05 11:31 - 00837632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll 2016-10-12 20:38 - 2016-10-05 11:31 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll 2016-10-12 20:38 - 2016-10-05 11:31 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll 2016-10-12 20:38 - 2016-10-05 11:31 - 00480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll 2016-10-12 20:38 - 2016-10-05 11:31 - 00425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe 2016-10-12 20:38 - 2016-10-05 11:31 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll 2016-10-12 20:38 - 2016-10-05 11:30 - 00396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll 2016-10-12 20:38 - 2016-10-05 11:29 - 09129984 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-10-12 20:38 - 2016-10-05 11:29 - 06285312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2016-10-12 20:38 - 2016-10-05 11:29 - 01145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll 2016-10-12 20:38 - 2016-10-05 11:29 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2016-10-12 20:38 - 2016-10-05 11:29 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll 2016-10-12 20:38 - 2016-10-05 11:28 - 03059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2016-10-12 20:38 - 2016-10-05 11:28 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe 2016-10-12 20:38 - 2016-10-05 11:28 - 00406016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2016-10-12 20:38 - 2016-10-05 11:27 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2016-10-12 20:38 - 2016-10-05 11:26 - 23680512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-10-12 20:38 - 2016-10-05 11:26 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2016-10-12 20:38 - 2016-10-05 11:25 - 01589248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll 2016-10-12 20:38 - 2016-10-05 11:24 - 13434368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2016-10-12 20:38 - 2016-10-05 11:24 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsmsext.dll 2016-10-12 20:38 - 2016-10-05 11:23 - 01908224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2016-10-12 20:38 - 2016-10-05 11:23 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll 2016-10-12 20:38 - 2016-10-05 11:22 - 13081088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-10-12 20:38 - 2016-10-05 11:22 - 07654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2016-10-12 20:38 - 2016-10-05 11:22 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2016-10-12 20:38 - 2016-10-05 11:22 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll 2016-10-12 20:38 - 2016-10-05 11:21 - 08075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2016-10-12 20:38 - 2016-10-05 11:21 - 01364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2016-10-12 20:38 - 2016-10-05 11:21 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll 2016-10-12 20:38 - 2016-10-05 11:20 - 00936960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2016-10-12 20:38 - 2016-10-05 11:20 - 00804864 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll 2016-10-12 20:38 - 2016-10-05 11:20 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2016-10-12 20:38 - 2016-10-05 11:19 - 02390016 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe 2016-10-12 20:38 - 2016-10-05 11:19 - 02265088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2016-10-12 20:38 - 2016-10-05 11:19 - 01690112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2016-10-12 20:38 - 2016-10-05 11:19 - 00982528 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2016-10-12 20:38 - 2016-10-05 11:18 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2016-10-12 20:38 - 2016-10-05 11:18 - 00983040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2016-10-12 20:38 - 2016-10-05 11:18 - 00911872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll 2016-10-12 20:38 - 2016-10-05 11:18 - 00759296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2016-10-12 20:38 - 2016-10-05 11:17 - 08126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-10-12 20:38 - 2016-10-05 11:17 - 04136960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll 2016-10-12 20:38 - 2016-10-05 11:17 - 02914304 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2016-10-12 20:38 - 2016-10-05 11:17 - 01493504 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-10-12 20:38 - 2016-10-05 11:16 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe 2016-10-12 20:38 - 2016-10-05 11:16 - 04747776 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-10-12 20:38 - 2016-10-05 11:16 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll 2016-10-12 20:38 - 2016-10-05 11:16 - 00765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2016-10-12 20:38 - 2016-10-05 11:15 - 03617792 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-10-12 20:38 - 2016-10-05 11:15 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll 2016-10-12 20:38 - 2016-10-05 11:15 - 01980416 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2016-10-12 20:38 - 2016-10-05 11:15 - 01840640 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2016-10-12 20:38 - 2016-10-05 11:15 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-10-12 20:38 - 2016-10-05 11:15 - 00833024 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2016-10-12 20:38 - 2016-10-05 11:15 - 00774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll 2016-10-12 20:38 - 2016-10-05 11:15 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll 2016-10-12 20:38 - 2016-10-05 11:14 - 02688512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2016-10-12 20:38 - 2016-10-05 11:14 - 02667520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2016-10-12 20:38 - 2016-10-05 11:14 - 02476544 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2016-10-12 20:38 - 2016-10-05 11:14 - 01778176 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-10-12 20:38 - 2016-10-05 11:14 - 01013760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll 2016-10-12 20:38 - 2016-10-05 11:14 - 00909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2016-10-12 20:38 - 2016-10-05 11:14 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2016-10-12 20:38 - 2016-10-05 11:13 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll 2016-10-12 20:38 - 2016-10-05 11:12 - 01107456 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll 2016-10-12 20:38 - 2016-10-05 11:12 - 00998912 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll 2016-10-12 20:38 - 2016-10-05 11:12 - 00924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll 2016-10-12 20:38 - 2016-10-05 11:11 - 03496960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll 2016-10-12 20:38 - 2016-10-05 02:01 - 00446124 _____ C:\WINDOWS\system32\ApnDatabase.xml 2016-10-12 20:38 - 2016-09-07 07:34 - 00360040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2016-10-11 18:11 - 2016-10-11 18:11 - 01474568 _____ C:\Users\laura\Downloads\HijackThis - CHIP-Installer.exe 2016-10-11 17:57 - 2016-10-12 20:43 - 00029834 _____ C:\Users\laura\Downloads\Addition.txt 2016-10-11 17:56 - 2016-10-14 18:51 - 00015676 _____ C:\Users\laura\Downloads\FRST.txt 2016-10-11 17:56 - 2016-10-14 18:51 - 00000000 ____D C:\FRST 2016-10-11 17:55 - 2016-10-14 18:50 - 02406912 _____ (Farbar) C:\Users\laura\Downloads\FRST64.exe 2016-10-11 17:47 - 2016-10-11 17:47 - 00000000 ____D C:\Users\laura\AppData\Local\ElevatedDiagnostics 2016-10-08 19:51 - 2016-10-08 19:51 - 00000000 ____D C:\ProgramData\HP 2016-10-08 19:51 - 2016-10-08 19:51 - 00000000 ____D C:\ProgramData\Hewlett-Packard 2016-10-08 19:51 - 2016-10-08 19:51 - 00000000 _____ C:\WINDOWS\HPMProp.INI 2016-10-06 16:24 - 2016-10-14 18:12 - 00000000 ____D C:\AdwCleaner 2016-10-06 16:12 - 2016-10-06 16:12 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_ldiagio_uefi_01009.Wdf 2016-10-06 16:11 - 2016-10-06 16:11 - 00000000 ____D C:\Users\laura\AppData\Roaming\Lenovo 2016-10-03 18:05 - 2016-08-26 09:42 - 00604584 _____ (HP Inc.) C:\WINDOWS\SysWOW64\hpcdmc32.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00484776 _____ (HP Inc.) C:\WINDOWS\system32\hpcpn190.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00453544 _____ (HP Inc.) C:\WINDOWS\SysWOW64\hpcc3190.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00310512 _____ (HP Inc.) C:\WINDOWS\system32\hpmlm190.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00264944 _____ (HP Inc.) C:\WINDOWS\system32\hpmml190.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00241904 _____ (HP Inc.) C:\WINDOWS\system32\hpmja190.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00229800 _____ (HP Inc.) C:\WINDOWS\system32\hpmpm081.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00204200 _____ (HP Inc.) C:\WINDOWS\system32\hpmtp190.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00195496 _____ (Hewlett-Packard) C:\WINDOWS\system32\hppdcompio.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00178088 _____ (HP Inc.) C:\WINDOWS\system32\hpcjpm.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00169384 _____ (Hewlett-Packard) C:\WINDOWS\SysWOW64\hppccompio.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00127912 _____ (HP Inc.) C:\WINDOWS\system32\hpmpw081.dll 2016-10-03 18:05 - 2016-08-26 09:42 - 00061168 _____ (Hewlett-Packard) C:\WINDOWS\system32\FxCompChannel_x64.dll 2016-10-01 20:12 - 2012-06-13 17:10 - 00102376 _____ ("CyberLink) C:\WINDOWS\system32\Drivers\wsvd.sys 2016-10-01 20:11 - 2016-10-01 20:11 - 00002212 _____ C:\Users\Public\Desktop\Lenovo Photo Master.lnk 2016-10-01 20:11 - 2016-10-01 20:11 - 00000000 ____D C:\Users\laura\AppData\Roaming\CyberLink 2016-10-01 20:11 - 2016-10-01 20:11 - 00000000 ____D C:\Program Files (x86)\CyberLink 2016-10-01 14:59 - 2016-09-15 19:40 - 00965472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2016-10-01 14:59 - 2016-09-15 19:35 - 00455040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll 2016-10-01 14:59 - 2016-09-15 19:33 - 00083120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devenum.dll 2016-10-01 14:59 - 2016-09-15 19:29 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll 2016-10-01 14:59 - 2016-09-15 19:27 - 00434528 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2016-10-01 14:59 - 2016-09-15 19:22 - 00860512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2016-10-01 14:59 - 2016-09-15 19:21 - 01000288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2016-10-01 14:59 - 2016-09-15 19:20 - 00634944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2016-10-01 14:59 - 2016-09-15 19:15 - 00218976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys 2016-10-01 14:59 - 2016-09-15 19:14 - 01267512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2016-10-01 14:59 - 2016-09-15 19:14 - 00119648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys 2016-10-01 14:59 - 2016-09-15 19:13 - 00113504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll 2016-10-01 14:59 - 2016-09-15 19:12 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2016-10-01 14:59 - 2016-09-15 19:06 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2016-10-01 14:59 - 2016-09-15 19:06 - 00387872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll 2016-10-01 14:59 - 2016-09-15 19:03 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll 2016-10-01 14:59 - 2016-09-15 19:03 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TempSignedLicenseExchangeTask.dll 2016-10-01 14:59 - 2016-09-15 19:02 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfksproxy.dll 2016-10-01 14:59 - 2016-09-15 18:56 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManagerApi.dll 2016-10-01 14:59 - 2016-09-15 18:55 - 00213504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll 2016-10-01 14:59 - 2016-09-15 18:50 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe 2016-10-01 14:59 - 2016-09-15 18:49 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll 2016-10-01 14:59 - 2016-09-15 18:42 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll 2016-10-01 14:59 - 2016-09-15 18:40 - 05061120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2016-10-01 14:59 - 2016-09-15 18:40 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2016-10-01 14:59 - 2016-09-15 18:39 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2016-10-01 14:59 - 2016-09-15 18:38 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2016-10-01 14:59 - 2016-09-15 18:38 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe 2016-10-01 14:59 - 2016-09-15 18:37 - 00390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll 2016-10-01 14:59 - 2016-09-15 18:37 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll 2016-10-01 14:59 - 2016-09-15 18:36 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll 2016-10-01 14:59 - 2016-09-15 18:36 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2016-10-01 14:59 - 2016-09-15 18:36 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll 2016-10-01 14:59 - 2016-09-15 18:35 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll 2016-10-01 14:59 - 2016-09-15 18:35 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2016-10-01 14:59 - 2016-09-15 18:34 - 00671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll 2016-10-01 14:59 - 2016-09-15 18:34 - 00560640 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll 2016-10-01 14:59 - 2016-09-15 18:32 - 01037312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll 2016-10-01 14:59 - 2016-09-15 18:30 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll 2016-10-01 14:59 - 2016-09-15 18:27 - 00883712 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2016-10-01 14:59 - 2016-09-15 18:26 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe 2016-10-01 14:59 - 2016-09-15 18:25 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll 2016-10-01 14:59 - 2016-09-15 18:23 - 03405824 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2016-10-01 14:59 - 2016-09-15 18:23 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2016-10-01 14:59 - 2016-09-15 18:21 - 02538496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2016-10-01 14:59 - 2016-09-15 18:21 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2016-10-01 14:59 - 2016-09-15 18:20 - 01535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll 2016-10-01 14:59 - 2016-09-15 18:20 - 01266176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll 2016-10-01 14:59 - 2016-09-15 18:20 - 00845824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll 2016-10-01 14:59 - 2016-09-15 18:20 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll 2016-10-01 14:59 - 2016-09-15 18:19 - 00903680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2016-10-01 14:59 - 2016-09-15 18:19 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2016-10-01 14:59 - 2016-09-15 18:16 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2016-10-01 14:59 - 2016-08-05 10:29 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.UXRes.dll 2016-10-01 14:58 - 2016-09-15 20:14 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2016-10-01 14:58 - 2016-09-15 19:35 - 01570680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2016-10-01 14:58 - 2016-09-15 19:32 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2016-10-01 14:58 - 2016-09-15 19:30 - 00646136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2016-10-01 14:58 - 2016-09-15 19:30 - 00354264 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe 2016-10-01 14:58 - 2016-09-15 19:29 - 01377016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe 2016-10-01 14:58 - 2016-09-15 19:29 - 01117024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2016-10-01 14:58 - 2016-09-15 19:29 - 00512416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll 2016-10-01 14:58 - 2016-09-15 19:29 - 00218008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe 2016-10-01 14:58 - 2016-09-15 19:29 - 00081760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2016-10-01 14:58 - 2016-09-15 19:29 - 00023392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cmimcext.sys 2016-10-01 14:58 - 2016-09-15 19:28 - 00498960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll 2016-10-01 14:58 - 2016-09-15 19:27 - 05622088 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2016-10-01 14:58 - 2016-09-15 19:27 - 00553312 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2016-10-01 14:58 - 2016-09-15 19:26 - 00090400 _____ (Microsoft Corporation) C:\WINDOWS\system32\devenum.dll 2016-10-01 14:58 - 2016-09-15 19:25 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2016-10-01 14:58 - 2016-09-15 19:25 - 00262960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll 2016-10-01 14:58 - 2016-09-15 19:24 - 00764936 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2016-10-01 14:58 - 2016-09-15 19:23 - 01503032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2016-10-01 14:58 - 2016-09-15 19:23 - 00170960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2016-10-01 14:58 - 2016-09-15 19:22 - 00975744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2016-10-01 14:58 - 2016-09-15 19:21 - 01218912 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2016-10-01 14:58 - 2016-09-15 19:20 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll 2016-10-01 14:58 - 2016-09-15 19:19 - 00361104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 01201872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 01123368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 00955528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 00856872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 00404832 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2016-10-01 14:58 - 2016-09-15 19:18 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll 2016-10-01 14:58 - 2016-09-15 19:16 - 02190176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-10-01 14:58 - 2016-09-15 19:16 - 01738040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2016-10-01 14:58 - 2016-09-15 19:16 - 01292640 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2016-10-01 14:58 - 2016-09-15 19:16 - 01157000 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2016-10-01 14:58 - 2016-09-15 19:16 - 00657760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-10-01 14:58 - 2016-09-15 19:16 - 00527808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll 2016-10-01 14:58 - 2016-09-15 19:16 - 00401760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2016-10-01 14:58 - 2016-09-15 19:16 - 00206096 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2016-10-01 14:58 - 2016-09-15 19:15 - 00649568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2016-10-01 14:58 - 2016-09-15 19:15 - 00341936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2016-10-01 14:58 - 2016-09-15 19:15 - 00130912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys 2016-10-01 14:58 - 2016-09-15 19:13 - 01264912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2016-10-01 14:58 - 2016-09-15 19:12 - 08158672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2016-10-01 14:58 - 2016-09-15 19:11 - 04673296 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-10-01 14:58 - 2016-09-15 19:11 - 00773168 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2016-10-01 14:58 - 2016-09-15 19:10 - 01600632 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2016-10-01 14:58 - 2016-09-15 19:10 - 00918848 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll 2016-10-01 14:58 - 2016-09-15 19:06 - 01469120 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2016-10-01 14:58 - 2016-09-15 19:06 - 01046880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2016-10-01 14:58 - 2016-09-15 19:06 - 00587968 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2016-10-01 14:58 - 2016-09-15 19:06 - 00050880 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2016-10-01 14:58 - 2016-09-15 19:03 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll 2016-10-01 14:58 - 2016-09-15 19:01 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll 2016-10-01 14:58 - 2016-09-15 19:00 - 00518656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll 2016-10-01 14:58 - 2016-09-15 19:00 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRHelper.dll 2016-10-01 14:58 - 2016-09-15 19:00 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll 2016-10-01 14:58 - 2016-09-15 18:59 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovslegacy.dll 2016-10-01 14:58 - 2016-09-15 18:58 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe 2016-10-01 14:58 - 2016-09-15 18:58 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlancfg.dll 2016-10-01 14:58 - 2016-09-15 18:58 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll 2016-10-01 14:58 - 2016-09-15 18:58 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.UserDeviceAssociation.dll 2016-10-01 14:58 - 2016-09-15 18:57 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll 2016-10-01 14:58 - 2016-09-15 18:57 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll 2016-10-01 14:58 - 2016-09-15 18:57 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2016-10-01 14:58 - 2016-09-15 18:57 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2016-10-01 14:58 - 2016-09-15 18:56 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll 2016-10-01 14:58 - 2016-09-15 18:56 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2016-10-01 14:58 - 2016-09-15 18:56 - 00413184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll 2016-10-01 14:58 - 2016-09-15 18:56 - 00265728 _____ C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll 2016-10-01 14:58 - 2016-09-15 18:56 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll 2016-10-01 14:58 - 2016-09-15 18:56 - 00257536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DataExchange.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 01243136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe 2016-10-01 14:58 - 2016-09-15 18:55 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll 2016-10-01 14:58 - 2016-09-15 18:55 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\biwinrt.dll 2016-10-01 14:58 - 2016-09-15 18:54 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll 2016-10-01 14:58 - 2016-09-15 18:54 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll 2016-10-01 14:58 - 2016-09-15 18:54 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll 2016-10-01 14:58 - 2016-09-15 18:54 - 00431104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll 2016-10-01 14:58 - 2016-09-15 18:53 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll 2016-10-01 14:58 - 2016-09-15 18:53 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2016-10-01 14:58 - 2016-09-15 18:53 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll 2016-10-01 14:58 - 2016-09-15 18:53 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll 2016-10-01 14:58 - 2016-09-15 18:52 - 01358336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2016-10-01 14:58 - 2016-09-15 18:52 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll 2016-10-01 14:58 - 2016-09-15 18:52 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll 2016-10-01 14:58 - 2016-09-15 18:52 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll 2016-10-01 14:58 - 2016-09-15 18:52 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll 2016-10-01 14:58 - 2016-09-15 18:51 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll 2016-10-01 14:58 - 2016-09-15 18:51 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll 2016-10-01 14:58 - 2016-09-15 18:50 - 07219200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2016-10-01 14:58 - 2016-09-15 18:50 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll 2016-10-01 14:58 - 2016-09-15 18:49 - 00901120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2016-10-01 14:58 - 2016-09-15 18:49 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll 2016-10-01 14:58 - 2016-09-15 18:47 - 01077760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll 2016-10-01 14:58 - 2016-09-15 18:47 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2016-10-01 14:58 - 2016-09-15 18:47 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll 2016-10-01 14:58 - 2016-09-15 18:47 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll 2016-10-01 14:58 - 2016-09-15 18:46 - 03305984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2016-10-01 14:58 - 2016-09-15 18:46 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll 2016-10-01 14:58 - 2016-09-15 18:46 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll 2016-10-01 14:58 - 2016-09-15 18:46 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ffbroker.dll 2016-10-01 14:58 - 2016-09-15 18:45 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll 2016-10-01 14:58 - 2016-09-15 18:44 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAC3ENC.DLL 2016-10-01 14:58 - 2016-09-15 18:43 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2.dll 2016-10-01 14:58 - 2016-09-15 18:43 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfksproxy.dll 2016-10-01 14:58 - 2016-09-15 18:43 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll 2016-10-01 14:58 - 2016-09-15 18:43 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe 2016-10-01 14:58 - 2016-09-15 18:43 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys 2016-10-01 14:58 - 2016-09-15 18:43 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll 2016-10-01 14:58 - 2016-09-15 18:42 - 01220608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll 2016-10-01 14:58 - 2016-09-15 18:42 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe 2016-10-01 14:58 - 2016-09-15 18:42 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2016-10-01 14:58 - 2016-09-15 18:42 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys 2016-10-01 14:58 - 2016-09-15 18:41 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.SyncEngine.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Authentication.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Printers.dll 2016-10-01 14:58 - 2016-09-15 18:41 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\NfcRadioMedia.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 02026496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2016-10-01 14:58 - 2016-09-15 18:40 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll 2016-10-01 14:58 - 2016-09-15 18:40 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.UserDeviceAssociation.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 02740224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00418304 _____ C:\WINDOWS\system32\Windows.Perception.Stub.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneBackupHandler.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00295936 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flights.dll 2016-10-01 14:58 - 2016-09-15 18:39 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 01291264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrGidsHandler.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.Phone.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2016-10-01 14:58 - 2016-09-15 18:38 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SerialCommunication.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll 2016-10-01 14:58 - 2016-09-15 18:38 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00743424 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll 2016-10-01 14:58 - 2016-09-15 18:37 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00686592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregcmd.exe 2016-10-01 14:58 - 2016-09-15 18:36 - 00648192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovslegacy.dll 2016-10-01 14:58 - 2016-09-15 18:36 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe 2016-10-01 14:58 - 2016-09-15 18:35 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataExchange.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll 2016-10-01 14:58 - 2016-09-15 18:35 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll 2016-10-01 14:58 - 2016-09-15 18:34 - 00441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll 2016-10-01 14:58 - 2016-09-15 18:34 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll 2016-10-01 14:58 - 2016-09-15 18:34 - 00424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll 2016-10-01 14:58 - 2016-09-15 18:34 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll 2016-10-01 14:58 - 2016-09-15 18:33 - 03753984 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll 2016-10-01 14:58 - 2016-09-15 18:33 - 01004032 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2016-10-01 14:58 - 2016-09-15 18:33 - 00963584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll 2016-10-01 14:58 - 2016-09-15 18:33 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll 2016-10-01 14:58 - 2016-09-15 18:33 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprapi.dll 2016-10-01 14:58 - 2016-09-15 18:32 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2016-10-01 14:58 - 2016-09-15 18:32 - 00634368 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll 2016-10-01 14:58 - 2016-09-15 18:32 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll 2016-10-01 14:58 - 2016-09-15 18:31 - 01912320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll 2016-10-01 14:58 - 2016-09-15 18:31 - 01553408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll 2016-10-01 14:58 - 2016-09-15 18:31 - 01053184 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll 2016-10-01 14:58 - 2016-09-15 18:31 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe 2016-10-01 14:58 - 2016-09-15 18:30 - 01227264 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2016-10-01 14:58 - 2016-09-15 18:30 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll 2016-10-01 14:58 - 2016-09-15 18:30 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CastLaunch.dll 2016-10-01 14:58 - 2016-09-15 18:29 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll 2016-10-01 14:58 - 2016-09-15 18:29 - 01082368 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2016-10-01 14:58 - 2016-09-15 18:29 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll 2016-10-01 14:58 - 2016-09-15 18:29 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2016-10-01 14:58 - 2016-09-15 18:29 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RelPost.exe 2016-10-01 14:58 - 2016-09-15 18:28 - 03288064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2016-10-01 14:58 - 2016-09-15 18:28 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2016-10-01 14:58 - 2016-09-15 18:28 - 00718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll 2016-10-01 14:58 - 2016-09-15 18:28 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 05111296 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 02860032 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 01078784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 00702976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceControl.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\discan.dll 2016-10-01 14:58 - 2016-09-15 18:27 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\manage-bde.exe 2016-10-01 14:58 - 2016-09-15 18:27 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvenotify.exe 2016-10-01 14:58 - 2016-09-15 18:27 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Sens.dll 2016-10-01 14:58 - 2016-09-15 18:26 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2.dll 2016-10-01 14:58 - 2016-09-15 18:26 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2016-10-01 14:58 - 2016-09-15 18:26 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll 2016-10-01 14:58 - 2016-09-15 18:26 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeui.dll 2016-10-01 14:58 - 2016-09-15 18:25 - 00947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_sr.dll 2016-10-01 14:58 - 2016-09-15 18:25 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll 2016-10-01 14:58 - 2016-09-15 18:25 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceAgent.exe 2016-10-01 14:58 - 2016-09-15 18:25 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundMediaPolicy.dll 2016-10-01 14:58 - 2016-09-15 18:24 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll 2016-10-01 14:58 - 2016-09-15 18:23 - 01361408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2016-10-01 14:58 - 2016-09-15 18:23 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll 2016-10-01 14:58 - 2016-09-15 18:23 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll 2016-10-01 14:58 - 2016-09-15 18:23 - 00611328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2016-10-01 14:58 - 2016-09-15 18:23 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 01709056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 01643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 00960000 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 00770560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2016-10-01 14:58 - 2016-09-15 18:22 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll 2016-10-01 14:58 - 2016-09-15 18:21 - 02208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll 2016-10-01 14:58 - 2016-09-15 18:21 - 00971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2016-10-01 14:58 - 2016-09-15 18:21 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2016-10-01 14:58 - 2016-09-15 18:20 - 02424320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll 2016-10-01 14:58 - 2016-09-15 18:20 - 02095616 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2016-10-01 14:58 - 2016-09-15 18:20 - 01710080 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2016-10-01 14:58 - 2016-09-15 18:20 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll 2016-10-01 14:58 - 2016-09-15 18:19 - 03202048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2016-10-01 14:58 - 2016-09-15 18:19 - 01130496 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2016-10-01 14:58 - 2016-09-15 18:19 - 00788992 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2016-10-01 14:58 - 2016-09-15 18:19 - 00730112 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll 2016-10-01 14:58 - 2016-09-15 18:18 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2016-10-01 14:58 - 2016-09-15 18:17 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2016-10-01 14:58 - 2016-09-15 18:16 - 01817088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll 2016-10-01 14:58 - 2016-09-15 18:16 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2016-10-01 14:58 - 2016-09-15 18:16 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\spaceman.exe 2016-10-01 14:58 - 2016-08-06 05:34 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\smphost.dll 2016-10-01 14:58 - 2016-08-05 10:29 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll 2016-10-01 14:57 - 2016-09-15 19:37 - 00590960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2016-10-01 14:57 - 2016-09-15 19:37 - 00496872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2016-10-01 14:57 - 2016-09-15 19:37 - 00402352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll 2016-10-01 14:57 - 2016-09-15 19:29 - 00424640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll 2016-10-01 14:57 - 2016-09-15 19:29 - 00169056 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll 2016-10-01 14:57 - 2016-09-15 19:29 - 00074080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vpci.sys 2016-10-01 14:57 - 2016-09-15 19:27 - 01883784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2016-10-01 14:57 - 2016-09-15 19:27 - 00128352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys 2016-10-01 14:57 - 2016-09-15 19:25 - 00340320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2016-10-01 14:57 - 2016-09-15 19:25 - 00280472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeunlock.exe 2016-10-01 14:57 - 2016-09-15 19:22 - 05722320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2016-10-01 14:57 - 2016-09-15 19:22 - 00433832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll 2016-10-01 14:57 - 2016-09-15 19:21 - 00272720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll 2016-10-01 14:57 - 2016-09-15 19:18 - 06654616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2016-10-01 14:57 - 2016-09-15 19:17 - 04311736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2016-10-01 14:57 - 2016-09-15 19:16 - 07219672 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2016-10-01 14:57 - 2016-09-15 19:15 - 00557408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2016-10-01 14:57 - 2016-09-15 19:15 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2016-10-01 14:57 - 2016-09-15 19:15 - 00223584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2016-10-01 14:57 - 2016-09-15 19:14 - 01415752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2016-10-01 14:57 - 2016-09-15 19:14 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2016-10-01 14:57 - 2016-09-15 19:14 - 00988512 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2016-10-01 14:57 - 2016-09-15 19:14 - 00947552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi 2016-10-01 14:57 - 2016-09-15 19:14 - 00811872 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe 2016-10-01 14:57 - 2016-09-15 19:14 - 00435040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys 2016-10-01 14:57 - 2016-09-15 19:12 - 01472536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2016-10-01 14:57 - 2016-09-15 19:11 - 01990640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2016-10-01 14:57 - 2016-09-15 19:11 - 01300600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2016-10-01 14:57 - 2016-09-15 19:11 - 01066104 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2016-10-01 14:57 - 2016-09-15 19:11 - 00862064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2016-10-01 14:57 - 2016-09-15 19:11 - 00725664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2016-10-01 14:57 - 2016-09-15 19:11 - 00160096 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll 2016-10-01 14:57 - 2016-09-15 19:08 - 05683712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2016-10-01 14:57 - 2016-09-15 19:07 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2016-10-01 14:57 - 2016-09-15 19:07 - 01418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2016-10-01 14:57 - 2016-09-15 19:07 - 00128864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2016-10-01 14:57 - 2016-09-15 19:06 - 00372440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll 2016-10-01 14:57 - 2016-09-15 19:01 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll 2016-10-01 14:57 - 2016-09-15 19:00 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll 2016-10-01 14:57 - 2016-09-15 18:59 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp 2016-10-01 14:57 - 2016-09-15 18:59 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinRtTracing.dll 2016-10-01 14:57 - 2016-09-15 18:58 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll 2016-10-01 14:57 - 2016-09-15 18:58 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll 2016-10-01 14:57 - 2016-09-15 18:58 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll 2016-10-01 14:57 - 2016-09-15 18:58 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SerialCommunication.dll 2016-10-01 14:57 - 2016-09-15 18:57 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll 2016-10-01 14:57 - 2016-09-15 18:57 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll 2016-10-01 14:57 - 2016-09-15 18:57 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ClipboardServer.dll 2016-10-01 14:57 - 2016-09-15 18:56 - 01300480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll 2016-10-01 14:57 - 2016-09-15 18:56 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll 2016-10-01 14:57 - 2016-09-15 18:56 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2016-10-01 14:57 - 2016-09-15 18:56 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00455168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetworkCollectionAgent.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll 2016-10-01 14:57 - 2016-09-15 18:55 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe 2016-10-01 14:57 - 2016-09-15 18:54 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2016-10-01 14:57 - 2016-09-15 18:54 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll 2016-10-01 14:57 - 2016-09-15 18:53 - 00819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll 2016-10-01 14:57 - 2016-09-15 18:52 - 00500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll 2016-10-01 14:57 - 2016-09-15 18:52 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprapi.dll 2016-10-01 14:57 - 2016-09-15 18:52 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2016-10-01 14:57 - 2016-09-15 18:51 - 00762368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll 2016-10-01 14:57 - 2016-09-15 18:50 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pwrshplugin.dll 2016-10-01 14:57 - 2016-09-15 18:49 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.InkControls.dll 2016-10-01 14:57 - 2016-09-15 18:48 - 01321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll 2016-10-01 14:57 - 2016-09-15 18:48 - 01320448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll 2016-10-01 14:57 - 2016-09-15 18:48 - 01112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll 2016-10-01 14:57 - 2016-09-15 18:46 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll 2016-10-01 14:57 - 2016-09-15 18:46 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll 2016-10-01 14:57 - 2016-09-15 18:46 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll 2016-10-01 14:57 - 2016-09-15 18:45 - 02749440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll 2016-10-01 14:57 - 2016-09-15 18:45 - 02642944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2016-10-01 14:57 - 2016-09-15 18:45 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll 2016-10-01 14:57 - 2016-09-15 18:44 - 02153984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll 2016-10-01 14:57 - 2016-09-15 18:44 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.MediaPlayer.dll 2016-10-01 14:57 - 2016-09-15 18:44 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll 2016-10-01 14:57 - 2016-09-15 18:43 - 03520512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe 2016-10-01 14:57 - 2016-09-15 18:43 - 03196416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2016-10-01 14:57 - 2016-09-15 18:43 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToReceiver.dll 2016-10-01 14:57 - 2016-09-15 18:43 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2016-10-01 14:57 - 2016-09-15 18:43 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll 2016-10-01 14:57 - 2016-09-15 18:42 - 00719872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_sr.dll 2016-10-01 14:57 - 2016-09-15 18:42 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundMediaPolicy.dll 2016-10-01 14:57 - 2016-09-15 18:41 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll 2016-10-01 14:57 - 2016-09-15 18:41 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll 2016-10-01 14:57 - 2016-09-15 18:41 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp 2016-10-01 14:57 - 2016-09-15 18:40 - 02138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 01988096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthLEEnum.sys 2016-10-01 14:57 - 2016-09-15 18:40 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll 2016-10-01 14:57 - 2016-09-15 18:40 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2016-10-01 14:57 - 2016-09-15 18:39 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll 2016-10-01 14:57 - 2016-09-15 18:39 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll 2016-10-01 14:57 - 2016-09-15 18:39 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll 2016-10-01 14:57 - 2016-09-15 18:38 - 00773120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2016-10-01 14:57 - 2016-09-15 18:38 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkCollectionAgent.dll 2016-10-01 14:57 - 2016-09-15 18:38 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2016-10-01 14:57 - 2016-09-15 18:38 - 00427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll 2016-10-01 14:57 - 2016-09-15 18:38 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvcext.dll 2016-10-01 14:57 - 2016-09-15 18:38 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll 2016-10-01 14:57 - 2016-09-15 18:38 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll 2016-10-01 14:57 - 2016-09-15 18:37 - 01507840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll 2016-10-01 14:57 - 2016-09-15 18:37 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll 2016-10-01 14:57 - 2016-09-15 18:37 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlancfg.dll 2016-10-01 14:57 - 2016-09-15 18:37 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\biwinrt.dll 2016-10-01 14:57 - 2016-09-15 18:37 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll 2016-10-01 14:57 - 2016-09-15 18:36 - 00719360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys 2016-10-01 14:57 - 2016-09-15 18:36 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll 2016-10-01 14:57 - 2016-09-15 18:36 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2016-10-01 14:57 - 2016-09-15 18:36 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll 2016-10-01 14:57 - 2016-09-15 18:36 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2016-10-01 14:57 - 2016-09-15 18:36 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll 2016-10-01 14:57 - 2016-09-15 18:35 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll 2016-10-01 14:57 - 2016-09-15 18:35 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2016-10-01 14:57 - 2016-09-15 18:35 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll 2016-10-01 14:57 - 2016-09-15 18:35 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll 2016-10-01 14:57 - 2016-09-15 18:35 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\rshx32.dll 2016-10-01 14:57 - 2016-09-15 18:34 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.InkControls.dll 2016-10-01 14:57 - 2016-09-15 18:33 - 00966144 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll 2016-10-01 14:57 - 2016-09-15 18:33 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll 2016-10-01 14:57 - 2016-09-15 18:31 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwrshplugin.dll 2016-10-01 14:57 - 2016-09-15 18:30 - 03776512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2016-10-01 14:57 - 2016-09-15 18:30 - 01639424 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll 2016-10-01 14:57 - 2016-09-15 18:30 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll 2016-10-01 14:57 - 2016-09-15 18:30 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2016-10-01 14:57 - 2016-09-15 18:30 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll 2016-10-01 14:57 - 2016-09-15 18:29 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll 2016-10-01 14:57 - 2016-09-15 18:28 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll 2016-10-01 14:57 - 2016-09-15 18:27 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2016-10-01 14:57 - 2016-09-15 18:27 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll 2016-10-01 14:57 - 2016-09-15 18:27 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAC3ENC.DLL 2016-10-01 14:57 - 2016-09-15 18:25 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll 2016-10-01 14:57 - 2016-09-15 18:25 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2016-10-01 14:57 - 2016-09-15 18:24 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe 2016-10-01 14:57 - 2016-09-15 18:24 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2016-10-01 14:57 - 2016-09-15 18:24 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll 2016-10-01 14:57 - 2016-09-15 18:24 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll 2016-10-01 14:57 - 2016-09-15 18:24 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll 2016-10-01 14:57 - 2016-09-15 18:23 - 04474368 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2016-10-01 14:57 - 2016-09-15 18:23 - 01040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll 2016-10-01 14:57 - 2016-09-15 18:23 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll 2016-10-01 14:57 - 2016-09-15 18:22 - 05611008 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2016-10-01 14:57 - 2016-09-15 18:22 - 00857600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll 2016-10-01 14:57 - 2016-09-15 18:20 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2016-10-01 14:57 - 2016-09-15 18:20 - 00875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2016-10-01 14:57 - 2016-09-15 18:19 - 01424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll 2016-10-01 14:57 - 2016-09-15 18:18 - 01369088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll 2016-10-01 14:57 - 2016-09-15 18:17 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll 2016-10-01 14:57 - 2016-09-15 18:16 - 00886784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll 2016-10-01 14:57 - 2016-09-15 18:16 - 00531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll 2016-10-01 14:57 - 2016-08-06 05:33 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smphost.dll 2016-09-26 15:57 - 2016-09-26 15:57 - 00063231 _____ C:\Users\laura\Downloads\studbesch_B4013B4C87C6C0BCAE9664A0848D0A84.cit-prod-tomcat3.pdf 2016-09-26 15:56 - 2016-09-26 15:56 - 00023501 _____ C:\Users\laura\Downloads\bafoeg_B4013B4C87C6C0BCAE9664A0848D0A84.cit-prod-tomcat3.pdf 2016-09-26 15:47 - 2016-09-26 15:47 - 00063315 _____ C:\Users\laura\Downloads\EinzureichendeUnterlagen (1).pdf 2016-09-26 15:46 - 2016-09-26 15:46 - 00159522 _____ C:\Users\laura\Downloads\BG_Formblatt3_Laura_Carolina_Ramiro_Pires_Manns.pdf 2016-09-26 15:46 - 2016-09-26 15:46 - 00008917 _____ C:\Users\laura\Downloads\BAfoeG_Formblatt3_Walter_Josef_Manns.dgef 2016-09-26 15:42 - 2016-09-26 15:42 - 00123208 _____ C:\Users\laura\Downloads\BG_Anlage1FB1_Laura_Carolina_Ramiro_Pires_Manns.pdf 2016-09-26 15:40 - 2016-09-26 15:40 - 00170607 _____ C:\Users\laura\Downloads\BG_Formblatt1_Laura_Carolina_Ramiro_Pires_Manns.pdf 2016-09-26 15:35 - 2016-09-26 15:35 - 00070011 _____ C:\Users\laura\Downloads\EinzureichendeUnterlagen.pdf 2016-09-26 15:35 - 2016-09-26 15:35 - 00008613 _____ C:\Users\laura\Downloads\bafoeg_Formblatt1_Laura_Carolina_Ramiro_Pires_Manns (3).dgef 2016-09-26 15:25 - 2016-10-11 18:23 - 00004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2016-09-26 15:25 - 2016-10-11 18:22 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-09-26 15:25 - 2016-09-26 15:25 - 00002131 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk 2016-09-26 15:25 - 2016-09-26 15:25 - 00000000 ____D C:\Users\laura\AppData\LocalLow\Adobe 2016-09-26 15:25 - 2016-09-26 15:25 - 00000000 ____D C:\Program Files (x86)\Adobe 2016-09-26 15:24 - 2016-09-26 15:42 - 00000000 ____D C:\ProgramData\Adobe 2016-09-26 15:23 - 2016-09-26 15:25 - 00000000 ____D C:\Users\laura\AppData\Local\Adobe 2016-09-26 14:52 - 2016-09-26 14:52 - 00004053 _____ C:\Users\laura\Downloads\BAfoeG_Anlage1FB1_Laura_Carolina_Ramiro_Pires_Manns (1).dgef 2016-09-26 14:48 - 2016-09-26 14:52 - 00004053 _____ C:\Users\laura\Downloads\BAfoeG_Anlage1FB1_Laura_Carolina_Ramiro_Pires_Manns.dgef 2016-09-26 12:14 - 2016-09-26 12:14 - 00008581 _____ C:\Users\laura\Downloads\bafoeg_Formblatt1_Laura_Carolina_Ramiro_Pires_Manns (2).dgef 2016-09-26 11:12 - 2016-09-26 11:12 - 00008373 _____ C:\Users\laura\Downloads\bafoeg_Formblatt1_Laura_Carolina_Ramiro_Pires_Manns (1).dgef 2016-09-24 17:40 - 2016-09-24 17:40 - 00276560 _____ C:\Users\laura\OneDrive\Dokumente\Orientierungswoche-Oktober-2016_Stundenplan.pdf 2016-09-21 17:20 - 2016-09-21 17:20 - 01525618 _____ C:\Users\laura\Downloads\Selbstauskunft KWG_Palmsanlage 2a.pdf 2016-09-21 17:12 - 2016-09-21 17:12 - 01326246 _____ C:\Users\laura\Downloads\Selbstauskunft DDI_Nägelsbachstr 24.pdf 2016-09-21 16:38 - 2016-09-21 16:38 - 00000000 ____D C:\Users\Default\AppData\Local\AVG 2016-09-21 16:38 - 2016-09-21 16:38 - 00000000 ____D C:\Users\Default User\AppData\Local\AVG 2016-09-20 14:30 - 2016-10-14 18:44 - 00000000 ____D C:\Users\laura\AppData\Roaming\Spotify 2016-09-20 14:30 - 2016-10-14 18:44 - 00000000 ____D C:\Users\laura\AppData\Local\Spotify 2016-09-20 14:30 - 2016-09-20 14:30 - 00356056 _____ (Spotify Ltd) C:\Users\laura\Downloads\SpotifySetup.exe 2016-09-20 14:30 - 2016-09-20 14:30 - 00001857 _____ C:\Users\laura\Desktop\Spotify.lnk 2016-09-20 14:30 - 2016-09-20 14:30 - 00001843 _____ C:\Users\laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2016-09-20 14:30 - 2016-09-20 14:30 - 00000000 ____D C:\Users\laura\AppData\Local\CEF 2016-09-18 16:30 - 2016-09-18 16:35 - 00008704 _____ C:\Users\laura\OneDrive\Dokumente\wohnungsübersicht.xls 2016-09-18 14:22 - 2016-09-18 14:22 - 00007168 _____ C:\Users\laura\OneDrive\Dokumente\wohnungsübersicht.xlt 2016-09-18 14:20 - 2016-09-18 14:21 - 00012398 _____ C:\Users\laura\OneDrive\Dokumente\wohnungsübersicht.ods 2016-09-18 13:51 - 2016-09-18 13:51 - 00000000 ____D C:\Users\laura\AppData\Roaming\OpenOffice 2016-09-16 22:49 - 2016-09-16 22:49 - 626467013 _____ C:\WINDOWS\MEMORY.DMP 2016-09-16 22:49 - 2016-09-16 22:49 - 00416636 _____ C:\WINDOWS\Minidump\091616-13531-01.dmp 2016-09-16 22:49 - 2016-09-16 22:49 - 00000000 ____D C:\WINDOWS\Minidump 2016-09-15 18:33 - 2016-09-15 18:33 - 09135234 _____ C:\Users\laura\Downloads\Unterlagen.zip 2016-09-14 17:18 - 2016-09-14 17:18 - 01472732 _____ C:\Users\laura\Downloads\StudOn-Flyer.pdf 2016-09-14 17:16 - 2016-09-14 17:16 - 00407785 _____ C:\Users\laura\Downloads\StudOn-Erstsemester-Informationsblatt.pdf ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-10-14 18:50 - 2016-07-17 00:51 - 00755244 _____ C:\WINDOWS\system32\perfh007.dat 2016-10-14 18:50 - 2016-07-17 00:51 - 00160506 _____ C:\WINDOWS\system32\perfc007.dat 2016-10-14 18:50 - 2015-07-16 17:54 - 01941712 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-10-14 18:44 - 2016-09-09 13:10 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2016-10-14 18:44 - 2016-09-06 12:51 - 00000306 __RSH C:\ProgramData\ntuser.pol 2016-10-14 18:44 - 2016-09-06 12:28 - 00000000 ___RD C:\Users\laura\OneDrive 2016-10-14 18:44 - 2016-09-06 12:26 - 00000000 __SHD C:\Users\laura\IntelGraphicsProfiles 2016-10-14 18:43 - 2016-09-09 13:15 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-10-14 18:43 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\tracing 2016-10-14 18:43 - 2016-07-16 08:04 - 00786432 _____ C:\WINDOWS\system32\config\BBI 2016-10-14 18:42 - 2016-09-09 13:09 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2016-10-14 18:27 - 2016-09-06 21:09 - 00002198 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-10-14 18:04 - 2016-07-16 13:47 - 00000000 ___HD C:\Program Files\WindowsApps 2016-10-14 18:04 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-10-14 17:58 - 2016-07-16 13:45 - 00000000 ____D C:\WINDOWS\INF 2016-10-14 17:54 - 2015-07-16 17:49 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-10-14 17:53 - 2016-09-09 13:09 - 00224392 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-10-14 17:51 - 2016-07-16 13:47 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs 2016-10-14 17:51 - 2016-07-16 13:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2016-10-14 17:51 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2016-10-14 17:51 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\migwiz 2016-10-14 17:51 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\ShellExperiences 2016-10-14 17:51 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2016-10-14 17:51 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2016-10-12 22:20 - 2016-09-07 14:20 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-10-12 22:18 - 2016-09-07 14:20 - 143495576 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-10-12 22:18 - 2016-07-16 13:36 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-10-12 20:40 - 2016-01-06 11:54 - 00000000 ____D C:\ProgramData\Package Cache 2016-10-12 20:37 - 2016-01-06 11:56 - 00000000 ____D C:\ProgramData\McAfee 2016-10-12 20:37 - 2016-01-06 11:56 - 00000000 ____D C:\Program Files\Common Files\McAfee 2016-10-12 20:35 - 2016-07-16 08:04 - 00032768 _____ C:\WINDOWS\system32\config\ELAM 2016-10-12 20:34 - 2015-07-10 11:05 - 00000000 ____D C:\Users\Default.migrated 2016-10-12 17:40 - 2016-07-16 13:43 - 00783360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll 2016-10-12 17:40 - 2016-07-16 13:42 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Diagnostics.dll 2016-10-07 13:09 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\rescache 2016-10-06 16:12 - 2016-01-06 11:57 - 00000000 ____D C:\ProgramData\Lenovo 2016-10-04 20:23 - 2016-09-06 12:26 - 00000000 ____D C:\Users\laura\AppData\Local\Packages 2016-10-04 20:22 - 2016-09-06 12:42 - 00000000 ____D C:\Users\laura\AppData\Local\AvgSetupLog 2016-10-04 20:22 - 2016-09-06 12:42 - 00000000 ____D C:\ProgramData\Avg 2016-10-04 20:22 - 2016-09-06 12:42 - 00000000 ____D C:\Program Files (x86)\AVG 2016-10-04 20:16 - 2016-09-09 13:11 - 00000000 ____D C:\Users\laura 2016-10-04 19:38 - 2016-09-06 21:09 - 00002271 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-10-03 22:09 - 2016-07-16 13:49 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2016-10-03 22:09 - 2016-07-16 13:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2016-10-02 12:54 - 2016-01-06 11:56 - 00000000 ____D C:\ProgramData\CyberLink 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ___SD C:\WINDOWS\system32\F12 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\SysWOW64\setup 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\setup 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\oobe 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\appraiser 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\Provisioning 2016-10-02 00:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\bcastdvr 2016-10-02 00:47 - 2016-07-16 08:04 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2016-10-02 00:47 - 2016-07-16 08:04 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2016-10-02 00:47 - 2016-07-16 08:04 - 00000000 ____D C:\WINDOWS\system32\Dism 2016-10-01 20:14 - 2016-01-06 11:54 - 00000000 ____D C:\Program Files (x86)\Lenovo 2016-10-01 20:12 - 2016-09-09 13:15 - 00000000 ____D C:\WINDOWS\System32\Tasks\Lenovo 2016-10-01 20:12 - 2016-01-06 11:55 - 00000000 ____D C:\Program Files\Lenovo 2016-10-01 20:12 - 2016-01-06 11:54 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2016-10-01 20:11 - 2016-09-09 13:15 - 00000000 ____D C:\WINDOWS\System32\Tasks\CyberLink 2016-10-01 20:11 - 2016-09-06 12:26 - 00000000 ____D C:\Users\laura\AppData\Local\CyberLink 2016-10-01 20:11 - 2016-01-06 11:55 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2016-10-01 20:11 - 2016-01-06 11:55 - 00000000 ____D C:\ProgramData\SUPPORTDIR 2016-10-01 20:10 - 2016-01-06 11:55 - 00000000 ____D C:\ProgramData\Temp 2016-09-26 15:25 - 2016-09-06 12:26 - 00000000 ____D C:\Users\laura\AppData\Roaming\Adobe 2016-09-14 13:56 - 2016-09-13 17:29 - 00000000 ____D C:\Users\laura\OneDrive\Dokumente\wohnung 2016-09-14 09:21 - 2016-09-09 13:33 - 00000000 ____D C:\Users\laura\AppData\Local\PackageStaging ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2016-09-06 13:52 - 2016-09-06 13:52 - 0000044 _____ () C:\Users\laura\AppData\Roaming\WB.CFG 2016-09-09 13:10 - 2016-09-09 13:10 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Dateien, die verschoben oder gelöscht werden sollten: ==================== C:\Windows\Tasks\{5A14B1A7-7683-8627-7FBC-58746775569D}.job Einige Dateien in TEMP: ==================== C:\Users\laura\AppData\Local\Temp\avgnt.exe C:\Users\laura\AppData\Local\Temp\libeay32.dll C:\Users\laura\AppData\Local\Temp\msvcr120.dll C:\Users\laura\AppData\Local\Temp\sqlite3.dll C:\Users\laura\AppData\Local\Temp\Windows10Upgrade.exe ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-10-03 13:52 ==================== Ende von FRST.txt ============================ |
14.10.2016, 17:53 | #12 |
| Windows 10 bei Klick öffnet sich neues FensterCode:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 13-10-2016 durchgeführt von laura (14-10-2016 18:51:46) Gestartet von C:\Users\laura\Downloads Windows 10 Home Version 1607 (X64) (2016-09-09 11:18:43) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-1616461286-2091979816-1760888700-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1616461286-2091979816-1760888700-503 - Limited - Disabled) Gast (S-1-5-21-1616461286-2091979816-1760888700-501 - Limited - Disabled) laura (S-1-5-21-1616461286-2091979816-1760888700-1001 - Administrator - Enabled) => C:\Users\laura ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 64 Bit HP CIO Components Installer (Version: 21.2.1 - HP Inc.) Hidden Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.020.20039 - Adobe Systems Incorporated) ALPS Touch Pad Driver (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 8.201.1611.248 - Alps Electric) Benutzerhandbücher (x32 Version: 4.0.0.1 - Lenovo) Hidden ByteFence Anti-Malware (HKLM-x32\...\ByteFence) (Version: 2.5.0.0 - Byte Technologies LLC) <==== ACHTUNG Components (x32 Version: 1.0.023.00 - Lenovo) Hidden Genesys USB Mass Storage Device (HKLM-x32\...\{959B7F35-2819-40C5-A0CD-3C53B5FCC935}) (Version: 4.5.0.6.1001 - Genesys Logic) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.143 - Google Inc.) Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1158 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4364 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.5.0.1081 - Intel Corporation) Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1519.7 - Intel Corporation) Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{11D7286D-F28D-45D6-8D7A-92A3BFAAFBE9}) (Version: 17.1.1530.1652 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (x32 Version: 10.1.1.9 - Intel(R) Corporation) Hidden Intel® PROSet/Wireless Software (HKLM-x32\...\{e6f0207e-ac43-48a9-bfff-3d879b45694d}) (Version: 18.12.1 - Intel Corporation) Lenovo EasyCamera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 6.3.9600.11105 - Realtek Semiconductor Corp.) Lenovo Experience Improvement (HKLM\...\LenovoExperienceImprovement) (Version: 2.0.9.0 - Lenovo) Lenovo FusionEngine (HKLM-x32\...\Lenovo FusionEngine) (Version: 1.0.13.0 - Lenovo, Inc.) Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.1.0.4706 - CyberLink Corp.) Lenovo OneKey Recovery (Version: 8.1.0.4706 - CyberLink Corp.) Hidden Lenovo Photo Master (HKLM-x32\...\{BC94C56A-3649-420C-8756-2ADEBE399D33}) (Version: 2.1.5222.01 - CyberLink Corp.) Lenovo Photos (HKLM-x32\...\Lenovo Photos) (Version: 6.0.4 - CEWE Stiftung u Co. KGaA) Lenovo Product Demo (HKLM-x32\...\{8EA60981-2735-458E-9F11-1E8813B278EA}) (Version: 2.0.5 - Lenovo) Lenovo QuickOptimizer (HKLM\...\{8D2C871B-1B9F-45AC-9C43-2BB18089CDFA}) (Version: 1.0.019.00 - Lenovo) Lenovo Solution Center (HKLM\...\{F925868A-2F2C-414B-A5A7-C613039CE9E4}) (Version: 3.1.001.00 - Lenovo) Lenovo System Interface Foundation (HKLM\...\{C2E5CA37-C862-4A69-AC6D-24F450A20C16}) (Version: 1.0.066.01 - Lenovo) LenovoUtility (HKLM-x32\...\InstallShield_{6ADA7E88-8D16-4D0D-BC90-2B93AC5E56DA}) (Version: 3.0.0.4 - Lenovo) LenovoUtility (x32 Version: 3.0.0.4 - Lenovo) Hidden Malwarebytes Anti-Malware Version 1.75.0.1300 (HKLM-x32\...\Malwarebytes' Anti-Malware_is1) (Version: 1.75.0.1300 - Malwarebytes Corporation) Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Metric Collection SDK (x32 Version: 1.1.0012.00 - Lenovo Group Limited) Hidden Metric Collection SDK 35 (x32 Version: 1.2.0010.00 - Lenovo Group Limited) Hidden Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4693.1005 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) OpenOffice 4.1.1 (HKLM-x32\...\{ACD0FFF9-6B35-43C1-82DB-9FF6990E8602}) (Version: 4.11.9775 - Apache Software Foundation) REACHit (HKLM-x32\...\{4532E4C5-C84D-4040-A044-ECFCC5C6995B}) (Version: 2.5.005.12 - Lenovo) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7606 - Realtek Semiconductor Corp.) Spotify (HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\...\Spotify) (Version: 1.0.39.157.g674ae377 - Spotify AB) User Manuals (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 4.0.0.1 - Lenovo) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-1616461286-2091979816-1760888700-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\laura\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\FileCoAuth.exe (Microsoft Corporation) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {078E4E48-C85F-49D2-9293-31D3D30CCE45} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2015-08-07] (Lenovo) Task: {32FE7AA9-304B-49CE-A275-A4C173162C6B} - System32\Tasks\ByteFence => C:\Program Files\ByteFence\ByteFence.exe [2016-08-27] (Byte Technologies LLC) <==== ACHTUNG Task: {40CD5750-AE24-481E-9A5B-B7245E49019C} - System32\Tasks\Lenovo\Experience Improvement => C:\Program Files\Lenovo\ExperienceImprovement\LenovoExperienceImprovement.exe [2016-09-06] (Lenovo) Task: {460009F0-0DAB-4A68-80E8-2C6AC5F56E1F} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2015-07-08] (Lenovo) Task: {4FFCAA27-52EB-49C7-B259-7A1F5B75D4BD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-09-06] (Google Inc.) Task: {618535C3-8481-48E1-B0F9-928BB784CE11} - System32\Tasks\Microsoft\Windows\PLA\LSC Memory => Rundll32.exe C:\Windows\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)" Task: {73C1EC18-0964-44AB-B365-6D7F78D78998} - System32\Tasks\{5A14B1A7-7683-8627-7FBC-58746775569D} => C:\Users\laura\AppData\Roaming\{DA2FE~1\Sync.exe <==== ACHTUNG Task: {843C1C5F-6FAD-42D2-9A10-432FBEC023F6} - System32\Tasks\CyberLink\Photo Master Gadget startup => C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoMasterWorker.exe [2016-04-22] (CyberLink Corp.) Task: {941B0163-8F6A-48C1-AF0E-C194BF9EC0BE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16] (Adobe Systems Incorporated) Task: {98ADE326-A3E2-4FFD-837A-D15C4C83FAF9} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [2015-08-07] (Lenovo) Task: {C3541FA7-1F2B-4175-A751-789159A4E26A} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_TVSUUpdateTask => add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32 Task: {CB3D2FF7-DA71-44E5-A746-07F9FF947067} - System32\Tasks\Lenovo\REACHit Agent Startup => C:\Program Files (x86)\Lenovo\REACHit\REACHitAgent.exe [2016-05-18] (Lenovo) Task: {D2607D4E-47EC-4C4F-A05A-BF67C7B222C5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-09-06] (Google Inc.) Task: {D38A42EF-F236-413B-856B-F4E4CE9DCB78} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\laura\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe [2016-09-07] (Microsoft Corporation) Task: {D8BC26EB-E36D-4EA0-9CB9-90C3591B0D3D} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => Sc.exe START ImControllerService Task: {F61D5921-746A-47D5-BFB2-BE820E08ED3C} - System32\Tasks\Lenovo\REACHit Agent Update => C:\Program Files (x86)\Lenovo\REACHit\REACHitAgent.exe [2016-05-18] (Lenovo) Task: {FA45C8C6-B86A-4C0E-BCA8-66B95603D9C6} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2015-08-07] () (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\{5A14B1A7-7683-8627-7FBC-58746775569D}.job => ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-10-01 14:58 - 2016-09-15 19:25 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-01-06 11:54 - 2015-08-19 04:59 - 00058296 _____ () C:\ProgramData\LenovoTransition\Server\x64\dptf.dll 2016-01-06 11:54 - 2015-08-21 08:43 - 00043960 _____ () C:\ProgramData\LenovoTransition\Server\x64\EnableAutoRotation.dll 2016-10-01 14:58 - 2016-09-15 19:25 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2016-09-09 13:35 - 2016-09-09 13:35 - 01864384 _____ () C:\Users\laura\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\amd64\ClientTelemetry.dll 2016-09-06 12:24 - 2016-09-06 12:24 - 00402912 _____ () C:\WINDOWS\system32\igfxTray.exe 2016-09-13 22:02 - 2016-09-07 06:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2016-10-12 20:38 - 2016-10-05 11:35 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2016-10-12 20:38 - 2016-10-05 11:21 - 09760256 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-10-12 20:38 - 2016-10-05 11:13 - 01401344 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-10-12 20:38 - 2016-10-05 11:13 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2016-10-12 20:38 - 2016-10-05 11:13 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 2016-10-12 20:38 - 2016-10-05 11:13 - 02424832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-10-12 20:38 - 2016-10-05 11:14 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-09-28 22:33 - 2016-09-28 22:34 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2016-09-28 22:33 - 2016-09-28 22:34 - 00178176 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2016-09-28 22:33 - 2016-09-28 22:34 - 35250688 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.190.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2016-01-06 11:55 - 2016-01-06 11:55 - 00791848 _____ () C:\Program Files\Lenovo\LenovoUtility\utility.exe 2016-01-06 11:55 - 2016-01-06 11:55 - 00097048 _____ () C:\Program Files\Lenovo\LenovoUtility\kbdhook.dll 2016-10-14 18:44 - 2016-10-14 18:44 - 00254280 _____ () C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe 2016-10-14 18:25 - 2016-10-14 18:44 - 00565064 _____ () C:\Program Files\ByteFence\rtop\bin\rtop_bg.exe 2016-01-06 12:15 - 2015-09-10 00:01 - 00134208 _____ () C:\Program Files\Realtek\Audio\HDA\FMAPP.exe 2016-10-04 19:38 - 2016-09-25 08:02 - 02279528 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\libglesv2.dll 2016-10-04 19:38 - 2016-09-25 08:02 - 00107112 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\libegl.dll 2016-07-16 13:42 - 2016-07-16 13:42 - 00236488 _____ () c:\windows\system32\WerEtw.dll 2016-09-09 13:35 - 2016-09-09 13:35 - 01383616 _____ () C:\Users\laura\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\ClientTelemetry.dll 2016-09-09 13:35 - 2016-09-09 13:35 - 00118976 _____ () C:\Users\laura\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\FileSyncViews.dll 2016-09-20 14:30 - 2016-10-12 20:38 - 51889264 _____ () C:\Users\laura\AppData\Roaming\Spotify\libcef.dll 2016-09-20 14:30 - 2016-10-12 20:38 - 01803888 _____ () C:\Users\laura\AppData\Roaming\Spotify\libglesv2.dll 2016-09-20 14:30 - 2016-10-12 20:38 - 00086128 _____ () C:\Users\laura\AppData\Roaming\Spotify\libegl.dll 2016-01-06 11:56 - 2015-02-12 17:02 - 00224696 _____ () C:\Program Files (x86)\Lenovo\CCSDK\SDKClient.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: ========================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2015-07-10 13:04 - 2016-10-14 18:44 - 00002024 ____A C:\WINDOWS\system32\Drivers\etc\hosts 0.0.0.0 0.0.0.0 # fix for traceroute and netstat display anomaly 0.0.0.0 tracking.opencandy.com.s3.amazonaws.com 0.0.0.0 media.opencandy.com 0.0.0.0 cdn.opencandy.com 0.0.0.0 tracking.opencandy.com 0.0.0.0 api.opencandy.com 0.0.0.0 api.recommendedsw.com 0.0.0.0 installer.betterinstaller.com 0.0.0.0 installer.filebulldog.com 0.0.0.0 d3oxtn1x3b8d7i.cloudfront.net 0.0.0.0 inno.bisrv.com 0.0.0.0 nsis.bisrv.com 0.0.0.0 cdn.file2desktop.com 0.0.0.0 cdn.goateastcach.us 0.0.0.0 cdn.guttastatdk.us 0.0.0.0 cdn.inskinmedia.com 0.0.0.0 cdn.insta.oibundles2.com 0.0.0.0 cdn.insta.playbryte.com 0.0.0.0 cdn.llogetfastcach.us 0.0.0.0 cdn.montiera.com 0.0.0.0 cdn.msdwnld.com 0.0.0.0 cdn.mypcbackup.com 0.0.0.0 cdn.ppdownload.com 0.0.0.0 cdn.riceateastcach.us 0.0.0.0 cdn.shyapotato.us 0.0.0.0 cdn.solimba.com 0.0.0.0 cdn.tuto4pc.com 0.0.0.0 cdn.appround.biz 0.0.0.0 cdn.bigspeedpro.com 0.0.0.0 cdn.bispd.com Da befinden sich 4 zusätzliche Einträge. ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\laura\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\{e9f5678c-3468-4dce-b59b-8e6ed6a6fd7f}.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{3BC81711-1A87-43D3-85FA-144043E6361A}] => (Allow) C:\Users\laura\AppData\Local\Chromium\Application\chrome.exe FirewallRules: [{AAFA20E7-0463-438C-B6C5-CAB8853DD63E}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{5D5A58FF-E841-4136-962C-83211EBA3F24}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe FirewallRules: [{00DE2E24-87E0-4918-9F8E-492FA349A3F8}] => (Allow) C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe FirewallRules: [TCP Query User{2A126811-3611-471D-AE26-35C398271E1E}C:\users\laura\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\laura\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{C5B9287B-4FF2-4401-BB66-CCF87B787D8F}C:\users\laura\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\laura\appdata\roaming\spotify\spotify.exe FirewallRules: [{DDE58511-BC69-4ECD-A602-DA59BFA78CBD}] => (Allow) C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoPlus.exe FirewallRules: [{A5CDF65A-D6E3-4F36-95A9-F47394A47794}] => (Allow) C:\Program Files (x86)\Lenovo\Lenovo Photo Master\subsys\AdvPhotoEditor\PhotoDirector5.exe FirewallRules: [{484208D8-07FC-43B8-A532-795E0A0F6375}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Wiederherstellungspunkte ========================= ACHTUNG: Systemwiederherstellung ist deaktiviert ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (10/14/2016 06:50:50 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm FRST64.exe, Version 10.10.2016.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1cac Startzeit: 01d2263b01a5eab6 Beendigungszeit: 3 Anwendungspfad: C:\Users\laura\Downloads\FRST64.exe Berichts-ID: 5913a6b2-922e-11e6-9be3-54ee75895474 Vollständiger Name des fehlerhaften Pakets: Auf das fehlerhafte Paket bezogene Anwendungs-ID: Error: (10/14/2016 06:50:38 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm FRST64.exe, Version 10.10.2016.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1a20 Startzeit: 01d2263b0071bba5 Beendigungszeit: 6 Anwendungspfad: C:\Users\laura\Downloads\FRST64.exe Berichts-ID: 4367edcb-922e-11e6-9be3-54ee75895474 Vollständiger Name des fehlerhaften Pakets: Auf das fehlerhafte Paket bezogene Anwendungs-ID: Error: (10/14/2016 06:29:50 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: pmropn.exe, Version: 1.3.337.376, Zeitstempel: 0x571a7ffa Name des fehlerhaften Moduls: pmropn.exe, Version: 1.3.337.376, Zeitstempel: 0x571a7ffa Ausnahmecode: 0xc0000409 Fehleroffset: 0x0016ce41 ID des fehlerhaften Prozesses: 0x1df0 Startzeit der fehlerhaften Anwendung: 0x01d22637e97e06e2 Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\PremierOpinion\pmropn.exe Pfad des fehlerhaften Moduls: C:\Program Files (x86)\PremierOpinion\pmropn.exe Berichtskennung: 50160b99-d50a-477c-9bbf-bfc2ee6d4103 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (10/14/2016 06:26:58 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: pmropn.exe, Version: 1.3.337.341, Zeitstempel: 0x53f256be Name des fehlerhaften Moduls: pmropn.exe, Version: 1.3.337.341, Zeitstempel: 0x53f256be Ausnahmecode: 0xc0000005 Fehleroffset: 0x000c223c ID des fehlerhaften Prozesses: 0x1a24 Startzeit der fehlerhaften Anwendung: 0x01d226378612dbaf Pfad der fehlerhaften Anwendung: c:\program files (x86)\premieropinion\pmropn.exe Pfad des fehlerhaften Moduls: c:\program files (x86)\premieropinion\pmropn.exe Berichtskennung: a2e21c7d-4b5c-4bb2-a1f2-dee36a997210 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (10/14/2016 06:25:19 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: Die Open-Prozedur für den Dienst "BITS" in der DLL "C:\Windows\System32\bitsperf.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode. Error: (10/11/2016 08:32:14 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: ReiGuard.exe, Version: 2.0.1.3, Zeitstempel: 0x57c84ea6 Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.14393.206, Zeitstempel: 0x57dac931 Ausnahmecode: 0xc0000374 Fehleroffset: 0x00000000000f73f3 ID des fehlerhaften Prozesses: 0xad4 Startzeit der fehlerhaften Anwendung: 0x01d223d74fc7d139 Pfad der fehlerhaften Anwendung: C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll Berichtskennung: 1b1ef60d-ddd7-4cee-bab8-2085971dfb27 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (10/09/2016 11:13:00 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-0TG2UTJ) Description: Bei der Aktivierung der App „Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (10/08/2016 06:21:20 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: mcvulctr.exe, Version: 4.0.9022.0, Zeitstempel: 0x571de37b Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.14393.206, Zeitstempel: 0x57dac931 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000003c12b ID des fehlerhaften Prozesses: 0x1464 Startzeit der fehlerhaften Anwendung: 0x01d2208add38e5fd Pfad der fehlerhaften Anwendung: c:\PROGRA~1\mcafee\vul\mcvulctr.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll Berichtskennung: 87c85550-1727-4b22-8a60-1a116f9b0399 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (10/08/2016 12:26:05 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-0TG2UTJ) Description: Bei der Aktivierung der App „Microsoft.WindowsAlarms_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (10/08/2016 12:26:05 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-0TG2UTJ) Description: Bei der Aktivierung der App „microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Systemfehler: ============= Error: (10/14/2016 06:44:14 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} und der APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden. Error: (10/14/2016 06:24:55 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "MBAMService" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann die angegebene Datei nicht finden. Error: (10/14/2016 06:24:53 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} und der APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden. Error: (10/14/2016 06:13:19 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} und der APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden. Error: (10/14/2016 06:12:37 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT) Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet. Modulpfad: C:\WINDOWS\System32\IWMSSvc.dll Error: (10/14/2016 06:12:37 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT) Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet. Modulpfad: C:\WINDOWS\System32\IWMSSvc.dll Error: (10/14/2016 06:12:35 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT) Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet. Modulpfad: C:\WINDOWS\System32\IWMSSvc.dll Error: (10/14/2016 06:12:34 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Der Versuch des Dienststeuerungs-Managers, nach dem unerwarteten Beenden des Dienstes "Windows Search" Korrekturmaßnahmen (Neustart des Diensts) durchzuführen, ist fehlgeschlagen. Fehler: Es wird bereits eine Instanz des Dienstes ausgeführt. Error: (10/14/2016 06:12:04 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Rapid Storage Technology" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (10/14/2016 06:12:04 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "CCSDK" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i5-6200U CPU @ 2.30GHz Prozentuale Nutzung des RAM: 62% Installierter physikalischer RAM: 3890.05 MB Verfügbarer physikalischer RAM: 1459.94 MB Summe virtueller Speicher: 7218.05 MB Verfügbarer virtueller Speicher: 4432.34 MB ==================== Laufwerke ================================ Drive c: (Windows) (Fixed) (Total:97.2 GB) (Free:61.57 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)] ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 119.2 GB) (Disk ID: F64C892E) |
15.10.2016, 18:16 | #13 |
/// TB-Ausbilder /// Anleitungs-Guru | Windows 10 bei Klick öffnet sich neues Fenster OK, so geht's weiter: Schritt 1 Drücke bitte die + R Taste und schreibe notepad in das Ausführen Fenster. Klicke auf OK und kopiere nun den Text aus der Codebox in das leere Textdokument: Code:
ATTFilter CloseProcesses: HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\...\Run: [Chromium] => c:\users\laura\appdata\local\chromium\application\chrome.exe [1068544 2016-03-18] (The Chromium Authors) c:\users\laura\appdata\local\chromium ManualProxies: 2016-10-14 18:20 - 2016-10-14 18:44 - 00000000 ____D C:\Program Files\ByteFence 2016-10-14 18:20 - 2016-10-14 18:20 - 00003454 _____ C:\WINDOWS\System32\Tasks\ByteFence C:\Windows\Tasks\{5A14B1A7-7683-8627-7FBC-58746775569D}.job Task: {32FE7AA9-304B-49CE-A275-A4C173162C6B} - System32\Tasks\ByteFence => C:\Program Files\ByteFence\ByteFence.exe [2016-08-27] (Byte Technologies LLC) C:\Users\laura\AppData\Roaming\{DA2FE~1 Task: {73C1EC18-0964-44AB-B365-6D7F78D78998} - System32\Tasks\{5A14B1A7-7683-8627-7FBC-58746775569D} => C:\Users\laura\AppData\Roaming\{DA2FE~1\Sync.exe FirewallRules: [{3BC81711-1A87-43D3-85FA-144043E6361A}] => (Allow) C:\Users\laura\AppData\Local\Chromium\Application\chrome.exe CMD: dir "%Appdata%" CMD: dir "%LocalAppdata%" EmptyTemp:
Jetzt bitte Suchscan durchführen: Schritt 2 ESET Online Scanner
Schritt 3 Bitte starte FRST erneut, markiere auch die checkbox und drücke auf Untersuchen. Bitte poste mir den Inhalt der beiden Logs die erstellt werden.
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
17.10.2016, 18:45 | #14 |
| Windows 10 bei Klick öffnet sich neues FensterCode:
ATTFilter Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version: 16-10-2016 durchgeführt von laura (17-10-2016 19:40:06) Run:1 Gestartet von C:\Users\laura\Downloads Geladene Profile: laura (Verfügbare Profile: laura) Start-Modus: Normal ============================================== fixlist Inhalt: ***************** CloseProcesses: HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\...\Run: [Chromium] => c:\users\laura\appdata\local\chromium\application\chrome.exe [1068544 2016-03-18] (The Chromium Authors) c:\users\laura\appdata\local\chromium ManualProxies: 2016-10-14 18:20 - 2016-10-14 18:44 - 00000000 ____D C:\Program Files\ByteFence 2016-10-14 18:20 - 2016-10-14 18:20 - 00003454 _____ C:\WINDOWS\System32\Tasks\ByteFence C:\Windows\Tasks\{5A14B1A7-7683-8627-7FBC-58746775569D}.job Task: {32FE7AA9-304B-49CE-A275-A4C173162C6B} - System32\Tasks\ByteFence => C:\Program Files\ByteFence\ByteFence.exe [2016-08-27] (Byte Technologies LLC) C:\Users\laura\AppData\Roaming\{DA2FE~1 Task: {73C1EC18-0964-44AB-B365-6D7F78D78998} - System32\Tasks\{5A14B1A7-7683-8627-7FBC-58746775569D} => C:\Users\laura\AppData\Roaming\{DA2FE~1\Sync.exe FirewallRules: [{3BC81711-1A87-43D3-85FA-144043E6361A}] => (Allow) C:\Users\laura\AppData\Local\Chromium\Application\chrome.exe CMD: dir "%Appdata%" CMD: dir "%LocalAppdata%" EmptyTemp: ***************** Prozess erfolgreich geschlossen. HKU\S-1-5-21-1616461286-2091979816-1760888700-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Chromium => Wert erfolgreich entfernt c:\users\laura\appdata\local\chromium => erfolgreich verschoben HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies\\ => Wert erfolgreich entfernt C:\Program Files\ByteFence => erfolgreich verschoben "C:\WINDOWS\System32\Tasks\ByteFence" => nicht gefunden. C:\Windows\Tasks\{5A14B1A7-7683-8627-7FBC-58746775569D}.job => erfolgreich verschoben HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{32FE7AA9-304B-49CE-A275-A4C173162C6B} => Schlüssel nicht gefunden. C:\WINDOWS\System32\Tasks\ByteFence => nicht gefunden. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ByteFence => Schlüssel nicht gefunden. "C:\Users\laura\AppData\Roaming\{DA2FE~1" => nicht gefunden. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{73C1EC18-0964-44AB-B365-6D7F78D78998}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{73C1EC18-0964-44AB-B365-6D7F78D78998}" => Schlüssel erfolgreich entfernt C:\WINDOWS\System32\Tasks\{5A14B1A7-7683-8627-7FBC-58746775569D} => erfolgreich verschoben "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{5A14B1A7-7683-8627-7FBC-58746775569D}" => Schlüssel erfolgreich entfernt HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3BC81711-1A87-43D3-85FA-144043E6361A} => Wert erfolgreich entfernt ========= dir "%Appdata%" ========= Datentr„ger in Laufwerk C: ist Windows Volumeseriennummer: E8C4-84D8 Verzeichnis von C:\Users\laura\AppData\Roaming 14.10.2016 18:22 <DIR> . 14.10.2016 18:22 <DIR> .. 26.09.2016 15:25 <DIR> Adobe 01.10.2016 20:11 <DIR> CyberLink 06.09.2016 12:26 <DIR> Intel 06.09.2016 12:28 <DIR> Intel Corporation 06.10.2016 16:11 <DIR> Lenovo 06.09.2016 12:36 <DIR> LSC 06.09.2016 12:28 <DIR> Macromedia 14.10.2016 18:22 <DIR> Malwarebytes 06.09.2016 12:56 <DIR> Mozilla 18.09.2016 13:51 <DIR> OpenOffice 07.09.2016 13:37 <DIR> Skype 17.10.2016 18:38 <DIR> Spotify 06.09.2016 13:52 44 WB.CFG 1 Datei(en), 44 Bytes 14 Verzeichnis(se), 65.586.405.376 Bytes frei ========= Ende von CMD: ========= ========= dir "%LocalAppdata%" ========= Datentr„ger in Laufwerk C: ist Windows Volumeseriennummer: E8C4-84D8 Verzeichnis von C:\Users\laura\AppData\Local 17.10.2016 19:40 <DIR> . 17.10.2016 19:40 <DIR> .. 26.09.2016 15:25 <DIR> Adobe 06.09.2016 12:44 <DIR> Avg 04.10.2016 20:22 <DIR> AvgSetupLog 20.09.2016 14:30 <DIR> CEF 06.09.2016 12:28 <DIR> Comms 11.09.2016 11:46 <DIR> ConnectedDevicesPlatform 01.10.2016 20:11 <DIR> CyberLink 11.10.2016 17:47 <DIR> Diagnostics 06.09.2016 12:27 <DIR> Downloaded Installations 11.10.2016 17:47 <DIR> ElevatedDiagnostics 06.09.2016 22:20 <DIR> Google 06.09.2016 21:00 <DIR> Lenovo 11.10.2016 17:41 <DIR> Microsoft 06.09.2016 12:41 <DIR> MicrosoftEdge 06.09.2016 22:14 <DIR> NetworkTiles 04.10.2016 20:23 <DIR> Packages 14.09.2016 09:21 <DIR> PackageStaging 06.09.2016 12:46 <DIR> Programs 06.09.2016 12:26 <DIR> Publishers 17.10.2016 18:38 <DIR> Spotify 17.10.2016 19:40 <DIR> Temp 06.09.2016 12:26 <DIR> TileDataLayer 06.09.2016 12:26 <DIR> VirtualStore 0 Datei(en), 0 Bytes 25 Verzeichnis(se), 65.586.372.608 Bytes frei ========= Ende von CMD: ========= =========== EmptyTemp: ========== BITS transfer queue => 294511 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 24410568 B Java, Flash, Steam htmlcache => 610 B Windows/system/drivers => 26123890 B Edge => 46826400 B Chrome => 403215676 B Firefox => 0 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 21930 B NetworkService => 19188 B laura => 93983556 B RecycleBin => 6757 B EmptyTemp: => 567.3 MB temporäre Dateien entfernt. ================================ Das System musste neu gestartet werden. ==== Ende von Fixlog 19:40:17 ==== |
18.10.2016, 16:59 | #15 |
/// TB-Ausbilder /// Anleitungs-Guru | Windows 10 bei Klick öffnet sich neues Fenster Und gleich weiter mit Schritt 2...
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
Themen zu Windows 10 bei Klick öffnet sich neues Fenster |
fenster, klick, leere, leeren, neues, neues fenster, seite, werbung, windows, windows 10, öffnet |