ich komm da nicht mehr raus. ..
wenn ich msconfig eingebe passiert nix
ok .. habs raus... startet normal. .. ich schick dann die frt nocheinmal
Code:
Alles auswählen Aufklappen ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x86) Version: 01-01-2017
durchgeführt von ms (Administrator) auf DESKTOP-TGSB6RT (06-01-2017 12:01:18)
Gestartet von E:\
Geladene Profile: ms (Verfügbare Profile: defaultuser0 & ms)
Platform: Microsoft Windows 10 Pro Version 1607 (X86) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Andrea Electronics Corporation) C:\Windows\System32\AEADISRV.EXE
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\setup\instup.exe
() C:\Program Files\Hardcopy\hcdll2_ex_Win32.exe
(Microsoft Corporation) C:\Windows\System32\backgroundTaskHost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_1.3.0.0_x86__8wekyb3d8bbwe\Microsoft.StickyNotes.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\asulaunch.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x86__kzf8qxf38zg5c\SkypeHost.exe
(Microsoft Corporation) C:\Windows\System32\backgroundTaskHost.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPStart.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Oberthur Technologies) C:\Program Files\Oberthur Technologies\AWP\OcsCertSynchronizer.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(VoipConnect) C:\Program Files\VoipConnect.com\VoipConnect\VoipConnect.exe
(sw4you) C:\Program Files\Hardcopy\hardcopy.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgentUserBroker.exe
==================== Registry (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [SynTPStart] => C:\Program Files\Synaptics\SynTP\SynTPStart.exe [102400 2007-09-15] (Synaptics, Inc.)
HKLM\...\Run: [QlbCtrl.exe] => C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [287800 2009-11-11] ( Hewlett-Packard Development Company, L.P.)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [Certificate Synchronizer] => C:\Program Files\Oberthur Technologies\AWP\OcsCertSynchronizer.exe [86528 2013-12-11] (Oberthur Technologies)
HKLM\...\Run: [SoundMAXPnP] => C:\Program Files\Analog Devices\Core\smax4pnp.exe [1183744 2007-02-21] (Analog Devices, Inc.)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES/MALWAREBYTES/ANTI-MALWARE\mbamtray.exe [2776528 2016-12-14] (Malwarebytes)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [9080768 2017-01-05] (AVAST Software)
Winlogon\Notify\ScCertProp: wlnotify.dll [X]
HKU\S-1-5-21-1255615618-1242680333-4154777488-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [6868696 2016-08-26] (Piriform Ltd)
HKU\S-1-5-21-1255615618-1242680333-4154777488-1001\...\Run: [VoipConnect] => C:\Program Files\VoipConnect.com\VoipConnect\VoipConnect.exe [38429792 2016-12-05] (VoipConnect)
HKU\S-1-5-21-1255615618-1242680333-4154777488-1001\...\Winlogon: [Shell] explorer.exe,"C:\Users\ms\AppData\Roaming\assembliesbckp.exe" <==== ACHTUNG
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2017-01-05] (AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Hardcopy.LNK [2016-12-12]
ShortcutTarget: Hardcopy.LNK -> C:\Program Files\Hardcopy\hardcopy.exe (sw4you)
BootExecute: autocheck autochk * aswBoot.exe /M:c0481c9 /dir:"C:\Program Files\AVAST Software\Avast"
GroupPolicy: Beschränkung ? <======= ACHTUNG
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{41473946-22be-44ae-b33f-b20026900a39}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{bbbf93ff-9366-4c55-9a2b-55f0e0be0617}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKU\S-1-5-21-1255615618-1242680333-4154777488-1001\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.de
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1255615618-1242680333-4154777488-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_111\bin\ssv.dll [2016-12-18] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-12-18] (Oracle Corporation)
FireFox:
========
FF DefaultProfile: 05qspcpa.default
FF ProfilePath: C:\Users\ms\AppData\Roaming\Mozilla\Firefox\Profiles\05qspcpa.default [2017-01-06]
FF NewTab: Mozilla\Firefox\Profiles\05qspcpa.default -> www.google.de
FF DefaultSearchUrl: Mozilla\Firefox\Profiles\05qspcpa.default -> hxxps://search.avast.com/AV772/search/web?q={searchTerms}
FF SearchEngineOrder.1: Mozilla\Firefox\Profiles\05qspcpa.default -> Avast Search
FF Homepage: Mozilla\Firefox\Profiles\05qspcpa.default -> www.google.de
FF Keyword.URL: Mozilla\Firefox\Profiles\05qspcpa.default -> hxxps://search.avast.com/AV772/search/web?q={searchTerms}
FF Extension: (Firebug) - C:\Users\ms\AppData\Roaming\Mozilla\Firefox\Profiles\05qspcpa.default\Extensions\firebug@software.joehewitt.com.xpi [2016-10-11]
FF Extension: (FirePHP) - C:\Users\ms\AppData\Roaming\Mozilla\Firefox\Profiles\05qspcpa.default\Extensions\FirePHPExtension-Build@firephp.org.xpi [2016-04-27]
FF Extension: (Button Snip Dies! für eBay) - C:\Users\ms\AppData\Roaming\Mozilla\Firefox\Profiles\05qspcpa.default\Extensions\{aab35b56-0206-4472-9993-9cb5c09bb722} [2016-12-11]
FF Extension: (Bitdefender QuickScan) - C:\Users\ms\AppData\Roaming\Mozilla\Firefox\Profiles\05qspcpa.default\Extensions\{e001c731-5e37-4538-a5cb-8168736a2360} [2016-12-11]
FF HKLM\...\Firefox\Extensions: [PKCS11_Firefox@oberthur.com] - C:\Program Files\Oberthur Technologies\AWP\Firefox\Extension\PKCS11_Firefox@oberthur.com.xpi
FF Extension: (Oberthur Technologies PKCS#11 Module Loader) - C:\Program Files\Oberthur Technologies\AWP\Firefox\Extension\PKCS11_Firefox@oberthur.com.xpi [2013-11-28] [ist nicht signiert]
FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2017-01-05]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF [2017-01-05]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_24_0_0_186.dll [2017-01-01] ()
FF Plugin: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-12-18] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-12-18] (Oracle Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-10-01] (Adobe Systems Inc.)
==================== Dienste (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2017-01-05] (AVAST Software)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [3381200 2016-12-14] (Malwarebytes)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [1887272 2016-09-15] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [271496 2016-07-16] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [84928 2016-07-16] (Microsoft Corporation)
===================== Treiber (Nicht auf der Ausnahmeliste) ======================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [34008 2017-01-05] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [35096 2017-01-05] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [92256 2017-01-05] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [91232 2017-01-05] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [60424 2017-01-05] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [735488 2017-01-05] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [433768 2017-01-05] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [118664 2017-01-05] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [224752 2017-01-05] (AVAST Software)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae.sys [59968 2016-12-14] ()
R0 giveio; C:\Windows\System32\giveio.sys [5248 1996-04-03] () [Datei ist nicht signiert]
R3 GTIPCI21; C:\Windows\system32\DRIVERS\gtipci21.sys [97280 2007-05-09] (Texas Instruments)
R2 MBAMChameleon; C:\Windows\system32\drivers\MBAMChameleon.sys [153024 2017-01-04] (Malwarebytes)
S3 MBAMProtection; C:\Windows\system32\drivers\mbam.sys [39360 2017-01-06] (Malwarebytes)
R0 MBAMSwissArmy; C:\Windows\System32\drivers\MBAMSwissArmy.sys [219072 2017-01-06] (Malwarebytes)
S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [62976 2016-07-16] ()
R3 netwlv32; C:\Windows\System32\drivers\netwlv32.sys [6637056 2016-07-16] (Intel Corporation)
S3 SCR3XX2K; C:\Windows\system32\DRIVERS\SCR3XX2K.sys [63104 2015-02-17] (Identiv)
R0 speedfan; C:\Windows\System32\speedfan.sys [25240 2011-03-18] (Almico Software)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [37912 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [244576 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [100192 2016-07-16] (Microsoft Corporation)
R3 WUDFWpdMtp; C:\Windows\system32\DRIVERS\WUDFRd.sys [161280 2016-07-16] (Microsoft Corporation)
S0 ElbyVCD; system32\DRIVERS\ElbyVCD.sys [X]
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2017-01-06 10:35 - 2017-01-06 10:35 - 00000597 _____ C:\Users\ms\Desktop\JRT.txt
2017-01-06 10:34 - 2017-01-06 12:01 - 00000000 ____D C:\FRST
2017-01-06 10:33 - 2017-01-06 10:34 - 00000000 ___HD C:\$WINDOWS.~BT
2017-01-06 09:18 - 2017-01-06 09:19 - 00000000 _____ C:\Recovery.txt
2017-01-06 02:22 - 2017-01-06 02:22 - 00005962 _____ C:\Users\ms\Desktop\tttt.txt
2017-01-06 01:33 - 2016-12-31 06:24 - 01229808 __RSH (GlavSoft LLC.) C:\Users\ms\AppData\Roaming\assembliesbckp1.Vexe
2017-01-06 01:32 - 2017-01-06 01:32 - 00001414 _____ C:\Users\ms\Desktop\eset.txt
2017-01-06 01:26 - 2017-01-06 01:26 - 00024688 _____ C:\Windows\system32\Drivers\TrueSight.sys
2017-01-06 01:25 - 2017-01-06 01:25 - 00001552 _____ C:\Users\ms\Desktop\mbam2.txt
2017-01-06 00:42 - 2017-01-06 00:42 - 00003272 _____ C:\Users\ms\Desktop\mbam.txt
2017-01-06 00:30 - 2017-01-06 07:32 - 00000000 ____D C:\ProgramData\RogueKiller
2017-01-06 00:30 - 2017-01-06 00:30 - 00001074 _____ C:\Users\Public\Desktop\RogueKiller.lnk
2017-01-06 00:30 - 2017-01-06 00:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
2017-01-06 00:30 - 2017-01-06 00:30 - 00000000 ____D C:\Program Files\RogueKiller
2017-01-06 00:28 - 2017-01-06 00:30 - 34631352 _____ (Adlice Software ) C:\Users\ms\Downloads\setup.exe
2017-01-06 00:16 - 2016-12-31 06:24 - 01229808 __RSH (GlavSoft LLC.) C:\Users\ms\AppData\Roaming\assembliesbckp1.exe
2017-01-06 00:13 - 2017-01-06 00:13 - 00000000 ____D C:\Users\ms\AppData\Local\ESET
2017-01-06 00:12 - 2017-01-06 00:13 - 06771840 _____ (ESET spol. s r.o.) C:\Users\ms\Downloads\esetonlinescanner_enu.exe
2017-01-06 00:09 - 2017-01-06 00:10 - 00005534 _____ C:\Users\ms\Desktop\Rkill.txt
2017-01-06 00:08 - 2017-01-06 00:09 - 02030536 _____ (Bleeping Computer, LLC) C:\Users\ms\Downloads\rkill.com
2017-01-05 19:41 - 2017-01-05 19:41 - 00001197 _____ C:\Users\Public\Desktop\Avast SafeZone Browser.lnk
2017-01-05 19:41 - 2017-01-05 19:41 - 00001197 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2017-01-05 19:38 - 2017-01-05 19:38 - 00035096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2017-01-05 19:34 - 2017-01-05 19:34 - 00000000 ____D C:\Users\ms\AppData\Roaming\AVAST Software
2017-01-05 19:31 - 2017-01-05 19:31 - 00002164 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2017-01-05 19:31 - 2017-01-05 19:31 - 00002152 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2017-01-05 19:29 - 2017-01-05 19:30 - 00735488 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2017-01-05 19:29 - 2017-01-05 19:30 - 00433768 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2017-01-05 19:29 - 2017-01-05 19:30 - 00224752 _____ (AVAST Software) C:\Windows\system32\Drivers\aswvmm.sys
2017-01-05 19:29 - 2017-01-05 19:29 - 00118664 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2017-01-05 19:29 - 2017-01-05 19:29 - 00092256 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2017-01-05 19:29 - 2017-01-05 19:29 - 00091232 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2017-01-05 19:29 - 2017-01-05 19:29 - 00060424 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2017-01-05 19:29 - 2017-01-05 19:29 - 00034008 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2017-01-05 19:29 - 2017-01-05 19:28 - 00921280 _____ (Microsoft Corporation) C:\Windows\ucrtbase.dll
2017-01-05 19:29 - 2017-01-05 19:28 - 00319760 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2017-01-05 19:28 - 2017-01-05 19:28 - 00053208 _____ (AVAST Software) C:\Windows\avastSS.scr
2017-01-05 19:25 - 2017-01-05 19:38 - 00000000 ____D C:\Program Files\AVAST Software
2017-01-05 19:22 - 2017-01-05 19:38 - 00000000 ____D C:\ProgramData\AVAST Software
2017-01-05 19:19 - 2017-01-05 19:22 - 06253640 _____ (AVAST Software) C:\Users\ms\Downloads\avast_free_antivirus_setup_online.exe
2017-01-05 19:08 - 2017-01-06 11:30 - 00000214 _____ C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job
2017-01-05 19:08 - 2017-01-06 08:43 - 00000000 _RSHD C:\Program Files\Assemblies
2017-01-05 19:07 - 2017-01-06 11:58 - 00000000 ____D C:\Windows\pss
2017-01-04 22:58 - 2017-01-04 22:58 - 00150238 _____ C:\Users\ms\Documents\RNSDG170104072487 1 (2).pdf
2017-01-04 22:38 - 2017-01-04 22:38 - 00153024 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMChameleon.sys
2017-01-04 22:37 - 2017-01-06 11:59 - 00219072 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2017-01-04 22:37 - 2017-01-06 09:20 - 00087496 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2017-01-04 22:37 - 2017-01-06 09:19 - 00039360 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2017-01-04 22:37 - 2017-01-06 08:15 - 00073152 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2017-01-04 22:37 - 2017-01-04 22:37 - 00002097 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2017-01-04 22:37 - 2017-01-04 22:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-01-04 22:37 - 2017-01-04 22:37 - 00000000 ____D C:\ProgramData\Malwarebytes
2017-01-04 22:37 - 2017-01-04 22:37 - 00000000 ____D C:\Program Files\Malwarebytes
2017-01-04 22:37 - 2016-12-14 12:55 - 00059968 _____ C:\Windows\system32\Drivers\mbae.sys
2017-01-04 22:34 - 2017-01-04 22:36 - 54199488 _____ (Malwarebytes ) C:\Users\ms\Downloads\mb3-setup-consumer-3.0.5.1299.exe
2017-01-04 18:44 - 2017-01-04 18:45 - 00116612 _____ C:\Users\ms\Downloads\boarding-pass.pdf
2017-01-04 18:37 - 2017-01-04 18:37 - 00000000 ____D C:\Users\ms\AppData\Local\ElevatedDiagnostics
2017-01-02 16:27 - 2017-01-02 16:27 - 00000000 ____D C:\ProgramData\Canneverbe Limited
2017-01-02 16:26 - 2017-01-02 16:26 - 00000000 ____D C:\Users\ms\AppData\Roaming\Canneverbe Limited
2017-01-02 16:10 - 2017-01-02 16:33 - 00000000 ____D C:\Users\ms\AppData\Local\AvgSetupLog
2017-01-02 16:10 - 2017-01-02 16:33 - 00000000 ____D C:\ProgramData\Avg
2017-01-02 16:10 - 2017-01-02 16:33 - 00000000 ____D C:\Program Files\AVG
2017-01-02 16:10 - 2017-01-02 16:13 - 00000000 ____D C:\Users\ms\AppData\Local\Avg
2017-01-02 16:08 - 2017-01-02 16:08 - 00345360 _____ (Lavasoft Limited) C:\Windows\system32\LavasoftTcpService.dll
2017-01-02 16:08 - 2017-01-02 16:08 - 00002920 _____ C:\Windows\system32\LavasoftTcpServiceOff.ini
2017-01-02 15:53 - 2017-01-02 15:53 - 00000000 ____D C:\Users\ms\Downloads\amok27
2017-01-02 14:46 - 2017-01-02 14:46 - 00000000 ____D C:\Users\ms\Documents\AnyDVDHD
2017-01-02 14:36 - 2017-01-02 17:58 - 00000000 ____D C:\ProgramData\RedFox
2017-01-02 14:36 - 2017-01-02 17:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RedFox
2017-01-02 14:36 - 2017-01-02 14:36 - 00000000 ____D C:\Program Files\RedFox
2017-01-02 14:35 - 2017-01-02 14:35 - 00000000 ____D C:\Users\ms\Downloads\A996
2017-01-02 13:32 - 2017-01-02 16:33 - 00000043 ___SH C:\ProgramData\.zreglib
2017-01-02 13:32 - 2017-01-02 13:33 - 00000000 ____D C:\ProgramData\Elaborate Bytes
2017-01-02 13:31 - 2017-01-06 01:33 - 00000000 _RSHD C:\ProgramData\Assemblies
2017-01-02 13:31 - 2017-01-02 13:31 - 00000000 _RSHD C:\Users\ms\AppData\Roaming\Assemblies
2017-01-02 13:29 - 2017-01-02 13:29 - 01110564 _____ (Igor Pavlov) C:\Users\ms\Downloads\7z1604.exe
2017-01-02 13:29 - 2017-01-02 13:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2017-01-02 13:29 - 2017-01-02 13:29 - 00000000 ____D C:\Program Files\7-Zip
2017-01-02 13:28 - 2017-01-02 13:28 - 01381582 _____ (Igor Pavlov) C:\Users\ms\Downloads\7z1604-x64.exe
2017-01-02 13:06 - 2017-01-02 13:06 - 00001180 _____ C:\Users\ms\Desktop\Die Installation von Java fortsetzen.lnk
2017-01-02 12:48 - 2017-01-02 17:59 - 00000000 ____D C:\Program Files\Elaborate Bytes
2016-12-31 16:36 - 2016-12-31 16:36 - 00085590 _____ C:\Users\ms\Desktop\s-l1601.jpg
2016-12-31 16:35 - 2016-12-31 16:35 - 00264105 _____ C:\Users\ms\Desktop\s-l1600.jpg
2016-12-30 16:21 - 2016-12-30 16:21 - 00394682 _____ C:\Users\ms\Documents\Rudolf stoehr rp tavanic 2016.oxps
2016-12-29 18:47 - 2016-12-29 18:47 - 00010777 _____ C:\Users\ms\Documents\Maria Luiza da Silva Kündigung MOVE.docx
2016-12-25 16:57 - 2017-01-06 10:34 - 00001908 _____ C:\Windows\diagwrn.xml
2016-12-25 16:57 - 2017-01-06 10:34 - 00001908 _____ C:\Windows\diagerr.xml
2016-12-24 13:36 - 2016-12-24 13:36 - 02496120 _____ C:\Users\ms\Documents\kleiner lovenox.oxps
2016-12-24 11:19 - 2016-12-24 11:19 - 02558985 _____ C:\Users\ms\Documents\Kleiner Targin u Nolotil 2.oxps
2016-12-24 11:18 - 2016-12-24 11:18 - 02495274 _____ C:\Users\ms\Documents\Kleiner Targin u. Nolotil.oxps
2016-12-22 16:14 - 2017-01-05 20:28 - 00000000 ____D C:\Users\ms\AppData\Local\CrashDumps
2016-12-21 14:32 - 2017-01-06 11:34 - 00912862 _____ C:\Windows\system32\prfh0816.dat
2016-12-21 14:32 - 2017-01-06 11:34 - 00264906 _____ C:\Windows\system32\prfc0816.dat
2016-12-21 14:32 - 2016-12-24 11:31 - 00000000 ____D C:\Windows\system32\Drivers\pt-PT
2016-12-21 14:32 - 2016-12-21 14:32 - 00341016 _____ C:\Windows\system32\prfi0816.dat
2016-12-21 14:32 - 2016-12-21 14:32 - 00042642 _____ C:\Windows\system32\prfd0816.dat
2016-12-21 14:32 - 2016-12-21 14:32 - 00000000 ____D C:\Windows\system32\pt
2016-12-21 14:32 - 2016-12-21 14:32 - 00000000 ____D C:\Windows\pt-PT
2016-12-20 22:43 - 2016-07-15 18:45 - 05032448 _____ (Microsoft Corporation) C:\Windows\system32\NlsLexicons0816.dll
2016-12-20 22:43 - 2016-07-15 18:42 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0816.dll
2016-12-20 22:43 - 2016-07-15 18:38 - 04384256 _____ (Microsoft Corporation) C:\Windows\system32\MLS6.dll
2016-12-20 22:25 - 2016-12-20 22:25 - 00001051 _____ C:\Users\ms\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optionale Features.lnk
2016-12-19 10:59 - 2016-12-19 11:05 - 200982907 _____ C:\Users\ms\Downloads\SteuerSparErklaerung_21.37.107.zip
2016-12-19 10:56 - 2016-12-19 10:56 - 06711232 _____ (Hewlett-Packard Company ) C:\Users\ms\Downloads\sp43509(1).exe
2016-12-19 10:49 - 2016-12-19 10:49 - 00000000 ____D C:\Windows\tiinst
2016-12-19 10:11 - 2016-12-19 10:17 - 07086792 _____ (Hewlett Packard Company ) C:\Users\ms\Downloads\sp33439.exe
2016-12-18 22:13 - 2016-12-18 22:23 - 06711232 _____ (Hewlett-Packard Company ) C:\Users\ms\Downloads\sp43509.exe
2016-12-18 21:51 - 2016-12-18 21:51 - 00000386 _____ C:\Users\ms\Documents\dr scheuber carvoeiro.xml
2016-12-18 21:33 - 2016-12-18 21:33 - 00000000 ____D C:\Program Files\Common Files\Java
2016-12-18 21:32 - 2016-12-18 21:32 - 00095808 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2016-12-18 21:32 - 2016-12-18 21:32 - 00000000 ____D C:\Users\ms\AppData\Roaming\Sun
2016-12-18 21:32 - 2016-12-18 21:32 - 00000000 ____D C:\Users\ms\AppData\LocalLow\Sun
2016-12-18 21:32 - 2016-12-18 21:32 - 00000000 ____D C:\ProgramData\Oracle
2016-12-18 21:32 - 2016-12-18 21:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-12-18 21:32 - 2016-12-18 21:32 - 00000000 ____D C:\Program Files\Java
2016-12-18 19:40 - 2016-12-18 19:40 - 00737344 _____ (Oracle Corporation) C:\Users\ms\Downloads\JavaSetup8u111(1).exe
2016-12-18 19:39 - 2016-12-18 19:39 - 00737344 _____ (Oracle Corporation) C:\Users\ms\Downloads\JavaSetup8u111.exe
2016-12-18 19:38 - 2016-12-18 19:38 - 00000000 ____D C:\Users\ms\Downloads\gnucrawlandmap
2016-12-18 19:37 - 2016-12-18 19:37 - 00045304 _____ C:\Users\ms\Downloads\gnucrawlandmap.zip
2016-12-18 19:23 - 2016-12-18 19:23 - 00000000 ____D C:\Users\ms\AppData\Roaming\FileZilla Server
2016-12-18 19:22 - 2016-12-18 19:22 - 02238848 _____ (FileZilla Project) C:\Users\ms\Downloads\FileZilla_Server-0_9_59.exe
2016-12-17 23:48 - 2016-12-17 23:48 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2016-12-16 12:26 - 2016-12-16 12:26 - 00011487 _____ C:\Users\ms\Documents\Certificate of good standing Schleswig.docx
2016-12-16 12:19 - 2016-12-16 12:20 - 00192368 _____ C:\Users\ms\Downloads\DHL-Marke-VW27MH7RND.pdf
2016-12-16 11:46 - 2016-12-16 11:46 - 00000000 ___HD C:\ProgramData\CanonIJScan
2016-12-16 10:39 - 2012-04-16 05:00 - 00314880 _____ (CANON INC.) C:\Windows\system32\CNMLMBA.DLL
2016-12-16 09:38 - 2016-12-18 21:53 - 00000000 ____D C:\Program Files\Mozilla Firefox
2016-12-15 19:39 - 2016-12-15 19:39 - 01960776 _____ (SCM Microsystems ) C:\Users\ms\Downloads\SCR3_DriversOnly_V8.41.exe
2016-12-15 19:39 - 2016-12-15 19:39 - 00000880 _____ C:\Windows\HBCIKRNL.INI
2016-12-15 19:39 - 2016-12-15 19:39 - 00000000 ____D C:\Program Files\SCM Microsystems
2016-12-15 19:32 - 2016-12-15 19:33 - 26220284 _____ C:\Users\ms\Downloads\AWP_v4_6_SR12_SIBS(1).msi
2016-12-15 19:29 - 2016-12-15 19:29 - 07645416 _____ (Hewlett-Packard Company ) C:\Users\ms\Downloads\sp47728.exe
2016-12-15 19:25 - 2016-12-15 19:25 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WUDFUsbccidDriver_01_11_00.Wdf
2016-12-15 19:18 - 2016-12-15 19:18 - 00000107 _____ C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
2016-12-15 19:18 - 2016-12-15 19:18 - 00000000 ____D C:\Users\ms\AppData\Roaming\MedicineOne
2016-12-14 00:40 - 2016-12-09 11:14 - 06019936 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-12-14 00:40 - 2016-12-09 11:09 - 00133296 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-12-14 00:40 - 2016-12-09 11:01 - 01503544 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2016-12-14 00:40 - 2016-12-09 11:00 - 00523784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2016-12-14 00:40 - 2016-12-09 10:57 - 06668040 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2016-12-14 00:40 - 2016-12-09 10:57 - 01852720 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2016-12-14 00:40 - 2016-12-09 10:52 - 01344992 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2016-12-14 00:40 - 2016-12-09 10:40 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-12-14 00:40 - 2016-12-09 10:37 - 00330752 _____ (Microsoft Corporation) C:\Windows\system32\aadcloudap.dll
2016-12-14 00:40 - 2016-12-09 10:34 - 00822784 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2016-12-14 00:40 - 2016-12-09 10:32 - 00635904 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-12-14 00:40 - 2016-12-09 10:30 - 04612608 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2016-12-14 00:40 - 2016-12-09 10:22 - 03776000 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2016-12-14 00:40 - 2016-12-09 10:20 - 06044160 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2016-12-14 00:40 - 2016-12-09 10:18 - 03666432 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-12-14 00:40 - 2016-12-09 10:18 - 01235456 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2016-12-14 00:40 - 2016-12-09 10:18 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2016-12-14 00:40 - 2016-12-09 10:17 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-12-14 00:40 - 2016-12-09 10:17 - 00886272 _____ (Microsoft Corporation) C:\Windows\system32\aadtb.dll
2016-12-14 00:40 - 2016-12-09 10:16 - 02998272 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2016-12-14 00:40 - 2016-12-09 10:16 - 01880576 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll
2016-12-14 00:40 - 2016-12-09 10:16 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2016-12-14 00:40 - 2016-09-15 17:53 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll
2016-12-14 00:39 - 2016-12-09 11:54 - 01415520 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2016-12-14 00:39 - 2016-12-09 11:54 - 00115552 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2016-12-14 00:39 - 2016-12-09 11:16 - 00890984 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2016-12-14 00:39 - 2016-12-09 11:16 - 00784064 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2016-12-14 00:39 - 2016-12-09 11:12 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2016-12-14 00:39 - 2016-12-09 11:11 - 02048496 _____ C:\Windows\system32\CoreUIComponents.dll
2016-12-14 00:39 - 2016-12-09 11:10 - 00583136 _____ (Microsoft Corporation) C:\Windows\system32\CoreMessaging.dll
2016-12-14 00:39 - 2016-12-09 11:01 - 02323728 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2016-12-14 00:39 - 2016-12-09 11:01 - 01897824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2016-12-14 00:39 - 2016-12-09 11:01 - 00551264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2016-12-14 00:39 - 2016-12-09 11:01 - 00342880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2016-12-14 00:39 - 2016-12-09 11:00 - 00117720 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2016-12-14 00:39 - 2016-12-09 10:55 - 00198496 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHost.dll
2016-12-14 00:39 - 2016-12-09 10:52 - 01413664 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2016-12-14 00:39 - 2016-12-09 10:41 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\WordBreakers.dll
2016-12-14 00:39 - 2016-12-09 10:37 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2016-12-14 00:39 - 2016-12-09 10:36 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.LockScreen.dll
2016-12-14 00:39 - 2016-12-09 10:35 - 00359424 _____ (Microsoft Corporation) C:\Windows\system32\facecredentialprovider.dll
2016-12-14 00:39 - 2016-12-09 10:31 - 03689984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2016-12-14 00:39 - 2016-12-09 10:31 - 00313856 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2016-12-14 00:39 - 2016-12-09 10:31 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\indexeddbserver.dll
2016-12-14 00:39 - 2016-12-09 10:30 - 19413504 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2016-12-14 00:39 - 2016-12-09 10:28 - 01284096 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
2016-12-14 00:39 - 2016-12-09 10:27 - 19417088 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-12-14 00:39 - 2016-12-09 10:23 - 12177920 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-12-14 00:39 - 2016-12-09 10:20 - 03198464 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2016-12-14 00:39 - 2016-12-09 10:18 - 02138112 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2016-12-14 00:39 - 2016-12-09 10:17 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\ShareHost.dll
2016-12-14 00:39 - 2016-12-09 10:16 - 00353280 _____ (Microsoft Corporation) C:\Windows\system32\TextInputFramework.dll
2016-12-14 00:39 - 2016-12-09 10:15 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Core.TextInput.dll
2016-12-14 00:39 - 2016-12-09 10:15 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\InputLocaleManager.dll
2016-12-14 00:39 - 2016-12-09 10:15 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\EditBufferTestHook.dll
2016-12-13 22:36 - 2016-12-13 22:36 - 00001052 _____ C:\Users\Public\Desktop\ISO to USB.lnk
2016-12-13 22:36 - 2016-12-13 22:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ISO to USB
2016-12-13 22:36 - 2016-12-13 22:36 - 00000000 ____D C:\Program Files\ISO to USB
2016-12-13 22:35 - 2016-12-13 22:36 - 01733751 _____ (isotousb.com ) C:\Users\ms\Downloads\isotousb_setup.exe
2016-12-13 22:22 - 2016-12-13 22:26 - 00000000 ____D C:\Users\ms\Downloads\windows 10 usb
2016-12-13 20:20 - 2016-12-13 20:20 - 00000000 __SHD C:\RECYCLER
2016-12-13 15:36 - 2016-12-16 11:46 - 00000000 ____D C:\Users\ms\AppData\Roaming\Canon
2016-12-13 15:35 - 2012-03-14 05:00 - 00311296 _____ (CANON INC.) C:\Windows\system32\CNMXLMAD.DLL
2016-12-13 15:33 - 2016-12-13 15:33 - 00000000 ___HD C:\ProgramData\CanonBJ
2016-12-13 15:32 - 2016-12-13 15:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG5100 series
2016-12-13 15:32 - 2016-12-13 15:32 - 00000000 ___HD C:\Windows\system32\CanonIJ Uninstaller Information
2016-12-13 15:32 - 2016-12-13 15:32 - 00000000 ___HD C:\Program Files\CanonBJ
2016-12-13 15:32 - 2012-03-14 05:00 - 00311296 _____ (CANON INC.) C:\Windows\system32\CNMLMAD.DLL
2016-12-13 15:32 - 2010-03-11 08:56 - 00180224 _____ (CANON INC.) C:\Windows\system32\CNMIUAD.DLL
2016-12-13 15:31 - 2016-12-13 15:32 - 23940240 _____ C:\Users\ms\Downloads\mp68-win-mg5100-1_02-ea24.exe
2016-12-13 15:30 - 2016-12-13 15:30 - 23719064 _____ C:\Users\ms\Downloads\xp68-win-mg5100-5_56-ea24.exe
2016-12-13 15:28 - 2016-12-13 15:28 - 23719064 _____ C:\Users\ms\Downloads\xp68-win-mg5100-5_56-ea24(1).exe
2016-12-13 15:17 - 2016-12-13 15:17 - 00002118 _____ C:\Users\Public\Desktop\Canon MP Navigator EX 4.0.lnk
2016-12-13 15:17 - 2016-12-13 15:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2016-12-13 15:17 - 2016-12-13 15:17 - 00000000 ____D C:\Program Files\Canon
2016-12-13 15:02 - 2016-12-13 15:16 - 49819216 _____ C:\Users\ms\Downloads\mpnx_4_0-win-4_03-ea23_2.exe
2016-12-13 10:22 - 2016-12-13 10:22 - 00001665 _____ C:\Users\ms\Desktop\MED7 Neuer Patient.lnk
2016-12-13 10:20 - 2016-12-13 10:23 - 00000000 ____D C:\Users\ms\Downloads\runasdate
2016-12-13 10:20 - 2016-12-13 10:20 - 00035563 _____ C:\Users\ms\Downloads\runasdate.zip
2016-12-12 18:09 - 2016-12-12 18:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\File Scavenger 3.2
2016-12-12 18:09 - 2016-12-12 18:09 - 00000000 ____D C:\Program Files\File Scavenger 3.2
2016-12-12 18:08 - 2016-12-12 18:09 - 01632488 _____ (QueTek Consulting Corporation) C:\Users\ms\Downloads\32fsg32.exe
2016-12-12 15:06 - 2016-12-12 15:07 - 00000000 ____D C:\Program Files\Hardcopy
2016-12-12 15:06 - 2016-12-12 15:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hardcopy - Bildschirmausdruck
2016-12-12 15:06 - 2016-01-28 06:19 - 01720088 _____ (www.sw4you.de Siegfried Weckmann) C:\Windows\SwSetupu.exe
2016-12-12 14:58 - 2016-12-12 15:05 - 07108168 _____ C:\Users\ms\Downloads\hc.exe
2016-12-12 14:21 - 2016-12-12 14:21 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2016-12-12 11:21 - 2016-12-12 11:21 - 00000000 ____D C:\Users\ms\AppData\Local\PeerDistRepub
2016-12-12 09:54 - 2016-12-12 09:54 - 00000000 ____D C:\ProgramData\ODIR
2016-12-11 23:47 - 2016-12-11 23:47 - 00000000 ____D C:\temp
2016-12-11 23:46 - 2016-12-11 23:47 - 00000000 ____D C:\Users\ms\AppData\Roaming\VoipConnect
2016-12-11 23:46 - 2016-12-11 23:46 - 00001262 _____ C:\Users\ms\Desktop\VoipConnect.lnk
2016-12-11 23:46 - 2016-12-11 23:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VoipConnect
2016-12-11 23:46 - 2016-12-11 23:46 - 00000000 ____D C:\Program Files\VoipConnect.com
2016-12-11 23:45 - 2016-12-11 23:46 - 07289336 _____ (Finarea S.A. Switzerland ) C:\Users\ms\Downloads\SetupVoipConnect-voipbuster.exe
2016-12-11 23:28 - 2017-01-02 14:39 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-12-11 23:17 - 2016-12-11 23:17 - 00000000 ____D C:\Users\ms\AppData\LocalLow\Adobe
2016-12-11 23:17 - 2016-12-11 23:17 - 00000000 ____D C:\Users\ms\AppData\Local\CEF
2016-12-11 23:12 - 2016-12-15 09:36 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-12-11 23:12 - 2016-12-11 23:12 - 00002094 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2016-12-11 23:12 - 2016-12-11 23:12 - 00000000 ____D C:\Program Files\Common Files\Adobe
2016-12-11 23:12 - 2016-12-11 23:12 - 00000000 ____D C:\Program Files\Adobe
2016-12-11 23:11 - 2016-12-11 23:17 - 00000000 ____D C:\ProgramData\Adobe
2016-12-11 23:10 - 2016-12-11 23:30 - 00000000 ____D C:\Users\ms\AppData\Local\Adobe
2016-12-11 23:07 - 2016-12-11 22:46 - 02219540 _____ (Vaita ) C:\Users\ms\Downloads\ODIR.exe
2016-12-11 23:07 - 2016-11-20 20:10 - 00042050 _____ C:\Users\ms\Downloads\Kuendigungsschreiben_1411-3956-1650-75.pdf
2016-12-11 23:07 - 2016-10-05 21:51 - 08244656 _____ (Piriform Ltd) C:\Users\ms\Downloads\ccsetup522.exe
2016-12-11 23:07 - 2016-09-16 21:33 - 02907822 _____ C:\Users\ms\Downloads\skriptum-wolfgang-aufermann.pdf
2016-12-11 23:07 - 2016-09-12 23:38 - 02254413 _____ (Dr. Olaf Jacobsen ) C:\Users\ms\Downloads\cmsetup.exe
2016-12-11 23:07 - 2016-09-12 23:23 - 00000920 _____ C:\Users\ms\Downloads\datev07.cer
2016-12-11 23:07 - 2016-09-02 16:34 - 02536914 _____ C:\Users\ms\Downloads\ebook.pdf
2016-12-11 23:07 - 2016-08-30 15:40 - 00094057 _____ C:\Users\ms\Downloads\faturaRecibo_41.pdf
2016-12-11 23:07 - 2016-08-27 21:44 - 00347648 _____ C:\Users\ms\Downloads\document.pdf
2016-12-11 23:07 - 2016-08-04 23:44 - 00853491 _____ C:\Users\ms\Downloads\PBBooking 3.x Docs.pdf
2016-12-11 23:07 - 2016-07-05 13:35 - 224073588 _____ C:\Users\ms\Downloads\Med7v806.exe
2016-12-11 23:07 - 2016-05-04 08:17 - 01098961 _____ (Igor Pavlov) C:\Users\ms\Downloads\7z1514.exe
2016-12-11 23:07 - 2016-03-26 21:46 - 00030723 _____ C:\Users\ms\Downloads\mysql.tar.gz
2016-12-11 23:07 - 2016-03-26 21:46 - 00000120 _____ C:\Users\ms\Downloads\files.tar.gz
2016-12-11 23:07 - 2016-03-14 22:00 - 00000053 _____ C:\Users\ms\Downloads\googlef3d513425c3c6eb5.html
2016-12-11 23:07 - 2016-01-14 23:39 - 02122336 _____ (Irfan Skiljan) C:\Users\ms\Downloads\iview441_setup.exe
2016-12-11 23:07 - 2015-11-04 23:53 - 00001257 _____ C:\Users\ms\Downloads\index.php
2016-12-11 23:07 - 2015-07-23 11:17 - 00036562 _____ C:\Users\ms\Downloads\Herz.jpg
2016-12-11 23:07 - 2015-02-10 22:10 - 167180781 _____ C:\Users\ms\Downloads\Med7voll.exe
2016-12-11 23:07 - 1997-11-28 21:08 - 00018944 _____ (Corel Corporation) C:\Users\ms\Downloads\Install.exe
2016-12-11 22:47 - 2016-12-11 22:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ODIR
2016-12-11 22:47 - 2016-12-11 22:47 - 00000000 ____D C:\Program Files\ODIR
2016-12-11 22:47 - 2000-12-05 23:00 - 00209608 _____ (Microsoft Corporation) C:\Windows\system32\Tabctl32.ocx
2016-12-11 22:47 - 1999-03-26 00:00 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\VB6STKIT.DLL
2016-12-11 22:19 - 2016-12-15 19:39 - 00000000 ____D C:\Windows\Downloaded Installations
2016-12-11 21:33 - 2016-12-11 21:33 - 00000000 ____D C:\Users\ms\AppData\Local\Dropbox
2016-12-11 21:32 - 2016-12-11 21:33 - 00688536 _____ (Dropbox, Inc.) C:\Users\ms\Downloads\DropboxInstaller.exe
2016-12-11 21:24 - 2016-12-11 21:24 - 00001038 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-12-11 21:24 - 2016-12-11 21:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-12-11 21:23 - 2016-12-11 21:24 - 00000000 ____D C:\Program Files\CCleaner
2016-12-11 21:14 - 2016-12-11 21:33 - 00000000 ____D C:\Program Files\Google
2016-12-11 21:14 - 2016-12-11 21:14 - 00000000 ____D C:\Users\ms\AppData\Local\Google
2016-12-11 21:14 - 2016-12-11 21:14 - 00000000 ____D C:\Program Files\GUM5B71.tmp
2016-12-11 20:52 - 2016-12-11 20:52 - 00000000 ____D C:\Users\ms\AppData\Roaming\hpqLog
2016-12-11 20:37 - 2016-12-19 10:18 - 00000000 ____D C:\SWSETUP
2016-12-11 19:50 - 2016-12-11 20:10 - 00000000 ____D C:\Users\ms\AppData\Local\Diagnostics
2016-12-11 19:35 - 2016-12-11 19:35 - 00000017 _____ C:\Users\ms\AppData\Local\resmon.resmoncfg
2016-12-11 18:41 - 2016-12-11 18:41 - 00066496 _____ C:\Users\ms\AppData\Local\GDIPFONTCACHEV1.DAT
2016-12-11 18:16 - 2016-11-11 09:39 - 00484584 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2016-12-11 18:16 - 2016-11-11 09:07 - 00448864 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2016-12-11 18:16 - 2016-11-11 09:07 - 00081760 _____ (Microsoft Corporation) C:\Windows\system32\DeviceReactivation.dll
2016-12-11 18:16 - 2016-11-11 09:01 - 02206496 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2016-12-11 18:16 - 2016-11-11 09:01 - 01969912 _____ (Microsoft Corporation) C:\Windows\system32\hevcdecoder.dll
2016-12-11 18:16 - 2016-11-11 09:01 - 00167848 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
2016-12-11 18:16 - 2016-11-11 09:00 - 01725136 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-12-11 18:16 - 2016-11-11 08:59 - 01586736 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-12-11 18:16 - 2016-11-11 08:59 - 00292192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
2016-12-11 18:16 - 2016-11-11 08:59 - 00106336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2016-12-11 18:16 - 2016-11-11 08:54 - 00122208 _____ (Microsoft Corporation) C:\Windows\system32\migisol.dll
2016-12-11 18:16 - 2016-11-11 08:49 - 00869848 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2016-12-11 18:16 - 2016-11-11 08:49 - 00263472 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.ApplicationData.dll
2016-12-11 18:16 - 2016-11-11 08:49 - 00248480 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll
2016-12-11 18:16 - 2016-11-11 08:48 - 02277248 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2016-12-11 18:16 - 2016-11-11 08:47 - 05722832 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2016-12-11 18:16 - 2016-11-11 08:47 - 01430720 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2016-12-11 18:16 - 2016-11-11 08:47 - 00861024 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll
2016-12-11 18:16 - 2016-11-11 08:47 - 00527880 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2016-12-11 18:16 - 2016-11-11 08:46 - 00186720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-12-11 18:16 - 2016-11-11 08:45 - 02166752 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2016-12-11 18:16 - 2016-11-11 08:45 - 00846560 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
2016-12-11 18:16 - 2016-11-11 08:45 - 00355680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2016-12-11 18:16 - 2016-11-11 08:42 - 20969928 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2016-12-11 18:16 - 2016-11-11 08:42 - 03892864 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2016-12-11 18:16 - 2016-11-11 08:42 - 01123912 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2016-12-11 18:16 - 2016-11-11 08:42 - 00959112 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2016-12-11 18:16 - 2016-11-11 08:42 - 00952416 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2016-12-11 18:16 - 2016-11-11 08:42 - 00382784 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2016-12-11 18:16 - 2016-11-11 08:42 - 00313088 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2016-12-11 18:16 - 2016-11-11 08:42 - 00152416 _____ (Microsoft Corporation) C:\Windows\system32\RTWorkQ.dll
2016-12-11 18:16 - 2016-11-11 08:42 - 00091936 _____ (Microsoft Corporation) C:\Windows\system32\mfaudiocnv.dll
2016-12-11 18:16 - 2016-11-11 08:41 - 04311736 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2016-12-11 18:16 - 2016-11-11 08:41 - 01384704 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2016-12-11 18:16 - 2016-11-11 08:41 - 00802608 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeManagerObj.dll
2016-12-11 18:16 - 2016-11-11 08:41 - 00675568 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2016-12-11 18:16 - 2016-11-11 08:38 - 01263856 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2016-12-11 18:16 - 2016-11-11 08:37 - 00381720 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2016-12-11 18:16 - 2016-11-11 08:30 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\RDXTaskFactory.dll
2016-12-11 18:16 - 2016-11-11 08:29 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\CbtBackgroundManagerPolicy.dll
2016-12-11 18:16 - 2016-11-11 08:28 - 01631232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.dll
2016-12-11 18:16 - 2016-11-11 08:27 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\VPNv2CSP.dll
2016-12-11 18:16 - 2016-11-11 08:27 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\ReportingCSP.dll
2016-12-11 18:16 - 2016-11-11 08:27 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\NetCfgNotifyObjectHost.exe
2016-12-11 18:16 - 2016-11-11 08:27 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe
2016-12-11 18:16 - 2016-11-11 08:26 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe
2016-12-11 18:16 - 2016-11-11 08:25 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvc.dll
2016-12-11 18:16 - 2016-11-11 08:25 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\dmcertinst.exe
2016-12-11 18:16 - 2016-11-11 08:25 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\MosStorage.dll
2016-12-11 18:16 - 2016-11-11 08:25 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\modem.sys
2016-12-11 18:16 - 2016-11-11 08:24 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2016-12-11 18:16 - 2016-11-11 08:24 - 00519168 _____ (Microsoft Corporation) C:\Windows\system32\ngccredprov.dll
2016-12-11 18:16 - 2016-11-11 08:24 - 00138240 _____ (Microsoft Corporation) C:\Windows\system32\DisplayManager.dll
2016-12-11 18:16 - 2016-11-11 08:24 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\VEStoreEventHandlers.dll
2016-12-11 18:16 - 2016-11-11 08:24 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\moshost.dll
2016-12-11 18:16 - 2016-11-11 08:23 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\cdpusersvc.dll
2016-12-11 18:16 - 2016-11-11 08:23 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\ACPBackgroundManagerPolicy.dll
2016-12-11 18:16 - 2016-11-11 08:23 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryClient.dll
2016-12-11 18:16 - 2016-11-11 08:22 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnr.dll
2016-12-11 18:16 - 2016-11-11 08:22 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\sendmail.dll
2016-12-11 18:16 - 2016-11-11 08:22 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
2016-12-11 18:16 - 2016-11-11 08:22 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\HttpsDataSource.dll
2016-12-11 18:16 - 2016-11-11 08:22 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe
2016-12-11 18:16 - 2016-11-11 08:22 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\EAMProgressHandler.dll
2016-12-11 18:16 - 2016-11-11 08:21 - 00332288 _____ (Microsoft Corporation) C:\Windows\system32\MapConfiguration.dll
2016-12-11 18:16 - 2016-11-11 08:21 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseAppMgmtSvc.dll
2016-12-11 18:16 - 2016-11-11 08:21 - 00240128 _____ (Microsoft Corporation) C:\Windows\system32\moshostcore.dll
2016-12-11 18:16 - 2016-11-11 08:21 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe
2016-12-11 18:16 - 2016-11-11 08:21 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2016-12-11 18:16 - 2016-11-11 08:21 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-11 18:16 - 2016-11-11 08:20 - 00557568 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll
2016-12-11 18:16 - 2016-11-11 08:20 - 00306176 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
2016-12-11 18:16 - 2016-11-11 08:20 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\wincorlib.dll
2016-12-11 18:16 - 2016-11-11 08:20 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgentUserBroker.exe
2016-12-11 18:16 - 2016-11-11 08:19 - 13868544 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2016-12-11 18:16 - 2016-11-11 08:19 - 01755136 _____ (Microsoft Corporation) C:\Windows\system32\DeviceFlows.DataModel.dll
2016-12-11 18:16 - 2016-11-11 08:19 - 00506880 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll
2016-12-11 18:16 - 2016-11-11 08:19 - 00447488 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_StorageSense.dll
2016-12-11 18:16 - 2016-11-11 08:19 - 00384512 _____ (Microsoft Corporation) C:\Windows\system32\DataSenseHandlers.dll
2016-12-11 18:16 - 2016-11-11 08:19 - 00364544 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupShim.dll
2016-12-11 18:16 - 2016-11-11 08:19 - 00298496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2016-12-11 18:16 - 2016-11-11 08:19 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll
2016-12-11 18:16 - 2016-11-11 08:19 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll
2016-12-11 18:16 - 2016-11-11 08:19 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\setupugc.exe
2016-12-11 18:16 - 2016-11-11 08:18 - 02333184 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2016-12-11 18:16 - 2016-11-11 08:18 - 01336320 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2016-12-11 18:16 - 2016-11-11 08:18 - 01196544 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl
2016-12-11 18:16 - 2016-11-11 08:18 - 00790528 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2016-12-11 18:16 - 2016-11-11 08:18 - 00725504 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2016-12-11 18:16 - 2016-11-11 08:18 - 00431616 _____ (Microsoft Corporation) C:\Windows\system32\efswrt.dll
2016-12-11 18:16 - 2016-11-11 08:18 - 00294400 _____ (Microsoft Corporation) C:\Windows\system32\cdpsvc.dll
2016-12-11 18:16 - 2016-11-11 08:18 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
2016-12-11 18:16 - 2016-11-11 08:18 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\wscinterop.dll
2016-12-11 18:16 - 2016-11-11 08:18 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\RjvMDMConfig.dll
2016-12-11 18:16 - 2016-11-11 08:18 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\ProvSysprep.dll
2016-12-11 18:16 - 2016-11-11 08:17 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\ActivationManager.dll
2016-12-11 18:16 - 2016-11-11 08:17 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\domgmt.dll
2016-12-11 18:16 - 2016-11-11 08:17 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2016-12-11 18:16 - 2016-11-11 08:17 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2016-12-11 18:16 - 2016-11-11 08:16 - 01377792 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2016-12-11 18:16 - 2016-11-11 08:16 - 00253952 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-11 18:16 - 2016-11-11 08:15 - 07626752 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2016-12-11 18:16 - 2016-11-11 08:15 - 01722368 _____ (Microsoft Corporation) C:\Windows\system32\SRHInproc.dll
2016-12-11 18:16 - 2016-11-11 08:15 - 01357824 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2016-12-11 18:16 - 2016-11-11 08:15 - 00838144 _____ (Microsoft Corporation) C:\Windows\system32\JpMapControl.dll
2016-12-11 18:16 - 2016-11-11 08:15 - 00561152 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2016-12-11 18:16 - 2016-11-11 08:15 - 00348672 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
2016-12-11 18:16 - 2016-11-11 08:15 - 00298496 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll
2016-12-11 18:16 - 2016-11-11 08:14 - 00473600 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
2016-12-11 18:16 - 2016-11-11 08:14 - 00395264 _____ (Microsoft Corporation) C:\Windows\system32\dmenrollengine.dll
2016-12-11 18:16 - 2016-11-11 08:14 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeHelper.dll
2016-12-11 18:16 - 2016-11-11 08:13 - 00626688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2016-12-11 18:16 - 2016-11-11 08:13 - 00499200 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
2016-12-11 18:16 - 2016-11-11 08:13 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-12-11 18:16 - 2016-11-11 08:13 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEnroller.exe
2016-12-11 18:16 - 2016-11-11 08:12 - 01584128 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
2016-12-11 18:16 - 2016-11-11 08:12 - 00529408 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll
2016-12-11 18:16 - 2016-11-11 08:12 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msdtcuiu.dll
2016-12-11 18:16 - 2016-11-11 08:12 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll
2016-12-11 18:16 - 2016-11-11 08:11 - 03306496 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2016-12-11 18:16 - 2016-11-11 08:11 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
2016-12-11 18:16 - 2016-11-11 08:10 - 06109184 _____ (Microsoft Corporation) C:\Windows\system32\mos.dll
2016-12-11 18:16 - 2016-11-11 08:10 - 00746496 _____ (Microsoft Corporation) C:\Windows\system32\msdtcprx.dll
2016-12-11 18:16 - 2016-11-11 08:10 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\umpoext.dll
2016-12-11 18:16 - 2016-11-11 08:09 - 05380608 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll
2016-12-11 18:16 - 2016-11-11 08:09 - 00786432 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2016-12-11 18:16 - 2016-11-11 08:09 - 00545280 _____ (Microsoft Corporation) C:\Windows\system32\mfmkvsrcsnk.dll
2016-12-11 18:16 - 2016-11-11 08:08 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\xolehlp.dll
2016-12-11 18:16 - 2016-11-11 08:07 - 01948160 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2016-12-11 18:16 - 2016-11-11 08:07 - 01136128 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2016-12-11 18:16 - 2016-11-11 08:07 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\dialserver.dll
2016-12-11 18:16 - 2016-11-11 08:06 - 06474752 _____ (Microsoft Corporation) C:\Windows\system32\mspaint.exe
2016-12-11 18:16 - 2016-11-11 08:06 - 02362880 _____ (Microsoft Corporation) C:\Windows\system32\MapRouter.dll
2016-12-11 18:16 - 2016-11-11 08:06 - 02109952 _____ (Microsoft Corporation) C:\Windows\system32\MapGeocoder.dll
2016-12-11 18:16 - 2016-11-11 08:06 - 01228288 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2016-12-11 18:16 - 2016-11-11 08:06 - 00400384 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
2016-12-11 18:16 - 2016-11-11 08:06 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\mtxclu.dll
2016-12-11 18:16 - 2016-11-11 08:05 - 04423680 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2016-12-11 18:16 - 2016-11-11 08:05 - 03370496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepository.dll
2016-12-11 18:16 - 2016-11-11 08:05 - 00578560 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2016-12-11 18:16 - 2016-11-11 08:04 - 02682880 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll
2016-12-11 18:16 - 2016-11-11 08:04 - 01992704 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2016-12-11 18:16 - 2016-11-11 08:04 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-12-11 18:16 - 2016-11-11 08:04 - 01595392 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-12-11 18:16 - 2016-11-11 08:04 - 00920576 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
2016-12-11 18:16 - 2016-11-11 08:04 - 00818176 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll
2016-12-11 18:16 - 2016-11-11 08:04 - 00715264 _____ (Microsoft Corporation) C:\Windows\system32\MapControlCore.dll
2016-12-11 18:16 - 2016-11-11 08:04 - 00706048 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll
2016-12-11 18:16 - 2016-11-11 08:04 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2016-12-11 18:16 - 2016-11-11 08:04 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2016-12-11 18:16 - 2016-11-11 08:03 - 02484736 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2016-12-11 18:16 - 2016-11-11 08:03 - 02256384 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-12-11 18:16 - 2016-11-11 08:03 - 01556480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2016-12-11 18:16 - 2016-11-11 08:03 - 00772608 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2016-12-11 18:16 - 2016-11-11 08:03 - 00760832 _____ (Microsoft Corporation) C:\Windows\system32\NMAA.dll
2016-12-11 18:16 - 2016-11-11 08:03 - 00565248 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2016-12-11 18:16 - 2016-11-11 08:02 - 00612352 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll
2016-12-11 18:16 - 2016-11-02 13:01 - 00315744 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-12-11 18:16 - 2016-11-02 12:23 - 01073816 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2016-12-11 18:16 - 2016-11-02 12:23 - 00945760 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2016-12-11 18:16 - 2016-11-02 12:22 - 00601712 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2016-12-11 18:16 - 2016-11-02 12:21 - 01957216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2016-12-11 18:16 - 2016-11-02 12:12 - 00341344 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-12-11 18:16 - 2016-11-02 12:09 - 02257104 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-12-11 18:16 - 2016-11-02 12:08 - 00602464 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll
2016-12-11 18:16 - 2016-11-02 12:08 - 00111968 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupApi.dll
2016-12-11 18:16 - 2016-11-02 12:06 - 00080224 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2016-12-11 18:16 - 2016-11-02 12:04 - 00596832 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2016-12-11 18:16 - 2016-11-02 12:01 - 01425000 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2016-12-11 18:16 - 2016-11-02 12:01 - 00545936 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2016-12-11 18:16 - 2016-11-02 12:01 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
2016-12-11 18:16 - 2016-11-02 12:00 - 00042336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\iorate.sys
2016-12-11 18:16 - 2016-11-02 11:54 - 00276992 _____ (Microsoft Corporation) C:\Windows\system32\rdpinit.exe
2016-12-11 18:16 - 2016-11-02 11:53 - 00352768 _____ (Microsoft Corporation) C:\Windows\system32\rdpshell.exe
2016-12-11 18:16 - 2016-11-02 11:51 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll
2016-12-11 18:16 - 2016-11-02 11:49 - 00037376 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-12-11 18:16 - 2016-11-02 11:48 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-12-11 18:16 - 2016-11-02 11:47 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BlockedShutdown.dll
2016-12-11 18:16 - 2016-11-02 11:47 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2016-12-11 18:16 - 2016-11-02 11:46 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\NetworkDesktopSettings.dll
2016-12-11 18:16 - 2016-11-02 11:46 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\wininetlui.dll
2016-12-11 18:16 - 2016-11-02 11:45 - 00253952 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BioFeedback.dll
2016-12-11 18:16 - 2016-11-02 11:45 - 00182784 _____ (Microsoft Corporation) C:\Windows\system32\mfsensorgroup.dll
2016-12-11 18:16 - 2016-11-02 11:45 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\WpcTok.exe
2016-12-11 18:16 - 2016-11-02 11:45 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll
2016-12-11 18:16 - 2016-11-02 11:44 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\NetworkBindingEngineMigPlugin.dll
2016-12-11 18:16 - 2016-11-02 11:44 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\AuthExt.dll
2016-12-11 18:16 - 2016-11-02 11:43 - 00731136 _____ (Microsoft Corporation) C:\Windows\system32\d3d8.dll
2016-12-11 18:16 - 2016-11-02 11:43 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2016-12-11 18:16 - 2016-11-02 11:43 - 00270336 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-12-11 18:16 - 2016-11-02 11:43 - 00198144 _____ (Microsoft Corporation) C:\Windows\system32\FSClient.dll
2016-12-11 18:16 - 2016-11-02 11:43 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2016-12-11 18:16 - 2016-11-02 11:42 - 00866816 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Cred.dll
2016-12-11 18:16 - 2016-11-02 11:42 - 00549376 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenterCPL.dll
2016-12-11 18:16 - 2016-11-02 11:42 - 00322560 _____ (Microsoft Corporation) C:\Windows\system32\WpAXHolder.dll
2016-12-11 18:16 - 2016-11-02 11:42 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.HumanInterfaceDevice.dll
2016-12-11 18:16 - 2016-11-02 11:42 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\NetworkUXBroker.dll
2016-12-11 18:16 - 2016-11-02 11:41 - 00517632 _____ (Microsoft Corporation) C:\Windows\system32\FlightSettings.dll
2016-12-11 18:16 - 2016-11-02 11:41 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2016-12-11 18:16 - 2016-11-02 11:40 - 00896512 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll
2016-12-11 18:16 - 2016-11-02 11:40 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\ddraw.dll
2016-12-11 18:16 - 2016-11-02 11:40 - 00493056 _____ (Microsoft Corporation) C:\Windows\system32\WlanMediaManager.dll
2016-12-11 18:16 - 2016-11-02 11:40 - 00387072 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.UserAccountsHandlers.dll
2016-12-11 18:16 - 2016-11-02 11:39 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\cscui.dll
2016-12-11 18:16 - 2016-11-02 11:39 - 00482304 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll
2016-12-11 18:16 - 2016-11-02 11:39 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\LockAppBroker.dll
2016-12-11 18:16 - 2016-11-02 11:39 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2016-12-11 18:16 - 2016-11-02 11:38 - 01013248 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2016-12-11 18:16 - 2016-11-02 11:38 - 00760832 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2016-12-11 18:16 - 2016-11-02 11:38 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2016-12-11 18:16 - 2016-11-02 11:36 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2016-12-11 18:16 - 2016-11-02 11:33 - 12349952 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-12-11 18:16 - 2016-11-02 11:33 - 00598528 _____ (Microsoft Corporation) C:\Windows\system32\WpcRefreshTask.dll
2016-12-11 18:16 - 2016-11-02 11:31 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\olepro32.dll
2016-12-11 18:16 - 2016-11-02 11:29 - 07469056 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2016-12-11 18:16 - 2016-11-02 11:29 - 01247232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2016-12-11 18:16 - 2016-11-02 11:29 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\FrameServer.dll
2016-12-11 18:16 - 2016-11-02 11:29 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\NPSM.dll
2016-12-11 18:16 - 2016-11-02 11:28 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2016-12-11 18:16 - 2016-11-02 11:27 - 02458112 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll
2016-12-11 18:16 - 2016-11-02 11:27 - 01056768 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll
2016-12-11 18:16 - 2016-11-02 11:27 - 00580608 _____ (Microsoft Corporation) C:\Windows\system32\hgcpl.dll
2016-12-11 18:16 - 2016-11-02 11:27 - 00422400 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll
2016-12-11 18:16 - 2016-11-02 11:26 - 03595776 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2016-12-11 18:16 - 2016-11-02 11:26 - 02747392 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2016-12-11 18:16 - 2016-11-02 11:26 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-12-11 18:16 - 2016-11-02 11:26 - 00912896 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2016-12-11 18:16 - 2016-11-02 11:26 - 00712192 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2016-12-11 18:16 - 2016-11-02 11:26 - 00182784 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupSvc.dll
2016-12-11 18:16 - 2016-11-02 11:23 - 03106304 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2016-12-11 18:16 - 2016-11-02 11:23 - 02356736 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2016-12-11 18:16 - 2016-11-02 11:23 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll
2016-12-11 18:16 - 2016-11-02 10:11 - 00788624 _____ C:\Windows\system32\locale.nls
2016-12-11 18:16 - 2016-10-28 04:11 - 00446896 _____ C:\Windows\system32\ApnDatabase.xml
2016-12-11 18:16 - 2016-10-15 06:11 - 00486752 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2016-12-11 18:16 - 2016-10-15 06:11 - 00224608 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCensus.exe
2016-12-11 18:16 - 2016-10-15 06:11 - 00069472 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2016-12-11 18:16 - 2016-10-15 05:36 - 04970224 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2016-12-11 18:16 - 2016-10-15 05:33 - 00455040 _____ (Microsoft Corporation) C:\Windows\system32\DolbyDecMFT.dll
2016-12-11 18:16 - 2016-10-15 05:26 - 00055136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys
2016-12-11 18:16 - 2016-10-15 05:19 - 00272720 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2016-12-11 18:16 - 2016-10-15 05:18 - 01556712 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2016-12-11 18:16 - 2016-10-15 05:18 - 00749920 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll
2016-12-11 18:16 - 2016-10-15 05:18 - 00576400 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2016-12-11 18:16 - 2016-10-15 05:18 - 00454496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2016-12-11 18:16 - 2016-10-15 05:18 - 00186424 _____ (Microsoft Corporation) C:\Windows\system32\weretw.dll
2016-12-11 18:16 - 2016-10-15 05:18 - 00067424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys
2016-12-11 18:16 - 2016-10-15 05:15 - 01557808 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2016-12-11 18:16 - 2016-10-15 05:15 - 00687936 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll
2016-12-11 18:16 - 2016-10-15 05:10 - 01968992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2016-12-11 18:16 - 2016-10-15 05:10 - 00781664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2016-12-11 18:16 - 2016-10-15 05:10 - 00482656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2016-12-11 18:16 - 2016-10-15 05:10 - 00254656 _____ (Microsoft Corporation) C:\Windows\system32\wmpeffects.dll
2016-12-11 18:16 - 2016-10-15 05:06 - 05685760 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2016-12-11 18:16 - 2016-10-15 05:00 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll
2016-12-11 18:16 - 2016-10-15 05:00 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\stdole2.tlb
2016-12-11 18:16 - 2016-10-15 04:59 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\mfksproxy.dll
2016-12-11 18:16 - 2016-10-15 04:58 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2016-12-11 18:16 - 2016-10-15 04:58 - 00114688 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2016-12-11 18:16 - 2016-10-15 04:58 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\efsext.dll
2016-12-11 18:16 - 2016-10-15 04:57 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\wmpdxm.dll
2016-12-11 18:16 - 2016-10-15 04:57 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-12-11 18:16 - 2016-10-15 04:56 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\esentutl.exe
2016-12-11 18:16 - 2016-10-15 04:56 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\wc_storage.dll
2016-12-11 18:16 - 2016-10-15 04:55 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFi.dll
2016-12-11 18:16 - 2016-10-15 04:55 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll
2016-12-11 18:16 - 2016-10-15 04:54 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2016-12-11 18:16 - 2016-10-15 04:54 - 00394240 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2016-12-11 18:16 - 2016-10-15 04:54 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Flights.dll
2016-12-11 18:16 - 2016-10-15 04:54 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\autoplay.dll
2016-12-11 18:16 - 2016-10-15 04:54 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll
2016-12-11 18:16 - 2016-10-15 04:54 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\BthRadioMedia.dll
2016-12-11 18:16 - 2016-10-15 04:53 - 00705024 _____ (Microsoft Corporation) C:\Windows\system32\taskbarcpl.dll
2016-12-11 18:16 - 2016-10-15 04:52 - 00632832 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll
2016-12-11 18:16 - 2016-10-15 04:52 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll
2016-12-11 18:16 - 2016-10-15 04:51 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2016-12-11 18:16 - 2016-10-15 04:51 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2016-12-11 18:16 - 2016-10-15 04:50 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
2016-12-11 18:16 - 2016-10-15 04:50 - 00353792 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Bluetooth.dll
2016-12-11 18:16 - 2016-10-15 04:50 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
2016-12-11 18:16 - 2016-10-15 04:48 - 01323008 _____ (Microsoft Corporation) C:\Windows\system32\wsp_fs.dll
2016-12-11 18:16 - 2016-10-15 04:48 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2016-12-11 18:16 - 2016-10-15 04:48 - 00797696 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2016-12-11 18:16 - 2016-10-15 04:48 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\MDMAppInstaller.exe
2016-12-11 18:16 - 2016-10-15 04:47 - 01113600 _____ (Microsoft Corporation) C:\Windows\system32\wsp_health.dll
2016-12-11 18:16 - 2016-10-15 04:46 - 00471552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.BackgroundMediaPlayback.dll
2016-12-11 18:16 - 2016-10-15 04:46 - 00336896 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe
2016-12-11 18:16 - 2016-10-15 04:44 - 00747008 _____ (Microsoft Corporation) C:\Windows\system32\RemoteNaturalLanguage.dll
2016-12-11 18:16 - 2016-10-15 04:44 - 00636928 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2016-12-11 18:16 - 2016-10-15 04:44 - 00470016 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-12-11 18:16 - 2016-10-15 04:43 - 02748928 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2016-12-11 18:16 - 2016-10-15 04:43 - 01406976 _____ (Microsoft Corporation) C:\Windows\system32\LocationFramework.dll
2016-12-11 18:16 - 2016-10-15 04:42 - 00459776 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Playback.MediaPlayer.dll
2016-12-11 18:16 - 2016-10-15 04:42 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.exe
2016-12-11 18:16 - 2016-10-15 04:41 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\energy.dll
2016-12-11 18:16 - 2016-10-15 04:41 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\iscsiwmi.dll
2016-12-11 18:16 - 2016-10-15 04:39 - 00806400 _____ (Microsoft Corporation) C:\Windows\system32\D3D12.dll
2016-12-11 18:16 - 2016-10-15 04:39 - 00357376 _____ (Microsoft Corporation) C:\Windows\system32\Geolocation.dll
2016-12-11 18:16 - 2016-10-15 04:39 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\chartv.dll
2016-12-11 18:16 - 2016-10-15 04:38 - 00675840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll
2016-12-11 18:16 - 2016-10-15 04:37 - 03733504 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2016-12-11 18:16 - 2016-10-15 04:37 - 01485312 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2016-12-11 18:16 - 2016-10-15 04:37 - 00884224 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2016-12-11 18:16 - 2016-10-15 04:37 - 00709120 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2016-12-11 18:16 - 2016-10-15 04:36 - 01523712 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2016-12-11 18:16 - 2016-10-15 04:36 - 01170944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll
2016-12-11 18:16 - 2016-10-15 04:36 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll
2016-12-11 18:16 - 2016-10-15 04:36 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2016-12-11 18:16 - 2016-10-15 04:36 - 00358912 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2016-12-11 18:16 - 2016-10-15 04:36 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\cmifw.dll
2016-12-11 18:16 - 2016-10-15 04:35 - 02708992 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2016-12-11 18:16 - 2016-10-15 04:35 - 02005504 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2016-12-11 18:16 - 2016-10-15 04:33 - 00188928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2016-12-11 18:16 - 2016-10-05 11:05 - 00099680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tm.sys
2016-12-11 18:16 - 2016-10-05 10:59 - 00949600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2016-12-11 18:16 - 2016-10-05 10:54 - 01097568 _____ (Microsoft Corporation) C:\Windows\system32\wpx.dll
2016-12-11 18:16 - 2016-10-05 10:49 - 01980768 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2016-12-11 18:16 - 2016-10-05 10:48 - 01022304 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2016-12-11 18:16 - 2016-10-05 10:46 - 01360456 _____ (Microsoft Corporation) C:\Windows\system32\mfnetsrc.dll
2016-12-11 18:16 - 2016-10-05 10:46 - 00980824 _____ (Microsoft Corporation) C:\Windows\system32\mfnetcore.dll
2016-12-11 18:16 - 2016-10-05 10:31 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\ConfigureExpandedStorage.dll
2016-12-11 18:16 - 2016-10-05 10:28 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2016-12-11 18:16 - 2016-10-05 10:28 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\UserDeviceRegistration.dll
2016-12-11 18:16 - 2016-10-05 10:28 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.HostName.dll
2016-12-11 18:16 - 2016-10-05 10:27 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-12-11 18:16 - 2016-10-05 10:26 - 00137216 _____ (Microsoft Corporation) C:\Windows\system32\credprovs.dll
2016-12-11 18:16 - 2016-10-05 10:26 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\UserDeviceRegistration.Ngc.dll
2016-12-11 18:16 - 2016-10-05 10:25 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\dsreg.dll
2016-12-11 18:16 - 2016-10-05 10:25 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\UserDataAccountApis.dll
2016-12-11 18:16 - 2016-10-05 10:25 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\cloudAP.dll
2016-12-11 18:16 - 2016-10-05 10:25 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\shutdownux.dll
2016-12-11 18:16 - 2016-10-05 10:25 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\AuthBroker.dll