FRST Logfile:
Code:
Alles auswählen Aufklappen ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 14-05-2017
durchgeführt von ***** (Administrator) auf DESKTOP-9CEMT85 (20-05-2017 10:32:34)
Gestartet von C:\Users\*****\Desktop
Geladene Profile: ***** (Verfügbare Profile: defaultuser0 & *****)
Platform: Windows 10 Home Version 1607 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(Synaptics) C:\Program Files\Synaptics\SynTP\SynLenovoHelper.exe
(Microsoft Corporation) C:\Windows\syswow64\notepad.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.14393.82_none_5be7b69702339d1d\TiWorker.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [ForteConfig] => C:\Program Files\Conexant\ForteConfig\fmapp.exe [49056 2010-10-26] ()
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [935104 2014-11-26] (Conexant Systems, Inc.)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [213824 2017-05-05] (AVAST Software)
HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [2780112 2017-01-20] (Malwarebytes)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-05-05] (AVAST Software)
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{e00865d3-2c78-476d-941d-ab07c4139ac5}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
FireFox:
========
FF DefaultProfile: kmuzb0l0.default
FF ProfilePath: C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\kmuzb0l0.default [2017-05-20]
FF Extension: (DuckDuckGo Plus) - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\kmuzb0l0.default\Extensions\jid1-ZAdIEUB7XOzOJw@jetpack.xpi [2017-05-05]
FF Extension: (Avast SafePrice) - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\kmuzb0l0.default\Extensions\sp@avast.com.xpi [2017-05-05]
FF Extension: (Avast Online Security) - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\kmuzb0l0.default\Extensions\wrc@avast.com.xpi [2017-05-05]
FF Extension: (Adblock Plus) - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\kmuzb0l0.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-05-05]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-05] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-05] (Google Inc.)
Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com
CHR Profile: C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default [2017-05-09]
CHR Extension: (Google Präsentationen) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-05-05]
CHR Extension: (Google Docs) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-05-09]
CHR Extension: (Google Drive) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-05-09]
CHR Extension: (YouTube) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-05-09]
CHR Extension: (Avast SafePrice) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2017-05-09]
CHR Extension: (Google Tabellen) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-05-05]
CHR Extension: (Google Docs Offline) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-05-09]
CHR Extension: (Avast Online Security) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2017-05-09]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-05-05]
CHR Extension: (Google Mail) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-05-09]
CHR Extension: (Chrome Media Router) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-05-05]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
==================== Dienste (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7346208 2017-05-05] (AVAST Software s.r.o.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [263304 2017-05-05] (AVAST Software)
R2 igfxCUIService1.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [337888 2016-05-03] (Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4355024 2017-01-20] (Malwarebytes)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [255096 2015-10-25] (Synaptics Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347320 2017-04-28] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103712 2017-04-28] (Microsoft Corporation)
===================== Treiber (Nicht auf der Ausnahmeliste) ======================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R1 aswbidsdriver; C:\WINDOWS\system32\drivers\aswbidsdrivera.sys [311808 2017-05-05] (AVAST Software s.r.o.)
R0 aswbidsh; C:\WINDOWS\system32\drivers\aswbidsha.sys [190256 2017-05-05] (AVAST Software s.r.o.)
R0 aswblog; C:\WINDOWS\system32\drivers\aswbloga.sys [334576 2017-05-05] (AVAST Software s.r.o.)
R0 aswbuniv; C:\WINDOWS\system32\drivers\aswbuniva.sys [49016 2017-05-05] (AVAST Software s.r.o.)
S3 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [38296 2017-05-05] (AVAST Software)
R1 aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [32600 2017-05-05] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [128648 2017-05-05] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [101152 2017-05-05] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys [75704 2017-05-05] (AVAST Software)
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [1007160 2017-05-05] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [569192 2017-05-05] (AVAST Software)
R2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [158880 2017-05-15] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [339696 2017-05-05] (AVAST Software)
S3 dot4; C:\WINDOWS\System32\drivers\Dot4.sys [151968 2012-09-25] (Windows (R) Win 7 DDK provider)
R0 MBAMSwissArmy; C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [251832 2017-05-18] (Malwarebytes)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 NETwNe64; C:\WINDOWS\System32\drivers\NETwew01.sys [3343872 2016-07-16] (Intel Corporation)
R3 RSP2STOR; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [310528 2015-06-05] (Realtek Semiconductor Corp.)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [589824 2016-07-16] (Realtek )
S3 SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [50808 2015-10-25] (Synaptics Incorporated)
R3 SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [51320 2015-10-25] (Synaptics Incorporated)
S3 ssudcdf; C:\WINDOWS\System32\drivers\ssudcdf.sys [36608 2014-01-22] (DEVGURU Co., LTD.(www.devguru.co.kr))
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2017-05-19 16:07 - 2017-05-19 16:07 - 00000712 _____ C:\Users\*****\Desktop\JRT.txt
2017-05-19 15:48 - 2017-05-19 15:48 - 01663672 _____ (Malwarebytes) C:\Users\*****\Desktop\JRT.exe
2017-05-19 15:48 - 2017-05-19 15:48 - 00000000 ____D C:\ProgramData\SWCUTemp
2017-05-18 22:08 - 2017-05-18 22:15 - 00000000 ____D C:\AdwCleaner
2017-05-18 22:06 - 2017-05-18 22:07 - 04102600 _____ C:\Users\*****\Desktop\AdwCleaner_6.046.exe
2017-05-18 17:59 - 2017-05-18 18:26 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2017-05-18 17:56 - 2017-05-18 18:31 - 00000000 ____D C:\Users\*****\Desktop\mbar
2017-05-18 17:55 - 2017-05-18 17:56 - 16563352 _____ (Malwarebytes Corp.) C:\Users\*****\Desktop\mbar-1.09.3.1001.exe
2017-05-17 21:07 - 2017-05-17 20:56 - 00532136 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2017-05-17 20:58 - 2017-05-17 20:58 - 00001079 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk
2017-05-17 20:58 - 2017-05-17 20:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2017-05-17 20:58 - 2017-05-17 20:58 - 00000000 ____D C:\Program Files\VS Revo Group
2017-05-17 20:56 - 2017-05-17 20:57 - 07178424 _____ (VS Revo Group ) C:\Users\*****\Downloads\revosetup_v2.0.3.exe
2017-05-16 15:36 - 2017-05-16 15:36 - 00000110 ____H C:\Users\*****\Desktop\.~lock.Lektüre zur Sitzung 04 - Teilnehmende Beobachtung.odt#
2017-05-16 13:12 - 2017-05-16 13:12 - 00000412 _____ C:\Users\*****\Desktop\edit.txt
2017-05-16 12:31 - 2017-04-28 02:59 - 00601712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2017-05-16 12:31 - 2017-04-28 02:56 - 02048488 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2017-05-16 12:31 - 2017-04-28 02:48 - 00263472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2017-05-16 12:31 - 2017-04-28 02:46 - 05722320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2017-05-16 12:31 - 2017-04-28 02:46 - 01504056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2017-05-16 12:31 - 2017-04-28 02:46 - 01431232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2017-05-16 12:31 - 2017-04-28 02:45 - 02263832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2017-05-16 12:31 - 2017-04-28 02:45 - 00975744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2017-05-16 12:31 - 2017-04-28 02:45 - 00861024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2017-05-16 12:31 - 2017-04-28 02:45 - 00781144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2017-05-16 12:31 - 2017-04-28 02:45 - 00116576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2017-05-16 12:31 - 2017-04-28 02:43 - 02168288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2017-05-16 12:31 - 2017-04-28 02:43 - 01980768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2017-05-16 12:31 - 2017-04-28 02:43 - 01557224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2017-05-16 12:31 - 2017-04-28 02:43 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2017-05-16 12:31 - 2017-04-28 02:42 - 00601952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2017-05-16 12:31 - 2017-04-28 02:40 - 06665952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2017-05-16 12:31 - 2017-04-28 02:40 - 04023008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2017-05-16 12:31 - 2017-04-28 02:40 - 01851696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2017-05-16 12:31 - 2017-04-28 02:40 - 01360456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2017-05-16 12:31 - 2017-04-28 02:40 - 01277856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2017-05-16 12:31 - 2017-04-28 02:40 - 01202936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2017-05-16 12:31 - 2017-04-28 02:40 - 00981888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2017-05-16 12:31 - 2017-04-28 02:39 - 20967840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2017-05-16 12:31 - 2017-04-28 02:39 - 04312248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2017-05-16 12:31 - 2017-04-28 02:39 - 00962760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2017-05-16 12:31 - 2017-04-28 02:35 - 01414208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2017-05-16 12:31 - 2017-04-28 02:29 - 05685760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2017-05-16 12:31 - 2017-04-28 02:23 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2017-05-16 12:31 - 2017-04-28 02:22 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2017-05-16 12:31 - 2017-04-28 02:21 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll
2017-05-16 12:31 - 2017-04-28 02:20 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Radios.dll
2017-05-16 12:31 - 2017-04-28 02:19 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
2017-05-16 12:31 - 2017-04-28 02:19 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2017-05-16 12:31 - 2017-04-28 02:18 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp
2017-05-16 12:31 - 2017-04-28 02:17 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll
2017-05-16 12:31 - 2017-04-28 02:17 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinRtTracing.dll
2017-05-16 12:31 - 2017-04-28 02:17 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2017-05-16 12:31 - 2017-04-28 02:16 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.Input.dll
2017-05-16 12:31 - 2017-04-28 02:16 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.LowLevel.dll
2017-05-16 12:31 - 2017-04-28 02:16 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
2017-05-16 12:31 - 2017-04-28 02:16 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2017-05-16 12:31 - 2017-04-28 02:16 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2017-05-16 12:31 - 2017-04-28 02:16 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2017-05-16 12:31 - 2017-04-28 02:16 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2017-05-16 12:31 - 2017-04-28 02:16 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Lights.dll
2017-05-16 12:31 - 2017-04-28 02:15 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2017-05-16 12:31 - 2017-04-28 02:15 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll
2017-05-16 12:31 - 2017-04-28 02:15 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBroker.dll
2017-05-16 12:31 - 2017-04-28 02:15 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Core.dll
2017-05-16 12:31 - 2017-04-28 02:14 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll
2017-05-16 12:31 - 2017-04-28 02:14 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.AllJoyn.dll
2017-05-16 12:31 - 2017-04-28 02:14 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe
2017-05-16 12:31 - 2017-04-28 02:13 - 13873664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2017-05-16 12:31 - 2017-04-28 02:13 - 01243136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.FaceAnalysis.dll
2017-05-16 12:31 - 2017-04-28 02:13 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll
2017-05-16 12:31 - 2017-04-28 02:13 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Wallet.dll
2017-05-16 12:31 - 2017-04-28 02:13 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll
2017-05-16 12:31 - 2017-04-28 02:13 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2017-05-16 12:31 - 2017-04-28 02:13 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2017-05-16 12:31 - 2017-04-28 02:13 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2017-05-16 12:31 - 2017-04-28 02:13 - 00271360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2017-05-16 12:31 - 2017-04-28 02:13 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll
2017-05-16 12:31 - 2017-04-28 02:13 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2017-05-16 12:31 - 2017-04-28 02:13 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2017-05-16 12:31 - 2017-04-28 02:13 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2017-05-16 12:31 - 2017-04-28 02:12 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll
2017-05-16 12:31 - 2017-04-28 02:12 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2017-05-16 12:31 - 2017-04-28 02:12 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
2017-05-16 12:31 - 2017-04-28 02:12 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll
2017-05-16 12:31 - 2017-04-28 02:11 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Ocr.dll
2017-05-16 12:31 - 2017-04-28 02:10 - 00819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2017-05-16 12:31 - 2017-04-28 02:10 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll
2017-05-16 12:31 - 2017-04-28 02:10 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2017-05-16 12:31 - 2017-04-28 02:10 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2017-05-16 12:31 - 2017-04-28 02:10 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2017-05-16 12:31 - 2017-04-28 02:09 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2017-05-16 12:31 - 2017-04-28 02:08 - 07626752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2017-05-16 12:31 - 2017-04-28 02:08 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll
2017-05-16 12:31 - 2017-04-28 02:08 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2017-05-16 12:31 - 2017-04-28 02:08 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CryptoWinRT.dll
2017-05-16 12:31 - 2017-04-28 02:07 - 00525312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2017-05-16 12:31 - 2017-04-28 02:06 - 04614656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2017-05-16 12:31 - 2017-04-28 02:06 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2017-05-16 12:31 - 2017-04-28 02:06 - 00901120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2017-05-16 12:31 - 2017-04-28 02:06 - 00675840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2017-05-16 12:31 - 2017-04-28 02:05 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2017-05-16 12:31 - 2017-04-28 02:05 - 00886272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2017-05-16 12:31 - 2017-04-28 02:05 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2017-05-16 12:31 - 2017-04-28 02:04 - 01323008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2017-05-16 12:31 - 2017-04-28 02:03 - 01137152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2017-05-16 12:31 - 2017-04-28 02:03 - 01077760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll
2017-05-16 12:31 - 2017-04-28 02:03 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTMediaFrame.dll
2017-05-16 12:31 - 2017-04-28 02:02 - 03307008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2017-05-16 12:31 - 2017-04-28 02:01 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MiracastReceiver.dll
2017-05-16 12:31 - 2017-04-28 02:01 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2017-05-16 12:31 - 2017-04-28 02:01 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2017-05-16 12:31 - 2017-04-28 02:01 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2017-05-16 12:31 - 2017-04-28 02:01 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dialclient.dll
2017-05-16 12:31 - 2017-04-28 02:00 - 02749440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2017-05-16 12:31 - 2017-04-28 02:00 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2017-05-16 12:31 - 2017-04-28 01:59 - 02154496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2017-05-16 12:31 - 2017-04-28 01:59 - 00895488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2017-05-16 12:31 - 2017-04-28 01:59 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToReceiver.dll
2017-05-16 12:31 - 2017-04-28 01:58 - 07468544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2017-05-16 12:31 - 2017-04-28 01:58 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll
2017-05-16 12:31 - 2017-04-28 01:58 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2017-05-16 12:31 - 2017-04-28 01:57 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2017-05-16 12:31 - 2017-04-28 01:57 - 01221120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2017-05-16 12:31 - 2017-04-28 01:57 - 00719872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_sr.dll
2017-05-16 12:31 - 2017-04-28 01:57 - 00641024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2017-05-16 12:31 - 2017-04-28 01:56 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2017-05-16 12:31 - 2017-04-28 01:56 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
2017-05-16 12:31 - 2017-04-28 01:56 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
2017-05-16 12:31 - 2017-04-28 01:55 - 01993216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2017-05-16 12:31 - 2017-04-28 01:55 - 01987584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2017-05-16 12:31 - 2017-04-28 01:55 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Perception.dll
2017-05-16 12:31 - 2017-04-28 01:55 - 01232384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll
2017-05-16 12:31 - 2017-04-28 01:55 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2017-05-16 12:31 - 2017-04-28 01:55 - 01004544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2017-05-16 12:31 - 2017-04-28 01:54 - 02747904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2017-05-16 12:31 - 2017-04-28 01:54 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2017-05-16 12:31 - 2017-04-28 01:54 - 02483200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2017-05-16 12:31 - 2017-04-28 01:54 - 01883648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2017-05-16 12:31 - 2017-04-28 01:54 - 01013248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2017-05-16 12:31 - 2017-04-28 01:54 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2017-05-16 12:31 - 2017-04-28 01:54 - 00598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2017-05-16 12:31 - 2017-04-28 01:54 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2017-05-16 12:31 - 2017-04-28 01:54 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
2017-05-16 12:31 - 2017-04-28 01:53 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll
2017-05-16 12:31 - 2017-04-28 01:53 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2017-05-16 12:31 - 2017-04-28 01:53 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2017-05-16 12:31 - 2017-04-28 01:52 - 03106304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2017-05-16 12:31 - 2017-04-28 01:52 - 02994176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2017-05-16 12:31 - 2017-04-28 01:52 - 02008576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2017-05-16 12:31 - 2017-04-28 01:52 - 01600000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2017-05-16 12:31 - 2017-04-28 01:50 - 00783360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2017-05-16 12:31 - 2017-04-28 01:30 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2017-05-16 12:31 - 2017-03-04 09:57 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2017-05-16 12:31 - 2017-03-04 08:23 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2017-05-16 12:31 - 2017-03-04 08:22 - 00265728 _____ C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2017-05-16 12:31 - 2017-03-04 08:17 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2017-05-16 12:31 - 2017-03-04 08:16 - 00500224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2017-05-16 12:31 - 2017-03-04 08:01 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2017-05-16 12:31 - 2017-03-04 08:00 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2017-05-16 12:30 - 2017-04-28 03:28 - 00965472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2017-05-16 12:30 - 2017-04-28 02:58 - 01706488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2017-05-16 12:30 - 2017-04-28 02:57 - 00794928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2017-05-16 12:30 - 2017-04-28 02:55 - 00088416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\scmbus.sys
2017-05-16 12:30 - 2017-04-28 02:53 - 02213760 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2017-05-16 12:30 - 2017-04-28 02:53 - 00774224 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2017-05-16 12:30 - 2017-04-28 02:53 - 00616048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2017-05-16 12:30 - 2017-04-28 02:45 - 00493920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2017-05-16 12:30 - 2017-04-28 02:41 - 00361104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2017-05-16 12:30 - 2017-04-28 02:40 - 07220184 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2017-05-16 12:30 - 2017-04-28 02:40 - 01860288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2017-05-16 12:30 - 2017-04-28 02:40 - 00857440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2017-05-16 12:30 - 2017-04-28 02:40 - 00352760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2017-05-16 12:30 - 2017-04-28 02:39 - 00715104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2017-05-16 12:30 - 2017-04-28 02:38 - 00847200 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2017-05-16 12:30 - 2017-04-28 02:38 - 00557408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2017-05-16 12:30 - 2017-04-28 02:36 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2017-05-16 12:30 - 2017-04-28 02:35 - 08170600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-05-16 12:30 - 2017-04-28 02:35 - 04260576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2017-05-16 12:30 - 2017-04-28 02:35 - 01988048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2017-05-16 12:30 - 2017-04-28 02:35 - 01702392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2017-05-16 12:30 - 2017-04-28 02:35 - 01302136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2017-05-16 12:30 - 2017-04-28 02:35 - 00596040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2017-05-16 12:30 - 2017-04-28 02:35 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\input.dll
2017-05-16 12:30 - 2017-04-28 02:34 - 22220856 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2017-05-16 12:30 - 2017-04-28 02:34 - 01072248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2017-05-16 12:30 - 2017-04-28 02:28 - 00453536 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2017-05-16 12:30 - 2017-04-28 02:28 - 00387864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2017-05-16 12:30 - 2017-04-28 02:23 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2017-05-16 12:30 - 2017-04-28 02:22 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll
2017-05-16 12:30 - 2017-04-28 02:21 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BthTelemetry.dll
2017-05-16 12:30 - 2017-04-28 02:20 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\virtdisk.dll
2017-05-16 12:30 - 2017-04-28 02:18 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2017-05-16 12:30 - 2017-04-28 02:18 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll
2017-05-16 12:30 - 2017-04-28 02:17 - 00328192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2017-05-16 12:30 - 2017-04-28 02:17 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2017-05-16 12:30 - 2017-04-28 02:16 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2017-05-16 12:30 - 2017-04-28 02:15 - 00404992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
2017-05-16 12:30 - 2017-04-28 02:15 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastlsext.dll
2017-05-16 12:30 - 2017-04-28 02:15 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2017-05-16 12:30 - 2017-04-28 02:13 - 01755136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceFlows.DataModel.dll
2017-05-16 12:30 - 2017-04-28 02:13 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
2017-05-16 12:30 - 2017-04-28 02:13 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vaultcli.dll
2017-05-16 12:30 - 2017-04-28 02:13 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
2017-05-16 12:30 - 2017-04-28 02:13 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupugc.exe
2017-05-16 12:30 - 2017-04-28 02:11 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
2017-05-16 12:30 - 2017-04-28 02:11 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2017-05-16 12:30 - 2017-04-28 02:10 - 00857600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2017-05-16 12:30 - 2017-04-28 02:10 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2017-05-16 12:30 - 2017-04-28 02:09 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll
2017-05-16 12:30 - 2017-04-28 02:09 - 00509440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2017-05-16 12:30 - 2017-04-28 02:09 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2017-05-16 12:30 - 2017-04-28 02:09 - 00352256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2017-05-16 12:30 - 2017-04-28 02:08 - 01228288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2017-05-16 12:30 - 2017-04-28 02:07 - 03689984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2017-05-16 12:30 - 2017-04-28 02:07 - 00372736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2017-05-16 12:30 - 2017-04-28 02:07 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2017-05-16 12:30 - 2017-04-28 02:05 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2017-05-16 12:30 - 2017-04-28 02:04 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2017-05-16 12:30 - 2017-04-28 02:03 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll
2017-05-16 12:30 - 2017-04-28 02:03 - 00291328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsnt.dll
2017-05-16 12:30 - 2017-04-28 02:03 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Energy.dll
2017-05-16 12:30 - 2017-04-28 02:02 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2017-05-16 12:30 - 2017-04-28 02:02 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2017-05-16 12:30 - 2017-04-28 02:01 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
2017-05-16 12:30 - 2017-04-28 02:01 - 00233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2017-05-16 12:30 - 2017-04-28 02:00 - 12349440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2017-05-16 12:30 - 2017-04-28 02:00 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthLEEnum.sys
2017-05-16 12:30 - 2017-04-28 02:00 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinRtTracing.dll
2017-05-16 12:30 - 2017-04-28 02:00 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Core.dll
2017-05-16 12:30 - 2017-04-28 01:59 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.XboxLive.Storage.dll
2017-05-16 12:30 - 2017-04-28 01:58 - 00546304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2017-05-16 12:30 - 2017-04-28 01:58 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2.dll
2017-05-16 12:30 - 2017-04-28 01:58 - 00418304 _____ C:\WINDOWS\system32\Windows.Perception.Stub.dll
2017-05-16 12:30 - 2017-04-28 01:58 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2017-05-16 12:30 - 2017-04-28 01:57 - 01507840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.FaceAnalysis.dll
2017-05-16 12:30 - 2017-04-28 01:57 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2017-05-16 12:30 - 2017-04-28 01:57 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CameraCaptureUI.dll
2017-05-16 12:30 - 2017-04-28 01:56 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2017-05-16 12:30 - 2017-04-28 01:56 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2017-05-16 12:30 - 2017-04-28 01:56 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2017-05-16 12:30 - 2017-04-28 01:56 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2017-05-16 12:30 - 2017-04-28 01:56 - 00293888 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2017-05-16 12:30 - 2017-04-28 01:56 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe
2017-05-16 12:30 - 2017-04-28 01:55 - 01413632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2017-05-16 12:30 - 2017-04-28 01:55 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Wallet.dll
2017-05-16 12:30 - 2017-04-28 01:55 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2017-05-16 12:30 - 2017-04-28 01:54 - 00967680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2017-05-16 12:30 - 2017-04-28 01:54 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2017-05-16 12:30 - 2017-04-28 01:53 - 06288384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2017-05-16 12:30 - 2017-04-28 01:53 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2017-05-16 12:30 - 2017-04-28 01:53 - 00671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2017-05-16 12:30 - 2017-04-28 01:53 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll
2017-05-16 12:30 - 2017-04-28 01:51 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2017-05-16 12:30 - 2017-04-28 01:51 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTMediaFrame.dll
2017-05-16 12:30 - 2017-04-28 01:51 - 00409600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2017-05-16 12:30 - 2017-04-28 01:50 - 03778048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2017-05-16 12:30 - 2017-04-28 01:49 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2017-05-16 12:30 - 2017-04-28 01:47 - 01908224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2017-05-16 12:30 - 2017-04-28 01:47 - 01078784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2017-05-16 12:30 - 2017-04-28 01:47 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceControl.dll
2017-05-16 12:30 - 2017-04-28 01:45 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2017-05-16 12:30 - 2017-04-28 01:45 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2017-05-16 12:30 - 2017-04-28 01:44 - 01366016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2017-05-16 12:30 - 2017-04-28 01:44 - 01145344 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2017-05-16 12:30 - 2017-04-28 01:44 - 00548864 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2017-05-16 12:30 - 2017-04-28 01:43 - 00963584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2017-05-16 12:30 - 2017-04-28 01:43 - 00331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2017-05-16 12:30 - 2017-04-28 01:42 - 13441536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2017-05-16 12:30 - 2017-04-28 01:42 - 08076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2017-05-16 12:30 - 2017-04-28 01:42 - 02390016 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2017-05-16 12:30 - 2017-04-28 01:41 - 01080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Ocr.dll
2017-05-16 12:30 - 2017-04-28 01:41 - 00983040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2017-05-16 12:30 - 2017-04-28 01:41 - 00860160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2017-05-16 12:30 - 2017-04-28 01:41 - 00611328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2017-05-16 12:30 - 2017-04-28 01:40 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2017-05-16 12:30 - 2017-04-28 01:39 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2017-05-16 12:30 - 2017-04-28 01:39 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2017-05-16 12:30 - 2017-04-28 01:38 - 02424320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Perception.dll
2017-05-16 12:30 - 2017-04-28 01:38 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2017-05-16 12:30 - 2017-04-28 01:38 - 00765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2017-05-16 12:30 - 2017-04-28 01:37 - 04149248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2017-05-16 12:30 - 2017-04-28 01:37 - 03134976 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2017-05-16 12:30 - 2017-04-28 01:37 - 02538496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2017-05-16 12:30 - 2017-04-28 01:37 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2017-05-16 12:30 - 2017-04-28 01:37 - 01424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll
2017-05-16 12:30 - 2017-04-28 01:37 - 01266176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2017-05-16 12:30 - 2017-04-28 01:37 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2017-05-16 12:30 - 2017-04-28 01:36 - 01131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2017-05-16 12:30 - 2017-04-28 01:35 - 03299840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2017-05-16 12:30 - 2017-04-28 01:34 - 00999424 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2017-05-16 12:30 - 2017-03-04 09:09 - 01293152 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2017-05-16 12:30 - 2017-03-04 08:27 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2017-05-16 12:30 - 2017-03-04 08:25 - 01388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2017-05-16 12:30 - 2017-03-04 08:19 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2017-05-16 12:30 - 2017-03-04 08:06 - 01369088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2017-05-16 12:30 - 2017-03-04 08:05 - 03520512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2017-05-16 12:29 - 2017-04-28 02:57 - 00603488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2017-05-16 12:29 - 2017-04-28 02:53 - 07784288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2017-05-16 12:29 - 2017-04-28 02:49 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2017-05-16 12:29 - 2017-04-28 02:42 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2017-05-16 12:29 - 2017-04-28 02:40 - 02759704 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2017-05-16 12:29 - 2017-04-28 02:40 - 02187104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2017-05-16 12:29 - 2017-04-28 02:40 - 01738560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2017-05-16 12:29 - 2017-04-28 02:40 - 01157000 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2017-05-16 12:29 - 2017-04-28 02:40 - 00402784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2017-05-16 12:29 - 2017-04-28 02:40 - 00026976 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser_broker.exe
2017-05-16 12:29 - 2017-04-28 02:38 - 00431968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2017-05-16 12:29 - 2017-04-28 02:36 - 00408600 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2017-05-16 12:29 - 2017-04-28 02:34 - 01277824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2017-05-16 12:29 - 2017-04-28 02:34 - 00443232 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2017-05-16 12:29 - 2017-04-28 02:34 - 00244824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2017-05-16 12:29 - 2017-04-28 02:34 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2017-05-16 12:29 - 2017-04-28 02:21 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2017-05-16 12:29 - 2017-04-28 02:19 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2017-05-16 12:29 - 2017-04-28 02:15 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2017-05-16 12:29 - 2017-04-28 02:14 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2017-05-16 12:29 - 2017-04-28 02:14 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2017-05-16 12:29 - 2017-04-28 02:11 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2017-05-16 12:29 - 2017-04-28 02:10 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2017-05-16 12:29 - 2017-04-28 02:08 - 18365440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2017-05-16 12:29 - 2017-04-28 02:06 - 22569472 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2017-05-16 12:29 - 2017-04-28 02:06 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2017-05-16 12:29 - 2017-04-28 02:05 - 19414016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2017-05-16 12:29 - 2017-04-28 02:05 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-05-16 12:29 - 2017-04-28 02:03 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2017-05-16 12:29 - 2017-04-28 02:03 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\raspppoe.sys
2017-05-16 12:29 - 2017-04-28 02:03 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2017-05-16 12:29 - 2017-04-28 02:02 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifimp.sys
2017-05-16 12:29 - 2017-04-28 02:01 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2017-05-16 12:29 - 2017-04-28 02:01 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Printers.dll
2017-05-16 12:29 - 2017-04-28 02:00 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2017-05-16 12:29 - 2017-04-28 02:00 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2017-05-16 12:29 - 2017-04-28 01:59 - 12187136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2017-05-16 12:29 - 2017-04-28 01:59 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2017-05-16 12:29 - 2017-04-28 01:59 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastlsext.dll
2017-05-16 12:29 - 2017-04-28 01:58 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2017-05-16 12:29 - 2017-04-28 01:58 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2017-05-16 12:29 - 2017-04-28 01:58 - 00276992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2017-05-16 12:29 - 2017-04-28 01:58 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Lights.dll
2017-05-16 12:29 - 2017-04-28 01:57 - 00568320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2017-05-16 12:29 - 2017-04-28 01:57 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2017-05-16 12:29 - 2017-04-28 01:57 - 00502784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2017-05-16 12:29 - 2017-04-28 01:57 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2017-05-16 12:29 - 2017-04-28 01:57 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2017-05-16 12:29 - 2017-04-28 01:57 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2017-05-16 12:29 - 2017-04-28 01:57 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2017-05-16 12:29 - 2017-04-28 01:57 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintWSDAHost.dll
2017-05-16 12:29 - 2017-04-28 01:56 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2017-05-16 12:29 - 2017-04-28 01:56 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2017-05-16 12:29 - 2017-04-28 01:56 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2017-05-16 12:29 - 2017-04-28 01:56 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll
2017-05-16 12:29 - 2017-04-28 01:56 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2017-05-16 12:29 - 2017-04-28 01:55 - 06042624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2017-05-16 12:29 - 2017-04-28 01:55 - 02084352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2017-05-16 12:29 - 2017-04-28 01:55 - 00657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2017-05-16 12:29 - 2017-04-28 01:55 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2017-05-16 12:29 - 2017-04-28 01:55 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2017-05-16 12:29 - 2017-04-28 01:55 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs3D.dll
2017-05-16 12:29 - 2017-04-28 01:54 - 03664384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2017-05-16 12:29 - 2017-04-28 01:54 - 02027008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2017-05-16 12:29 - 2017-04-28 01:54 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2017-05-16 12:29 - 2017-04-28 01:54 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2017-05-16 12:29 - 2017-04-28 01:54 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2017-05-16 12:29 - 2017-04-28 01:54 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2017-05-16 12:29 - 2017-04-28 01:54 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV2.dll
2017-05-16 12:29 - 2017-04-28 01:53 - 03059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2017-05-16 12:29 - 2017-04-28 01:53 - 00579584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2017-05-16 12:29 - 2017-04-28 01:53 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2017-05-16 12:29 - 2017-04-28 01:53 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2017-05-16 12:29 - 2017-04-28 01:51 - 02104320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2017-05-16 12:29 - 2017-04-28 01:51 - 01589760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2017-05-16 12:29 - 2017-04-28 01:50 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2017-05-16 12:29 - 2017-04-28 01:49 - 17198592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-05-16 12:29 - 2017-04-28 01:49 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2017-05-16 12:29 - 2017-04-28 01:49 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2017-05-16 12:29 - 2017-04-28 01:47 - 01790464 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2017-05-16 12:29 - 2017-04-28 01:47 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2017-05-16 12:29 - 2017-04-28 01:46 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll
2017-05-16 12:29 - 2017-04-28 01:45 - 23677440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2017-05-16 12:29 - 2017-04-28 01:45 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\CameraCaptureUI.dll
2017-05-16 12:29 - 2017-04-28 01:44 - 13091328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2017-05-16 12:29 - 2017-04-28 01:44 - 00937984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2017-05-16 12:29 - 2017-04-28 01:44 - 00583680 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs.dll
2017-05-16 12:29 - 2017-04-28 01:43 - 01184256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2017-05-16 12:29 - 2017-04-28 01:43 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2017-05-16 12:29 - 2017-04-28 01:43 - 00634368 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2017-05-16 12:29 - 2017-04-28 01:43 - 00539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2017-05-16 12:29 - 2017-04-28 01:43 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2017-05-16 12:29 - 2017-04-28 01:43 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2017-05-16 12:29 - 2017-04-28 01:43 - 00320512 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2017-05-16 12:29 - 2017-04-28 01:42 - 08125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2017-05-16 12:29 - 2017-04-28 01:42 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2017-05-16 12:29 - 2017-04-28 01:42 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2017-05-16 12:29 - 2017-04-28 01:41 - 00759296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2017-05-16 12:29 - 2017-04-28 01:41 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2017-05-16 12:29 - 2017-04-28 01:41 - 00591360 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2017-05-16 12:29 - 2017-04-28 01:40 - 04474368 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2017-05-16 12:29 - 2017-04-28 01:40 - 02208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2017-05-16 12:29 - 2017-04-28 01:40 - 02096640 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2017-05-16 12:29 - 2017-04-28 01:40 - 01040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll
2017-05-16 12:29 - 2017-04-28 01:40 - 00971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2017-05-16 12:29 - 2017-04-28 01:40 - 00913920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2017-05-16 12:29 - 2017-04-28 01:38 - 05611008 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2017-05-16 12:29 - 2017-04-28 01:38 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2017-05-16 12:29 - 2017-04-28 01:37 - 04744192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2017-05-16 12:29 - 2017-04-28 01:37 - 02895872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2017-05-16 12:29 - 2017-04-28 01:37 - 02286592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2017-05-16 12:29 - 2017-04-28 01:37 - 01783296 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2017-05-16 12:29 - 2017-04-28 01:37 - 01637888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2017-05-16 12:29 - 2017-04-28 01:37 - 00875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2017-05-16 12:29 - 2017-04-28 01:36 - 02691072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2017-05-16 12:29 - 2017-04-28 01:36 - 02478080 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2017-05-16 12:29 - 2017-04-28 01:36 - 01844224 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2017-05-16 12:29 - 2017-04-28 01:36 - 01513472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2017-05-16 12:29 - 2017-04-28 01:36 - 01328640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2017-05-16 12:29 - 2017-04-28 01:36 - 00774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2017-05-16 12:29 - 2017-04-28 01:36 - 00735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2017-05-16 12:29 - 2017-04-28 01:35 - 01121280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2017-05-16 12:29 - 2017-04-28 01:35 - 00924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2017-05-16 12:29 - 2017-04-28 01:34 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprt.exe
2017-05-16 12:29 - 2017-04-28 01:34 - 00394240 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2017-05-16 12:29 - 2017-03-04 08:26 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll
2017-05-16 12:28 - 2017-05-16 12:28 - 00047317 _____ C:\Users\*****\Downloads\FRST.txt
2017-05-16 12:28 - 2017-04-28 02:56 - 01117024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2017-05-16 12:28 - 2017-04-28 02:52 - 02255712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2017-05-16 12:28 - 2017-04-28 02:49 - 00764392 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2017-05-16 12:28 - 2017-04-28 02:49 - 00700936 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2017-05-16 12:28 - 2017-04-28 02:47 - 00699744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2017-05-16 12:28 - 2017-04-28 02:47 - 00501088 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
2017-05-16 12:28 - 2017-04-28 02:46 - 00410464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll
2017-05-16 12:28 - 2017-04-28 02:44 - 00062816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fsdepends.sys
2017-05-16 12:28 - 2017-04-28 02:42 - 00526176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2017-05-16 12:28 - 2017-04-28 02:40 - 00578400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2017-05-16 12:28 - 2017-04-28 02:40 - 00146784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2017-05-16 12:28 - 2017-04-28 02:39 - 00624048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2017-05-16 12:28 - 2017-04-28 02:38 - 02915704 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2017-05-16 12:28 - 2017-04-28 02:38 - 02446704 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2017-05-16 12:28 - 2017-04-28 02:38 - 01852200 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2017-05-16 12:28 - 2017-04-28 02:38 - 01267512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2017-05-16 12:28 - 2017-04-28 02:34 - 04674360 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2017-05-16 12:28 - 2017-04-28 02:34 - 01600624 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2017-05-16 12:28 - 2017-04-28 02:30 - 01569184 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2017-05-16 12:28 - 2017-04-28 02:30 - 00322912 _____ (Microsoft Corporation) C:\WINDOWS\system32\input.dll
2017-05-16 12:28 - 2017-04-28 02:28 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2017-05-16 12:28 - 2017-04-28 02:19 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
2017-05-16 12:28 - 2017-04-28 02:15 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2017-05-16 12:28 - 2017-04-28 02:12 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2017-05-16 12:28 - 2017-04-28 02:12 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2017-05-16 12:28 - 2017-04-28 02:10 - 07216640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2017-05-16 12:28 - 2017-04-28 02:03 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2017-05-16 12:28 - 2017-04-28 02:03 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthTelemetry.dll
2017-05-16 12:28 - 2017-04-28 02:02 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidcertstorecheck.exe
2017-05-16 12:28 - 2017-04-28 02:01 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.SyncEngine.dll
2017-05-16 12:28 - 2017-04-28 02:01 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Family.Client.dll
2017-05-16 12:28 - 2017-04-28 02:01 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ClosedCaptioning.dll
2017-05-16 12:28 - 2017-04-28 02:01 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\virtdisk.dll
2017-05-16 12:28 - 2017-04-28 02:00 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2017-05-16 12:28 - 2017-04-28 02:00 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll
2017-05-16 12:28 - 2017-04-28 02:00 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll
2017-05-16 12:28 - 2017-04-28 02:00 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2017-05-16 12:28 - 2017-04-28 02:00 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2017-05-16 12:28 - 2017-04-28 02:00 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2017-05-16 12:28 - 2017-04-28 01:59 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2017-05-16 12:28 - 2017-04-28 01:59 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Radios.dll
2017-05-16 12:28 - 2017-04-28 01:59 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidsvc.dll
2017-05-16 12:28 - 2017-04-28 01:59 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2017-05-16 12:28 - 2017-04-28 01:58 - 00547840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Input.dll
2017-05-16 12:28 - 2017-04-28 01:58 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2017-05-16 12:28 - 2017-04-28 01:58 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2017-05-16 12:28 - 2017-04-28 01:58 - 00150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2017-05-16 12:28 - 2017-04-28 01:58 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsentUX.dll
2017-05-16 12:28 - 2017-04-28 01:57 - 00651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.AllJoyn.dll
2017-05-16 12:28 - 2017-04-28 01:57 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2017-05-16 12:28 - 2017-04-28 01:57 - 00241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2017-05-16 12:28 - 2017-04-28 01:57 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthserv.dll
2017-05-16 12:28 - 2017-04-28 01:56 - 00947712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2017-05-16 12:28 - 2017-04-28 01:56 - 00692224 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll
2017-05-16 12:28 - 2017-04-28 01:56 - 00379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2017-05-16 12:28 - 2017-04-28 01:56 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2017-05-16 12:28 - 2017-04-28 01:56 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2017-05-16 12:28 - 2017-04-28 01:56 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2017-05-16 12:28 - 2017-04-28 01:56 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2017-05-16 12:28 - 2017-04-28 01:55 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2017-05-16 12:28 - 2017-04-28 01:55 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2017-05-16 12:28 - 2017-04-28 01:55 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2017-05-16 12:28 - 2017-04-28 01:55 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2017-05-16 12:28 - 2017-04-28 01:54 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2017-05-16 12:28 - 2017-04-28 01:54 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2017-05-16 12:28 - 2017-04-28 01:51 - 01913856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2017-05-16 12:28 - 2017-04-28 01:51 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2017-05-16 12:28 - 2017-04-28 01:51 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Energy.dll
2017-05-16 12:28 - 2017-04-28 01:50 - 01476608 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2017-05-16 12:28 - 2017-04-28 01:50 - 00380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll
2017-05-16 12:28 - 2017-04-28 01:50 - 00338944 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsnt.dll
2017-05-16 12:28 - 2017-04-28 01:48 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2017-05-16 12:28 - 2017-04-28 01:48 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2017-05-16 12:28 - 2017-04-28 01:48 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialclient.dll
2017-05-16 12:28 - 2017-04-28 01:47 - 09131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2017-05-16 12:28 - 2017-04-28 01:47 - 03290112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2017-05-16 12:28 - 2017-04-28 01:47 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2017-05-16 12:28 - 2017-04-28 01:47 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe
2017-05-16 12:28 - 2017-04-28 01:46 - 02861056 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2017-05-16 12:28 - 2017-04-28 01:46 - 01547264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2017-05-16 12:28 - 2017-04-28 01:46 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2017-05-16 12:28 - 2017-04-28 01:46 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2.dll
2017-05-16 12:28 - 2017-04-28 01:46 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2017-05-16 12:28 - 2017-04-28 01:46 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvps.dll
2017-05-16 12:28 - 2017-04-28 01:45 - 00946688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_sr.dll
2017-05-16 12:28 - 2017-04-28 01:45 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2017-05-16 12:28 - 2017-04-28 01:45 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2017-05-16 12:28 - 2017-04-28 01:45 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll
2017-05-16 12:28 - 2017-04-28 01:45 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceAgent.exe
2017-05-16 12:28 - 2017-04-28 01:44 - 04749824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2017-05-16 12:28 - 2017-04-28 01:44 - 01010176 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2017-05-16 12:28 - 2017-04-28 01:44 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2017-05-16 12:28 - 2017-04-28 01:44 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2017-05-16 12:28 - 2017-04-28 01:44 - 00410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2017-05-16 12:28 - 2017-04-28 01:44 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2017-05-16 12:28 - 2017-04-28 01:43 - 00600576 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
2017-05-16 12:28 - 2017-04-28 01:43 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2017-05-16 12:28 - 2017-04-28 01:43 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2017-05-16 12:28 - 2017-04-28 01:42 - 01692160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-05-16 12:28 - 2017-04-28 01:42 - 01021440 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2017-05-16 12:28 - 2017-04-28 01:41 - 01359872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2017-05-16 12:28 - 2017-04-28 01:41 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2017-05-16 12:28 - 2017-04-28 01:41 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2017-05-16 12:28 - 2017-04-28 01:41 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
2017-05-16 12:28 - 2017-04-28 01:40 - 02914816 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2017-05-16 12:28 - 2017-04-28 01:40 - 02510848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2017-05-16 12:28 - 2017-04-28 01:40 - 01643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2017-05-16 12:28 - 2017-04-28 01:40 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2017-05-16 12:28 - 2017-04-28 01:40 - 00886784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2017-05-16 12:28 - 2017-04-28 01:40 - 00770560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2017-05-16 12:28 - 2017-04-28 01:39 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2017-05-16 12:28 - 2017-04-28 01:38 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2017-05-16 12:28 - 2017-04-28 01:37 - 02316288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2017-05-16 12:28 - 2017-04-28 01:37 - 02216960 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2017-05-16 12:28 - 2017-04-28 01:37 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2017-05-16 12:28 - 2017-04-28 01:36 - 03613184 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2017-05-16 12:28 - 2017-04-28 01:36 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2017-05-16 12:28 - 2017-04-28 01:34 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\spaceman.exe
2017-05-16 12:28 - 2017-04-28 01:33 - 01817088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2017-05-16 12:28 - 2017-03-04 08:25 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2017-05-16 12:28 - 2016-12-21 09:09 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneBackupHandler.dll
2017-05-16 12:26 - 2017-05-16 12:26 - 00022966 _____ C:\Users\*****\Downloads\Addition.txt
2017-05-16 12:23 - 2017-05-05 16:49 - 00002510 _____ C:\Users\*****\Desktop\mbam - Kopie.txt
2017-05-15 20:43 - 2017-05-16 12:29 - 00022966 _____ C:\Users\*****\Desktop\Addition.txt
2017-05-15 20:42 - 2017-05-20 10:33 - 00011153 _____ C:\Users\*****\Desktop\FRST.txt
2017-05-15 20:41 - 2017-05-20 10:32 - 00000000 ____D C:\FRST
2017-05-15 20:35 - 2017-05-15 20:40 - 02429952 _____ (Farbar) C:\Users\*****\Desktop\FRST64.exe
2017-05-14 11:45 - 2017-05-15 19:22 - 00023560 _____ C:\Users\*****\Desktop\Lektüre zur Sitzung 04 - Teilnehmende Beobachtung.odt
2017-05-13 20:53 - 2017-05-14 10:36 - 00024676 _____ C:\Users\*****\Documents\Unbenannt 2.odt
2017-05-13 20:29 - 2017-05-13 20:29 - 00010584 _____ C:\Users\*****\Documents\Unbenannt 1.odt
2017-05-13 20:28 - 2017-05-13 20:28 - 00000000 ____D C:\Users\*****\Desktop\KAEE
2017-05-10 22:36 - 2017-05-10 22:36 - 00000000 ____D C:\Users\*****\AppData\Roaming\OpenOffice
2017-05-10 22:29 - 2017-05-10 22:31 - 00000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.3
2017-05-10 22:29 - 2017-05-10 22:29 - 00001132 _____ C:\Users\Public\Desktop\OpenOffice 4.1.3.lnk
2017-05-10 22:28 - 2017-05-10 22:28 - 00000000 ____D C:\Program Files (x86)\OpenOffice 4
2017-05-10 22:12 - 2017-05-10 22:12 - 00000000 ____D C:\Users\*****\Desktop\OpenOffice 4.1.3 (de) Installation Files
2017-05-10 22:04 - 2017-05-10 22:10 - 171330228 _____ C:\Users\*****\Downloads\Apache_OpenOffice_4.1.3_Win_x86_install_de.exe
2017-05-05 17:40 - 2017-05-05 08:40 - 00000000 ____D C:\Users\*****\AppData\Local\MicrosoftEdge
2017-05-05 15:52 - 2017-05-16 12:24 - 00002503 _____ C:\Users\*****\Desktop\mbam.txt
2017-05-05 15:38 - 2017-05-05 15:38 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2017-05-05 14:08 - 2017-05-14 12:01 - 00000000 ____D C:\WINDOWS\system32\MRT
2017-05-05 14:08 - 2017-05-14 11:59 - 156335152 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-05-05 13:13 - 2017-05-05 13:13 - 00003292 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2
2017-05-05 13:11 - 2017-05-05 13:11 - 00000000 ____D C:\Users\*****\AppData\Roaming\Skype
2017-05-05 10:05 - 2017-05-05 13:13 - 00002386 _____ C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-05-05 10:05 - 2017-05-05 13:13 - 00000000 ___RD C:\Users\*****\OneDrive
2017-05-05 10:05 - 2017-05-05 10:05 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2017-05-05 10:03 - 2017-05-19 15:45 - 00000000 __SHD C:\Users\*****\IntelGraphicsProfiles
2017-05-05 10:03 - 2017-05-16 19:36 - 00000000 __RHD C:\Users\Public\AccountPictures
2017-05-05 10:03 - 2017-05-09 13:41 - 00000000 ____D C:\Users\*****\AppData\Local\Packages
2017-05-05 10:03 - 2017-05-05 15:38 - 00000000 ____D C:\Users\*****\AppData\Local\ConnectedDevicesPlatform
2017-05-05 10:03 - 2017-05-05 10:03 - 00000144 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-05-05 10:03 - 2017-05-05 10:03 - 00000000 ____D C:\Users\*****\AppData\Roaming\Adobe
2017-05-05 10:03 - 2017-05-05 10:03 - 00000000 ____D C:\Users\*****\AppData\Local\VirtualStore
2017-05-05 10:03 - 2017-05-05 10:03 - 00000000 ____D C:\Users\*****\AppData\Local\TileDataLayer
2017-05-05 10:03 - 2017-05-05 10:03 - 00000000 ____D C:\Users\*****\AppData\Local\Publishers
2017-05-05 10:02 - 2017-05-17 21:43 - 00000000 ____D C:\Users\*****
2017-05-05 10:02 - 2017-05-05 10:02 - 00000020 ___SH C:\Users\*****\ntuser.ini
2017-05-05 10:02 - 2017-05-05 10:02 - 00000000 _SHDL C:\Users\*****\Vorlagen
2017-05-05 10:02 - 2017-05-05 10:02 - 00000000 _SHDL C:\Users\*****\Startmenü
2017-05-05 10:02 - 2017-05-05 10:02 - 00000000 _SHDL C:\Users\*****\Netzwerkumgebung
2017-05-05 10:02 - 2017-05-05 10:02 - 00000000 _SHDL C:\Users\*****\Lokale Einstellungen
2017-05-05 10:02 - 2017-05-05 10:02 - 00000000 _SHDL C:\Users\*****\Eigene Dateien
2017-05-05 10:02 - 2017-05-05 10:02 - 00000000 _SHDL C:\Users\*****\Druckumgebung
2017-05-05 10:02 - 2017-05-05 10:02 - 00000000 _SHDL C:\Users\*****\Documents\Eigene Videos
2017-05-05 10:02 - 2017-05-05 10:02 - 00000000 _SHDL C:\Users\*****\Documents\Eigene Musik
2017-05-05 10:02 - 2017-05-05 10:02 - 00000000 _SHDL C:\Users\*****\Documents\Eigene Bilder
2017-05-05 10:02 - 2017-05-05 10:02 - 00000000 _SHDL C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2017-05-05 10:02 - 2017-05-05 10:02 - 00000000 _SHDL C:\Users\*****\AppData\Local\Verlauf
2017-05-05 10:02 - 2017-05-05 10:02 - 00000000 _SHDL C:\Users\*****\AppData\Local\Anwendungsdaten
2017-05-05 10:02 - 2017-05-05 10:02 - 00000000 _SHDL C:\Users\*****\Anwendungsdaten
2017-05-05 10:01 - 2017-05-05 10:02 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\Packages
2017-05-05 10:01 - 2017-05-05 10:01 - 00000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2017-05-05 10:01 - 2017-05-05 10:01 - 00000000 __SHD C:\Users\defaultuser0\IntelGraphicsProfiles
2017-05-05 10:01 - 2017-05-05 10:01 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\VirtualStore
2017-05-05 10:01 - 2017-05-05 10:01 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\TileDataLayer
2017-05-05 10:00 - 2017-05-05 10:00 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\ConnectedDevicesPlatform
2017-05-05 09:59 - 2017-05-16 17:45 - 00000000 ____D C:\Users\defaultuser0
2017-05-05 09:59 - 2017-05-05 09:59 - 00000020 ___SH C:\Users\defaultuser0\ntuser.ini
2017-05-05 09:59 - 2017-05-05 09:59 - 00000000 _SHDL C:\Users\defaultuser0\Vorlagen
2017-05-05 09:59 - 2017-05-05 09:59 - 00000000 _SHDL C:\Users\defaultuser0\Startmenü
2017-05-05 09:59 - 2017-05-05 09:59 - 00000000 _SHDL C:\Users\defaultuser0\Netzwerkumgebung
2017-05-05 09:59 - 2017-05-05 09:59 - 00000000 _SHDL C:\Users\defaultuser0\Lokale Einstellungen
2017-05-05 09:59 - 2017-05-05 09:59 - 00000000 _SHDL C:\Users\defaultuser0\Eigene Dateien
2017-05-05 09:59 - 2017-05-05 09:59 - 00000000 _SHDL C:\Users\defaultuser0\Druckumgebung
2017-05-05 09:59 - 2017-05-05 09:59 - 00000000 _SHDL C:\Users\defaultuser0\Documents\Eigene Videos
2017-05-05 09:59 - 2017-05-05 09:59 - 00000000 _SHDL C:\Users\defaultuser0\Documents\Eigene Musik
2017-05-05 09:59 - 2017-05-05 09:59 - 00000000 _SHDL C:\Users\defaultuser0\Documents\Eigene Bilder
2017-05-05 09:59 - 2017-05-05 09:59 - 00000000 _SHDL C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2017-05-05 09:59 - 2017-05-05 09:59 - 00000000 _SHDL C:\Users\defaultuser0\AppData\Local\Verlauf
2017-05-05 09:59 - 2017-05-05 09:59 - 00000000 _SHDL C:\Users\defaultuser0\AppData\Local\Anwendungsdaten
2017-05-05 09:59 - 2017-05-05 09:59 - 00000000 _SHDL C:\Users\defaultuser0\Anwendungsdaten
2017-05-05 09:46 - 2017-05-19 15:49 - 02176710 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-05-05 09:44 - 2017-04-28 03:01 - 02717184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Videos
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default\Vorlagen
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default\Startmenü
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\Default User
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Users\All Users
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Programme
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\ProgramData\Vorlagen
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\ProgramData\Startmenü
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\ProgramData\Dokumente
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2017-05-05 09:41 - 2017-05-05 09:41 - 00000000 _SHDL C:\Dokumente und Einstellungen
2017-05-05 09:34 - 2017-05-05 09:34 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2017-05-05 09:34 - 2017-05-05 09:34 - 00000000 ____D C:\WINDOWS\SysWOW64\sda
2017-05-05 09:34 - 2017-05-05 09:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Conexant
2017-05-05 09:34 - 2017-05-05 09:34 - 00000000 ____D C:\Program Files\Intel
2017-05-05 09:34 - 2017-05-05 09:34 - 00000000 ____D C:\Intel
2017-05-05 09:34 - 2016-05-03 23:30 - 00081416 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2017-05-05 09:34 - 2016-05-03 23:30 - 00077832 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2017-05-05 09:33 - 2017-05-05 09:33 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2017-05-05 09:33 - 2017-05-05 09:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby
2017-05-05 09:33 - 2017-05-05 09:33 - 00000000 ____D C:\Program Files\Dolby Digital Plus
2017-05-05 09:33 - 2015-04-18 19:26 - 00427224 _____ (Conexant Systems, Inc.) C:\WINDOWS\SysWOW64\SASrv.exe
2017-05-05 09:33 - 2014-11-26 20:01 - 00004664 _____ C:\WINDOWS\system32\Drivers\CxSfPt.dat
2017-05-05 09:33 - 2013-07-25 23:39 - 00206552 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\CxAudMsg64.exe
2017-05-05 09:33 - 2013-02-23 00:03 - 00002832 _____ C:\WINDOWS\system32\Drivers\SamSfPa.dat
2017-05-05 09:32 - 2017-05-05 09:33 - 00000000 ____D C:\ProgramData\Conexant
2017-05-05 09:32 - 2017-05-05 09:33 - 00000000 ____D C:\Program Files\CONEXANT
2017-05-05 09:32 - 2017-05-05 09:32 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2017-05-05 09:27 - 2017-05-18 18:31 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMChameleon.sys
2017-05-05 09:27 - 2017-05-08 22:30 - 00092096 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2017-05-05 09:27 - 2017-05-08 22:22 - 00111544 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2017-05-05 09:27 - 2017-05-05 09:27 - 00000000 ____D C:\ProgramData\USOShared
2017-05-05 09:26 - 2017-05-18 22:16 - 00251832 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2017-05-05 09:26 - 2017-05-08 22:22 - 00043968 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2017-05-05 09:26 - 2017-05-05 09:26 - 00001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2017-05-05 09:26 - 2017-05-05 09:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-05-05 09:25 - 2017-05-20 10:28 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2017-05-05 09:25 - 2017-05-18 22:16 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-05-05 09:25 - 2017-05-18 17:59 - 00000000 ____D C:\ProgramData\Malwarebytes
2017-05-05 09:25 - 2017-05-16 17:43 - 00223720 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-05-05 09:25 - 2017-05-05 09:25 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2017-05-05 09:25 - 2017-05-05 09:25 - 00000000 ____D C:\Program Files\Malwarebytes
2017-05-05 09:25 - 2017-03-22 11:02 - 00077440 _____ C:\WINDOWS\system32\Drivers\mbae64.sys
2017-05-05 09:24 - 2017-05-05 09:24 - 00000000 ____D C:\Users\*****\AppData\Local\Downloaded Installations
2017-05-05 09:21 - 2017-05-05 09:22 - 01496584 _____ C:\Users\*****\Downloads\Malwarebytes Malware Scanner - CHIP-Installer.exe
2017-05-05 08:57 - 2017-05-05 08:57 - 00000000 ____D C:\Users\*****\AppData\Roaming\AVAST Software
2017-05-05 08:56 - 2017-05-05 08:56 - 00004036 _____ C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1493967374
2017-05-05 08:56 - 2017-05-05 08:56 - 00001979 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2017-05-05 08:56 - 2017-05-05 08:56 - 00001088 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2017-05-05 08:56 - 2017-05-05 08:56 - 00000000 ____D C:\Users\*****\AppData\Local\CEF
2017-05-05 08:55 - 2017-05-15 19:45 - 00002264 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-05-05 08:55 - 2017-05-15 19:45 - 00002252 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-05-05 08:55 - 2017-05-13 20:56 - 00004268 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update
2017-05-05 08:55 - 2017-05-05 08:55 - 00000000 ____D C:\WINDOWS\System32\Tasks\AVAST Software
2017-05-05 08:55 - 2017-05-05 08:55 - 00000000 ____D C:\Program Files\Common Files\AV
2017-05-05 08:53 - 2017-05-15 20:55 - 00158880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswstm.sys
2017-05-05 08:53 - 2017-05-05 09:04 - 00003628 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2017-05-05 08:53 - 2017-05-05 09:04 - 00003504 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2017-05-05 08:53 - 2017-05-05 09:04 - 00000000 ____D C:\Users\*****\AppData\Local\Google
2017-05-05 08:53 - 2017-05-05 08:55 - 00000000 ____D C:\Program Files (x86)\Google
2017-05-05 08:53 - 2017-05-05 08:53 - 00569192 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2017-05-05 08:53 - 2017-05-05 08:53 - 00400456 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2017-05-05 08:53 - 2017-05-05 08:53 - 00339696 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2017-05-05 08:53 - 2017-05-05 08:53 - 00128648 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2017-05-05 08:53 - 2017-05-05 08:53 - 00101152 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2017-05-05 08:53 - 2017-05-05 08:53 - 00075704 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2017-05-05 08:53 - 2017-05-05 08:53 - 00038296 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2017-05-05 08:53 - 2017-05-05 08:52 - 01007160 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2017-05-05 08:53 - 2017-05-05 08:52 - 00334576 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbloga.sys
2017-05-05 08:53 - 2017-05-05 08:52 - 00311808 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys
2017-05-05 08:53 - 2017-05-05 08:52 - 00190256 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsha.sys
2017-05-05 08:53 - 2017-05-05 08:52 - 00049016 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbuniva.sys
2017-05-05 08:53 - 2017-05-05 08:52 - 00032600 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2017-05-05 08:52 - 2017-05-05 08:52 - 00000000 ____D C:\Program Files\AVAST Software
2017-05-05 08:51 - 2017-05-05 15:50 - 00000000 ____D C:\ProgramData\AVAST Software
2017-05-05 08:50 - 2017-05-05 01:21 - 00000000 ___HD C:\$SysReset
2017-05-05 08:47 - 2017-05-05 08:51 - 298870792 _____ (AVAST Software) C:\Users\*****\Downloads\avast_174free_antivirus_setup_offline.exe
2017-05-05 08:43 - 2017-05-05 08:43 - 00000000 ____D C:\Users\*****\AppData\Local\Comms
2017-05-05 08:42 - 2017-05-19 16:09 - 00000000 ____D C:\Users\*****\AppData\LocalLow\Mozilla
2017-05-05 08:42 - 2017-05-16 11:48 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-05-05 08:42 - 2017-05-16 11:48 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-05-05 08:42 - 2017-05-05 08:47 - 00000000 ____D C:\Users\*****\AppData\Local\Mozilla
2017-05-05 08:42 - 2017-05-05 08:42 - 00001228 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2017-05-05 08:42 - 2017-05-05 08:42 - 00001216 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2017-05-05 08:42 - 2017-05-05 08:42 - 00000000 ____D C:\Users\*****\AppData\Roaming\Mozilla
2017-05-05 08:41 - 2017-05-05 08:41 - 00246304 _____ (Mozilla) C:\Users\*****\Downloads\Firefox Setup Stub 53.0.exe
2017-05-05 01:21 - 2017-05-09 13:46 - 00000000 ____D C:\Windows.old
2017-05-05 01:21 - 2017-05-05 10:00 - 00000000 ___DC C:\WINDOWS\Panther
2017-05-05 01:21 - 2017-05-05 01:22 - 00000000 ____D C:\WINDOWS\InfusedApps
2017-05-05 01:21 - 2017-05-05 01:21 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2017-05-05 01:19 - 2017-05-05 01:19 - 00000000 ____D C:\Program Files\Synaptics
2017-05-05 01:18 - 2017-05-14 11:07 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2017-05-05 01:18 - 2017-05-13 20:01 - 00000000 ____D C:\WINDOWS\OCR
2017-05-05 01:18 - 2017-05-05 01:18 - 00000000 ____D C:\WINDOWS\Setup
2017-05-05 01:18 - 2017-05-05 01:18 - 00000000 ____D C:\Program Files\Reference Assemblies
2017-05-05 01:18 - 2017-05-05 01:18 - 00000000 ____D C:\Program Files\MSBuild
2017-05-05 01:18 - 2017-05-05 01:18 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2017-05-05 01:18 - 2017-05-05 01:18 - 00000000 ____D C:\Program Files (x86)\MSBuild
2017-05-05 01:15 - 2017-05-19 15:49 - 00982420 _____ C:\WINDOWS\system32\perfh007.dat
2017-05-05 01:15 - 2017-05-19 15:49 - 00213192 _____ C:\WINDOWS\system32\perfc007.dat
2017-05-05 01:15 - 2017-05-05 01:14 - 00305594 _____ C:\WINDOWS\system32\perfi007.dat
2017-05-05 01:15 - 2017-05-05 01:14 - 00040390 _____ C:\WINDOWS\system32\perfd007.dat
2017-05-05 01:14 - 2017-05-14 11:07 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm
2017-05-05 01:14 - 2017-05-14 11:07 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN
2017-05-05 01:14 - 2017-05-14 11:06 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr
2017-05-05 01:14 - 2017-05-14 11:06 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2017-05-05 01:14 - 2017-05-14 11:06 - 00000000 ____D C:\WINDOWS\system32\winrm
2017-05-05 01:14 - 2017-05-14 11:06 - 00000000 ____D C:\WINDOWS\system32\WCN
2017-05-05 01:14 - 2017-05-14 11:06 - 00000000 ____D C:\WINDOWS\system32\slmgr
2017-05-05 01:14 - 2017-05-14 11:06 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2017-05-05 01:14 - 2017-05-05 01:14 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep
2017-05-05 01:14 - 2017-05-05 01:14 - 00000000 ____D C:\WINDOWS\SysWOW64\de
2017-05-05 01:14 - 2017-05-05 01:14 - 00000000 ____D C:\WINDOWS\SysWOW64\0409
2017-05-05 01:14 - 2017-05-05 01:14 - 00000000 ____D C:\WINDOWS\system32\de
2017-05-05 01:14 - 2017-05-05 01:14 - 00000000 ____D C:\WINDOWS\system32\0409
2017-05-05 01:14 - 2017-05-05 01:14 - 00000000 ____D C:\WINDOWS\DigitalLocker
2017-05-05 01:11 - 2017-04-29 02:59 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-05-05 01:11 - 2017-04-29 02:59 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2017-05-05 01:09 - 2017-05-20 10:30 - 00000000 ____D C:\WINDOWS\AppReadiness
2017-05-05 01:09 - 2017-05-18 17:55 - 00000000 ___HD C:\Program Files\WindowsApps
2017-05-05 01:09 - 2017-05-16 17:41 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2017-05-05 01:09 - 2017-05-16 17:41 - 00000000 ___SD C:\WINDOWS\system32\F12
2017-05-05 01:09 - 2017-05-16 17:41 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2017-05-05 01:09 - 2017-05-16 17:41 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2017-05-05 01:09 - 2017-05-16 17:41 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2017-05-05 01:09 - 2017-05-16 17:41 - 00000000 ____D C:\WINDOWS\system32\oobe
2017-05-05 01:09 - 2017-05-16 17:41 - 00000000 ____D C:\WINDOWS\ShellExperiences
2017-05-05 01:09 - 2017-05-16 17:41 - 00000000 ____D C:\WINDOWS\Provisioning
2017-05-05 01:09 - 2017-05-16 17:41 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2017-05-05 01:09 - 2017-05-16 17:41 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2017-05-05 01:09 - 2017-05-16 17:41 - 00000000 ____D C:\Program Files\Windows Defender
2017-05-05 01:09 - 2017-05-16 17:41 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2017-05-05 01:09 - 2017-05-16 17:41 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2017-05-05 01:09 - 2017-05-16 12:47 - 00000000 ____D C:\WINDOWS\system32\appraiser
2017-05-05 01:09 - 2017-05-14 11:27 - 00000000 ____D C:\WINDOWS\rescache
2017-05-05 01:09 - 2017-05-14 11:06 - 00000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2017-05-05 01:09 - 2017-05-14 11:06 - 00000000 ___SD C:\WINDOWS\system32\dsc
2017-05-05 01:09 - 2017-05-14 11:06 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2017-05-05 01:09 - 2017-05-14 11:06 - 00000000 ___RD C:\WINDOWS\MiracastView
2017-05-05 01:09 - 2017-05-14 11:06 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2017-05-05 01:09 - 2017-05-14 11:06 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2017-05-05 01:09 - 2017-05-14 11:06 - 00000000 ____D C:\WINDOWS\SysWOW64\Com
2017-05-05 01:09 - 2017-05-14 11:06 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2017-05-05 01:09 - 2017-05-14 11:06 - 00000000 ____D C:\WINDOWS\system32\MUI
2017-05-05 01:09 - 2017-05-14 11:06 - 00000000 ____D C:\WINDOWS\system32\migwiz
2017-05-05 01:09 - 2017-05-14 11:06 - 00000000 ____D C:\WINDOWS\system32\Dism
2017-05-05 01:09 - 2017-05-14 11:06 - 00000000 ____D C:\WINDOWS\system32\Com
2017-05-05 01:09 - 2017-05-14 11:06 - 00000000 ____D C:\WINDOWS\IME
2017-05-05 01:09 - 2017-05-14 11:06 - 00000000 ____D C:\WINDOWS\Help
2017-05-05 01:09 - 2017-05-14 11:06 - 00000000 ____D C:\Program Files\Common Files\System
2017-05-05 01:09 - 2017-05-10 22:13 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2017-05-05 01:09 - 2017-05-08 22:30 - 00000000 ____D C:\WINDOWS\appcompat
2017-05-05 01:09 - 2017-05-05 16:13 - 00000000 ___RD C:\WINDOWS\PrintDialog
2017-05-05 01:09 - 2017-05-05 16:13 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2017-05-05 01:09 - 2017-05-05 16:13 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2017-05-05 01:09 - 2017-05-05 16:13 - 00000000 ____D C:\WINDOWS\system32\setup
2017-05-05 01:09 - 2017-05-05 16:13 - 00000000 ____D C:\WINDOWS\bcastdvr
2017-05-05 01:09 - 2017-05-05 16:10 - 00015425 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2017-05-05 01:09 - 2017-05-05 10:02 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2017-05-05 01:09 - 2017-05-05 09:44 - 00000000 ____D C:\WINDOWS\system32\spool
2017-05-05 01:09 - 2017-05-05 09:44 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2017-05-05 01:09 - 2017-05-05 09:43 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-05-05 01:09 - 2017-05-05 09:41 - 00000000 ____D C:\Program Files\Windows NT
2017-05-05 01:09 - 2017-05-05 09:27 - 00000000 ____D C:\ProgramData\USOPrivate
2017-05-05 01:09 - 2017-05-05 01:21 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2017-05-05 01:09 - 2017-05-05 01:18 - 00000000 ____D C:\WINDOWS\SystemApps
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 __SHD C:\Program Files\Windows Sidebar
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 __RSD C:\WINDOWS\Media
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 __RHD C:\Users\Public\Libraries
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ___SD C:\WINDOWS\SysWOW64\Nui
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ___SD C:\WINDOWS\SysWOW64\Configuration
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ___SD C:\WINDOWS\system32\Nui
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ___SD C:\WINDOWS\system32\Configuration
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ___RD C:\WINDOWS\Offline Web Pages
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\Web
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\Vss
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\tracing
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\TAPI
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SysWOW64\SMI
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SysWOW64\ras
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SysWOW64\NDF
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SysWOW64\MsDtc
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SysWOW64\Ipmi
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SysWOW64\InputMethod
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SysWOW64\icsxml
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SysWOW64\FxsTmp
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SysWOW64\downlevel
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SysWOW64\Bthprops
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SysWOW64\AppLocker
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SystemResources
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\WinMetadata
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\winevt
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\ras
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\ProximityToast
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\PointOfService
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\NDF
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\MsDtc
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\Macromed
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\Ipmi
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\IME
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\icsxml
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\ias
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\downlevel
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\DDFs
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\config\Journal
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\Bthprops
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\AppLocker
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\System
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SKB
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\security
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\schemas
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\SchCache
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\Resources
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\Registration
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\PLA
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\Performance
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\ModemLogs
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\L2Schemas
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\InputMethod
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\Globalization
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\GameBarPresenceWriter
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\Cursors
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\Branding
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\addins
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\ProgramData\Comms
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\Program Files\Windows Portable Devices
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\Program Files\Common Files\Services
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\Program Files (x86)\Windows NT
2017-05-05 01:09 - 2017-05-05 01:09 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2017-05-05 01:09 - 2017-05-05 01:07 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2017-05-05 01:09 - 2017-05-05 01:07 - 00215943 _____ C:\WINDOWS\SysWOW64\dssec.dat
2017-05-05 01:09 - 2017-05-05 01:07 - 00215943 _____ C:\WINDOWS\system32\dssec.dat
2017-05-05 01:09 - 2017-05-05 01:07 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2017-05-05 01:09 - 2017-05-05 01:07 - 00017463 _____ C:\WINDOWS\system32\Drivers\etc\services
2017-05-05 01:09 - 2017-05-05 01:07 - 00004096 _____ C:\WINDOWS\system32\config\VSMIDK
2017-05-05 01:09 - 2017-05-05 01:07 - 00003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam
2017-05-05 01:09 - 2017-05-05 01:07 - 00001358 _____ C:\WINDOWS\system32\Drivers\etc\protocol
2017-05-05 01:09 - 2017-05-05 01:07 - 00000858 _____ C:\WINDOWS\system32\DefaultQuestions.json
2017-05-05 01:09 - 2017-05-05 01:07 - 00000741 _____ C:\WINDOWS\SysWOW64\NOISE.DAT
2017-05-05 01:09 - 2017-05-05 01:07 - 00000741 _____ C:\WINDOWS\system32\NOISE.DAT
2017-05-05 01:09 - 2017-05-05 01:07 - 00000407 _____ C:\WINDOWS\system32\Drivers\etc\networks
2017-05-05 01:09 - 2017-05-05 01:06 - 00000219 _____ C:\WINDOWS\system.ini
2017-05-05 01:09 - 2017-05-05 01:06 - 00000092 _____ C:\WINDOWS\win.ini
2017-05-05 01:07 - 2017-05-16 17:44 - 00000000 ____D C:\WINDOWS\INF
2017-05-05 01:01 - 2017-05-16 12:47 - 00000000 ____D C:\WINDOWS\CbsTemp
2017-05-05 00:53 - 2017-05-18 22:15 - 00262144 _____ C:\WINDOWS\system32\config\BBI
2017-05-05 00:53 - 2017-05-14 11:06 - 00000000 ____D C:\WINDOWS\servicing
2017-05-05 00:53 - 2017-05-05 09:26 - 00032768 _____ C:\WINDOWS\system32\config\ELAM
2017-05-05 00:53 - 2017-05-05 01:09 - 00000000 ____D C:\WINDOWS\system32\SMI
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2017-05-04 22:21 - 2016-07-16 13:42 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManMigrationPlugin.dll
2017-05-04 22:17 - 2016-07-16 08:04 - 00120320 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2017-05-04 22:14 - 2016-07-16 08:04 - 00142848 ____N (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2017-05-05 09:33 - 2017-05-05 09:33 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
==================== Bamital & volsnap ======================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2017-05-15 17:57
==================== Ende von FRST.txt ============================
--- --- ---